Viewing profile — nmgycombinator
nmgycombinator
HN member- Joined
- Sun, Feb 04, 2024, 9:53 PM UTC
- HN karma
- 330
- Public activity
- 80 items
- HN profile
- View on Hacker News ↗
About nmgycombinator
No profile information was provided.
Recent public activity
- story
- story
- story
- story
-
comment
Comment #44198136
> The primary outcome appears to be increased profit margins rather than societal advancement. While previous technological revolutions created new industries and democratized acce…
-
comment
Comment #43987572
Edit made: Ventura and Sonoma will remain vulnerable. Apple made the decision to only patch this in Sequoia.
-
comment
Comment #43973165
I mean, I don't know how there would be? Unless they were scanning the text of every pop-up for words convincing the user to enter their computer password. There would be no way to…
-
comment
Comment #43973127
I agree with you. However, in this case, I was abusing a legitimate OS prompt (not just making my own), so I don't know if a security image would be a barrier there. It would defin…
-
comment
Comment #43973057
That's a fair point. But did Mac have the same issue as Windows where file extensions were not shown by default? That feels like it would have been the core issue.
-
comment
Comment #43970493
I mean, as others have mentioned, actually true capabilities would be nice. But as long as we're going to have a database, it would have to end up in user space or in the kernel. A…
-
comment
Comment #43970457
Ooh! Thanks for the links!
-
comment
Comment #43970336
I think Apple uses an L4 variant for their SEP co-processor, though I'm not sure if it's that specific one. Sounds like another OS I'll probably have to do a deep dive into at some…
-
comment
Comment #43970289
Damn, that really puts things into perspective. Granted, attached modals presuppose there's a window to attach to. But I think that would probably be true 9 times out of 10.
-
comment
Comment #43970161
I do agree that uninstallation can be hard on macOS. I think Apple just envisions a future where every app is self-contained and putting the app in the trash really does remove eve…
-
comment
Comment #43970115
I will definitely admit, it can be a bit of a pain point that Apple sometimes takes a lot of time to determine a bounty. I'm just waiting patiently now to see what they say. I appr…
-
comment
Comment #43970055
I think their "Hall of Fame" (or at least whatever people colloquially refer to as that) is their credits for people who found bugs in their web servers, so I don't think that coun…
-
comment
Comment #43969614
Correction (longer explanation elsewhere): only 15.5. Apple didn't patch it in the other two releases.
-
comment
Comment #43969389
Yeah, to be perfectly honest, I understand. I think TCC is meant to be the primary consent system, but there are others (such as the Authorization system, and the Service Managemen…
-
comment
Comment #43969304
As someone who dove deep into keychain items for a previous write-up, I believe you are misunderstanding this situation. As far as I understand it, many keychain items can be store…
-
comment
Comment #43969287
That's honestly a pretty smart move.
-
comment
Comment #43969183
Hijacking this current top comment to let everyone know there is an important update to this article: https://news.ycombinator.com/item?id=43969087
-
comment
Comment #43969152
Oh nice! I'll take a look at these.
-
comment
Comment #43969087
An important correction, so hopefully this bubbles to the top (this will be appearing on the post as well): A previous version of this article mentioned below that this CVE was pat…
-
comment
Comment #43968889
Thank you for your kind words. To respond: 1. I'm not a "he", I would prefer "they". 2. As I mentioned in another comment, I have not received word back yet on any reward.
-
comment
Comment #43968689
As someone who's looked into the internals of macOS for a bit now, this is all incredibly fascinating. However, I am curious: do you think capabilities could be implemented like th…