option to disable emergency calls when using FBE #549

Closed
e-lektryk opened this Issue Dec 27, 2016 · 13 comments

Comments

Projects
None yet
4 participants
@e-lektryk

Even when phone is locked rogue person could trigger call to some emergency number. It may be used to trigger some communication to false BTS for future exploitation.
I do not know if it is required by law, so maybe it should be configurable with default turned on.

@thestinger

This comment has been minimized.

Show comment Hide comment
@thestinger

thestinger Dec 28, 2016

Contributor

It's required by law in many regions and that screen is before user data is available. It's not possible to disable it with FDE. It could be disabled only with FBE.

Contributor

thestinger commented Dec 28, 2016

It's required by law in many regions and that screen is before user data is available. It's not possible to disable it with FDE. It could be disabled only with FBE.

@thestinger thestinger changed the title from Emergency call should be blocked without unlocking. to option to disable emergency calls when using FBE Dec 28, 2016

@sigenc

This comment has been minimized.

Show comment Hide comment
@sigenc

sigenc Jan 17, 2017

Hi,

this is something i consider really important. Same as #460. There should also be the possibility to run copperheados only in WIFI. So there are no possible attacks on baseband or sim. For example like if you run an ipod.

sigenc commented Jan 17, 2017

Hi,

this is something i consider really important. Same as #460. There should also be the possibility to run copperheados only in WIFI. So there are no possible attacks on baseband or sim. For example like if you run an ipod.

@thestinger

This comment has been minimized.

Show comment Hide comment
@thestinger

thestinger Jan 17, 2017

Contributor

Feel free to work on either of them then. It isn't going to happen at all without anyone working on it.

Contributor

thestinger commented Jan 17, 2017

Feel free to work on either of them then. It isn't going to happen at all without anyone working on it.

@sigenc

This comment has been minimized.

Show comment Hide comment
@sigenc

sigenc Jan 19, 2017

I can't work on them at the moment. There is no time left and i think you have some more important stuff to do. But i will setup a bounty for this.

What we need is:

  • complete baseband isolation, so only wifi works. (As for what i know physically cutting the baseband antenna doesn't work)
  • option to hide QuickSettings from Lockscreen (This is already possible in AOSP for Nexus 5)
  • dead man switch
  • safer wifi management

sigenc commented Jan 19, 2017

I can't work on them at the moment. There is no time left and i think you have some more important stuff to do. But i will setup a bounty for this.

What we need is:

  • complete baseband isolation, so only wifi works. (As for what i know physically cutting the baseband antenna doesn't work)
  • option to hide QuickSettings from Lockscreen (This is already possible in AOSP for Nexus 5)
  • dead man switch
  • safer wifi management
@thelifeofjay

This comment has been minimized.

Show comment Hide comment
@thelifeofjay

thelifeofjay Jan 19, 2017

Contributor

@sigenc thanks for your feedback!

As it stands, we're not interested in facilitating placing Copperhead resources on features for non-paying users. We're tapped out as is.

Also: It looks to me that you're interested in developing a product based on CopperheadOS that has certain requirements in it - I know this because what you're asking for is a common ask amongst our commercial partners. If this is true, it's prudent to reach out to me via email (team@copperhead.co) and begin discussing official CopperheadOS licensing of your product. If this isn't true then you're going to have to wait for someone to develop these requirements on their own free time, which from our experience, won't happen.

Contributor

thelifeofjay commented Jan 19, 2017

@sigenc thanks for your feedback!

As it stands, we're not interested in facilitating placing Copperhead resources on features for non-paying users. We're tapped out as is.

Also: It looks to me that you're interested in developing a product based on CopperheadOS that has certain requirements in it - I know this because what you're asking for is a common ask amongst our commercial partners. If this is true, it's prudent to reach out to me via email (team@copperhead.co) and begin discussing official CopperheadOS licensing of your product. If this isn't true then you're going to have to wait for someone to develop these requirements on their own free time, which from our experience, won't happen.

@thestinger

This comment has been minimized.

Show comment Hide comment
@thestinger

thestinger Jul 31, 2017

Contributor

This isn't currently planned since I don't think it would be legal.

Contributor

thestinger commented Jul 31, 2017

This isn't currently planned since I don't think it would be legal.

