Remix.run Logo
Wowfunhappy 11 hours ago

Could the technophobes please just buy different smartphones? If certain people want to opt in to locked down devices, I think that's okay. But please give me a device that lets me do whatever I want. (And still lets me participate in modern society—I can't live with a Linux phone).

Apple's argument for locking down the iPhone but not the Mac has always been some variation of "Mac users are professionals and iPhones are for everyone." Fine! Where can I buy the unrestricted iPhone? As far as I'm concerned, basically every problem could be solved if Apple would put the Security Research Device on an unlisted page of their online store for the general public. Normies won't buy it, and I will.

SchemaLoad 10 hours ago | parent | next [-]

You can do that, there are custom roms and open source phones. The problem is banks are legally obligated a lot of the time to pay out for fraud and scams. So in response they won't allow you to run their software unless they can verify the compute environment.

kuschku 10 hours ago | parent [-]

So why can I access my bank account just fine via the website on my phone, but shouldn't be able to do the same via the app? Can't they offer at least a PWA version of the website for custom ROM users?

philistine 10 hours ago | parent [-]

People tend to distrust websites. URLs are also an immutable ledger that guarantees you’re in the right spot. The web is surprisingly robust for security.

What guarantees your banking app is the right one? A PNG and an app name with no security whatsoever.

NekkoDroid 2 hours ago | parent | next [-]

> People tend to distrust websites. URLs are also an immutable ledger that guarantees you’re in the right spot.

Typosquatting would like to have a word with you.

kuschku 9 hours ago | parent | prev [-]

But that doesn't guarantee anything? Even if the official banking app requires tons of verification, that doesn't prevent me from modding their banking app and redistributing the modded version to up to 20 people.

dwaite 11 hours ago | parent | prev [-]

We already have that. The market for the "technophobe" (e.g. above average and below levels of security awareness) phone is 100x larger.

That means the people who say "I can evaluate the intricacies and impacts of software authorization" have significantly fewer speciality devices to pick from, and those devices may not be worth developers (or regulators) making carve-outs to support.