Live data from Hacker News

Catalina is checking notarization of unsigned executables

lapcatsoftware.com

1–10 of 182 posts

Re: Catalina is checking notarization of unsigned executables

#7
This must be a blacklist, since it doesn't block my own random scripts which it has never seen before.

If it's a global blacklist on apple servers, it should instead be downloaded to the client, and be a local blacklist.

Too big? Use a bloom filter. Now you only end up keeping less than one byte per blacklisted item. Update the bloom filter with an autoupdater. Any positive hit you can check against the server just incase it's a false positive.

Re: Catalina is checking notarization of unsigned executables

#8
post #6

It's great tool for mass-surveillance. Since Apple has a database of all the apps the user has run on their device (but no worries, Google has the same). For your security ;)

So why mass-surveil Apple computer users this way?

My understanding is the only thing exclusive to Apple systems is developing Apple apps. But anything related on a platform like iOS is already going to be public knowledge.

Also the latest Mac hardware seems to go through great pains to make sure the primary storage device is both encrypted, unrecoverable if keys are unknown (T2 security chip), and non-removable (SSD soldered to board). So why would they make this back door for surveillance?

Re: Catalina is checking notarization of unsigned executables

#10

So you're telling me that every time I install a program in OSX, it pings apple to let them know what program I'm installing, my IP address, my location, and my OS version? Sounds very Orwellian for a privacy focussed company...

Of course, if they say it's for your privacy, it's fine, and everything is all right. We have won the victory over ourselves. We love Apple.
Post reply on HN