6 ms·
Since several web features are disabled with Lockdown mode enabled, I wonder what measures Apple is planning to implement to defeat (at least to some extent) fi
by newscracker 4y ago
Since several web features are disabled with Lockdown mode enabled, I wonder what measures Apple is planning to implement to defeat (at least to some extent) fingerprinting attempts to detect the people/devices using Lockdown mode while browsing.
> If you can’t stand the impact on performance or image rendering, well, maybe Lockdown isn’t for you. Apple claims only a tiny fraction of users will need it, though I’d argue an awful lot of users will want it.
Of course, I want it! (I already go through many other inconveniences for privacy and security).
> Should You Turn it On?
> Yes. Seriously. Turn it on when you have a supported OS and don’t look back.
Amen! I’ll be telling some laypeople to turn it on and try it out (along with instructions on how to turn it off selectively or completely).
- O__________O 4y agoHow would Apple counter fingerprinting? Already pointed out this issues in a prior point here 14-days ago: https://news.ycombinator.com/item?id=32006436 https://news.ycombinator.com/item?id=32006436 From that comment: “If Apple is logging if this feature is on and sending it back to Apple, it will result in targeting from nation states even if this feature is “invincible” - which I have no reason it is; basically, nation states demand list of users subject to its jurisdiction.” Obviously there are likely other ways to fingerprint Apple devices with lockdown mode on, but to me, at the point you need “lockdown mode” likely should realize the doing so will likely make you more of a target.
- deleted 4y ago[deleted]
- nneonneo 4y agoI think one reason to make this feature public is to get more people to use it, and therefore dilute Lockdown Mode as a signal. As you say, it’s pretty easy for an attacker to detect this mode: with a browser, just check that the Safari version is high enough but that certain features are not available. If even 1% of iPhone users are using Lockdown mode, it’ll far exceed the number of people who really need the feature to stay ahead of nation-state targeting.
- Syonyk 4y agoThis would be another good reason for "lots of random people to use it," certainly - same as Tor.
- O__________O 4y agoUsing Tor is legal justification for a warrant to remotely hack systems using it: https://www.nolo.com/legal-encyclopedia/what-does-rule-41-say-about-government-hacking.html https://www.nolo.com/legal-encyclopedia/what-does-rule-41-sa... As such, highly likely most systems running Tor nodes have been hacked and that Tor is not secure. Very possible lockdown mode might be as well a legal justification for a warrant, given it “conceals” systems.
- O__________O 4y agoIssues is automatically targeting users would be easy. If Apple tracks users that have both lockdown mode and iCloud on, all a nation state with jurisdiction has to do is request list of users with both on; having lockdown mode on might even qualify as justification for a search warrant and legally hack anyone using it, which is already the case for Tor: https://www.nolo.com/legal-encyclopedia/what-does-rule-41-say-about-government-hacking.html https://www.nolo.com/legal-encyclopedia/what-does-rule-41-sa... Find it horrifying that Apple has this feature, but makes no effort to inform users about the risks of iCloud; in my opinion, if you have lockdown mode on, iCloud should not be option, should trigger an off boarding from iCloud and wiping of any data on iCloud; also pointed this out in comments here: https://news.ycombinator.com/item?id=32006436 https://news.ycombinator.com/item?id=32006436 To me, as is, lockdown mode sounds like a honeypot: https://en.m.wikipedia.org/wiki/Honeypot_(computing) https://en.m.wikipedia.org/wiki/Honeypot_(computing)
- AndrewUnmuted 4y ago
- threeseed 4y agoI think you should spend less time on conspiracy sites. The world including Apple's product map doesn't revolve around Hunter Biden.
- mrex 4y agoWays to counter fingerprinting: Offer a spoof mode, make the Lockdown mode browser look to external websites like it isn't in Lockdown mode. Tricky but doable with some site breakage that can always be fixed by disabling Lockdown mode for sites a user trusts. Convince as many people to use Lockdown mode as possible. I, for one, don't see any reason NOT to enable Lockdown mode on all my devices. Do you need iMessage URLs sent by randoms to load remote content without your consent? Above all, lets begin to consider signed web content..
