Hacker News

Top stories

Live mirror
30 storiesupdated just nowView source snapshot
  1. Laya the open source version of Jev(convaiinnovations.com ↗)
    19comments
  2. AI-generated posters don’t have to be horrible(john.hartnup.uk ↗)
    259comments
  3. Human brain is two separate organs, Stanford Medicine-led research finds(stanford.edu ↗)
    129comments
  4. “The Secret Life of Circuits” is here(coredump.cx ↗)
    30comments
  5. GPT-6 Astra Solves a WWI German Radio Cipher(prinzai.com ↗)
    95comments
  6. Android 17 is the first since 3.x to add new APIs without releasing to the AOSP(grapheneos.social ↗)
    483comments
  7. If math is more than proof, we need to better celebrate the rest of it(terrytao.wordpress.com ↗)
    123comments
  8. San Francisco Onion Futures Company(onionfutures.com ↗)
    85comments
  9. Show HN: I wrote a custom assembler for CHIP-8 in C++(github.com/tackx ↗)
    2comments
  10. Communication by means of modulated Johnson noise(pnas.org ↗)
    8comments
  11. Cloudflare Quick Tunnels(cloudflare.com ↗)
    294comments
  12. From Stonemasons to Carpenters(thelastsoftwareengineer.substack.com ↗)
    2comments
  13. How to Write with an LLM(sockpuppet.org ↗)
    345comments
  14. You can run Git on object storage if you re-make packfiles(tigrisdata.com ↗)
    19comments
  15. SDCC – Small Device C Compiler(sourceforge.net ↗)
    20comments
  16. Saving another 100TB of RAM(cloudflare.com ↗)
    84comments
  17. Science Is Open Software(jepedersen.dk ↗)
    41comments
  18. How OpenAI Used Its Own LLMs to Design Its Jalapeño Chip(ieee.org ↗)
    99comments
  19. Why building a Rust LSP is hard(rust-glancer.github.io ↗)
    40comments
  20. Ctenophores: Wonders of Biology(quantamagazine.org ↗)
    6comments
  21. NASA-IBM Lunar Foundation open-Source Geospatial AI Model(usra.edu ↗)
    4comments
  22. The first new cat species discovered in 100 years(nationalgeographic.com ↗)
    109comments
  23. OpenJev(openjev.com ↗)
    273comments
  24. Goroutine Leak Profiles(go.dev ↗)
    5comments
  25. Show HN: Cactus Needle 3: 8-29MB automation models can match DeepSeek V4 Flash(cactuscompute.com ↗)
    89comments
  26. Photon-Emission-Guided Laser Fault Injection Enables RP2350 Secure Debug(ledger.com ↗)
    75comments
  27. Veronese's Dogs(publicdomainreview.org ↗)
    2comments
  28. Cache-to-Cache: Direct Semantic Communication Between LLMs (2025)(arxiv.org ↗)
    14comments
  29. Warez: The Infrastructure and Aesthetics of Piracy (2021)(archive.org ↗)
    89comments
  30. Inside ZCode: Silently uploading your Git history to the cloud(ferstar.org ↗)
    105comments

Service Meant to Monitor Inmates’ Calls Could Track You, Too

140 pointsby 8y agonytimes.com
36 comments
8y agoHN ↗

This is a huge deal. It smells a lot to me like Cambridge Analytica, but even worst.

The service can find the whereabouts of almost any cellphone in the country within seconds. It does this by going through a system typically used by marketers and other companies to get location data from major cellphone carriers, including AT&T, Sprint, T-Mobile and Verizon, documents show.

8y agoHN ↗

A system typically used by marketers and other companies to get location data from major cellphone carriers...

Wait, what? Carriers are selling personally identifiable location information? I knew they were selling aggregate data, but how are they legally selling location numbers tied to actual phone numbers?

