The point about sandboxing is relevant because many people conflate sandboxing protections with the protections offered by App Review, and thus are afraid that non-App Store apps will be able to install viruses or brick their devices - which isn't the case.
Lastly, the automated malware screening that’s part of the App Review process can be offered separately, thus the risk of "catching malware” from non-App Store apps will be the same as with App Store apps.
Sorry to link to Reddit https://www.reddit.com/r/sideloaded/comments/8ht5uy/question...
Although you can always pay Apple $99/year to get around it!
Apple seems to be investing in iPad software development capabilities - Swift Playground app. This is exciting - perhaps it will be the "iMovie" of Xcode...
An aside: When someone finally comes up with an eInk laptop, we developers in Austin can chill at patio bars and enjoy the sun.
There are plenty of alternatives to the iPhone if you want to compile on Linux.
So it’s not as trivial as it seems.
Now what?
It absolutely is the case.
If that can happen, then that is a security flaw of the device and should be fixed, no?
I mean, reading a text could install a virus on iPhones last year, yet I didn't see people screaming that all texts should have to go through Apple to make sure they aren't a virus.
Yes. It should be fixed.
Guess what? Nobody has ever in human history figured out how to make software that is free of security flaws. That’s why these things are only part of the solution.
> I mean, reading a text could install a virus on iPhones last year, yet I didn't see people screaming that all texts should have to go through Apple to make sure they aren't a virus
If you think application software is like a text message then you don’t know enough to comment on this issue.
If you think that was an example of what I think software is like, then you probably shouldn't comment on it either. I'm just commenting on the fact that, like you said, there's always going to be security issues and using them as the scapegoat for "why" this can't happen is a bad argument.
What's the difference between running an app ad-hoc right now (via XCode) vs allowing a user to download and install any app they want. The answer is, there isn't any except for artificial limitations put in place by apple.
Anything an app that is installed could do would be the same between the store, ad-hoc builds, or installed from a download. The security is in the platform, not the App Store. How many times have we seen something slip through Apple's review process? Fortnite got a full CC flow UI through, many apps back in the day would slip WiFi tethering into their app and get through. All it would take is a simple API call with a boolean to enable or disable the "security issue."
You could always do checks to see what API calls they are using and use that as a metric of "security" but that can also be done device-side. "Hey, this app is using a sketchy API that shouldn't be public, we're going to block it."
No it isn’t. If you agree that there are always going to be security issues, then there is no reason why customers shouldn’t be able to choose a product where human moderation is used to mitigate them.
You haven’t made any case as to why customers should be denied this option.
First of all, that is one of the worst arguments I've ever heard. A iMessage can install a virus, but you don't see people asking for human moderation of all of their messages on the remote chance that one message contains a virus.
I'll also just copy/paste my reply here since you decided to not reply to it.
What's the difference between running an app ad-hoc right now (via XCode) vs allowing a user to download and install any app they want. The answer is, there isn't any except for artificial limitations put in place by apple.
Anything an app that is installed could do would be the same between the store, ad-hoc builds, or installed from a download. The security is in the platform, not the App Store. How many times have we seen something slip through Apple's review process? Fortnite got a full CC flow UI through, many apps back in the day would slip WiFi tethering into their app and get through. All it would take is a simple API call with a boolean to enable or disable the "security issue."
> You haven’t made any case as to why customers should be denied this option.
Xbox Game Pass, done. Any time Apple bans someone from using a new technology, it harms the consumer and limits user choice.
You keep making this silly silly argument.
A text message is not like a software application.
If you really thing the two are comparable, you honestly don’t know anything about computer technology.
You also clearly don’t understand security if you think a platform can be free of security flaws.
As for things slipping through app review. Obviously that happens. That proves that the platform isn’t secure, and that App review isn’t perfect.
If app review wasn’t there, even more things would ‘slip through’. What matters is not how many things slip through, but how many are stopped.
The platform security isn’t perfect, and nor is app review. Together they are much better than one would be alone. It isn’t hard to understand this if you want to.
> A text message is not like a software application.
> If you really thing the two are comparable, you honestly don’t know anything about computer technology.
Ya know, I'm not going to attack you like you seem so set on doing to me. But for reference, I'm a lead SWE working on mobile devices.
