7 days 30 days All time Recent Popular
My students @maxzks and Tushar Jois spent most of the summer going through every piece of public documentation, forensics report, and legal document we could find to figure out how police were “breaking phone encryption”. 1/


This was prompted by a claim from someone knowledgeable, who claimed that forensics companies no longer had the ability to break the Apple Secure Enclave Processor, which would make it very hard to crack the password of a locked, recent iPhone. 2/

We wrote an enormous report about what we found, which we’ll release after the holidays. The TL;DR is kind of depressing:

Authorities don’t need to break phone encryption in most cases, because modern phone encryption sort of sucks. 3/

I’ll focus on Apple here but Android is very similar. The top-level is that, to break encryption on an Apple phone you need to get the encryption keys. Since these are derived from the user’s passcode, you either need to guess that — or you need the user to have entered it. 4/

Guessing the password is hard on recent iPhones because there’s (at most) a 10-guess limit enforced by the Secure Enclave Processor (SEP). There’s good evidence that at one point in 2018 a company called GrayKey had a SEP exploit that did this for the X. See photo. 5/
Yesterday I did a thread on how Huawei is trying to manipulate Belgian policy audiences with a fake online ecosystem ahead of a key 5G decision. (https://t.co/ViIp7X5KsN) Huawei did not take kindly to my research.


Mike Bai, the "President of Strategy Marketing Western Europe" for Huawei doubled down and tagged me and the organisations listed in my profile in a promoted (!) tweet. It's still doing the rounds now.


But who is Mike Bai? An analysis of his Twitter account by Botometer rates him a dubious 2.2/5 (by comparison, I rate 0.4, where 0 is best). @villaraco points out that he gained 800K followers in 9 months: https://t.co/YfoVaVNq2y


Bai's sudden and massive online presence for Huawei started at the exact same time as the fake ecosystem of blogs and websites started being built, in March 2020. I can find no job history for him pre-Huawei, starting in March of this year.

I did find another (?) Mike Bai. The other Mike Bai authored a blog that posts Chinese state propaganda about things like the Covid-19 outbreak not originating in China. I won't link to the blog as not 100% sure it's same person, but here's a screenshot of part of the text.
This is terrible weighing of the costs and benefits of the pardon power. I think Senator Murphy woefully undervalues its utility. /1


In part because the Congress of which he is a part has established no functioning second-look mechanisms for shortening sentences or expunging convictions, commutations and pardons are the only mechanisms for correcting injustices in the federal system. /2

And it's not as if those injustices are rare. Go to any federal correctional facility, and take time to learn who is there and about their cases, and you find literally thousands of people whose sentences were grossly excessive given their offenses. /3

Those people need commutations as a corrective because there is no parole or other second look in place to address that. Some have tried to use compassionate release under the First Step Act, but DOJ tries to block those efforts at every turn and it's a limited option. /4

Presidential commutations are thus the only avenue for these folks. And under President Obama, more than 1,700 regular people (not his cronies) received relief. It was woefully inadequate for the need, but it shows the value of the power. /5