Live data from Hacker News

Can't you just right click?

lapcatsoftware.com

311–320 of 765 posts

Re: Can't you just right click?

#311

Earlier quoted context omitted.

Why wouldn't a malware author just... do that?

I believe one of the main security benefits of these requirements are ensuring a binary hasn't been altered maliciously, or otherwise I guess. Not preventing outright malicious applications. Also so the os doesn't have to repeatedly rescan apps, etc.

It's like sha256sum but cost $99 a year.

Re: Can't you just right click?

#312
post #80

Earlier quoted context omitted.

Apple has been making things more and more restrictive over a decade now. New versions of mac os introducing new restrictions. Doesn't take a genius to see that their end goal is to make mac os as restrictive as ios. When that happens, will it still be the right spot for you?

>Doesn't take a genius to see that their end goal is to make mac os as restrictive as ios. I've been hearing that for the past decade. With the exception of some reasonably deprecated technologies (32-bit support, etc...), to this day I'm able to run essentially all of the software on my Mac that I did back in 2010. If and when Apple does prohibit the running of third party apps, I'll switch to another platform. Unti…

They've already effectively prohibited it because, as you can see from the article, installing software that doesn't go through Apple is made incredibly painful and essentially nobody will succeed in doing it.

Apple doesn't really care that you can run it by using a bunch of workarounds if they have 99.9% control over all software distribution.

Re: Can't you just right click?

#313
post #89

Earlier quoted context omitted.

Is there any Linux distribution charging an yearly fee for package signing?

Android? (Mostly joking, but it is Linux-based even if not a regular distribution and iirc Play Store "vetting" costs money as well.)

Android is a one time $25

Re: Can't you just right click?

#314

Earlier quoted context omitted.

IIRC, the CAs Windows trusts charge absolutely ridiculous amounts of money, unless something has changed recently.

Which CAs are available for Windows, and how much do they cost, out of curiosity? Not a Windows developer.

Most CAs can do this. It's not restricted.

Re: Can't you just right click?

#315

Hold on a minute -- MacOS phones home every single time you launch an application? As a non-user of MacOS, this strikes me as utterly bonkers. You'd have to place a massive level of trust in the developers of your OS to accept this. And furthermore, surely the constant attempts to phone home have a negative effect on the user experience when the computer's network connection is missing or slow! Perhaps the fine artic…

As a non-user of MacOS, this strikes me as utterly bonkers.

I assume you use Linux or anything other than Windows? Because the "SmartScreen"[1] feature in the newer versions of Windows does the same thing.

[1] A common trend in these times: the word "smart" really means "we think you are stupid"

Re: Can't you just right click?

#316
post #299

Earlier quoted context omitted.

Safari's ad-blockers are not really comparable[0] to what's currently possible on Firefox, Chrome, or other Chromium-based browsers. They rely on declarative blocking and/or system-wide interception (ie, you run them as an entirely separate app outside of Safari). The majority of them are not going to be able to handle things like CNAME unmasking or page source rewrites[1]. The declarative blocking API in Safari isn'…

As I understand this is somewhat alleviated in Big Sur as Safari now has support for WebExtension.

It's very partial support, but it is a step in the right direction. If they keep going in this direction they could eventually add the webextension request-blocking/modification APIs.

Re: Can't you just right click?

#317
post #12
post #5

Windows is starting to pull the same shit. Walled garden OS's are the future for most regular users.

Good. Regular users are not sufficiently computer-savvy to avoid being tricked into installing malware.

Apply that thinking to all the other "bad things people could be tricked into doing" and that's how you end up with an authoritarian government controlling every aspect of our lives...

Re: Can't you just right click?

#318
post #70
post #7

I still believe that Gatekeeper is a blatant cash grab and not a legitimate security feature. $100/year to avoid a scary warning about how your app is definitely a virus? It's like a protection racket.

Don't forget that after you've paid them your money, they can revoke your certificate and spread lies about your software, and there's nothing you can do! https://blog.charliemonroe.net/a-day-without-business/

Well, you can voice your complaint on the Internet and hope that Apple notices this problem and fixes it in less than 24 hours. I wouldn’t advise betting one’s business on this, but it did work in this case.

(Hopefully Apple comes up with a more formal process going forward...)

Re: Can't you just right click?

#319
post #173

Earlier quoted context omitted.

It absolutely is a cash grab, and part of a series of unethical behaviour from Apple. Since the latest awful hardware products (terrible keyboard, control strip thing that breaks, no escape key) with MacBooks and a great improvement with using Linux via Purism and System76 I've managed to move away from Apple.

> latest awful hardware The latest round fixed all of these problems.

So do I get my money back from all the problems with the last generation?

Re: Can't you just right click?

#320

Hold on a minute -- MacOS phones home every single time you launch an application? As a non-user of MacOS, this strikes me as utterly bonkers. You'd have to place a massive level of trust in the developers of your OS to accept this. And furthermore, surely the constant attempts to phone home have a negative effect on the user experience when the computer's network connection is missing or slow! Perhaps the fine artic…

As I understand it: If the application has been notarized before distribution, it should contain a signed “ticket” which allows the app to run immediately. If not, it will hit a server, but it caches the result on success, so it should not have to repeat the check.
Post reply on HN