Remix.run Logo
concinds 2 hours ago

I wonder how well Apple has deployed these tools internally for security research.

Since mid-April Chrome showed 302 vulnerabilities patched, 225 of them found by Google. Same period last year was 19 vulnerabilities. They've also become more transparent recently, disclosing vulnerabilities found internally, not just externally (which Apple still doesn't appear to do). From the outside, it's hard to tell if Apple has deployed this tooling as much as Google.

JCattheATM an hour ago | parent [-]

I'd guess they haven't even begun to really utilize them. They've never been a terribly security conscious company, despite the marketing.

xyzzy123 14 minutes ago | parent [-]

What's your thinking on this? From my perspective Apple security go pretty hard. They have a strong track record of being able to ship architectural mitigations like PACs / MIE / Exclaves first. I guess because Apple control the stack from silicon to userspace.