Everipedia Logo
Everipedia is now IQ.wiki - Join the IQ Brainlist and our Discord for early access to editing on the new platform and to participate in the beta testing.
George Hotz

George Hotz

George Francis Hotz (born October 2, 1989), alias geohot, is an American hacker and creative consumer known for unlocking the iPhone, allowing the phone to be used with other wireless carriers, contrary to AT&T's and Apple's intentions.[1][2] He developed the limera1n jailbreak tool and bootrom exploit for iOS. He is also noted for his technical efforts and publicity with reverse engineering the PlayStation 3 video game console, and for subsequently being sued by and settling with Sony. As of September 2015, he is working on his vehicle automation machine learning company comma.ai.[3]

Born
NationalityAmerican
Other namesgeohot
EducationBergen County Academies
Alma materCarnegie Mellon University
Jailbreak, comma.ai
Website
img

Personal life

He attended the Bergen County Academies, a magnet public high school in Hackensack, New Jersey. He attended Academy for Engineering and Design Technology.[4] Hotz is an alumnus of the Johns Hopkins Center for Talented Youth program.[5] Hotz also briefly attended Rochester Institute of Technology[6] and Carnegie Mellon University.

iOS device security

In August 2007, seventeen-year-old George Hotz became the first person reported to carrier-unlock an iPhone.[7][8][9][7] According to Hotz's blog, he traded his second unlocked 8 GB iPhone to Terry Daidone, the founder of Certicell, for a Nissan 350Z and three 8 GB iPhones.[11]

In September 2007, an anonymous group achieved a software-only unlocking method to complement Hotz's hardware-based unlocking method.[12]

On July 13, 2010, Hotz announced the discontinuation of his jailbreaking activities, citing demotivation over the technology and the unwanted personal attention.[13] Nevertheless, he continued to release new software-based jailbreak techniques until October 2010.[14]

PlayStation 3 security

In December 2009, Hotz announced his initial intentions to breach security on the Sony PlayStation 3. Five weeks later, on January 22, 2010, he announced that he had performed his first theoretical achievement. This consists of the initial read and write access to the machine's system memory as well as hypervisor level access to the machine's CPU.[15]

On January 26, 2010, Hotz released the exploit to the public. On March 28, 2010, Sony responded by announcing their intention to release a PlayStation 3 firmware update that would remove the OtherOS feature from all models,[16] a feature that was already absent on the newer Slim revisions of the machine.

On July 13, 2010, never having achieved any method of reading, installing, or modifying software on the PS3, Hotz posted a message on his Twitter account stating that he had abandoned his efforts of trying to crack the PS3 any further due to the system security's extreme difficulty.[17]

On December 29, 2010, notable hacking group fail0verflow, known for the reverse engineering of security models found in consumer electronics devices, performed an academic presentation at the 27th Chaos Communications Congress technical conference, of their accomplishments with the PlayStation 3.

They presented the methods they'd devised for having successfully penetrated the device's security model, yielding the root signing and encryption keys.

These keys are the essential element of a full (and even minimally usable) breach, capable of installing and running any new software on any PlayStation 3 unit.[18][19]

On January 2, 2011, Hotz posted a copy of the root keys of the PlayStation 3 on his website.[20] These keys were later removed from his website as a result of legal action by Sony against fail0verflow and Hotz.

In response to his continued publication of PS3 exploit information, Sony filed on January 11, 2011 for an application for a temporary restraining order (TRO) against him in the US District Court of Northern California.[21] On January 14, 2011, Hotz appeared in an interview on G4's The Loop, where he explained his involvement with the PlayStation 3.[22][23]

Sony lawsuit

After the root keys of the console were published, Sony initiated litigation against George Hotz and predecessor PlayStation 3 hacking group known as fail0verflow.

Hotz published his commentary on the case, including a song about the "disaster" of Sony.[24] Sony in turn has demanded social media sites, including YouTube, to hand over IP addresses of people who visited Geohot's social pages and videos; the latter being the case only for those who "watched the video and 'documents reproducing all records or usernames and IP addresses that have posted or published comments in response to the video".[25]

PayPal has granted Sony access to Geohot's PayPal account,[26] and the judge of the case granted Sony permission to view the IP addresses of everyone who visited geohot.com. In April 2011, it was revealed that Sony and Hotz had settled the lawsuit out of court, on the condition that Hotz would never again resume any hacking work on Sony products.[27]

At the end of April 2011, an anonymous hacker broke into the PlayStation Network and stole personal information of some 77 million users. Hotz denied any responsibility for the attack, and said "Running homebrew and exploring security on your devices is cool; hacking into someone else's server and stealing databases of user info is not cool".[25]

This led to the 2011 PlayStation Network incident at the time as Sony was aware about compromised accounts through the system.

