▲ 198 ▼ Your Computer Isn't Yours: Apple stores every program Mac users run, and when and where they ran it (sneak.berlin) submitted 2 years ago* (last edited 2 years ago) by mozz@mbin.grits.dev to c/technology@beehaw.org 60 comments fedilink hide all child comments Edit: Guys I didn't write the headline; the subtitle that I added, I've now fixed tho Edit: Also, the information about there being no escape is out of date -- here's a quick guide to how to fix the problem in the modern day
[–] HeartyBeast@kbin.social 23 points 2 years ago (4 children) This is from 2020. You absolutely can use Little Snitch or a similar firewall to block this traffic. https://eclecticlight.co/2021/02/23/how-to-run-apps-in-private/ permalink fedilink source hideshow 8 child comments replies: [–] octopus_ink@lemmy.ml 23 points 2 years ago* (last edited 2 years ago) (1 child) This is from 2020. You absolutely can use Little Snitch or a similar firewall to block this traffic. We agree how sinister and dystopian it is to need to work against your hardware/os vendor for something like this though, right? Shutup 10 exists, but that doesn't make it OK that Windows users have to continuously be on guard for MS to try snooping on them, either. permalink fedilink source parent hideshow 2 child comments replies: [–] sadreality@kbin.social 2 points 2 years ago Spending time to this is waste of life, it used be you setup the PC and it was good, now it is maintenance. I could not justify it any longer... made that switch. permalink fedilink source parent [–] adespoton@lemmy.ca 6 points 2 years ago* Can you though? LS now operates in user mode, which means it can no longer block traffic sent to Apple via a kernel thread. It’s all a bit pointless though, as a LOT of hardware now calls home as well, and it doesn’t matter what OS to run on top of it unless you’re running something like TempleOS. Vanilla Linux is not going to protect you by itself. And if you’re using a repository system for software updates, that’s going to be reporting your software too — and many web browsers also report the URLs you go to (or even consider going to) and what extensions you have loaded. But that article points at a solution for macOS users: it’s the certificates that are being checked. Any non-bog-standard software I run is not notarized or signed, and it functions just fine and has nothing to send back to Apple’s servers. First time I run it I need to right click and select Open to run the app, and this bypasses the entire signer system. permalink fedilink source parent [–] mozz@mbin.grits.dev [S] 3 points 2 years ago Added in an edit permalink fedilink source parent [–] Zworf@beehaw.org 1 point 2 years ago Little Snitch Little Snitch won't work because they use the Apple-blessed content filter which apparently doesn't allow blocking this. Pointing it to localhost in the hosts file does work, as indicated in that article. permalink fedilink source parent
[–] octopus_ink@lemmy.ml 23 points 2 years ago* (last edited 2 years ago) (1 child) This is from 2020. You absolutely can use Little Snitch or a similar firewall to block this traffic. We agree how sinister and dystopian it is to need to work against your hardware/os vendor for something like this though, right? Shutup 10 exists, but that doesn't make it OK that Windows users have to continuously be on guard for MS to try snooping on them, either. permalink fedilink source parent hideshow 2 child comments replies: [–] sadreality@kbin.social 2 points 2 years ago Spending time to this is waste of life, it used be you setup the PC and it was good, now it is maintenance. I could not justify it any longer... made that switch. permalink fedilink source parent
[–] sadreality@kbin.social 2 points 2 years ago Spending time to this is waste of life, it used be you setup the PC and it was good, now it is maintenance. I could not justify it any longer... made that switch. permalink fedilink source parent
[–] adespoton@lemmy.ca 6 points 2 years ago* Can you though? LS now operates in user mode, which means it can no longer block traffic sent to Apple via a kernel thread. It’s all a bit pointless though, as a LOT of hardware now calls home as well, and it doesn’t matter what OS to run on top of it unless you’re running something like TempleOS. Vanilla Linux is not going to protect you by itself. And if you’re using a repository system for software updates, that’s going to be reporting your software too — and many web browsers also report the URLs you go to (or even consider going to) and what extensions you have loaded. But that article points at a solution for macOS users: it’s the certificates that are being checked. Any non-bog-standard software I run is not notarized or signed, and it functions just fine and has nothing to send back to Apple’s servers. First time I run it I need to right click and select Open to run the app, and this bypasses the entire signer system. permalink fedilink source parent
[–] Zworf@beehaw.org 1 point 2 years ago Little Snitch Little Snitch won't work because they use the Apple-blessed content filter which apparently doesn't allow blocking this. Pointing it to localhost in the hosts file does work, as indicated in that article. permalink fedilink source parent