Remix.run Logo
ArtTimeInvestor 3 hours ago

A good security track record must be the most valuable company asset in history.

Apple makes $200B per year from selling the iPhone alone. Plus the services they sell on it, plus deals like the one with Google, plus app store ads, plus cross-selling of other hardware ...

I have one too.

Not because I like the hardware too much. Pixel phones are much nicer, they don't wobble when you put them on a table. Not because I like the software too much. Android is much more to my liking with more freedom to customize it.

But because I have the feeling Apple takes security more seriously.

I wish there was some kind of security arena like there is LLM arena for AI. That gives hard facts about the security track record of phone manufacturers.

cromka 2 hours ago | parent | next [-]

It's a bit ironic to think Apple takes security seriously when they infamously delivered ridiculous bugs like 2017 High Sierra root login, which they fixed and then accidentally unfixed again.

What we're seeing is marketing/branding and a genuine for-show effort, all the while they do not audit their code outside some for-show technologies (Siri AI in the cloud).

So the point I am making is that it's all observational bias. You want actual objective security, use GrapheneOS.

And I'm saying this as an iPhone user.

throwa356262 2 hours ago | parent | prev | next [-]

The issue is that Android is open while Apple seldom talks about their security issues.

This might make Apple look like the more secure option but the reality may be different because Android is more scrutinised.

If you are sceptical consider these examples: (1) some versions of Apple silicon have unpatchable security defects, (2) Apple at one point decided to not contact up to 500M users affected by a supply chain attack in China due to "language difficulties".

CGamesPlay 3 hours ago | parent | prev | next [-]

https://mashable.com/article/high-sierra-password-fix-apple-...

> In the simplest of terms, with the bug, if you created a new APFS (Apple File System) encrypted volume on High Sierra, and set anything at all as the password hint, then your password was stored as the hint. In plain text.

ArtTimeInvestor 3 hours ago | parent [-]

I know Apple phones had bugs. Even worse bugs than the one you linked to.

But Google phones had those too.

That's why I said I "feel" like Apple takes security more seriously. And that I wish there were hard facts. Statistics of number of bugs by severity. Independently verified.

izacus 3 hours ago | parent [-]

Your post is essentially admitting that you're ignoring the bugs from the company you love and taking seriously form the company you don't.

So the difference isn't about taking things "more seriously", but in the fact that you take marketing from Apple more seriously.

That's not the same.

(Note: There's plenty of proof that Apple does take security more seriously than Samsung, Xiaomi & Co. in the article, but your feelings aren't it.)

paweladamczuk 3 hours ago | parent [-]

Good thing they never claimed their feelings were proof of anything.

izacus 2 hours ago | parent [-]

This is where reading ability comes into play.

sschueller 2 hours ago | parent | prev [-]

Doesn't make a difference if Apple takes security more seriously if they bend like a rubber pole when the government comes asking...

spacebanana7 2 hours ago | parent [-]

That depends on your threat model.

Realistically intelligence agencies aren’t too interested in my grandma, but malware/scams/bloatware absolutely are.