Earlier quoted context omitted.
For me, Apple. Google isn't outwardly evil. Apple being anti consumer and anti developer really show you who Apple works for.
Their shareholders?
Apple Sign In
221–230 of 544 posts
Re: Apple Sign In
#222Earlier quoted context omitted.
I dont think thats quite the same thing as an Identity Service, its just a component. In Microsoft's world im either using my Microsoft Account to sign in OR using throwaway email addresses, not both. . Apple can get way ahead of the competition by combining about 3 things. 1) Ephemeral email addresses 2) OAuth or apples equivalent tokens 3) Keychain autogenerate and auto-populate If all those products are integrated…
Why do users need to have a 3rd party managing their identity? It seems like it would be _safer_ if users could setup their own OAuth infra which would then be certified for use with other systems. For people who lack the expertise or will to roll their own infra then they can use something like Apple ID.
>For people who lack the expertise or will to roll their own infra then they can use something like Apple ID.
SO 99.9% of the population. It's a nice sentiment, but for what apple is doing to work (random username generation, and identity obfuscation) the only way for it to work is strength in numbers, that the Apple userbase of people who will only use frictionless sign in, becomes too big to ignore, and to tempting too left uncourted.
>It seems like it would be _safer_
Im not sure I would say safer. Depending on millions of people to keep their software up to date hasnt historically worked super well for Windows and Wordpress. One central authority patching all its services and 24/7 devops sounds a lot safer than trusting millions of self hosted OAuth servers to be up to date and not compromised. What percent of people who have non-self-updating home routers, do you think go in regularly and press the update firmware button?
Re: Apple Sign In
#223Re: Apple Sign In
#224I love that TC chose a picture of "fc452bd5ea@privaterelay.appleid.com" to illustrate the article. When was the last time you saw a service that could be described by a single "word"?
Re: Apple Sign In
#225It seems you must first have an *OS app in order to use Apple Sign In on the web, a $100/year barrier to entry for web developers verses Google/Facebook auth. "To configure web authentication, you must create a Services ID and associate your website to an existing primary iOS, macOS, tvOS, or watchOS App ID enabled for Sign In with Apple." Source: https://help.apple.com/developer-account/#/dev1c0e25352
Re: Apple Sign In
#226I love that TC chose a picture of "fc452bd5ea@privaterelay.appleid.com" to illustrate the article. When was the last time you saw a service that could be described by a single "word"?
Re: Apple Sign In
#227Earlier quoted context omitted.
It‘s not homemade crypto. It‘s just not the latest and greatest modern crypto but it has no glaring weakness.
[citation needed].. But it’s absolutely homemade by math PhDs (not crypto specialists). And if you search for ‘telegram security’ you’ll find any number of articles pointing out a bunch of weaknesses. It’s also only half open source.
Not just that. The official clients repos (specifically Android) lag several weeks, if not months, behind the apps, or at least they did at one point.
Though that doesn't matter much with not-quite-verifiable releases...
Re: Apple Sign In
#228Disposable, anonymous email forwarding is a massive step forward for privacy. I know we've all been doing it for a while, but this on a consumer level is fantastic.
In case anyone needs something similar today: Outlook already allows you to create ephemeral top-level aliases, i.e. XXXX@outlook.com. You can use this to sign up, then delete the alias. It can't be traced back to your account and nobody blocks @outlook.com. https://account.live.com/names/Manage (not to take away from this announcement at all; just to provide some context. it's an often overlooked feature which peopl…
I'm sure there's logging or other AD property (think something like sidHistory[0]) to keep track of this.
Companies don't like being liable for not being able to provide data under order[s].
[0] - https://docs.microsoft.com/en-us/windows/desktop/ADSchema/a-...
Re: Apple Sign In
#229Re: Apple Sign In
#230Earlier quoted context omitted.
Works everywhere with the devices and OS you have like (or can afford): Android, Linux desktop, Mac, iOS, Windows and more.
Telegrams end to end encryption is locked to the two devices which started it, so it’s totally useless when you want it across devices.