Live data from Hacker News

Apple’s macOS Ventura – New Security Changes

sentinelone.com

111–120 of 193 posts

Re: Apple’s macOS Ventura – New Security Changes

#111
post #4
post #2

> However, the Gatekeeper check here is overridable by users. This is presented as a flaw, but I'm not sure they are thinking through the alternatives. It's hard to give too much credence to security experts who are't thinking holistically. Perhaps there is a flaw, but I'm curious to know what it is.

Things the user can override are things social engineers can convince users to override.

Yes. Note that thus is the technical argument for disallowing sideloading.

Re: Apple’s macOS Ventura – New Security Changes

#112
post #2

> However, the Gatekeeper check here is overridable by users. This is presented as a flaw, but I'm not sure they are thinking through the alternatives. It's hard to give too much credence to security experts who are't thinking holistically. Perhaps there is a flaw, but I'm curious to know what it is.

Security folks tend to have a very myopic view on things. Ever wondered why your computer got less and less useable? Security people pushing their agenda.

Yeah, because we get many sad users when their hard drive gets encrypted by ransomware, and even more so if it is a shared drive.

So the less toys to play, the better.

Re: Apple’s macOS Ventura – New Security Changes

#113
post #3

Am I the only one increasingly frustrated with macOS's naming scheme? I have no idea what the latest version is. Ubuntu versioning gets this right; you can parse their codenames alphabetically to derive the semantic version. But Apple's heuristic here seems to be "throw a dart at a map of California".

Ah thx, was thinking about Lino Ventura so a place in Italy I guess; could be worse eg Ponte Vecchio

Re: Apple’s macOS Ventura – New Security Changes

#114

5-6 year support for hardware is just too short. I have a Mid 2015 Macbook Pro as a "backup" and that computer is still quite decent.

I wonder if it’s worse this year than usual because of the switchover to AppleSilicon? I have a 2013 Mac Pro that I use daily and it’s gotten all updates until this one. 9 years is pretty good. But I can understand wanting to end support for as many Intel machines as quickly as possible.

Re: Apple’s macOS Ventura – New Security Changes

#115
post #38

Earlier quoted context omitted.

Yes, I have been baffled that it was always so difficult for the user to manage what’s auto-launched on start-up. So many apps try to bury into start-up so they can keep collecting data and lightly spamming the user. Can anyone shed light on why it took so long? I had always figured the non-existence of a login items panel was a purposeful choice.

It's actually been there for a long time. It's a separate tab in "Users & Groups" pre-Ventura.

This view only includes actual apps that launch on startup, it doesn't include agents, daemons etc. Many popular apps have one, if not many, that the users are usually not even aware of and can't turn off via the UI. To see what I mean, try running `launchctl list | grep -v "com.apple"` as the user you're logged in with. It will list jobs loaded into launchctl not owned by Apple, and that isn't even the only way to make things run at startup.

Re: Apple’s macOS Ventura – New Security Changes

#116

Earlier quoted context omitted.

It wasn't much better with big cats. There were two sort of semantically related releases, Leopard/Snow Leopard and Lion/Mountain Lion. Of those on the Leopard/Snow Leopard I thought made sense as Snow Leopard was a "oh shit fix all the bugs" release. SL was the first full OS release after the Intel transition and 64-bit kernel.

I can picture a big cat in my mind. That helped to peg OS X releases and enabled me to mentally distinguish and order them. I can't picture "Monterey" or "Ventura" or any other macOS names, they have no meaning to me.

Big Sur, Monterey, Yosemite, El Capitan, Catalina... all worked for me because I've either been there or there was a screensaver/wallpaper to associate them with their locales. I really don't know a thing about Ventura.

Re: Apple’s macOS Ventura – New Security Changes

#117
post #58

Nothing terribly major here, it sounds like. Making login items visible is a long-overdue change... but none of these are going to have any particular impact on average users or average apps. On a pettier note, can we get a better source than a website that's using JS to change its title when it doesn't have focus to try to gain attention? (It toggles about every second between "macOS Ventura | 7 New Security Changes…

I'm not surprised they're using scummy tactics. Their actual software runs like crap, so gotta do whatever they can to get users. I had a work MBP and personal MBP with exactly the same specs, main difference being the Sentinel One agent. The work one was constantly spinning up the fans, S1 was gobbling up memory, and support was completely useless in diagnosing. Their Linux agent isn't much better with constant memory leaks.

Re: Apple’s macOS Ventura – New Security Changes

#118
Somewhere between Mountain Lion and High Sierra, it became impossible to delete or even mark non-executable various annoying built-in applications which I never use, e.g. iTunes.app and Safari.app, which often open without me asking them to.

Does anyone know how to re-enable this functionality?

Re: Apple’s macOS Ventura – New Security Changes

#119
post #7
post #3

Am I the only one increasingly frustrated with macOS's naming scheme? I have no idea what the latest version is. Ubuntu versioning gets this right; you can parse their codenames alphabetically to derive the semantic version. But Apple's heuristic here seems to be "throw a dart at a map of California".

Ubuntu has both a codename and a version number. macOS has a version number too (Ventura is 13) but Apple frustratingly don’t use it prominently.

Alliterating Antlion

Re: Apple’s macOS Ventura – New Security Changes

#120

5-6 year support for hardware is just too short. I have a Mid 2015 Macbook Pro as a "backup" and that computer is still quite decent.

I wonder if it’s worse this year than usual because of the switchover to AppleSilicon? I have a 2013 Mac Pro that I use daily and it’s gotten all updates until this one. 9 years is pretty good. But I can understand wanting to end support for as many Intel machines as quickly as possible.

When Apple announced the transition from PPC to Intel, the PPC Macs only got two major updates before being EOLed. Even the Power Mac G5 (2005) only got two major updates before being cut off from support.
Post reply on HN