logoalt Hacker News

fg137 • today at 1:10 PM • 2 replies • view on HN

> Obviously I should have — and will be — using a VPN going forward

That's my takeaway from the article. I have trouble understanding how the author managed to extrapolate all these things about Apple from an obvious oversight on their part. I would never write a 3,000-word article about how bad someone else is because of an issue I caused for myself.

Software WILL have bugs and vulnerabilities, regardless of whether it's an OS or user application, whether it's from Apple or another company, or the update frequency/mechanism. If you can't even follow the most basic security practice on your part, you simply don't have any authority to discuss security otherwise.


Replies

user43928 • today at 4:22 PM

Disagree.

Apple's remote access feature, that you would make remotely accessible for obvious reasons, apparently had a critical authentication bug.

Apple did not ship a security patch for this, allowing the vulnerability to be exploited a week later despite "automatically install security updates" being on.

Yes, OP could have prevented this by putting an additional VPN authentication layer in front of the Mac's built-in remote access.

That doesn't excuse the mistakes on Apple's part.

➕ show 1 reply
someguyiguess • today at 2:35 PM

> I would never write a 3,000-word article about how bad someone else is because of an issue I caused for myself.

Welcome to hacker news!

➕ show 1 reply