@thestinger thestinger closed this Jul 31, 2017

@sigenc

This comment has been minimized.

Show comment Hide comment
@sigenc

sigenc Aug 15, 2017

What? Why should it not be legal? So every device similar to a phone but without a modem should be illegal. The ipod should be illegal. Osmocom should be illegal, cause you can turn of the modem. Same as the Neo900. It is not illegal.

sigenc commented Aug 15, 2017

What? Why should it not be legal? So every device similar to a phone but without a modem should be illegal. The ipod should be illegal. Osmocom should be illegal, cause you can turn of the modem. Same as the Neo900. It is not illegal.

@thestinger

This comment has been minimized.

Show comment Hide comment
@thestinger

thestinger Aug 15, 2017

Contributor

This isn't the place the debate whether laws / regulations make sense. It's irrelevant. Since we sell phones in Canada and the US we need to conform to their laws. We're going to need to respect EU laws too.

If we sold phones to India, we would need to make sure https://source.android.com/devices/tech/connect/emergency-affordance is enabled too.

Contributor

thestinger commented Aug 15, 2017

This isn't the place the debate whether laws / regulations make sense. It's irrelevant. Since we sell phones in Canada and the US we need to conform to their laws. We're going to need to respect EU laws too.

If we sold phones to India, we would need to make sure https://source.android.com/devices/tech/connect/emergency-affordance is enabled too.

@thestinger

This comment has been minimized.

Show comment Hide comment
@thestinger

thestinger Aug 15, 2017

Contributor

It's possible that we're already not conforming to regulations in some countries by preventing toggling off Airplane mode from the lockscreen if the phone is locked. However, that's likely not explicitly forbidden so it's less of a problem.

Contributor

thestinger commented Aug 15, 2017

It's possible that we're already not conforming to regulations in some countries by preventing toggling off Airplane mode from the lockscreen if the phone is locked. However, that's likely not explicitly forbidden so it's less of a problem.

@sigenc

This comment has been minimized.

Show comment Hide comment
@sigenc

sigenc Aug 16, 2017

Thanks for the link. I will have to research this. Cause this would mean every device with a baseband modem should always be in a state where it could connect to a BTS. So no way of seperating the modem with a toggle. This is something i'm not quite sure about. Cause one of the bigger security firms in Germany, have a toggle for the modem. And they are selling worldwide. USA, Canada, EU and eastern part of the world. You can completly diasble the modem acces with their rom. So even no emergency calls. By the way, they are very good at hardening android and have the first usefull baseband firewall. http://www.cryptophone.de/en/

sigenc commented Aug 16, 2017

Thanks for the link. I will have to research this. Cause this would mean every device with a baseband modem should always be in a state where it could connect to a BTS. So no way of seperating the modem with a toggle. This is something i'm not quite sure about. Cause one of the bigger security firms in Germany, have a toggle for the modem. And they are selling worldwide. USA, Canada, EU and eastern part of the world. You can completly diasble the modem acces with their rom. So even no emergency calls. By the way, they are very good at hardening android and have the first usefull baseband firewall. http://www.cryptophone.de/en/

@thestinger

This comment has been minimized.

Show comment Hide comment
@thestinger

thestinger Aug 16, 2017

Contributor

A hardware switch could be flipped even when the phone is locked.

Contributor

thestinger commented Aug 16, 2017

A hardware switch could be flipped even when the phone is locked.

@thestinger

This comment has been minimized.

Show comment Hide comment
@thestinger

thestinger Aug 16, 2017

Contributor

You can completly diasble the modem acces with their rom. So even no emergency calls.

There isn't a physical switch on Nexus / Pixel phones but Airplane mode does do that.

Contributor

thestinger commented Aug 16, 2017

You can completly diasble the modem acces with their rom. So even no emergency calls.

There isn't a physical switch on Nexus / Pixel phones but Airplane mode does do that.

@thestinger

This comment has been minimized.

Show comment Hide comment
@thestinger

thestinger Aug 16, 2017

Contributor

I don't think it's productive to discuss this further. It's ending up on completely unrelated topics.

Contributor

thestinger commented Aug 16, 2017

I don't think it's productive to discuss this further. It's ending up on completely unrelated topics.

@thestinger thestinger locked and limited conversation to collaborators Aug 16, 2017

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.