
Three Buddy Problem Zero-day reality check: iOS exploits, MAPP in China and the hack-back temptation
6 snips
Aug 22, 2025 The latest discussion dives into Apple's emergency iOS patch and the implications of zero-click threats. The speakers highlight the murky waters of cybersecurity, exploring how nation-states exploit vulnerabilities and the blurred lines between crime and advanced persistent threats. A hot topic is the debate over Microsoft's restrictive access for Chinese vendors and the controversial idea of 'letters of marque' for cyber offense. The episode wraps up with insights into ransomware threats and the challenges of legacy devices, stressing the need for innovative security solutions.
AI Snips
Chapters
Books
Transcript
Episode notes
Prepare Forensics Before An Infection
- Prepare forensic artifacts ahead: collect encrypted iTunes backups, syslogs and network traffic continuously.
- That pre-collected data lets you investigate an alert without needing Apple to perform forensics.
Log Traffic And Retain Backups Now
- Start logging traffic and tunneling DNS/traffic via a WireGuard endpoint you control now.
- Keep encrypted backups and syslogs so you can retroactively investigate when notified.
Use Public Tools And Automate Analysis
- Use public tools like mvt and libimobiledevice to collect iOS syslogs and backups for triage.
- Automate log parsing with scripts or AI to spot anomalies across large volumes of data.


