4 ms·
The closed ecosystem prevents this exploit from ending up on the public App Store and infecting devices en mass...
by teejmya 5y ago
The closed ecosystem prevents this exploit from ending up on the public App Store and infecting devices en mass...
- moonchrome 5y agoUmm if it's zero click why would it need to get on the App Store ? And what does getting something on App Store have to do with the system being open or closed ?
- deleted 5y ago[deleted]
- smoldesu 5y agoThe App Store is not the delivery mechanism for this attack, so no.
- nomel 5y agoI think the argument is that having a completely open App Store would increase the attack surface, since the average user will click any install icon.
- smoldesu 5y agoI think the greater argument to be made is that it doesn't matter, since iOS has had no-click zero-days for longer than it's had an App Store.
- caddybox 5y agoWhat makes you feel that malicious apps are the only vector for these exploits. The web is open and iOS users can still download files on their devices. Let's disable file downloads altogether and limit people to an alternative "reviewed" web. Please don't use the flimsiest of excuses to bootstrap an argument for a more restrictive world.
- zibzab 5y agoYou realize store evaluation is just a PR and is mainly used as a control tool. I mean, how could something like this happen if there was any real security? https://en.m.wikipedia.org/wiki/XcodeGhost https://en.m.wikipedia.org/wiki/XcodeGhost