Elektrine
EN
Log in Register
Paige Chat Timeline Communities Gallery Videos Email DNS VPN Uptime Kairo
Back to Timeline
Remote

Exploit Code Not People

@cooperq@infosec.exchange
  • Open on infosec.exchange

Senior public interest technologist at EFF Threat Lab ⵣ "Noted activist security type" ⵣ Anti-fascist ⵣ ACAB ⵣ he/they ⵣ My tweets do not represent views of my employer

0 Followers
0 Following
9 Posts
Joined February 11, 2023
Work email:
cooperq@eff.org
Personal email:
cooperq at my-website
Personal website:
https://www.cooperq.com
Github:
https://github.com/cooperq
Work:
https://www.eff.org

Posts

Open post
cooperq
Exploit Code Not People @cooperq@infosec.exchange · Aug 17, 2025
Exploit Code Not People
@cooperq@infosec.exchange

Senior public interest technologist at EFF Threat Lab ⵣ "Noted activist security type" ⵣ Anti-fascist ⵣ ACAB ⵣ he/they ⵣ My tweets do not represent views of my employer

infosec.exchange

I have moved to @cooperq@masto.hackers.town if you were following me here go there instead.

masto.hackers.town

Exploit code not people (@cooperq@masto.hackers.town) - Hackers.Town

5
0
1
0
Open post
cooperq
Exploit Code Not People @cooperq@infosec.exchange · Aug 17, 2025
Exploit Code Not People
@cooperq@infosec.exchange

Senior public interest technologist at EFF Threat Lab ⵣ "Noted activist security type" ⵣ Anti-fascist ⵣ ACAB ⵣ he/they ⵣ My tweets do not represent views of my employer

infosec.exchange

I’m going to be migrating this account to hackers.town soon. I was always more of a hacker than an Infosec guy anyway. Information wants to be free!

12
0
0
0
Open post
cooperq
Exploit Code Not People @cooperq@infosec.exchange · Aug 04, 2025
Exploit Code Not People
@cooperq@infosec.exchange

Senior public interest technologist at EFF Threat Lab ⵣ "Noted activist security type" ⵣ Anti-fascist ⵣ ACAB ⵣ he/they ⵣ My tweets do not represent views of my employer

infosec.exchange

@DarthAnrchy@kolektiva.social @eff@mastodon.social @404mediaco@mastodon.social I mean I think David Graeber explains this pretty well right, "surely one must pay their debts." In their minds I'm sure this is a perfectly morally acceptable thing to do.

mastodon.social

Electronic Frontier Foundation (@eff@mastodon.social) - Mastodon

0
0
0
0
Open post
cooperq
Exploit Code Not People @cooperq@infosec.exchange · Jul 15, 2025
Exploit Code Not People
@cooperq@infosec.exchange

Senior public interest technologist at EFF Threat Lab ⵣ "Noted activist security type" ⵣ Anti-fascist ⵣ ACAB ⵣ he/they ⵣ My tweets do not represent views of my employer

infosec.exchange
Replying to @sterophonick@wetdry.world
@sterophonick@wetdry.world I agree it desperately needs translation and an architecture change to work on android if the developer actually wants the most effected communities to use it.
0
1
0
0
Open post
cooperq
Exploit Code Not People @cooperq@infosec.exchange · Jul 15, 2025
Exploit Code Not People
@cooperq@infosec.exchange

Senior public interest technologist at EFF Threat Lab ⵣ "Noted activist security type" ⵣ Anti-fascist ⵣ ACAB ⵣ he/they ⵣ My tweets do not represent views of my employer

infosec.exchange
Replying to @tilde@infosec.town
@tilde@infosec.town this is the first post https://infosec.exchange/@cooperq/114858766329523441
1
1
0
0
Open post
cooperq
Exploit Code Not People @cooperq@infosec.exchange · Jul 15, 2025
Exploit Code Not People
@cooperq@infosec.exchange

Senior public interest technologist at EFF Threat Lab ⵣ "Noted activist security type" ⵣ Anti-fascist ⵣ ACAB ⵣ he/they ⵣ My tweets do not represent views of my employer

infosec.exchange

On the issue of why there isn't an android app it seems like the main issue is the apps tight integration with icloud. If the developer can switch to a more agnostic solution an android app should be easy to write and could deliver notifications just as anonymously as the iphone app does.

1
0
1
0
Open post
cooperq
Exploit Code Not People @cooperq@infosec.exchange · Jul 15, 2025
Exploit Code Not People
@cooperq@infosec.exchange

Senior public interest technologist at EFF Threat Lab ⵣ "Noted activist security type" ⵣ Anti-fascist ⵣ ACAB ⵣ he/they ⵣ My tweets do not represent views of my employer

infosec.exchange
Replying to @cooperq@infosec.exchange
It's also possible that a judge could attempt to compel apple to disclose the list of accounts that have installed ICEBlock but I think that pressure to get iceblock delisted is more likely than that, I also think that its possible ICE agents will start specifically looking for iceblock on the devices of people they have detained and using that as a pretext for further punishment. Both of those are more concerning to me than a list of everyone who installed the app.
7
2
2
0
Open post
cooperq
Exploit Code Not People @cooperq@infosec.exchange · Jul 15, 2025
Exploit Code Not People
@cooperq@infosec.exchange

Senior public interest technologist at EFF Threat Lab ⵣ "Noted activist security type" ⵣ Anti-fascist ⵣ ACAB ⵣ he/they ⵣ My tweets do not represent views of my employer

infosec.exchange
Replying to @Zoarial94@infosec.exchange
@Zoarial94@infosec.exchange @MisuseCase@twit.social @zackwhittaker@mastodon.social I think it's more that the app is so deeply tied to apple cloud infrastructure (using cloud kit and cloud query) that its not possible to do a straight port unless the developer rewrites the entire thing to be cloud neutral, which is on his roadmap.
0
0
0
0
Open post
cooperq
Exploit Code Not People @cooperq@infosec.exchange · Jul 15, 2025
Exploit Code Not People
@cooperq@infosec.exchange

Senior public interest technologist at EFF Threat Lab ⵣ "Noted activist security type" ⵣ Anti-fascist ⵣ ACAB ⵣ he/they ⵣ My tweets do not represent views of my employer

infosec.exchange

So I reverse engineered the IceBlock app - https://www.404media.co/immigration-raid-tracking-app-ice-block-keeps-your-data-private-researcher-finds/ here's a thread on what I found.

The TL;DR is that I didn't find anything suspicious, the app doesn't talk to any third parties, and it doesn't send your location to the developer. Neither your phone ID or iCloud account are associated with the requests the app sends to the apple cloud servers to run.

The app is written in Swift and mainly uses the MapKit and CloudKit libraries. When you send a report that report contains the location of the report, this is not necessarily your location but the location at which you saw something. It also contains any free form text you choose to enter.

And that's all that is contained in the report, no device ids or iCloud accounts are associated with the report. Could a judge issue a tap and trace order to Apple to get the IP addresses of people submitting reports? Possibly. But that doesn't seem to be how ICE is operating right now.

And more importantly that would just give IPs which are going to be DHCP leases from a cellular network not device IDs or any other actual user identifier, so it would be harder to trace these back to real people.

The developer assures me that the reports are deleted from the database after a short time so such a theoretical order would also not get any past reports, only future reports. I can't think of a way for the app to defend against this but if its your threat model maybe use a VPN.

One argument I've seen against this app is that if you use it Apple will have access to your location, and yea that's probably true. But Apple always has access to your location if you have location services turned on. If that's your threat model turn off location services!

My main concern was about false reports. The dev has done a decent job of preventing mass spamming, you are rate limited in how many reports you can upload and you can only make a report within 5 miles of your location.

I think more likely is that people will make reports that are inaccurate because they saw an FPS vehicle or a DHS vehicle that isn't ice, or just some cops even. I'm not really sure how to solve this problem. I'm a bit concerned that this could spread fear and uncertainty.

The developers take on this issue is that there may be some false reports but if a true report keeps one person from going to that location for a few hours and saves them from getting deported that's a win, I find it hard to argue against that.

Anyway at the end of the day it will be up to the communities most at risk of ICE abduction to decide whether this app is useful for them. That isn't my area of expertise and I can only say what I found from a technical perspective.

At the end of the day, even if this doesn't turn out to be an effective tool for people to protect themselves from ICE its still a great piece of agitprop or propaganda by the deed. It gives people a way to feel power against ICE and pisses off the administration. In conclusion: Fuck ICE!

52
5
54
0

Remote instance

infosec.exchange
Open on original server
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

Platform

  • Email
  • Chat
  • Timeline
  • Communities
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ

Legal

  • Terms of Service
  • Privacy Policy
  • Warrant Canary
  • Lite (no JS)
  • VPN Policy
  • Source code

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 17:48:22 UTC