mamot.fr is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mamot.fr est un serveur Mastodon francophone, géré par La Quadrature du Net.

Server stats:

3.3K
active users

Cory Doctorow

Apple's are an ingenious technology: they fuse every Ios device into a sensor grid that logs the location of each tag, using clever cryptography to prevent anyone but the tag's owner from pulling that information out of the system.

But there are significant problems with Airtags' privacy model. Some of these are unique to Apple, others are shared by all Bluetooth location systems, including Covid exposure-notification apps and Airtag rivals like Tile.

1/

For example, minute imperfections in these devices' Bluetooth radio circuitry make it possible to uniquely identify them without having to bypass their encryption, simply by tracking the signature "fingerprint" of each radio:

pluralistic.net/2021/10/21/sid

That's an attack on the device's owner. But tracker tags also enable attacks *by* the device's owner.

2/

Pluralistic: Daily links from Cory DoctorowPluralistic: 21 Oct 2021 – Pluralistic: Daily links from Cory DoctorowBy Cory Doctorow

For example, there's a thriving market for Airtags whose speakers have been disabled (the speakers emit a chirp that is supposed to warn people if they are being tracked by someone else's Airtag):

9to5mac.com/2022/02/03/airtags

Even without gimmicked speakers, tracking people with Airtags (and their competitors) is frighteningly easy. The *New York Times*' Kashmir Hill (consensually) tracked her husband around Manhattan with a constellation of these bugs.

nytimes.com/2022/02/11/technol

3/

9to5MacAirTags with deactivated speakers being sold on eBay and Etsy; seller claims not for stalkingBy Ben Lovejoy

Even with the chirping speakers, her husband - a press privacy advocate with a strong technical background - struggled to locate and de-activate the Airtags. Hill reports that many people - particularly women - are finding Airtags hidden in their cars, clothes and elsewhere.

4/

The far-reaching surveillance potential of these trackers was driven home by a stunt/investigation carried out by Lilith Wittmann, who confirmed her suspicion that a German government agency was a front for a spy operation, by mailing Airtag-bugged packages to it and watching as they were relayed to facilities used by the intelligence services ("the Office for the Protection of the Constitution").

lilithwittmann.medium.com/bund

5/

MediumBundesservice Telekommunikation — enttarnt: Dieser Geheimdienst steckt dahinter - @LilithWittmann | MediumBy Lilith Wittmann

It's a fascinating new operational security wrinkle that relies on the popularity and ubiquity of Apple's Ios devices; foiling it requires not just that a spy facility be mobile-phone-free, but that all the facilities that deliver its mail also adopt this measure.

Image:
Apple
apple.com/airtag/

eof/

AppleAirTagAttach AirTag to everyday items, like your keys or a backpack, to easily keep track of them in the Find My app.