Another instalment of HN thread where people try their best to pretend that "security" does not come with "enforced, ideally at hardware level, inability to run random code" for 99% of phone users.
Here a tip: you won't solve the problem of security by just whining about corporate interests (which is a real concern) and NOT proposing a better solution that works for an average tech illiterate, very socially engineerable person trained to ignore every warning screen. And no root switch is not that solution because it will be flipped on day 1.
Yes, and 99% of it gets caught by walled gardens. That's why granny is fine on ios. She will get her data siphoned by shady apps but she will not install a backdoor from the app store. After google locks it down then maybe on android too.
Granny can absolutely install a backdoor from the appstore, there's lots of backdoors on the app store. You can even install a backdoor just from the web browser, feel free to do some research into Pegasus.
But it doesn't even matter, because ultimately Granny can download the Apple Approved (tm) anydesk app and the hacker can remote control her phone. So.
The appstore is not secure, I don't know who lied to you and told you it is. You think Apple reads the code? Fuck no. They just ask the dev "is this secure?". The dev answers "yes", obviously, and that's the entire review process.
Meta was exfiltrating cookies from your browser to their app using an exploit in Safari. They could've taken your bank session and drained your accounts, if they wanted. Luckily they were very kind and only used their malware to sell you shit.
Facebook is a big app with lots of visibility. Now do the other 100,000 apps on the app store.
You expect random people like your baker next door to be security experts who can beat top notch hackers. It just doesn't work like that. Even you may not be as good as you think is required to protect yourself in the wild internets
Also many of them will be your family (if you have it). Maybe even those from whom you would have inherited something if only they were not hacked
Here a tip: you won't solve the problem of security by just whining about corporate interests (which is a real concern) and NOT proposing a better solution that works for an average tech illiterate, very socially engineerable person trained to ignore every warning screen. And no root switch is not that solution because it will be flipped on day 1.