I dug into my carrier's privacy policy, and it looks like this is true. They say you'll be asked for consent before it happens, but what mechanism does the carrier even have to request that consent? I've certainly never seen an opt-in prompt for anything like that before, but according to my carrier's site, there are at least two companies that are accessing or have accessed my location data through my carrier. That is not okay.

If an app or service I use wants access to my location, they can go through my phone's location services API, which requires my affirmative consent. It is completely unacceptable that they can bypass me and get it directly from my carrier.

8y agoHN ↗

how are they legally selling location numbers

shrug It's America, there's no general concept of privacy in law. It's not considered to be your data, it's their data. I'd be rather more surprised if this is legally happening in the EU.

(I would not be surprised to discover that most EU carriers are compromised by some quasi-private intelligence service organisation like Cambridge Analytica/SCL group, illegally selling location data or derived results.)

8y agoHN ↗

Am I correct in recalling that the way abortion became legal was an argument about a constitutional right to privacy? I wonder what happened...

8y agoHN ↗

Like many things in the Constitution, that only restricts the government. If they asked for this information, they'd need to get a warrant for it to be admissible in court.

8y agoHN ↗

Privacy right is not in the Constitution, it was created by the courts (IIRC there was a hilarious argument about penumbras of Constitution and stuff, but really, how credulous has one to be?). So I would think they may make it restricting anybody they like. And of course the Congress is the legislative body, which can legislate these restrictions, as it does with a myriad others. As long as the Constitution does not ban it, it'd be fine - and it's not likely that SCOTUS would consider right to privacy as contrary to the constitution, I think.

8y agoHN ↗

I think the 4th Amendment is about the general concept of privacy, and it is definitely the law.

8y agoHN ↗

It's about protection from government intrusion. Negative rights, rather than a positive right as in Europe.

8y agoHN ↗

No, not at all; it only refers to search and seizure carried out by the government. Whereas the 1st amendment is usually interpreted to mean that, once you've given data to a third party, they are free to publish it. In this situation the phone location data belongs to the phone company.

ECHR Article 8 contains a genuine right to privacy.

8y agoHN ↗

Wait, what? Carriers are selling personally identifiable location information? I knew they were selling aggregate data, but how are they legally selling location numbers tied to actual phone numbers?

I tried the demo (https://www.locationsmart.com/try/) and it indeed works. The location given is about 200 meters away from my location. This is kinda scary? Why are carriers allowed to do this and are there any opt-out options?

8y agoHN ↗

Of course. Of course marketers are just allowed to track specific numbers for nebulous marketing reasons. Of course the phone companies just hand that feature out to whoever the fuck they want. What kind of god damn terrible security is this? What is wrong with the FCC? Oh yeah they were bought to exclusively terrorize the competitors of large telecom companies.

I remember when cell phones first started becoming commonplace and people thought I was crazy for having doubts. I hate being right.

8y agoHN ↗

Apparently US companies can do this if they "get concent". I don't know what that means though, it could be a couple terms buried in your contract. It's definitely huge, I haven't heard of it before either.

Does anyone know if there's an EU directive on this? I looked into my contract, and there's a completely abstract and vague paragraph noting how they can use personal data for some reasons (including commercial) but they don't even mention what that might be. It could be "just" the insurance/tax identification numbers and the full name, or it could be a lot more things.

I guess it also depends on whether the tracking can be done with existing hardware and a software solution or not. If it's easy, (ie they can easily figure out the tower and get signal levels) they probably do it. If you need better hardware, they probably don't, mostly because of lower buying power and more legal implications.

8y agoHN ↗

I would guess it's pretty easy, given that they need to find your tower anyway in order to complete incoming calls.

8y agoHN ↗

Yeah, he really seems like he's the kind of guy to champion individual rights at the expense of police power and corporate moneymaking interests. Not.~

8y agoHN ↗

Sounds like the ICE license plate tracker that is for tracking license plates across the US for immigration monitoring, just so happens to nag everyone in it...[1]

The Immigration and Customs Enforcement (ICE) agency has officially gained agency-wide access to a nationwide license plate recognition database, according to a contract finalized earlier this month. The system gives the agency access to billions of license plate records and new powers of real-time location tracking, raising significant concerns from civil libertarians.

