SamSuka
The Hated One
The Hated One

patreon


Episode 086 - What is exactly difference between Theranos and Apple?

Comments

You are completly right. People give actions a different name and it sounds great and isn't so bad anymore. My favorite example is lobbying. Lobbyism is another word for corruption. Of course, it sounds much nicer and not so "negatively tainted" anymore. If you would say every time: This person is corrupt and has betrayed XYZ to get money from company X, then it would often be a completely different picture. The same applies to punishments. If someone only gets a pat on the back with "Please don't do that" instead of a 400K fine due to intended data abuse of the customers, then it is seen as a trifle by the people who don't deal with such a topic on regular base.

P3r5on

Look into the AdGuard DNS feature. It’s a paid feature and it will not close all the vectors, but it’s much better than nothing. What I did is I used Settings > Privacy > App Privacy Report to profile the most used domains. Then I investigated whether those most contacted domains attribute to telemetry collection and banned them in AdGuard.

wurdfcon

I think the first step is to understand the limitations and realize what you'll never achieve on a system like the iPhone. Then move down the LINDDUN threat model - address linkability and identifiability first. Take steps to move your data to privacy preserving systems, i.e. Tutanota + SimpleLogin for email identities, Bitwarden to manage passwords, cards and online accounts, FIDO keys to secure accounts, private payment methods instead of Apple Pay, etc... Make it so that Apple can't link your different activities or identify your presence. This is a long process but it will pay out. The easiest way is to just move to GrapheneOS and you are done. If you have to stay on the iPhone, remove yourselves from the ecosystem for as many services as you can. Apple was recently caught collecting user data even if opting out of analytics and data collection. The toggles would have no effect. I would say go through all the toggles but don't rely on them because unless you jailbreak your iPhone, you can't verify what Apple is doing. And you shouldn't jailbreak your Iphone if you want to use it with personal info.

The Hated One

I know what you mean, but is the precedence then that it's okay to lie, deceive, ignore or consent and not pay workers so long as you have a working product? I don't mean to reduce to absurdity, of course it's not okay. But the difference between punishments is significant jail time vs a slap on the wrist simply because one doesn't have a working product and the other one does (although also deceptively marketed). People want to use Apple products but would they want to if Apple was equally punished for lying about them?

The Hated One

I know you say you want to explore these other issues. But for people who don’t have tremendous expertise, is there a way to use Apple devices that blocks telemetry and makes them somewhat safer? That is a question I’m trying to answer. What can I do for instance on DNS that prevents some telemetry? What can I do? I’d love to find out more. Your work is very helpful to me. Keep it up!

Richard G.

The main difference is that Apple has products that work. Theranos had no working products. That is a huge difference. Apple’s products work, and they are quite good in their way. They lie about privacy. So in that sense, they are similar to other companies who lie to their customers, but Apple creates great products and Theranos has no products. That is self-evident. But it is a poor comparison. Thanks for your thought provoking information.

Richard G.

Yes, I would say that Apple has slightly improved given their E2EE. It is certainly opt in, but those who are privacy advocates, will certainly opt into it. Yes, they still have telemetry, and yes, they still have metadata. And that is not encrypted.

No Name

Thanks for the awesome content bro! Enjoyed this episode with my coffee.

Urban Armed

Thanks for the correction there.

The Hated One

Trusting Apple with your privacy is like trusting a 13 year old with a credit card. They might have good intent but will be influenced by getting more. I will say I am impressed with Apple scrapping on device scanning and implementing E2EE for all iCloud data with the exception of contacts, mail and calendar. I’d you enable Advanced Data Security then you are responsible for your own key and your data will be locked out if you lose it or do not set a recovery contact. They are not able to hand over your iCloud data if it’s enabled, but it is an “opt in” feature. I still say use GrapheneOS with your own Nextcloud local server for the best all around privacy.

Urban Armed


More Creators