• Holla@feddit.org
    link
    fedilink
    arrow-up
    21
    ·
    12 hours ago

    MacOS, iOS

    Do you have a source for that beyond shills and their marketing?

    There most definitively are vulnerabilities and backdoors in these OSes. Whether or not we hear of them doesn’t prove otherwise

    • Haley@lemmus.org
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      8
      ·
      12 hours ago

      My source is primarily the GrapheneOS team’s praises for how Apple handles iOS, particularly in Lockdown Mode. There was also a recent situation where they warned their users of “mercenary spyware” attacks.

      It’s also a position that many in the SecureBlue community would agree with, which is where I’ve learned the majority of my recent security stuff from.

      • Holla@feddit.org
        link
        fedilink
        arrow-up
        8
        ·
        10 hours ago

        I mean it’s commendable that Apple makes an effort to keep their users secure from third-party attackers (besides MDM software), but there’s just no telling how much control and privacy violation is going on when they’re keeping their source code secret. (“What do they have to hide? Clearly something.”)

        SecureBlue seems interesting, though most of their features look like security theater compared to the default

        • Haley@lemmus.org
          link
          fedilink
          English
          arrow-up
          2
          ·
          10 hours ago

          Suppose this is a fair point. The stuff that is exposed seems to be quite helpful, such as already integrating features like Global Privacy Control long before Google.

          As for SecureBlue… a lot of it seems quite extreme even for me but they’re doing good work overall. I was maining their browser for a bit until I realized I was fighting against the current to make it usable for my use case and I felt kind of dirty doing all that to their excellent baseline. But I did grab their sysctl config, commented out 3 or 4 that I didn’t need, and inserted it into my own. I like having more control, but I’ll gladly take a more secure option if it doesn’t affect usability significantly, so I cherrypick fixes liberally from their setup.