No Immediate Threat Seen in Apple iPhone Location Tracking File

The location tracking file in question was described in a presentation at the Where 2.0 Conference in San Francisco on Wednesday, April 20, 2011. The presentation was made by two researchers, Pete Warden, who worked for Apple for five years and left the company three years ago, and Alasdair Allan, a researcher at Exeter University in the UK. O’REILLY© Media posted a YouTube Video discussion by the researchers on the subject. The directory of files was discovered by accident while working on a mobile data visualization project. The file is present in iPhones with iOS 4 and up.

The tracking function records the phone's movements, including cell phone towers, latitude, longitude and all the Wi-Fi hotspots it connects to. The file is in the SQL format and is called “consolidated.db”. It is static and thus never leaves your phone. The database file is unencrypted and will end up stored also in your computer based back-up and in any machine you have synchronized with, including your iPad. There is no present known use for the file. By jail breaking your iOS device, a hacker can access the file. One way to protect your phone back-up stored in your PC is to use the encrypted mode in the backup application.

At the request of Senators Eduard Markey and Joe Barton, on July 12, 2010, Apple had addressed a similar issue in a public response for information regarding Apple's Privacy Policy and Location Based Services. In the letter, Apple said that they do send non user defined encrypted location based data to Google and Skyhook Wireless for location based mapping services. We believe that the mapping technology application needs the data to do its job and as long as no user specific identifiable data is being sent, everything is fine.

Continued on the next page Page 1 — Page 2

Article tags

Spread the word
Bookmark and Share
Profile image for sippable

Article Author: Sippable

Cesar Ortiz is married and lives with his wife in the USA. His expertise has been in the Information Security, Forensic IT and related areas. Mr. Ortiz has worked in the government, military and private scenarios for more than twenty five years. …

Visit Sippable's author pageSippable's Blog

Read comments on this article, and add some feedback of your own
  • No image found

Article comments

Add your comment, speak your mind

Personal attacks are NOT allowed.
Please read our comment policy.
Please preview your comment.

blogcritics lists for May 19, 2013

fresh articles Most recent articles site-wide

fresh comments Most recent comments site-wide

most comments Most comments in 24hrs

top writers Most prolific Blogcritics for April

top commenters Most prolific Commenters in 24 hrs