Anker Charger, 65W 3-Port Fast Compact Foldable USB C Charger Block for MacBook Pro/Air, iPad Pro, Galaxy S20, Dell XPS 13, Note 20/10+, iPhone 17 Series, Steam Deck, and More.
This collaborative space allows users to contribute additional information, tips, and insights to enhance the original deal post. Feel free to share your knowledge and help fellow shoppers make informed decisions.
Anker Charger, 65W 3-Port Fast Compact Foldable USB C Charger Block for MacBook Pro/Air, iPad Pro, Galaxy S20, Dell XPS 13, Note 20/10+, iPhone 17 Series, Steam Deck, and More.
It's actually pretty simple. Older Android and iPhone devices can be compromised directly through USB or other vulnerabilities. On newer devices, if the user accidentally grants the charger/device permissions, the phone can potentially be compromised as well.
The most straightforward approach would be to exfiltrate the device's data to a CCP-controlled server after gaining access. A more sophisticated approach could involve using the granted permissions to emulate an external keyboard or mouse and navigate to a specified URL. The server could then fingerprint the device model and OS version and dynamically determine what to do next.
Not sure if just me but I've found the reliability of this model to be a bit spotty. One of the ports stopped working for me and I haven't been using it that heavily. Might have just gotten a dud or bad luck on my end, but a watch out for others.
If you have an iPhone with a USB-C port, there's actually a very simple way to test your charger. Turn on Lockdown Mode in iOS. On most models, under Privacy & Security, the "Wired Accessories" setting will automatically switch to "Always Ask." Then connect your charger.
I've found that some Chinese-made chargers will trigger a prompt asking whether you trust the connected device. That means the charger is doing something beyond simply supplying power. Of course, that doesn't automatically mean the charger is malicious but an ordinary user has no way to detect whether that is benign or malicious.
And remember to turn Lockdown Mode off after testing. It's a very restrictive security mode and can cause many apps and services to behave abnormally.
1
1
Like
Helpful
Funny
Not helpful
Join The Conversation
Share your experience with the Slickdeals community
Share information with the community. Please follow our Community Guidelines and be kind!
Join The Conversation
Share your experience with the Slickdeals community
Share information with the community. Please follow our Community Guidelines and be kind!
4 Comments
Sign up for a Slickdeals account to remove this ad.
The most straightforward approach would be to exfiltrate the device's data to a CCP-controlled server after gaining access. A more sophisticated approach could involve using the granted permissions to emulate an external keyboard or mouse and navigate to a specified URL. The server could then fingerprint the device model and OS version and dynamically determine what to do next.
No point in limit exports to them. They're so far ahead.
I've found that some Chinese-made chargers will trigger a prompt asking whether you trust the connected device. That means the charger is doing something beyond simply supplying power. Of course, that doesn't automatically mean the charger is malicious but an ordinary user has no way to detect whether that is benign or malicious.
And remember to turn Lockdown Mode off after testing. It's a very restrictive security mode and can cause many apps and services to behave abnormally.
Join The Conversation
Share your experience with the Slickdeals community
Share information with the community. Please follow our Community Guidelines and be kind!