*Mixed Signals*
I don't care much to revisit the Signal fiasco which mainly revolves around unfortunately misguided reporting; mistakes were made with wording and clarity and we need to own them.
however I need to vent out a couple of comments before signing off:
Some have dismissed the article's content as "embarrassing", and let me be clear - I disagree. I am proud of the technical merit in the article when taken in context, which is an educational write-up targeted at forensic examiners, providing transparency about the tools they use.
Cellebrite is not all about code execs, LPEs, trustzone pwnage and crypto flaws. We also reverse engineer file systems and applications and decode their data to make forensic work accessible and defensible, and we do it efficiently and consistently for hundreds of apps.
In our labs we have a dozen teams of reverse engineers, researchers and developers that take on these challenges daily, with great results spanning over two decades (!). We've earned our position rightfully.
When you call out research articles that were not written for you as a target, you disrespect that audience's skill level and interests. Even the best researchers would have enjoyed this information in context at some point in their careers. You can't dismiss that.
Infosec has had its fair share of drama, and this was another blip in an ocean of naval mines going off on a daily basis.
I would only say that I believe the industry would benefit from a more inclusive and less inflammatory approach.
Reporting can go wrong in search of headlines, especially when the subject matter is challenging; we need to help reporters "get it right", and derogatory claims or eye-rolling sighs aren't the way to go.
I like Signal, I appreciate the engineering and hard work invested in it.
I believe that both the Signal authors and our teams have common values and share aspirations for a safer world. Our technology results in convictions and exonerations in service of justice daily, I don't find this function bankrupt.
</vent>
I wish you a great and happy holiday, I hope you are able to spend it with your families, stay safe and sane ❤️
• • •
Missing some Tweet in this thread? You can try to
force a refresh
Story time –
I’m hanging out at Schönefeld Airport waiting for the flight back from CCC. Wife calls, we chat for a few mins and the call disconnects.
I dismiss it with a “oh well, crazy cell tower.”
3 mins later, wife calls frantically: “ARE YOU OKAY?!” 🤔
- “uhh, yeah, what’s wrong?”
- “ok, I just thought you were kidnapped or in some distress. You started repeating your answers very calmly and I was sure you were trying to signal me something”
- “oh wow, that’s pretty crazy!” 😯
We both realize that while I got disconnected, she got a replay using a perfect recording of my side of the call.
We talk about what it could mean and how this can’t be a normal cell network behavior, and we get cut off again. 🤨