As for how a text is comparable. All I'm saying is you claim the platform would be vulnerable with sideload functionality, and what I'm saying is the platform is already vulnerable to the attacks you think this would open the door to. Letting users sideload apps won't make it any more or less vulnerable.
> The platform security isn’t perfect, and nor is app review. Together they are much better than one would be alone. It isn’t hard to understand this if you want to.
I'll say it again, but louder for those in the back. The security is built in to the platform, not app review. If the security was only through the appstore you would see hundreds of viruses in the store a day, controlled by a server side flag. Just like what Uber did to run code differently if the app was being used by reviewers. [1] Why do you think apps need permission to access your sensitive data? That's not the app politely asking while having the ability to get it anyway, that's the _platform_ security.
Now, mind commenting on the part you've ignored twice now? I'll quote it, verbatim, again for you.
"What's the difference between running an app ad-hoc right now (via XCode) vs allowing a user to download and install any app they want. The answer is, there isn't any, except for artificial limitations put in place by apple."
How is the platform so vulnerable and insecure currently? You claim this functionality will cause viruses and adware to run rampant, yet people can do this exact thing right now, with artificial limits (3 max, 7 days max) put in place by apple.
[1]: https://www.theverge.com/2017/4/23/15399438/apple-uber-app-s...
Then I assume you understand the difference between text and an executable and they they pose very different security risks.
If so, then we have to assume you are simply arguing in bad faith by pretending they are analogous.
> I'll say it again, but louder for those in the back. The security is built in to the platform, not app review.
This statement is completely false. Security is in both. You surely know that.
> If the security was only through the appstore you would see hundreds of viruses in the store a day, controlled by a server side flag.
No, because they could still be removed after detection.
In any case, this is a dishonest argument. Nobody is claiming that it’s only in the App Store. The claim is that the App Store is a way to catch issues that the platform security alone cannot.
Again, you clearly are aware of this.
Classic Tesla fanboy logic
And you are being disingenuous by deliberately ignoring the manual checks that Apple's review team does to prevent malicious apps from being disseminated. I work for a bank and my Mac laptop has 6 apps pre-installed designed purely to prevent malware/viruses. The same will unquestionably be needed on iOS for those using it for sensitive tasks.
We’re not asking for that on iOS.
So there’s no reason to think you’ll ever need "6 apps pre-installed designed purely to prevent malware/viruses” on your phone.
No serious security researcher would support this claim.
Are you suggesting that iOS provides perfect security?
If you can’t answer these questions, then you can’t make any claim about it being close to perfect.
At this point we are both asking each other to prove negatives now, as productive as that is. I think we can both agree to disagree.
You have shown that you don’t know anything about how many security flaws there are or how many are protected from by App Store curation, so your claims up to this point about security have simply been dishonest.
This isn’t about agreeing to disagree. It’s that you’ve just been making up false claims this whole time.
https://www.ft.com/content/914ce719-f538-4bd9-9fdf-42220d857...
https://www.wired.com/story/apple-app-store-malware-click-fr...
https://appleinsider.com/articles/22/01/11/wordle-clones-fur...
Nobody said app store curation is perfect, just that it is necessary in addition to OS security.
It’s not clear what you are trying to do now other than to distract from being caught in a lie.
The fact that you cannot begin to imagine a world where Apple's engineering capabilities exists beyond the App Store, nor are aware of the many, many security features they have enabled on both iOS and MacOS [0], speaks of your own skepticism towards Apple's ability to get the job done beyond the App Store. I suggest you read up on Apple's work into system security [1] and elsewhere. It's quite fascinating!
[0] https://support.apple.com/guide/security/app-security-overvi...
[1] https://support.apple.com/guide/security/system-security-ove...
You don’t know how many flaws there are, how long before they are fixed, or how many are protected against by the App Store.
You have no facts and yet you continue to make a claim you know you can’t support. Indeed you have presented links that show for certain that Apple’s security is not perfect.
It seems like your ideas about the perfection of Apple’s security exist only in your imagination.
Do you know? I've provided many links about Apple's security, while you have only offered your own opinions. If you have any helpful information, it would definitely be appreciated.
How many security flaws are there, and when do you anticipate that they will all be eliminated?
If you can’t answer these questions, then you can’t make any claim about it being close to perfect, or even how good it is.
