Archive for Freedom Mobile

Hacker Demonstrates Weak Security In Freedom Mobile’s Customer Login System

Posted in Commentary with tags on February 13, 2018 by itnerd

MobileSyrup is reporting that goes by the moniker NullHumanity has uncovered a vulnerability in Freedom Mobile’s customer login system. Meaning  that Freedom Mobile customers could be at risk of hackers gaining access to some of their personal information.:

It’s CAPTCHA after 3, which is not unbreakable. Also there exists a method to forcibly reset the counter after one hour. This was a trivial discovery during my initial research period.

A skilled attacker would find this, and would be almost guaranteed to have a CAPTCHA bypass method at their disposal. 5 requests per hour is still going to result in a lot of account details being found.

I added very large delays in my script so as not to stress the login server and I was still seeing a new success every 30 or so seconds.

I would say a skilled attacker could breach an account and extract data 200 times per minute on a mid level machine.

In other words, it’s possible to brute force your way into the system. And once you’re in, you could have access to all that personal information.

Freedom Mobile said this:

For its part, Freedom Mobile’s vice-president of external affairs, Chethan Lakshman, stated over email: “The security measures we have in place cannot protect against guessing common passwords. We continue to strongly encourage our customers to use unique PIN numbers that are not easy to guess, and to change their PINs frequently to best protect their personal account information.”

Lakshman also said that Freedom continuously reviews its security practices and is “committed to making improvements and changes as appropriate to continue keeping our customers’ information secure.” Freedom’s security measures, said Lakshman, are designed to protect Freedom Mobile customers’ information from malicious activity while “meeting customer demands for a resonable login process.”

I guess that translates to “if you get pwned, it’s not our fault.” In terms of their advice of changing your PIN. That’s not going to make you any safer. What will make users safer is for Freedom Mobile to give their security a rethink. Because you’d think that Freedom Mobile would take the security of their user base seriously. But clearly they don’t based on the statement above.

#Fail

 

 

 

Advertisements

Public Mobile & Freedom Mobile Engage In Epic Trolling Battle On Twitter

Posted in Commentary with tags , on February 9, 2017 by itnerd

First, let me define what “trolling” is in the context of Twitter. From Wikipedia:

In Internet slang, a troll (/ˈtrl/, /ˈtrɒl/) is a person who sows discord on the Internet by starting arguments or upsetting people, by posting inflammatory,[1] extraneous, or off-topic messages in an online community (such as a newsgroup, forum, chat room, or blog) with the intent of provoking readers into an emotional response[2] or of otherwise disrupting normal, on-topic discussion,[3] often for the troll’s amusement.

Now, something that I have been tracking for the last little while is a trolling battle between Canadian cellular carriers Public Mobile and Freedom Mobile on Twitter. Here’s a couple of examples from today that I have captured:

troll3troll2troll1

As you can see, Freedom Mobile is at present taking shots at Public Mobile when the latter Tweets something. But last week, things were much different. Here’s an example:

trolling4

As you can see in this one, Freedom Mobile is being trolled by Public Mobile. It clearly annoyed the former enough for them to try and bring Public Mobile’s corporate parent Telus into the discussion. Though clearly that didn’t seem to calm things down. In case you’re wondering what they are talking about, Freedom Mobile recently had issues with US roaming that Public Mobile was all too happy to point out.

I question the wisdom of these two parties getting into a trolling battle as both parties might come off looking like they have a couple of teenagers living in mommy’s basement running their respective Twitter accounts not very professional in the process. While this is fun to watch, Public Mobile and Freedom Mobile may wish to simply cut it out and get back to running their respective operations. After all, I don’t choose my cell phone carrier based on their ability to troll their competition. I choose my cell phone carrier based on coverage, pricing, and customer service. On those fronts, I am not sure that any of that comes across in this exchange of insults and barbs on Twitter.

ZTE Grand X 4 Smartphone is now available at Freedom Mobile

Posted in Commentary with tags , on December 6, 2016 by itnerd

ZTE announced the launch of the Grand X 4, their first LTE device with Freedom Mobile (formerly Wind Mobile). The Grand X 4 will be future ready for Freedom Mobile’s new LTE network and is now available in stores.

image001.png

Security and Convenience

A fingerprint sensor on the back provides the security you want with an intuitive and ergonomic placement that is convenient to use. The fingerprint sensor isn’t just for unlocking your phone as you can use it to unlock an app, serve as a button to instantly take photos or answer a call.  

Large Screen for Entertainment

A large, 5.5-inch HD display with Gorilla Glass 3.0 lets you view any content such as movies, television or games on a large screen without the worries of scratches or breaks.

Power and Performance

Powered by a Qualcomm Snapdragon 1.4 GHz quad-core processor and the inclusion of a 3,140 mAh battery with Qualcomm Quick Charge technology, the Grand X 4 is designed to deliver a smooth experience and powers you as long as you need to go.

Better Camera, Better Photos

A 13MP rear-camera captures 1080p video quality and the 5MP wide angle front-camera captures the perfect moments the way you see them.

For full list of phone specifications and features visit http://www.ztedevices.ca/products/smart-phones/smart-phone/grand-x-4.html

The ZTE Grand X 4 will be available with Freedom Mobile for $299 outright, $99 on MyTab or $0 on MyTab Boost.

Wind Mobile Becomes Freedom Mobile

Posted in Commentary with tags on November 21, 2016 by itnerd

I’ve been reporting on Wind Mobile and their attempts to become the fourth national mobile phone carrier in Canada for a while now. Today, they have two major announcements. First, Wind Mobile is re branding themselves as Freedom Mobile. This was highlighted by a new domain (https://www.freedommobile.ca/) that appeared today along with new visual branding and messaging. There’s also new plans on offer as well which you can find at this link.

The second announcement is that they are utilizing the AWS-3 spectrum that they acquired a while ago to launch their LTE network in Toronto and Vancouver on November 27th. Further rollouts of LTE will take place elsewhere throughout 2017. In theory, that should allow them to better compete with Bell, Rogers, and Telus as the lack of LTE has no doubt hurt them.

So, what do you think? Is the newly re-branded Freedom Mobile going to step into the big time and go head to head against the “big-3” carriers? Please post a comment and share your thoughts.