• stevedidwhat_infosec@infosec.pub
    link
    fedilink
    English
    arrow-up
    1
    ·
    1 year ago

    Ignoring the users in here who obviously don’t understand how critical SMS actually is and how fucking awful it is from a security standpoint because they’d rather be armchairs than actually learn anything useful or true…

    Wondering if this sudden move is at all to do with Apples announcement of their quantum encryption. US govt intel complex is probably seething rn

    • Philippe23@lemmy.ca
      link
      fedilink
      English
      arrow-up
      1
      ·
      1 year ago

      If Apple cares about protecting privacy they’d use an open, interoperable, cross-platform standard instead of just making cracks like, “just buy your Mom an iPhone.”

      • stevedidwhat_infosec@infosec.pub
        link
        fedilink
        English
        arrow-up
        0
        arrow-down
        2
        ·
        edit-2
        1 year ago

        But android does this exact thing and has far more vulnerabilities

        Open source doesn’t magically make things more secure unfortunately, no matter how many people seem to think this

        • FiniteBanjo@lemmy.today
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 year ago

          AOSP Development was almost completely separated from the commonly distributed Android OS around version 2.2 in like 2010-ish, if I’m not mistaken. If you do get an OS built upon the old open source versions, they are usually quite secure and value privacy heavily, such as CalyxOS.

          So no, Android is not Open Source nor is it free, but yes proprietary Android software has more potential vulnerabilities.

          • stevedidwhat_infosec@infosec.pub
            link
            fedilink
            English
            arrow-up
            0
            arrow-down
            2
            ·
            1 year ago

            Last year android had 1400 vulnerabilities to iOS’ 482.

            402 of androids were above a CVSS score of 7 & 221 for iOS.

            Android is less secure than iOS on average and Apple is widely known to be more secure than android. That’s not to say I’m a fan of things apple does. I’m purely speaking vulns for one OS to another.

            • 0xD@infosec.pub
              link
              fedilink
              English
              arrow-up
              1
              ·
              1 year ago

              You can’t compare those two. First of all, Apple’s walled garden makes it significantly harder to perform security research. Second, Android has a way larger ecosystem and is not a monolith, so of course there’s gonna be more.

              Apple = Apple, but Android ≠ Android.

      • stevedidwhat_infosec@infosec.pub
        link
        fedilink
        English
        arrow-up
        0
        arrow-down
        1
        ·
        edit-2
        1 year ago

        Unfounded paranoia, google on the other hand has a history of this. Not to mention the audio recording from chrome browsers.

              • stevedidwhat_infosec@infosec.pub
                link
                fedilink
                English
                arrow-up
                0
                ·
                1 year ago

                Okay well now we’re talking about leaked government documents…

                Which comes with a whole different set of rules including mechanisms like false info. Specifically, tactics like misdirection (to sway public opinion against good-guys, perhaps like apple, while still not lying about any bad guys involved, a proverbial shit bomb which makes everyone appear guilty)

                Not sure why Apple would be so public in fighting against the cia/fbi regarding giving them a way into your phone if they were already letting them in lmao.

                What sense does that make?

                I do, however think that hardware should be open-sourced and heavily subsidized from a career standpoint for pen testers so that we can have standardized and vetted hardware which can run Apples flavor or androids, etc. This is however pretty far out from my realm of knowledge so I can’t speak to likelihood or anything like that.

                Just know we agree on your very last point

                  • stevedidwhat_infosec@infosec.pub
                    link
                    fedilink
                    English
                    arrow-up
                    0
                    ·
                    1 year ago

                    You didn’t answer my question

                    Why would apple openly fight the govt on this?

                    If we can’t trust anything you see or hear how do you plan to cope with reality? Nothings believable? Seriously? Good luck dude.