Earlier quoted context omitted.
First of all the feature wasn't available in the initial Big Sur release and it only got available during the Betas for the first minor patch. Second of all, some Apple developer stated on Twitter that (during M1 unveil) he's finally able to show all the boot policy work they worked on the past year(s) to allow users to boot foreign OSes and without opening up holes for attackers. Basically it boils down to: they cou…
Kind of like all the work Sony did to allow Linux on the PS4 only to kill it later? You don't own a mac. You can only do on it what it is profitable for Apple to let you do, today. As much as I respect the incredible RE skills required for this task, I feel like this is shaky foundation unless an unpatchable bootrom exploit is discovered. Even then new models would be patched leaving existing users with an insecure p…
Everyone likes to point at Apple, because that's easy, but it's neither new nor big nor special. There are practically three things at play:
- root-of-trust, if you have a better solution than CA-based signing, by all means, let the world know
- NDA/IP/Lawyerisms
- Apple and many others aren't selling hardware, they are trying to sell experiences or ecosystems, and that is the only reason they exist at all and also the reason a lot of the beige box hardware companies are either less visible, less profitable or both
Is it fun? No. But it's not some sort of automatic malice or 'haha you don't own things but you thought you did' all the time either.