• Re: Orphaned CodoPods are found in Apple software

    From Andrew@21:1/5 to Jolly Roger on Mon Jul 8 02:32:24 2024
    XPost: misc.phone.mobile.iphone, comp.sys.mac.system, comp.sys.mac.advocacy XPost: alt.privacy, comp.sys.mac.apps

    Jolly Roger wrote on 7 Jul 2024 02:01:51 GMT :

    Did you just try to blame Apple for third party package managers?

    Given how primitive the Apple ecosystem has recently been shown to be...

    Let me see if I understand why you rather ignorant religious
    fundamentalists Apple nutjobs completely excuse Apple for this shockingly
    huge security hole, Jolly Roger, which has existed for a very long time,
    even as Apple only touts safety and security - Apple never tests for it.

    To wit...
    1. You likely understand that this hole has existed for a decade.
    2. You perhaps realize Apple did not find it - security researchers did.
    3. You even maybe realize that three million apps are said to be exposed.
    4. You may realize one of the three CVE's allows complete & full control.
    5. You may realize that essentially every single Apple owner is exposed.
    6. You may even understand that's billions of exposed Apple devices.
    7. And you may be aware that estimates are that it's three million apps.
    8. Every single one of which is installed ONLY on Apple devices alone.
    9. Meaning it's purely the Apple ecosystem which allowed this to happen.

    Given all those facts above, you then excuse Apple as you say that Apple
    should tout this imaginary safety and security that, you say, Apple doesn't even bother to test for (which they could have done, since others did it)?

    You're fine with this primitive ecosystem being touted as safe & secure,
    when it's not (and worse, you say Apple shouldn't even care to test it)?

    Really?

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From Jolly Roger@21:1/5 to Andrew on Mon Jul 8 14:59:27 2024
    XPost: misc.phone.mobile.iphone, comp.sys.mac.system, comp.sys.mac.advocacy XPost: alt.privacy, comp.sys.mac.apps

    On 2024-07-08, Andrew <[email protected]> wrote:
    Jolly Roger wrote on 7 Jul 2024 02:01:51 GMT :

    Did you just try to blame Apple for third party package managers?

    Given how primitive the Apple ecosystem has recently been shown to be...

    Just as "primitive" as all of them:

    https://www.itweb.co.za/article/open-source-vulnerabilities-remain-unpatched-for-decades/wbrpO7gPwGdMDLZn

    --
    E-mail sent to this address may be devoured by my ravenous SPAM filter.
    I often ignore posts from Google. Use a real news client instead.

    JR

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From Alan@21:1/5 to Andrew on Mon Jul 8 12:45:41 2024
    XPost: misc.phone.mobile.iphone, comp.sys.mac.system, comp.sys.mac.advocacy XPost: alt.privacy, comp.sys.mac.apps

    On 2024-07-07 19:32, Andrew wrote:
    Jolly Roger wrote on 7 Jul 2024 02:01:51 GMT :

    Did you just try to blame Apple for third party package managers?

    Given how primitive the Apple ecosystem has recently been shown to be...

    Let me see if I understand why you rather ignorant religious
    fundamentalists Apple nutjobs completely excuse Apple for this shockingly huge security hole, Jolly Roger, which has existed for a very long time,
    even as Apple only touts safety and security - Apple never tests for it.

    To wit...
    1. You likely understand that this hole has existed for a decade.

    In an open source tool for which Apple played no role.

    2. You perhaps realize Apple did not find it - security researchers did.

    Is Apple the world's software police now?

    3. You even maybe realize that three million apps are said to be exposed.

    Interesting construction: "are said to be".

    4. You may realize one of the three CVE's allows complete & full control.

    Cite, please!

    5. You may realize that essentially every single Apple owner is exposed.

    Nope. I don't realize that... ....because no one has shown that to be
    the case..

    6. You may even understand that's billions of exposed Apple devices.

    Same comment.

    7. And you may be aware that estimates are that it's three million apps.

    Really? Where's that from?

    8. Every single one of which is installed ONLY on Apple devices alone.

    Which is irrelevant to the actual question of how many "Pods" that are unclaimed are used in actual apps.

    9. Meaning it's purely the Apple ecosystem which allowed this to happen.

    Ummmmmm... you sure about that?

    No other development environment uses dependency management tools?


    Given all those facts above, you then excuse Apple as you say that Apple should tout this imaginary safety and security that, you say, Apple doesn't even bother to test for (which they could have done, since others did it)?

    You're fine with this primitive ecosystem being touted as safe & secure,
    when it's not (and worse, you say Apple shouldn't even care to test it)?

    Really?

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From Andrew@21:1/5 to Jolly Roger on Mon Jul 8 20:51:23 2024
    XPost: misc.phone.mobile.iphone, comp.sys.mac.system, comp.sys.mac.advocacy XPost: alt.privacy, comp.sys.mac.apps

    Jolly Roger wrote on 8 Jul 2024 14:59:27 GMT :

    Did you just try to blame Apple for third party package managers?

    Given how primitive the Apple ecosystem has recently been shown to be...

    Just as "primitive" as all of them:

    It's no longer shocking you are completely unaware that cocoa pods isn't
    used in Windows or Linux, Jolly Roger, and the fact you claim it is shows
    how blissfully ignorant you strange Apple religious nutcase zealots are.

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • From Alan@21:1/5 to Andrew on Mon Jul 8 13:53:50 2024
    XPost: misc.phone.mobile.iphone, comp.sys.mac.system, comp.sys.mac.advocacy XPost: alt.privacy, comp.sys.mac.apps

    On 2024-07-08 13:51, Andrew wrote:
    Jolly Roger wrote on 8 Jul 2024 14:59:27 GMT :

    Did you just try to blame Apple for third party package managers?

    Given how primitive the Apple ecosystem has recently been shown to be...

    Just as "primitive" as all of them:

    It's no longer shocking you are completely unaware that cocoa pods isn't
    used in Windows or Linux, Jolly Roger, and the fact you claim it is shows
    how blissfully ignorant you strange Apple religious nutcase zealots are.

    <https://vcpkg.io/en/>

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)