Live data from Hacker News

Apple dropped plan for encrypting backups after FBI complained

reuters.com

251–260 of 734 posts

Re: Apple dropped plan for encrypting backups after FBI complained

#251

>there's no good and easy option to backup your phone other than iCloud. Turn off iCloud and do local encrypted backups to your PC or Mac. This works over your wifi network (if you prefer wireless charging at home) or via a cable connection.

Not a solution for Linux users. There are ways to sync to Linux but I’ve had plenty of issues with it.

Linux offers the ability to run virtual machines, does it not?

Re: Apple dropped plan for encrypting backups after FBI complained

#252

>there's no good and easy option to backup your phone other than iCloud. Turn off iCloud and do local encrypted backups to your PC or Mac. This works over your wifi network (if you prefer wireless charging at home) or via a cable connection.

Pretty much this. It's a bit of a PITA, but an easy work around. Of course then you have a local backup on a hard drive which is itself subject to seizure and I believe even encrypted backups can be cracked.

The other thing that’s a bit of a problem as I discovered is it doesn’t seem as if there’s any documented way (and I’m wary of undocumented workarounds) to have this backup anywhere but your boot drive. Especially with several OS X devices this can be a bit of a problem if you have an older undersized SSD. I was getting critically low on space and it turned out a huge amount was these backups.

Re: Apple dropped plan for encrypting backups after FBI complained

#253

Earlier quoted context omitted.

Not a solution for Linux users. There are ways to sync to Linux but I’ve had plenty of issues with it.

Linux offers the ability to run virtual machines, does it not?

As in run an OSX vm so you can run a backup? You're only allowed to virtualize OSX on Apple hardware.

Re: Apple dropped plan for encrypting backups after FBI complained

#254
post #241
post #228

Earlier quoted context omitted.

>While iPhone itself is pretty secure as a device phone I simply don't understand why people would blindly believe marketing material from a for-profit corporation. It's a device running closed source software. There is no way to prove this claim. If anything, Apple has been caught in the past sending very very personal sensitive information [1]. [1] https://www.theguardian.com/technology/2019/jul/26/apple-con...

Why the distinction on for-profit? There are plenty of non-profits you shouldn’t trust. Surely their tax status is orthogonal to their trustability.

You can trust an organization to do some mix of pursuing its goals and filling someone's pockets. So while you can trust some non-profits, you can never trust a for-profit about anything you care about as a customer.

Re: Apple dropped plan for encrypting backups after FBI complained

#255

>there's no good and easy option to backup your phone other than iCloud. Turn off iCloud and do local encrypted backups to your PC or Mac. This works over your wifi network (if you prefer wireless charging at home) or via a cable connection.

It’s not only way more friction than iCloud, but you’d be surprised how many people nowadays don’t even own a PC or Mac. In my wife’s family 60% of people only have phones, tablets and smart TVs. They use laptops/desktops only at work.

On a daily basis there’s no more friction than iCloud. My phone backs up to my computer over WiFi once a day when it gets plugged in for charging. I don’t ever think about it—it just happens.

Re: Apple dropped plan for encrypting backups after FBI complained

#256
post #253

Earlier quoted context omitted.

Linux offers the ability to run virtual machines, does it not?

As in run an OSX vm so you can run a backup? You're only allowed to virtualize OSX on Apple hardware.

You you have always been able to back up your iDevice to a Windows instance, if that is what you prefer to use.

Re: Apple dropped plan for encrypting backups after FBI complained

#257
post #252

Earlier quoted context omitted.

Pretty much this. It's a bit of a PITA, but an easy work around. Of course then you have a local backup on a hard drive which is itself subject to seizure and I believe even encrypted backups can be cracked.

The other thing that’s a bit of a problem as I discovered is it doesn’t seem as if there’s any documented way (and I’m wary of undocumented workarounds) to have this backup anywhere but your boot drive. Especially with several OS X devices this can be a bit of a problem if you have an older undersized SSD. I was getting critically low on space and it turned out a huge amount was these backups.

Precisely my problem -- with all the household devices, we've outgrown the boot drive's ability to locally back them up. This is despite the fact that all itunes (or whatever it's called now) media is stored on a NAS and accessed through iTunes seamlessly.

I suppose I could mount a network drive / nfs share at the location iTunes believes is local ...

Re: Apple dropped plan for encrypting backups after FBI complained

#258

Wonder if this will help to kill a meme, about how much Apple cares about users and what great values they have, how they're going to stand for the user, fight with governments, etc. While iPhone itself is pretty secure as a device phone (and Apple makes sure to remind you about that in each ad, public speaking, attacks on competitors, etc), as an ecosystem it's not secure. And it's like that on purpose - there's no…

>And it's like that on purpose - there's no good and easy option to backup your phone other than iCloud.

I really want the iOS Time Capsule Option. Even if it is expensive.

Re: Apple dropped plan for encrypting backups after FBI complained

#259

Wonder if this will help to kill a meme, about how much Apple cares about users and what great values they have, how they're going to stand for the user, fight with governments, etc. While iPhone itself is pretty secure as a device phone (and Apple makes sure to remind you about that in each ad, public speaking, attacks on competitors, etc), as an ecosystem it's not secure. And it's like that on purpose - there's no…

You don't have to use iCloud backups - you can still backup to a computer and have that backup encrypted.

Re: Apple dropped plan for encrypting backups after FBI complained

#260
post #196

Earlier quoted context omitted.

Long-term, there may eventually come a solution to this problem in the form of [binary transparency]( https://wiki.mozilla.org/Security/Binary_Transparency ). However, we're obviously a long way away from that being the norm, and there's still the problem of supply-chain attacks on hardware to consider.

I doubt the hardware supply chain can ever be secured. Even if you were to open-source every single part of manufacturing, there is no reliable way to ensure that the chip you, as a customer, have obtained, hasn't been backdoored. You'd have to delid it and put it under an X-Ray if that even resolves the tiny featuresin modern CPUs.

In short, there is no equivalent hashing function for hardware.
Post reply on HN