5 ms·
There is absolutely nothing malicious that has been shown.
by grooot 4y ago
There is absolutely nothing malicious that has been shown.
- vorpalhex 4y agoScanning your images and followong links in them without user consent is pretty malicious.
- grooot 4y agoWhat are you talking about? It sounds like you don’t understand what is going on here. Perhaps you think some data is going to Apple?
- vorpalhex 4y agoHaving read the article I entirely understand what is going on here. Do you expect your images to be scanned on disk and the links in them to be opened, leaking your ip? What if you do something as simple as screenshot an address bar in a browser? Save a menu QR code? Now you are sending out traffic, accidentally, with your full ip to random places due to a service Apple inserted that you have no knowledge of.
- grooot 4y agoDo you seriously believe that your IP is private? Do you know every site that has received your ip address? I think the honest answer to both of these questions has to be no.
- _justinfunk 4y agoI think the idea is that it is a way for your IP address to leak without a user-initiated request. I could send you a QR code that I've setup specifically to get your IP address.
- grooot 4y ago
- vorpalhex 4y agohttp://letstrack.you/?id=grooot http://letstrack.you/?id=grooot Throw that to disk for me so I can map where you are, where you go, when your machine is up and how often your search indexing runs.
- grooot 4y ago
- dev_tty01 4y agoI don't know, but I wouldn't be surprised if this is being done via Apple's private relay. If so, your IP address is not being leaked to anyone.
- martin_a 4y agoThe thread says she got an information that somebody requested the URL and it was her own IP address. So no private relay here.
- flyinghamster 4y agoIf you have the misfortune of living in a country where accessing $BANNED_WEBSITE can get you a nighttime visit from the local goon squad, this could well get you tortured or killed.
- grooot 4y ago
- deleted 4y ago[deleted]
- cycomanic 4y agoThere have been reported cases of using qr codes for phishing/malware distribution. Previously they still required users to actually use a qr code scanner, now I need to simply glue some qr code at a famous tourist photo spot and bang lots of people accessing the site (does the indexer execute js?).
- JimDabell 4y agoHow is it malicious? “Malicious” doesn’t mean “unwanted behaviour”. You are saying that Apple intend to do harm with this. How?
- smoldesu 4y agoOn the one hand, I get where you're coming from and I agree that this specific example isn't malicious (as I've highlighted elsewhere in the thread) ...on the other hand, this is the exact same technology Apple lets China use to hunt down their religious and political minorities. Maybe they don't intend harm to Americans, but one thing is for certain; Apple doesn't treat privacy as a human right. If you can live with that, then more power to you.
- 0xFEE1DEAD 4y agoSeems a bit like a witch hunt to me. It's your PC executing the request. Nowhere does it say this data gets send to apple servers.
- JimDabell 4y ago> this is the exact same technology Apple lets China use to hunt down their religious and political minorities. QR codes? HTTP requests? I’m not sure what technology you’re referring to. > one thing is for certain; Apple doesn't treat privacy as a human right. They have put a huge amount of effort into privacy technology; more than any comparable company I can think of. I don’t think your certainty is even remotely justified.
- smoldesu 4y agoI agree. The problem is that it's rather annoying, and there are many such behaviors on MacOS (many of which you can't disable). Stuff like this is another good example of esoteric, almost curious behavior taking place without any input or prompt from the user. It's really absurd stuff.
- grooot 4y ago