Rooting the AT&T and Verizon Galaxy S5

In June 2014, Hotz[28] published a root exploit software hack for Samsung Galaxy S5 devices used in the US market.[29] The exploit is itself built around Linux kernel CVE-2014-3153,[30][31] which was discovered by hacker Pinkie Pie, and it involves an issue in the Futex subsystem that in turn allows for privilege escalation. The exploit, known as towelroot [74], was designated a "one-click Android rooting tool"[31] by the hacking community because it was designed to be installed quickly like an App; other rooting hacks were typically uploaded from a nearby PC with a cable and necessitated rebooting the device with a special set of key presses.

Although originally released for the Verizon Galaxy S5, the root exploit was made compatible with most Android devices available at that time.

For example, it was tested and found to work with the AT&T Galaxy S5, Nexus 5, and Galaxy S4 Active.

Updates continued to be applied to the root exploit to increase its capabilities with other devices running Android.[32] Updates to the Android operating system closed the source of the exploit.

Samsung officially responded to the towelroot exploit by releasing updated software designed to be immune from the exploit.[33]

Career

In addition to having made a meaningful side income from public donations solicited for his exploits,[8] Hotz has been employed at Facebook and Google.

On June 27, 2011, ZDNet freelance reporter, Emil Protalinski reported that according to a Facebook spokesman, Hotz had been hired by the company in an unknown role.[34] However, according to a CNET article, he had actually been employed since May, which was confirmed by Facebook.[35] In January 2012, Hotz was no longer employed by Facebook.[8][36]

On July 16, 2014, Google hired Hotz to work in their software security auditing team called Project Zero, which "hopes to find zero-day vulnerabilities before the NSA".[37] Hotz worked in Project Zero for 5 months where he developed Qira - an open source program for dynamically analysing application binaries.[38]

In January 2015, Vicarious.com hired Hotz to develop AI algorithms where he worked for 7 months.

comma.ai

Hotz founded his AI startup, comma.ai, in September 2015.[39] In an interview with Bloomberg, Hotz revealed that the company was building vehicular automation technology based on artificial intelligence algorithms.

Hotz built a working self-driving 2016 Acura ILX, which he demonstrated on the I-280 in a video,[3] resulting in a cease and desist letter from the California Department of Motor Vehicles.[40]

Hotz wanted to sell his technology to Tesla Motors, meeting with CEO Elon Musk. [41][42] Hotz claims that Musk offered him $12 million (minus $1 million for every month it took Hotz to work on the task) to create a driving system that could replace the MobilEye solution currently used in Tesla vehicles.[43] Tesla later released a statement on their website citing corrections to the Bloomberg article, stressing that their autopilot system was developed in-house, with a vision chip component from MobilEye, instead of one separate autopilot system manufactured by MobilEye, as suggested by Bloomberg reporter Ashlee Vance.[41] Tesla CEO Elon Musk offered advice on Hotz's self-driving car project in a December 2015 interview.[44]

On October 27, 2016, the NHTSA informed Hotz that the product was legally required to comply with Federal Motor Vehicle Safety Standards, and requested information that would confirm such compliance.[45] A day later, George Hotz tweeted from Shenzhen that the comma one was cancelled.[46] Kristen Lee stated on Jalopnik that the NHTSA was simply trying to open a dialog, and commented: "Instead, they got the worst attitude possible from Silicon Valley: try and regulate us, thought leaders, and we’ll take our ball and go home."[47]

comma.ai open sourced their self driving car software (called openpilot) on November 30, 2016, emphasizing its intended use for research without a warranty.[48][49]

On September 14th, 2018, comma.ai announced Hotz would become the Head of Research Team for the project, and appointed Riccardo Biasini as the new CEO of the company.[50] He left in March of 2019, but returned in May 2019 to become President once again.[51]

Other activities and recognition

Hotz was a finalist at the 2004 ISEF competition in Portland, Oregon with his project "The Mapping Robot". Recognition included interviews on the Today Show and Larry King.[52] Hotz was a finalist at the 2005 ISEF competition, with his project "The Googler".[53] Continuing with robots, Hotz competed in his school's highly successful Titanium Knights battlebots team.

Hotz competed in the 2007 Intel International Science and Engineering Fair, a science competition for high school students, where his 3D imaging project, entitled "I want a Holodeck", received awards and prizes in several categories including a $20,000 Intel scholarship.[54] He travelled to Sweden to speak about the project at the Stockholm International Youth Science Seminar.[55]

Hotz has received considerable attention in mainstream media, including interviews on the Today Show, Fox, CNN, NBC, CBS, G4, ABC,[56] CNBC,[2] and articles in several magazines, newspapers, and websites, including Forbes,[57] and BBC.[15]

In March 2008, PC World magazine listed Hotz as one of the top 10 Overachievers under 21.[59]

In August 2013, Hotz attended DEF CON with Carnegie Mellon's Plaid Parliament of Pwning (PPP). PPP placed first in the DEF CON Capture the Flag (CTF) tournament.[60] Later in 2013, Hotz also competed in CSAW 2013. Working alone, Hotz took first place under the pseudonym tomcr00se.[61] In August 2014, Hotz once again competed as part of Carnegie Mellon's Plaid Parliament of Pwning to win the DEF CON CTF tournament for a second year in a row. The team also won the DEF CON "Crack Me If You Can" tournament.[62]

At South by Southwest 2019, Hotz discussed simulation theory and announced plans to create a church dedicated to helping society break out of the simulation.[63][64]

See also

  • blackra1n, an iPhone jailbreak application produced by George Hotz.

