4 ms·
I suspect things like this won't happen on their primary apps, but Facebook _has_ already done this on iOS with their Onavo VPN app. They incentivized people (i
by jackson1442 3y ago
I suspect things like this won't happen on their primary apps, but Facebook _has_ already done this on iOS with their Onavo VPN app. They incentivized people (including teenagers) to sideload the Onavo VPN app which would intercept their network traffic for "research" in exchange for a $20 gift card every month.
This was done using Facebook's enterprise developer certificate, which allows them to sign apps for internal use - Apple revoked the certificate as it was a violation of ToS to use it externally as they were.
https://techcrunch.com/2019/01/30/apple-bans-facebook-vpn/ https://techcrunch.com/2019/01/30/apple-bans-facebook-vpn/
- hnbear 3y agoThanks - yes, this is what I mistakenly referenced as Test Flight side-loading. It was the enterprise cert, not Test Flight. And yes, they already tried it it as a way around controls.