- p410n3 4y ago> make the Lockdown mode browser look to external websites like it isn't in Lockdown mode. This will be instantly defeated by benchmarking the js performance. But disabling JIT is a VERY important step to harden your browser. This is one of these things where you have to actually choose between privacy and security
- mrex 4y ago>This will be instantly defeated by benchmarking the js performance. How common is this behavior for non-malicious websites that a Lockdown mode user is likely to use? It seems to me that if you're loading malicious content from a site controlled by foreign intelligence services, you're probably done whether Lockdown is enabled or not. Preventing more casual profiling from common logs likely to be strewn about in CDNs, etc. is still an important level of protection, I'd argue.
- ev1 4y agoIncredibly, extremely common on tons of sites. Normal web pages that load ads will attempt to detect "fraud" by connecting back over WebRTC, running benchmarks to see how "valuable" of a user you are (how shit or expensive your hardware is), and running benchmarks to see whether you might be a fake browser/"ad fraud" user running large amounts of sessions at the same time and therefore have slower performance. It's bullshit and should be illegal. I already dislike webgl leaking the model of my gpu, concurrency leaking memory and cores available, and disk space. Go visit walmart or really any major site - almost more likely than not it will do this - and watch it attempt to enumerate all of your plugins, connect over webrtc, enumerate performance.* msPerformance, mozPerformance, make a webgl video and ask for unmasked renderer, enumerate thousands of fonts, attempt and fail to spawn piles of ActiveXObject, use "window.msDoNotTrack" as a fingerprinting feature point, enumerate hundreds of browser functions and getters (maxTouchPoints, doNotTrack, hardwareConcurrency, ...) and calling toString() on dozens of specific things like window.RTCDataChannel.toString() and seeing whether it fails in a try/catch, if it returns a function, or if it returns "function RTCDataChannel() { [native code] }" as a string, etc.
- tomxor 4y ago> If Apple is logging if this feature is on and sending it back to Apple, Apple (and most for profit entities), tend to exclude themselves from their definition of "privacy".
- deleted 4y ago[deleted]
- olliej 4y agoApple is not Google or Facebook: https://www.apple.com/privacy/ https://www.apple.com/privacy/ You have to explicitly opt into any logging in apple apps and the OS itself (iOS or macOS). Apple clearly goes to great lengths to ensure that they cannot access your information and data, and very clearly distinguishes stuff that is inaccessible to them from stuff that is encrypted but that they can technically access decryption keys. A result of this is of course that we get people complaining about apple not restoring their data. What you're doing is demonstrating how effective Google, Facebook, etc have been in convincing you that real privacy isn't actually possible, solely to protect it from legislative action, because their business models depend on violating it continuously Recall that Google deciding to trawl through the content of your email (assuming gmail) is why emails from amazon no longer include any details about the order. Or how "AI" required Google and Facebook, et al having access to everyone's pictures and information. The fact that G and FB have taken a "fuck our users" approach, doesn't mean that's how every company operates. The fact of the matter is that >75% of google's revenue comes from selling you out, and >90% of facebook's. >80% of apple's revenue comes selling hardware, the remainder from selling services and I assume store royalties (I'd be interested in the break out). You don't have to invade everyone's privacy to make money, it's just G and FB have chosen that approach every time the option is presented to them. In fact, if a company can decrypt your data then it becomes possible for a hacker of said company to also decrypt that data - a fairly solid reason IMO for either not collecting, or ensuring only the user can access info, unless absolutely necessary for functional or legal reasons.
- tomxor 4y agoWhat are you trying to prove? that Apple is the exception, that Apple really cares about you? Apple is not a person, it is a large corporation without any of it's original founders, it has no principles, it's a machine that operates on one metric: it's bottom line. All of it's behaviour is merely a result of profit seeking, public perception and legal limitation. Apple will play the "privacy" marketing tool for as long as it helps their bottom line, but not when it doesn't. Which is demonstrably true by their behaviour in China - they do not care. They also take billions of dollars from Google each year due to their control over the iOS browser... so they are quite happy to support privacy invasion.
- derefr 4y agoI think people here are misinterpreting the point of this feature. This isn't a feature for people to gain privacy against the nation-state they reside within the legal boundaries of. The point of this feature, is to protect you, who live and are an upstanding citizen of [a country that is in the same vague "Western" political network as Apple itself] — but who have something that other nation-states want, like trade secrets — from APTs launched across the internet by cyber-privateers tacitly sponsored by those other nation-states. Under such a threat model, who cares if Apple has your fingerprint, and if the US government can get said fingerprint? If you're a US citizen and in this situation, the US government probably very likely already have a close working relationship with you, having likely tasked the NSA to work closely with you to ensure that your "key industry" company doesn't suffer any GDP-damaging attacks.