Earlier quoted context omitted.
I provided both a citation and the relevant quote from it.
If it did turn out that Apple was actually able to do what they claim they can't, how would you explain the source that you linked to?
Updating from macOS Ventura to Sonoma Silently Enables iCloud Keychain
41–50 of 69 posts
Re: Updating from macOS Ventura to Sonoma Silently Enables iCloud Keychain
#42Earlier quoted context omitted.
> If it did turn out that Apple was actually able to do what they claim they can't… My friend, I'm afraid I have no idea what you mean. What do you believe Apple claims they can't do that conflicts with this? (If your answer is "end-to-end encryption", Apple has supported this for at least a decade.)
Apple claims they cannot decrypt. What will you do if that claim turns out false? That is what the person you are talking with means, and it is very clear throughout the conversation.
Re: Updating from macOS Ventura to Sonoma Silently Enables iCloud Keychain
#43If people wonder about things, they should install Little Snitch and see how often apple apps phone home. It's amazing. Not only after install, but hours and days later will apps start quietly phoning home.
Ref also [1]: > In Big Sur Apple decided to exempt many of its apps from being routed thru the frameworks they now require 3rd-party firewalls to use (LuLu, Little Snitch, etc.) > Q: Could this be (ab)used by malware to also bypass such firewalls? > A: Apparently yes, and trivially so
[0] https://x.com/patrickwardle/status/1318437929497235457 [1] https://x.com/patrickwardle/status/1327726496203476992
Re: Updating from macOS Ventura to Sonoma Silently Enables iCloud Keychain
#44If people wonder about things, they should install Little Snitch and see how often apple apps phone home. It's amazing. Not only after install, but hours and days later will apps start quietly phoning home.
One thing I learned from using Little Snitch is that a lot of Apple apps are seemingly immune from these types of firewalls, due to Apple shenanigans around k-ext signing etc [0]. Ref also [1]: > In Big Sur Apple decided to exempt many of its apps from being routed thru the frameworks they now require 3rd-party firewalls to use (LuLu, Little Snitch, etc.) > Q: Could this be (ab)used by malware to also bypass such fir…
Re: Updating from macOS Ventura to Sonoma Silently Enables iCloud Keychain
#45Earlier quoted context omitted.
> If it did turn out that Apple was actually able to do what they claim they can't… My friend, I'm afraid I have no idea what you mean. What do you believe Apple claims they can't do that conflicts with this? (If your answer is "end-to-end encryption", Apple has supported this for at least a decade.)
I think what the poster is getting at is: "How do we validate claims of end-to-end encryption?" It is a lot of trust to place in a company. I would be curious if there are ways to test Apple's claims?
Re: Updating from macOS Ventura to Sonoma Silently Enables iCloud Keychain
#46Earlier quoted context omitted.
One thing I learned from using Little Snitch is that a lot of Apple apps are seemingly immune from these types of firewalls, due to Apple shenanigans around k-ext signing etc [0]. Ref also [1]: > In Big Sur Apple decided to exempt many of its apps from being routed thru the frameworks they now require 3rd-party firewalls to use (LuLu, Little Snitch, etc.) > Q: Could this be (ab)used by malware to also bypass such fir…
Apple removed the exclusion list: https://obdev.at/blog/a-wall-without-a-hole/
Now if only they'd stop trying to get me to enable iCloud Drive just because I use an iPhone for work.
Re: Updating from macOS Ventura to Sonoma Silently Enables iCloud Keychain
#47An example of "Keychain" abuse is how Facebook so disgustingly tracks you even after you delete all apps, and can track you even after you restore an iCloud Backup ON A NEW PHONE! • It shows my previous accounts even after I delete the app. • Clearing Safari's cache does not work. • Disabling iCloud Drive and iCloud Keychain does not work. • Even completely signing out of iCloud does not work! ---- WHY can't the user…
But I agree. The user should be asked if they want to clear it on app delete
Re: Updating from macOS Ventura to Sonoma Silently Enables iCloud Keychain
#48If people wonder about things, they should install Little Snitch and see how often apple apps phone home. It's amazing. Not only after install, but hours and days later will apps start quietly phoning home.
One thing I learned from using Little Snitch is that a lot of Apple apps are seemingly immune from these types of firewalls, due to Apple shenanigans around k-ext signing etc [0]. Ref also [1]: > In Big Sur Apple decided to exempt many of its apps from being routed thru the frameworks they now require 3rd-party firewalls to use (LuLu, Little Snitch, etc.) > Q: Could this be (ab)used by malware to also bypass such fir…
But another way around is the way VMWare Fusion let you set up networking in Bridged mode. Any traffic from the VM went through without a peep from Little Snitch running on the host. No reason malware couldn't be designed in the same way.
Re: Updating from macOS Ventura to Sonoma Silently Enables iCloud Keychain
#49I had to blink twice last time when I installed Sonoma on a new partition that I did not have to provide a wifi password. This appears to confirm that. While I can understand that some people would appreciate this, I'm not exactly chuffed by a fresh install silently grabbing passwords from an old install.
Re: Updating from macOS Ventura to Sonoma Silently Enables iCloud Keychain
#50I had to blink twice last time when I installed Sonoma on a new partition that I did not have to provide a wifi password. This appears to confirm that. While I can understand that some people would appreciate this, I'm not exactly chuffed by a fresh install silently grabbing passwords from an old install.
if you have an iPhone, iPad or any other logged in device with the wifi password it will auto grab it from that device without you doing anything.
The other commenter is correct - the last (few?) Wi-Fi passwords are stored in NVRAM so that the recovery environment can connect to the network more conveniently.