Skip to content
By using Twitter’s services you agree to our Cookies Use. We and our partners operate globally and use cookies, including for analytics, personalisation, and ads.
  • Home Home Home, current page.
  • About

Saved searches

  • Remove
  • In this conversation
    Verified accountProtected Tweets @
Suggested users
  • Verified accountProtected Tweets @
  • Verified accountProtected Tweets @
  • Language: English
    • Bahasa Indonesia
    • Bahasa Melayu
    • Català
    • Čeština
    • Dansk
    • Deutsch
    • English UK
    • Español
    • Filipino
    • Français
    • Hrvatski
    • Italiano
    • Magyar
    • Nederlands
    • Norsk
    • Polski
    • Português
    • Română
    • Slovenčina
    • Suomi
    • Svenska
    • Tiếng Việt
    • Türkçe
    • Ελληνικά
    • Български език
    • Русский
    • Српски
    • Українська мова
    • עִבְרִית
    • العربية
    • فارسی
    • मराठी
    • हिन्दी
    • বাংলা
    • ગુજરાતી
    • தமிழ்
    • ಕನ್ನಡ
    • ภาษาไทย
    • 한국어
    • 日本語
    • 简体中文
    • 繁體中文
  • Have an account? Log in
    Have an account?
    · Forgot password?

    New to Twitter?
    Sign up
s1guza's profile
Siguza
Siguza
Siguza
@s1guza

Tweets

Siguza

@s1guza

Hobbyist hacker, mostly taking apart iOS. Views/opinions are those of my pet rock. When contacting me, please use English/German. PGP: https://keybase.io/siguza 

out here
siguza.net
Joined May 2010

Tweets

  • © 2019 Twitter
  • About
  • Help Center
  • Terms
  • Privacy policy
  • Imprint
  • Cookies
  • Ads info
Dismiss
Previous
Next

Go to a person's profile

Saved searches

  • Remove
  • In this conversation
    Verified accountProtected Tweets @
Suggested users
  • Verified accountProtected Tweets @
  • Verified accountProtected Tweets @

Promote this Tweet

Block

  • Tweet with a location

    You can add location information to your Tweets, such as your city or precise location, from the web and via third-party applications. You always have the option to delete your Tweet location history. Learn more

    Your lists

    Create a new list


    Under 100 characters, optional

    Privacy

    Copy link to Tweet

    Embed this Tweet

    Embed this Video

    Add this Tweet to your website by copying the code below. Learn more

    Add this video to your website by copying the code below. Learn more

    Hmm, there was a problem reaching the server.

    By embedding Twitter content in your website or app, you are agreeing to the Twitter Developer Agreement and Developer Policy.

    Preview

    Why you're seeing this ad

    Log in to Twitter

    · Forgot password?
    Don't have an account? Sign up »

    Sign up for Twitter

    Not on Twitter? Sign up, tune into the things you care about, and get updates as they happen.

    Sign up
    Have an account? Log in »

    Two-way (sending and receiving) short codes:

    Country Code For customers of
    United States 40404 (any)
    Canada 21212 (any)
    United Kingdom 86444 Vodafone, Orange, 3, O2
    Brazil 40404 Nextel, TIM
    Haiti 40404 Digicel, Voila
    Ireland 51210 Vodafone, O2
    India 53000 Bharti Airtel, Videocon, Reliance
    Indonesia 89887 AXIS, 3, Telkomsel, Indosat, XL Axiata
    Italy 4880804 Wind
    3424486444 Vodafone
    » See SMS short codes for other countries

    Confirmation

     

    Welcome home!

    This timeline is where you’ll spend most of your time, getting instant updates about what matters to you.

    Tweets not working for you?

    Hover over the profile pic and click the Following button to unfollow any account.

    Say a lot with a little

    When you see a Tweet you love, tap the heart — it lets the person who wrote it know you shared the love.

    Spread the word

    The fastest way to share someone else’s Tweet with your followers is with a Retweet. Tap the icon to send it instantly.

    Join the conversation

    Add your thoughts about any Tweet with a Reply. Find a topic you’re passionate about, and jump right in.

