Auto Updates without user interaction is the biggest
security benefit I can think of for a normal user.
Auto updates are a great security benefit, yes.So it's a shame so many companies shit all over auto updates by rolling out poorly tested changes that introduce new problems, and similar behaviour that motivates users to disable auto updates.
"Should" in an ideal world doesn't equal "should" in a world with deadlines and limited resources. It's enough work to ensure that all the features work with ONE version of an app. If you had to also test every version of the app without this or that feature update installed, you just continually multiply the testing requirements by the number of optional features.
And don't say unit testing solves this problem. The problem is in INTEGRATION testing with the whole app, which 99% of the time can only adequately be done by making the build and having a human use it. Even automated integration tools won't find things like formatting errors and buttons too small for humans to click.
I'd like to continue to maintain ONE app, please, and not `n!` app permutations.
The trouble with today's highly connected world is that it has bred a culture of shipping software that isn't really production quality, on the basis that it can be fixed (or not) later and that's sufficient. This leads to arguments like your final paragraph: you (the developer) would obviously prefer to only maintain the latest and greatest of what you do, but stated without taking into account the consequences of that policy for your users/customers.
While I have a lot of sympathy for your desire, as a developer myself, I think you can only justify that sort of position if your previous releases are sufficiently good that they don't need maintenance. Otherwise, if you have customers paying for one thing, and that thing is defective, and you then want to use those defects as leverage to push your customers to something that is not what they paid for, then I think you're on very shaky ground. There are a lot of ethical, economic and legal issues raised by that sort of business strategy.
I don't like this attitude either, though. Developers have gotten fat and lazy not dealing with any sort of variation in deployment, let alone versions. Everything is all Android or iOS. All Chrome and maybe Firefox. x86 or ... maybe arm. And not be connected to the Internet? That's unpossible!
With hindsight and better tooling we should be able to handle more complexity in how products are used, not less.
Automatically installed Windows patches are fantastic. I hardly even notice them. Sometimes a patch will cause an issue with some software but that's an acceptable trade off.
But then I get Candy Crush, or have to go through the setup again, or have all my display setting reset, get new "notifications", etc. These are not part of those security updates.
To stick with the Uber example, I don't live in a city with Uber, but have it on my phone for when I am. Why do I need to be burdened with using my data to constantly update an app I use once a year. This applies to a lot of apps (airlines, games, etc.). Games are really the worst offender as they tend to be quite large. Where release notes are provided in the app store, I will update if it is related to a critical security vulnerability, or something legitimate, but find it hard to rationalize constantly downloading 100+MB apps doing this for minor bug fixes that impact 0.001% of an apps user base.
There's usually a setting that forces updates to only download over a Wifi connection.
I agree with the comment below about this being an argument for delta updates.
It's a matter of perception and ignorance. We've been trained, for lack of a better word, to perceive the execution of software on the hardware we own as something completely orthogonal to our ownership of that hardware.
Btw. when thinking of Tesla cars.. they auto update their software remotely ;)
That is one reason I will never buy one.
It's not as if the danger here is hypothetical. Leaving aside the immaturity of technologies like autonomous vehicles, I've seen way too many cars being compromised in more mundane ways, from theft because the remote unlocking mechanism was laughably easy to crack, right up to literally stranding a vehicle in the middle of a high speed road using a laptop that is somewhere else entirely. The consequences the first time someone compromises one of these remote systems and decides that every <some popular model> in the city should turn hard left or accelerate to 100mph or slam on the brakes are horrifying.
Get back to me when we have the same level of scrutiny of these modern vehicles as we see in air travel, and when not getting security right poses an existential threat to the manufacturer's business, and then we can talk...
This reminds me of the first Jurassic Park movie, where IIRC everything was controlled by a single mainframe, from the PABX to the electric fences of the dinosaur pens, and a disgruntled programmer pretending to fix the former disabled the later. We seem to be steadily moving towards that kind of world.
To illustrate my point in terms of your analogy, if people could get free upgrades for their brakes that make the car safer, I like to think that they would still prefer to be given control over it, because they see it as "my car" and not "my car, but with brakes licensed from someone else". And I also like to think that they would object to arbitrary changes to the insides of their car with vague explanations of how the new insides are better.
Except that it wasn't, isn't, and by all evidence won't be.
Yes, but let's be clear about "without user interaction". That had better include "without user disruption".
Windows 10 is one of the worst abusers here: Updates are forced, and during updates, the computer is suddenly unusable. That is not okay.
Debian (derivatives, similar distros, etc.) has done it right for decades. Updates never block the user. Updates are consolidated, since every piece of software is a tracked package.
The reason your parents don't want to update Java is because they remember how much of a pain it was 10 years ago, and it doesn't really feel different.
Perhaps not intentionally but I always have "sudo pkill unattended-upgrades" close to hand when it pegs all my CPU cores whilst I'm trying to get something done.
Most new features on chrome are not for your security. They disable all referrer control options. Want to only send referrer to the domain you are at now? though lucky, google makes money on cross-domain referrer reporting so they can track conversion from their ads.