[1] https://www.theverge.com/2018/1/26/16932350/ice-immigration-...

8y agoHN ↗

just so happens to nag everyone in it...

Thank you for your concern. We are closing this ticket as "not a bug".

8y agoHN ↗

This exploits design flaws in the SS7 & MAP protocols that power mobile networks worldwide. Cooperation from the carriers isn’t even required.

8y agoHN ↗

Securus received the data from a mobile marketing company called 3Cinteractive .... In turn, 3Cinteractive got its data from LocationSmart, a firm known as a location aggregator, according to documents from those companies. LocationSmart buys access to the data from all the major American carriers, it says.

Someone with a little money to burn should subscribe to 3Cinteractive or LocationSmart's service and use the data to spam the whole country with texts with the location info telling the recipient they're being tracked. That ought to rile people up and help end whatever practices enable this kind of tracking.

8y agoHN ↗

I am guessing they make you sign a contract saying you won't disclose "their" data to third parties. So you would really need a lot of money.

8y agoHN ↗

Or the willingness to do it, concede the lawsuit, then declare bankruptcy.

8y agoHN ↗

Judgements from intentionally torts are not dischargeable in bankruptcy.

8y agoHN ↗

But wouldn't it be a breach of contract and not a tort? There may be other torts involved, but I was only considering the issue you brought up with breaking their contract terms.

8y agoHN ↗

The t&c of the trial do indeed state you cannot share non-public data with a third party. However, I wonder if you could find wighle room if you only share data with those who already know it. That is, are you sharing data by telling someone theor own location? Probably you are still in violation of the t&c, but did you cause harm? I dont know. Ianal.

8y agoHN ↗

If you have T-Mobile, I recommend logging into your account and going to Profile > Privacy and Notifications > Advertising & Insights and disabling everything. Obviously, as a consumer I don't know exactly how this data is being collected, but if the the carriers are sharing individual level data, this is hopefully the opt-out.

EDIT: This is the text from one of the settings: With your consent, T-Mobile, affiliates, and ad providers use your web browsing and app usage data along with advertising identifiers to deliver relevant mobile advertising and to learn more about your preferences. Advertising identifiers used can include Android and iOS Advertising IDs, browser mobile cookies, and device identifiers.

8y agoHN ↗

I have had those disabled on my T-Mobile account since I opened it a few years ago, but I was still able to get the location of my cell phone on https://www.locationsmart.com/try

If you find another place to opt-out, let me know...

8y agoHN ↗

Verizon has multiple information sharing settings you can disable as well. Log into your account and go to "My Profile" > "Privacy Settings".

8y agoHN ↗

My setting have all been disabled for years.

That didn't stop locationsmart.com from just now locating me down to a few hundred meters.

8y agoHN ↗

I don't see any way to opt out of this on my Project Fi (Google) account...

8y agoHN ↗

The trouble is that Europe isn't great either: many European countries recognise the rights to free speech & arms-bearing in limited ways, and their governments don't necessarily do a great job with respect to privacy, either. And many have criminal-court systems which are worse than the U.S. & U.K. jury-based systems.

Sadly, there's no one perfect state.

8y agoHN ↗

I am a victim of possibly "lawful" surveillance and tracking. The law is a very thickle thing of the business courts today. Right and wrong regarding to the court has a very loose connection to the constitution and morality. If I've learned anything about the law is that people will do anything they can get away with legally. It's a scary world out there, and it's just going to get more scary.

8y agoHN ↗

This is horrible, but you just can't expect privacy in your use of anything electronic in the US. They will track you if they can in any conceivable way. We should advocate for a gpdr like law in the us. It will take years to get there, we don't even have net neutrality, but we need that. Every step of the way there will be people claiming that we can't have protection of privacy because that would be bad for business.