    Learn the latest

    Get instant insight into what people are talking about now.

    Get more of what you love

    Follow more accounts to get instant updates about topics you care about.

    Find what's happening

    See the latest conversations about any topic instantly.

    Never miss a Moment

    Catch up instantly on the best stories happening as they unfold.

    1. Siguza‏ @s1guza Aug 15
      • Report Tweet

      So here's the full case Apple vs. Corellium. And IANAL, but besides coming off really hostile, Apple seems to have a rather thin case here.https://www.scribd.com/document/422019022/Apple-v-Corellium …

      11 replies 89 retweets 279 likes
      Show this thread
    2. Siguza‏ @s1guza Aug 15
      • Report Tweet

      Firstly, they only claim copyright infringement on their software and GUI - not the hardware or associated patents. And yes, the iOS license forbids pretty much everything except downloading and running it on a single Apple-issued device you own, but jfc.

      2 replies 3 retweets 63 likes
      Show this thread
    3. Siguza‏ @s1guza Aug 15
      • Report Tweet

      It all sounds like if Corellium told users to bring their own IPSWs and didn't use Apple trademarked names, Apple's case would fall apart. Also they make it sound like Corellium created a knockoff of iOS, when they seem to literally be downloading the original software.

      2 replies 4 retweets 71 likes
      Show this thread
    4. Siguza‏ @s1guza Aug 15
      • Report Tweet

      Apple also seems to at least partially try and make a case against fair use, complaining about how Corellium doesn't force its customers to report vulnerabilities to Apple. If it wasn't about fair use here, I imagine these two paragraphs would just be met with "yeah, so what?".pic.twitter.com/NwNpOBBGbZ

      2 replies 3 retweets 67 likes
      Show this thread
      Siguza‏ @s1guza Aug 15
      • Report Tweet

      This part though sounds wildly misleading. First, unc0ver is a jailbreak, not an exploit. None of the unc0ver developers developed any of the exploits used in the app.pic.twitter.com/8fojoD6440

      5:56 PM - 15 Aug 2019
      • 23 Retweets
      • 198 Likes
      • NicoDev Ricky Avonta shmoobalizer Dhruvv Luis G. נαѕ IM3T4_CZ fugiefire
      4 replies 23 retweets 198 likes
        1. New conversation
        2. Siguza‏ @s1guza Aug 15
          • Report Tweet

          And second, this seems to imply that Corellium aided in exploit development in this specific case - except the exploit used was voucher_swap by @_bazad, published in full more than two and a half months before being used in the unc0ver jailbreak.

          3 replies 9 retweets 144 likes
          Show this thread
        3. Siguza‏ @s1guza Aug 15
          • Report Tweet

          And then there's this, which I would call primordial bullshit. - They always have and still do oppose any kind of security research. Maybe not to the point of suing people, but it's very clear their actual concern is PR, not security.pic.twitter.com/xi8meXQ394

          3 replies 7 retweets 71 likes
          Show this thread
        4. Siguza‏ @s1guza Aug 15
          • Report Tweet

          - The mentioned positions are merely a week old. Before that, the maximum payout was only a fifth of the quoted sum, the majority of vulnerabilities wouldn't qualify, and you first had to get invited anyway, into a bounty program so secretive even its NDA is under NDA.

          2 replies 3 retweets 70 likes
          Show this thread
        5. Siguza‏ @s1guza Aug 15
          • Report Tweet

          - These (NB newly announced) "custom versions" of the iPhone aren't even gonna be available until 2020, and the phrase "legitimate security researchers" strongly implies it will not be available to the general public, but only those favored by Apple.

          1 reply 4 retweets 58 likes
          Show this thread
        6. Siguza‏ @s1guza Aug 15
          • Report Tweet

          - The security-wise most important parts of iOS (boot chain & SEP) are encrypted in such a way that only those who have hacked these parts already can decrypt and analyze their firmware, and Apple provides no way of what they call "legitimately" gaining access to those.