References

[1]
Citation Linkselect.nytimes.comStone, Brad; John Biggs (August 25, 2007). "With Software and Soldering, AT&T's Lock on iPhone Is Undone". New York Times. p. C-1. Retrieved September 2, 2007.
Sep 26, 2019, 5:47 AM
[2]
Citation Linkwww.youtube.com"Interview with 17 year old iPhone hacker". CNBC. September 30, 2007.
Sep 26, 2019, 5:47 AM
[3]
Citation Linkwww.bloomberg.com"The First Person to Hack the iPhone Built a Self-Driving Car. In His Garage". Bloomberg.com. Retrieved December 16, 2015.
Sep 26, 2019, 5:47 AM
[4]
Citation Linknorthjersey.comMcKay, Martha (August 24, 2007). "Tech whiz cracks code tying it to AT&T network". Bergen County, New Jersey: The Record. Archived from the original on October 14, 2007. Retrieved October 20, 2011.
Sep 26, 2019, 5:47 AM
[5]
Citation Linkwww.in.com"GEORGE HOTZ". Retrieved March 24, 2014.
Sep 26, 2019, 5:47 AM
[6]
Citation Linkwww.rit.eduhttps://www.rit.edu/news/story.php?id=45766
Sep 26, 2019, 5:47 AM
[7]
Citation Linkwww.youtube.comUnlocked iPhone on YouTube
Sep 26, 2019, 5:47 AM
[8]
Citation Linkwww.newyorker.com"Machine Politics: The man who started the hacker wars.","The New Yorker", May 7, 2012, accessed April 30, 2012
Sep 26, 2019, 5:47 AM
[9]
Citation Linknypost.comKronfeld, Melissa Jane; Liddy, Tom (August 25, 2007). "IHACKED YOU! CODE-CRACKING N.J. KID 'FREES' APPLE CELL". New York Post. Post Wire Services. Retrieved October 20, 2011.
Sep 26, 2019, 5:47 AM
[11]
Citation Linkiphonejtag.blogspot.comOn the iPhone: THE iPhone HAS BEEN TRADED, Accessed May 3, 2008.
Sep 26, 2019, 5:47 AM
[12]
Citation Linkedition.cnn.com"Code to unlock iPhone cracked". CNN. September 1, 2007. Retrieved August 2, 2014.
Sep 26, 2019, 5:47 AM
[13]
Citation Linkwww.tech-exclusive.com"GeoHot says Goodbye to iPhone Community". Tech-exclusive.com. July 13, 2010. Archived from the original on October 13, 2013. Retrieved April 15, 2011.
Sep 26, 2019, 5:47 AM
[14]
Citation Linkwww.geeky-gadgets.comHutchinson, Roland (October 10, 2010). "Limera1n iOS 4.1 Jailbreak Released By Geohot". Geeky-gadgets.com. Archived from the original on October 16, 2010. Retrieved February 26, 2018.
Sep 26, 2019, 5:47 AM
[15]
Citation Linknews.bbc.co.ukFildes, Jonathan (January 25, 2010). "PlayStation 3 'hacked' by iPhone cracker". BBC News. Retrieved January 25, 2010.
Sep 26, 2019, 5:47 AM
[16]
Citation Linkblog.us.playstation.comPS3 Firmware (v3.21) Update – PlayStation Blog
Sep 26, 2019, 5:47 AM
[17]
Citation Linkgamingbolt.comThe PS3 just too difficult to crack – GamingBolt.com: Video Game News, Reviews, Previews and Blog. GamingBolt.com. Retrieved on February 16, 2011.
Sep 26, 2019, 5:47 AM
[18]
Citation Linkevents.ccc.de"Console Hacking 2010: PS3 Epic Fail". Chaos Communication Congress. fail0verflow. December 29, 2010. Retrieved October 29, 2017.
Sep 26, 2019, 5:47 AM
[19]
Citation Linkwww.youtube.com27C3 - Chaos Communication Congress 2010 - fail0verflow on YouTube
Sep 26, 2019, 5:47 AM
[20]
Citation Linkpsx-scene.com"Geohot: Here is your PS3 Root Key! – Now with "HELLO WORLD" proof!". PSX-SCENE.
Sep 26, 2019, 5:47 AM
[21]
Citation Linkwww.scribd.comMotion for TRO. Scribd.com (January 12, 2011). Retrieved on February 16, 2011.
Sep 26, 2019, 5:47 AM