this post was submitted on 23 Jun 2023
68 points (98.6% liked)

Technology

37551 readers
416 users here now

A nice place to discuss rumors, happenings, innovations, and challenges in the technology sphere. We also welcome discussions on the intersections of technology and society. If it’s technological news or discussion of technology, it probably belongs here.

Remember the overriding ethos on Beehaw: Be(e) Nice. Each user you encounter here is a person, and should be treated with kindness (even if they’re wrong, or use a Linux distro you don’t like). Personal attacks will not be tolerated.

Subcommunities on Beehaw:


This community's icon was made by Aaron Schneider, under the CC-BY-NC-SA 4.0 license.

founded 2 years ago
MODERATORS
 

Interesting to hear such things discussed at that level. Turning it off is suggested to get rid of compromised background processes that might be spying on users. Obviously, this only help against malware that isn't permanently installed on a phone.

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 29 points 1 year ago (2 children)

This is good advice if your phone is actively being hacked in real time when you turn it off. Otherwise all you're doing is delaying or temporarily interrupting any data collection that's going on in the background. Any apps that are sophisticated enough to run undetected by a normal user are also going to restart themselves as soon as the phone boots up again.

Also, if you are being targeted by a hacker that is knowledgeable enough to actively get into your device (especially an iPhone) without physical access then you're better off destroying it and buying a new one, along with doing a full reset of all of your passwords, 2FA setup, and anything else you think you're relying on for "security".

[–] [email protected] 10 points 1 year ago (1 children)

That is not true. Many attacks (e.g. the recently revealed Operation Triangulation) do not have persistence.

[–] [email protected] 4 points 1 year ago

Yup, a lot of very sophisticated mobile malware does not have persistence. His advice holds up.

[–] [email protected] 5 points 1 year ago* (last edited 1 year ago)

you’re better off destroying it and buying a new one

Um, what? Spending a thousand bucks on a new phone, which they will probably infect almost immediately, is poor advice.

If I was in that situation the first thing I'd do is disconnect it from the internet. The next thing I'd do is lock everything down so the attacker can't use the phone to do any harm (reset passwords, etc, and don't log into those accounts from your phone).