The difference is that on the iPhone, when they see a class of bad actors or a real threat model that they didn’t see before, they can tighten the sandbox much easier than they can on the Mac. The zoom fiasco could be prevented on Mac entirely just by clicking on an option that restricts apps from running in the background.
I’m not saying that the tool shouldn’t exist. I’m saying that the tool isn’t enough. I If Russia found the same hypothetical security hole and released the app to the store and Apple found out that a non privileged app could track your location without you giving it permission, it should fix the hole.
Comments
The difference is that on the iPhone, when they see a class of bad actors or a real threat model that they didn’t see before, they can tighten the sandbox much easier than they can on the Mac. The zoom fiasco could be prevented on Mac entirely just by clicking on an option that restricts apps from running in the background.
So what? - nobody has yet created an unassailable sandbox, and so these tools are needed.
Saying ‘it’s Apple’s responsibility to make the sandbox secure, is magical thinking’, which is why they need these tools.
As to the Zoom fiasco - who should have clicked on that option?
I’m not saying that the tool shouldn’t exist. I’m saying that the tool isn’t enough. I If Russia found the same hypothetical security hole and released the app to the store and Apple found out that a non privileged app could track your location without you giving it permission, it should fix the hole.
Of course it should. So what? We know that won’t make it unassailable, so they still need the other tools.