Hacker Newsnew | past | comments | ask | show | jobs | submit | yb6677's commentslogin

There isn’t much technical details there either. They list the servers it connected to and log entry but that’s it.

It mentions a CVE number but the apple link is generic and mo details on the CVE database.

Has this even been fixed by apple?


we talking about state sponsored actor with zero day vuln here

You would not find info anywhere


It's no longer a zero day if Apple already patched it.


Just for the sake of being more precise...

On the “vulnerability” it could be considered a zero-day because there was a real exploit against it prior to the exploit being reported by security researchers. It could also be considered not a zero-day because the software vendor is aware of the vulnerability such that no other real exploit of it, regardless of it being patched, will occur on the same day that they learn of it.

It’s kinda moot that it’s been patched. Even if they somehow failed to patch it since the exploit, it is no longer a zero-day vulnerability. But, to your point, knowing that it has been patched is practically (obviously) the same as knowing that the software vendor is aware of the vulnerability.

(Funny enough, they could be aware of it and it still be a zero-day since the definition is how many days have past since the vendor learned of it prior to it being exploited. Though, it would need to be exploited after they learn about it but before they patch it, which is unlikely.)


Why not?


I replied to the parent comment with the info I found:

https://news.ycombinator.com/item?id=44274249

Tl;DR: yes, this was resolved in iOS 18.3.1



Own two phones?

Phone 1 - with sim and is exploited, no data or apps. Phone 2 - different OS, no sim, uses portable hotspot from phone 1 and has all the apps and data.


in this current world is not possible to leave "no traces" and expect you would not get find out because it literally is

its an anomaly having an "no data" especially in this ever digitized world


Can you not have two providers, so donations in USA are processed by a second one with no fees?


This is a smart solution, thanks - we like the ease of use that Stripe offers, but there are probably just as feasible providers we can use and save the money!


“They're the only big cloud provider I feel comfortable with”

Firstly do you work for aws, as saying the other big cloud providers are inferior is unusual. Azure for example powers a lot of critical enterprise which are Microsoft.net centered.

And secondly there are lots of other providers outside of the big cloud providers who can maintain 99.99% service levels.


Local llm will allow offline connection (not all places in the world enjoy USA level internet coverage) and offer privacy.

And no network latency.


iPhones have less ram than android though, Android phones often have 12gb or 16gb, apple only recently upped it to 8gb.

https://ioshacker.com/iphone/how-much-ram-does-my-iphone-has


Apple released Apple Silicon in 2021 and moved the game on so I am willing to give them a few more years to surprise us.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: