AT&T IQI
Was running forensics on a compromised phone of mine that had the number ported to a Russian telecom front. .SU domain. anyways, I decided to see exactly how an adversary could get into a device no matter what provider is used, and I found the answer. every phone comes with various carrier software, especially unlocked phones - so the carrier can be chosen by the consumer. My compromised phone was locked to Verizon - locked down pretty well. but when running adb on it I noticed something. the AT&T IQI stack was running - and not just running, rather it had kernel level permissions that should never be active. these include remote sim provisioning, and complete radio control. I have tested at least 10 devi just
Comments (2)
- Paul Browning1 month ago
How did you get this phone?
1