New security risk unlocked, eSIMs edition, and especially the kind you pick up prepping for an international trip. The article goes hard on the China angle, and for sure: who knew Irish eSIM brand Holafly would connect to networks owned by state-owned enterprise China Mobile? The installer runs from their servers, and wherever the phone is, it even has a public IP address in China.
EDIT: I originally wrote that Holafly was a subsidiary of China Mobile, which is not what the paper states.
🏳️🌈🖖🏽