| ▲ | throw1234567891 9 hours ago | ||||||||||||||||||||||||||||||||||
But the mechanics to work around it, and potentially slip something onto my phone, are already in there. No, thanks. The problem with this wholeEU bullshit is that the pro-consumer and pro-security do not always go hand in hand. And relevant dept lawyers don’t always communicate sufficiently. | |||||||||||||||||||||||||||||||||||
| ▲ | xp84 8 hours ago | parent [-] | ||||||||||||||||||||||||||||||||||
Okay Tim Cook. If the App Store is such a customer-friendly shield, then why are there millions of scam apps in the App Store? To combat software threats, sandboxing and fine-grained permissions (which Apple basically pioneered in the consumer space!) is the answer. App Review can't catch all malicious actors. When a vulnerability exists in the sandbox, the exploit can easily be slipped past App Review, with a feature flag holding it until the scammer is ready to attack. App Review, Notarization, etc. isn't for us. It's for Apple. It's the control that allows them to extract the money. Simple as that. Without the control, only small indie developers would list on the App Store because it's (A) shitty in quality, (B) shitty in financial terms, and (C) shitty at keeping people safe from scams. If you want proof of that, look at the tumbleweeds in the Mac App Store, where it's not mandatory and anyone can distribute an app in a zip file, and where notarization hasn't (yet) been weaponized to censor apps[1] for reasons having nothing to do with platform security. No one wants to use the MAS, so they don't, and Apple doesn't get to take 30% of all revenue for every app distributed. You can see why they are fighting tooth and nail to not have the much more important iOS platform turned into that. [1] https://mjtsai.com/blog/2024/06/14/utm-blocked-outside-app-s... | |||||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||||