That is my position, and I'd rather discuss it at a different place, but thank you for letting me know where you stand, and now you know where I do.
Apple users don't even realise there is competition in the keyboard market.
Of the many cool apps missing are the ones that require root. Neither platform provide that so loads of apps are impossible.
Android is the only platform if you want control of your own mobile device.
Apple give two hoots about that because they have no competition in consumer markets.
Lots of people have old iPhones they could be using for a load of funky projects or just plain simple software projects but apple don't let them.
Some useful iPhone apps that don't exist.
Mobile web server. Pos device WiFi bridge. Portable software demo device. Non itunes music player. Non apple payment device. ...
An iPhone is just a computer that Apple tell you what you can do with.
b) Multiple keyboards have existed on iOS for years.
c) Spotify and Tidal are examples of non iTunes music players.
d) Nothing is stopping you from running a web server, creating funky projects etc. You are just not allowed to disseminate to others through the App Store.
Most here are already familiar with Apple's 15-30% fee (requiring developers to raise prices by 17.6-42.9% to break even) for most app categories, which siphons money from developers who are smaller than Apple to entrench Apple's duopoly position.
Furthermore, even for free apps, Apple requires developers to pay the $99/year fee just to keep apps in the App Store. Without paying, the apps are removed. This already has a negative impact on the availability of free and open source apps on iOS, with an outsized effect on FOSS developers in areas with lower cost of living. For example, compare the huge selection of apps for Nextcloud features available to Android users via F-Droid (https://search.f-droid.org/?q=Nextcloud) to just Nextcloud (basic storage functions) and Nextcloud Talk on iOS.
> d) Nothing is stopping you from running a web server, creating funky projects etc. You are just not allowed to disseminate to others through the App Store.
That's a point in favor of the bill. Apple preventing entire categories of useful apps from entering iOS via the only accessible installation method for most users of average tech proficiency is evidence of consumer harm.
Nobody is making you install or purchase anything from outside the App Store if you don't want to, even after sideloading becomes an option in iOS. Sideloading is allowed in Android, and most users still install and purchase apps from the Play Store in regions where the Play Store is pre-installed.
b) The Keyboard API is designed to be tiny and blocks broadcasting keystrokes. It is like it was not designed to be a general computing device.
c) Again not intended as a general purpose device. I recall early on they added hardware to the camera to prevent it from detecting out of sight spectrum to prevent it from being used to find heat leaks and the like.
d) Android is the only platform where other people can secretly control your device.
e) Apple gives lots of hoots. They are clearly trying to craft a specific experience.
f) True of most anything with a chip. Cars, game machines, smart TVs all have anti-tampering tech even without your banking data on them.
g) Web servers are often compromised so bad for security. Computers never made good WiFi bridges. Plenty of music apps. I see point of sale iPads all over the place.
h) yes. The idea of billions of devices out there with constantly running background Location/Bluetooth sniffers reporting to ad-tech is horrifying to me. It would make the AirTags stalking seem like a joke if every phone secretly tracked every Bluetooth.
A mobile application that can't be shipped on iOS has a much lower total addressable market, which potentially makes it so that it isn't a commercially-viable undertaking for the developer. When I was working in the mobile space, I saw more than one great idea that never advanced to a product because of this factor.
There are also a lot of cases where a cross-platform mobile developer will kill an otherwise promising feature because they can't ship it on iOS and don't want to fragment their product by having different feature sets on each platform.
Phones-where-you-are-not-the-product is monopolized by Apple.
We all seem to forget that we as people have a choice. Either we go where other people go, or we chose to go somewhere else.
It is not a precondition to have success in society to use an Apple device, so why does it matter that they chose to operate the way they do?
A developer might want to target Apple specifically because AppStore provides a potentially high consumer lifetime value client for your offering; but guess what, if you were as valuable to your customer as Netflix, you could abide by Apple's rules completely and still be a successful company. The AppStore in app purchase doesn't matter -- Netflix iOS just says, 'good luck! figure out how to sign in!'
Which gets to the other part of this, side loading != pay through AppStore. The 30% rake is the wind for this bill's sail, and it's not right. Just mandate alternate payment links like EU / whoever.
Side loading will lead to more 0 clicks and NSO breakthroughs. The surface of attack is increasing.