Pular para o conteúdo principal

Compartilhe

Os cinco padrões que quebram a prova

Investigação Defensiva: os padrões que quebram a prova antes dela chegar em juízo | RDS Análise de Dados de Fontes Abertas · Investigação Defensiva Os cinco padrões que quebram a prova RDS · @RDSWEB A prova quase sempre existe. O que falta não é tecnologia, é tempo — e vontade de quem paga a conta de investigar até o fim. Depois de duas décadas atuando entre CTI, OSINT e perícia digital, aprendi que a maioria dos casos não é perdida por ausência de evidência. É perdida porque alguém decidiu que 40 horas de análise cabiam em 6, ou que um laudo de 3 páginas resolveria o que exigia 30. O resultado é um padrão recorrente: dossiês tecnicamente corretos e estrategicamente inúteis. 01 Um relatório pericial que devia documentar a cadeia completa de extração, hash e preservação frequentemente chega ao cliente reduzido a uma página de conclusões. Já vi processos em que o laudo final citava um hash SHA-256 do dispositivo original, mas ne...

'People Nearby'

Don't Use Telegram's New 'People Nearby' Feature

Image for article titled Don't Use Telegram's New 'People Nearby' Feature
Photo: Arthur Shevtsov (Shutterstock)

Telegram’s new “People Nearby” feature shows a list of other nearby users and their approximate proximity to you, letting you create group chats based on geographic location. The feature is turned off by default and must be manually enabled by the user, but it’s an idiosyncratic addition for an app that markets itself as a private, end-to-end encrypted messaging service—and according to security researcher Ahmed Hassan, it’s a major security risk.

Users can fake their geographic location in Telegram, opening them up to potential scams. “Many scammers spoof their location and try to sell fake bitcoin investments, hacking tools, SSNs that are used for unemployment fraud, and so on. The amount of illegal activities I saw there make the Silkroad look like amateurs ran it,” Hassan explained in a recent blog post.

Even worse, Hassan identified a flaw in the People Nearby feature that could let bad actors triangulate the exact location of other app-users by using two accounts with fake addresses.

This opens users up to hacks, stalking, or worse—and Telegram as announced no plans to fix the problem. Hassan reported the vulnerability to Telegram, but the company says it won’t be patched. In fact, Telegram told Hassan that discovering a user’s specific location is an “expected” outcome of the People Nearby feature in certain cases. The response feels out of character for an encrypted messaging app that sells itself on its privacy features. Even adding a more detailed warning that other users could find your precise location would be helpful, but it doesn’t look like that will happen either.

To be fair, Telegram is generally more secure than other chatting apps, and since People Nearby is turned off by default, this may not seem like a serious issue. However, users could inadvertently turn the feature on, thinking they’re simply broadcasting their general proximity to someone else, and not their exact location. If you value your privacy, don’t use Telegram’s People Nearby feature.

Comentários

Manual de Fontes Abertas

CLICA

Pericia Digital

Como usar um Agente OSINT IA

Postagens mais visitadas