Skip to main content

Your iPhone Secretly Records Your Location

We are know that iPhone can track user location. But, how many of knew that the iPhone constantly tracks your location and records your coordinates alongside a time stamp to a secret file?

This secret file is also copied to owner’s computer when the two are synchronised.

 

image

 

The Guardian reports that scientists have discovered a disturbing file within iDevices using iOS 4.0 and up. The file contains the latitude and longitude of the phone's recorded coordinates along with a timestamp, meaning that anyone who stole the phone or the computer could discover details about the owner's movements using a simple program.

 

Why is Apple collecting this information? It’s unclear. One guess might be that they have new features in mind that require a history of your location, but that’s pure speculation. The fact that it's transferred across devices when you restore or migrate is evidence the data-gathering isn't accidental.

Is Apple storing this information elsewhere? There’s no evidence that it’s being transmitted beyond your device and any machines you sync it with.

 

image

 

What’s so bad about this?

The most immediate problem is that this data is stored in an easily-readable form on your machine. Any other program you run or user with access to your machine can look through it.

The more fundamental problem is that Apple are collecting this information at all. Cell-phone providers collect similar data almost inevitably as part of their operations, but it’s kept behind their firewall. It normally requires a court order to gain access to it, whereas this is available to anyone who can get their hands on your phone or computer.

By passively logging your location without your permission, Apple have made it possible for anyone from a jealous spouse to a private investigator to get a detailed picture of your movements.

 

Want to see the hidden data for yourself? The secret information is actually stored inside \Users\<your user>\AppData\Roaming\Apple Computer\MobileSync\Backup [in Windows]. The names of the folders and the files within them are mostly random strings, but there are some index files like Info.plist and Manifest.mbdb. Load the most recent Info.plist into notepad to see what device it's for. You should see a 'Device Name' value in the XML, make sure that it matches your iPhone.

The Manifest.mbdb and Manifest.mbdx files contain a listing of the real names of the files represented by random strings in that folder. You need a Python script to decrypt this one.

To simplify, there is an app already which does it for you - iPhone Tracker. It’s just a simple app that pulls the location data out of your saved iPhone files and displays the coordinates on a map.

 

However, users can opt-out of the tracking by turning off global Location Services on the device. That will, however, impact any third-party app like Facebook that wants to use location services.

Comments

Popular posts from this blog

Your Google Apps Account is Changing

Google is about to make more of its services available to organizations with Google Apps accounts. This is an early adopter phase, and all domains may not get this option to move to the new infrastructure. What this means for you: In addition to the core suite of messaging and collaboration applications, Google Apps users may now access many more Google services with their Google Apps accounts.     Those who are eligible for this early adoption, Google Apps administrator will be presented with the above banner to start with the migration. In your organization, you can transition selected pilot users and admins, or you can start the transition now for all your users. The transition for pilot users can be reverted if necessary. After successful transition, your users will now be able to use other Google popular products like AdSense, AdWords, Alerts, Analytics, Android, Blogger, Finance, Google Desktop, News, Orkut, Reader, Voice, YouTube (Full list here ). Als...

How to Turn Your Android Phone into a Fully-Automated Superphone

What if your phone automatically went silent when you step into the movie theatre? Texted your significant other when you finished your long commute? Or automatically turned down the volume when a particularly loud friend called? It can; here's how. Android application Tasker gives you total rules-based automation for your Android phone. It's not free, but it offers a free 14-day trial download. Tasker can do nearly anything on your phone. It's mostly limited by your imagination. Here are some up-front ideas about neat automations that come to mind: • Set preferences for each application: Give the Kindle app a longer screen time-out. Make Maps or Foursquare automatically turn on GPS, and have a file browser launch when you trade out SD cards. Have your music and other audio apps lower the volume to 50 percent when you plug in headphones, so you never get a way-too-loud moment. • Time of day automation: Make your phone go into airplane mode overnight, but re-conne...

Google Wallet: The Future Innovative Mobile Payments

Earlier few months, Google unveiled future innovative way of payment technology – Google Wallet. Today, Google released its first version of the Android app with Sprint Nexus S 4G phones through an over the air update. Google Wallet is an app that lets you pay for things using your phone, either by tying your credit card or gift or pre-paid cards. It works using an near field communication (NFC) embedded chip and there is no swiping required.   According to Techcrunch , Google Wallet will not work everywhere your credit card will. It won’t work everywhere there’s an NFC-friendly card reader, either. Wallet requires an NFC reader based on a new-ish specification, and only a select bunch of retailers have gotten around to updating. The post also had some great review and walkthrough in real life. This app is now available to Samsung Nexus S owners on Sprint, through PayPass sensors at Radio Shack, Foot Locker, Peet’s Coffee & Tea, Sunoco, CVS/pharmacy, etc. retailers. ...