          2 replies 2 retweets 56 likes
          Show this thread
        7. Siguza‏ @s1guza Aug 15
          • Report Tweet

          Before iOS 10, this was even the case for ALL parts of iOS. And they continue to do this despite the fact that people who hacked these components have been publishing keys for them for as long as they have existed. aPple STrongly SuPPOrTS gooD-fAiTh SeCUrITY rESeArCh. Yea rite.

          4 replies 10 retweets 157 likes
          Show this thread
        8. End of conversation
        1. New conversation
        2. http‏ @SwissHttp Aug 16
          • Report Tweet
          Replying to @s1guza

          You don’t expect that lawyers can differentiate between exploit, vulnerability and jailbreak, do you?

          1 reply 0 retweets 7 likes
        3. Siguza‏ @s1guza Aug 16
          • Report Tweet
          Replying to @SwissHttp

          I expect lawyers to be experts in precise language. So yeah, I sorta do.

          1 reply 0 retweets 18 likes
        4. Pwn20wnd is reviving 0-Days‏ @Pwn20wnd Aug 16
          • Report Tweet
          Replying to @s1guza @SwissHttp

          Pwn20wnd is reviving 0-Days Retweeted sparkey

          Apple’s exepections for the lawyers they will work with seem to be worse than the person shown in that screenshot:https://twitter.com/iBSparkes/status/1160885954921603073?s=20 …

          Pwn20wnd is reviving 0-Days added,

          sparkey @iBSparkes
          hold on a mi- pic.twitter.com/HlkRm2PLVc
          0 replies 6 retweets 40 likes
        5. End of conversation
        1. New conversation
        2. L020‏ @L0Dev Aug 15
          • Report Tweet
          Replying to @s1guza

          I would say that u0 is an exploit. It fits the definition of "a software tool designed to take advantage of a flaw in a computer system, typically for malicious purposes such as installing malware" even if it utilizes exploits developed by others. Still a fucking bogus suit tho

          1 reply 1 retweet 2 likes
        3. John Leiper‏ @Forev_rDreaming Aug 15
          • Report Tweet
          Replying to @L0Dev @s1guza

          Except it’s not.

          1 reply 1 retweet 6 likes
        4. John Leiper‏ @Forev_rDreaming Aug 15
          • Report Tweet
          Replying to @Forev_rDreaming @L0Dev @s1guza

          It has an exploit in its code, it in itself is not an ‘exploit’.

          1 reply 1 retweet 5 likes
        5. L020‏ @L0Dev Aug 15
          • Report Tweet
          Replying to @Forev_rDreaming @s1guza

          I agree that it doesn't satisfy what most of us in the community would call an exploit. I'm just saying that it does fit the definition for a lay person.

          1 reply 1 retweet 4 likes
        6. 2 Trill Coupe DeVille‏ @coupedeezy Aug 16
          • Report Tweet
          Replying to @L0Dev @Forev_rDreaming @s1guza

          It’s not so much an exploit, as it is a means to exploit. I can understand Apple’s pissed at Correllium for offering a service to dev’s that they hadn’t thought of yet, emulation. Isn’t this the way things go with Apple? Next WWDC they’ll announce the same thing.

          0 replies 1 retweet 4 likes
        7. End of conversation
        1. New conversation
        2. Sean F‏ @MrFrickenstein Aug 15
          • Report Tweet
          Replying to @s1guza @iM4CH3T3

          I was going to comment do you think it’s a coincidence they file the suit almost immediately after announcing the larger bug bounty program and the custom security research phones but you noticed it too.

          1 reply 2 retweets 3 likes
        3. 𝕮𝕳𝕽𝕴𝕾‏ @Itsyab0y04 Aug 16
          • Report Tweet
          Replying to @MrFrickenstein @s1guza @iM4CH3T3

          Yea probably so they can have a “stronger” argument for their case.

          0 replies 1 retweet 3 likes
        4. End of conversation

      Loading seems to be taking a while.

      Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.

        Promoted Tweet

        false

        • © 2019 Twitter
        • About
        • Help Center
        • Terms
        • Privacy policy
        • Imprint
        • Cookies
        • Ads info