4 ms·
This is the same exact issue that used to plague Outlook back in the day with the automatic handling of attachments. You'd think Apple would have learned from o
by techrat 6y ago
This is the same exact issue that used to plague Outlook back in the day with the automatic handling of attachments. You'd think Apple would have learned from others' mistakes.
- srswtf123 6y ago> You'd think Apple would have learned from others' mistakes. Why would you think that?
- woodruffw 6y agoI don't exactly have a dog in this, but I think this is a strange framing: this feels like exactly the kind of niche feature that was added by one engineer and then forgotten about. MS and Apple are both large companies that maintain individual pieces of software that are probably older than many of the engineers who currently work on them; the lessons here are more organizational than technical.
- techrat 6y agoIt's because Apple framed themselves as the company of "LOL Macs don't get viruses" and emphasize themselves to be more privacy focused than Android... ...and they made the same basic mistake of allowing one of the single most exploitable attack vectors ever. They kinda shoulda known better, honestly.
- eyelidlessness 6y agoThey still treat PDF files as “safe” to automatically open when downloaded so nope.
- salsadip 6y agoWhat’s dangerous in a PDF besides JS which is not executed in macos Preview.app?
- eyelidlessness 6y agoPDF has had a zillion vulnerabilities over the years. And Apple doesn’t guarantee in Safari that Preview.app is the default handler, so that expands the scope of potential vulnerabilities to Acrobat, which is notorious for its history of vulnerabilities.