Reply to post: Re: Is this really about "security"?

Apple's privacy pledges: We sent dev checks over plain HTTP, logged IP addresses. We bypass firewall apps

Marty McFly Silver badge
Facepalm

Re: Is this really about "security"?

Using hash values to determine reputation is exactly what endpoint security vendors have been doing for years. How old is the code? How widespread is it? The overt purpose is to block new & emerging code from running (ie: polymorphic malware).

The difference is endpoint security vendors tell you what they are doing and why. Apple, on the other hand, is taking the approach of "oh, damn, you weren't supposed to notice". That betrays their privacy marketing message and undermines the trust of their brand.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon