Now that Congress have chosen to allow ISPs to sell your data, many people are turning to VPNs to help. But you may not know how VPNs work, or how a VPN can help you browse the web safely. In this article Andrew Orr explores the technical details and gives you our VPN recommendations.
Security
You Can Opt Out of Sharing iCloud Analytics in macOS Sierra 10.12.4
Apple quietly added a new privacy control tool in macOS Sierra 10.12.4 that allows you to opt out of sharing iCloud Analytics data. Bryan Chaffin shows you how to control what you send so you can decide.
macOS: Creating an App-Specific Password for iCloud
When you first enable two-factor authentication in iCloud, you might notice some of your apps appear broken. This is because those apps don’t support 2FA, and require app-specific passwords. Follow along with Jeff Butts as he demonstrates how to generate and manage your app-specific passwords.
Password Protection Comes To Pages, Numbers, Keynotes on iOS, Mac, iCloud
Apple updated its suite of iWork apps across iOS, macOS and iCloud web apps. The feature that stands out the most is the ability to add password protection to your documents using Touch ID. Andrew Orr takes us through the features.
UK Anti-encryption Push, Woz at Startup World Cup - TMO Daily Observations 2017-03-27
There’s a new government call to for tech companies to let law enforcement bypass our security and encryption, but this time it’s from the United Kingdom. Bryan Chaffin and Jeff Butts join Jeff Gamet to look at the ramifications if the U.K. forces the issue, plus Bryan fills us in on Steve Wozniak’s presentation at Startup World Cup.
App Store Quality Issues, Change Your iCloud Password - TMO Daily Observations 2017-03-24
Apple’s App Store has loads of apps, but that doesn’t mean they’re all great or easy to find. Dave Hamilton and the Maccast’s Adam Christianson join Jeff Gamet to discuss the quality issues they’re seeing on the App Store, plus they explain why changing your iCloud password right now is a good idea.
Pwn2Own Hackers Found Two Safari Zero Day Exploits
Yesterday was the annual Pwn2Own hacking contest, and also marks the contest’s 10th anniversary. Hackers compete in challenges to find security holes in popular software and mobile devices. This year, two Safari zero days were found by the white-hat hackers.
Android Insecurity, Messaging Anachronisms, and Legacy Apple Auctions - ACM 402
Bryan and Jeff try and wrap their heads around a world where malware is being installed on Android devices in the supply chain, before customers even get the devices. They also take a trip into the anachronistic world of sealing wax and sealing wax stamps, as well as the fascinating world where 40 year-old Apple I computers are auctioned for hundreds of thousands of dollars.
Apple Big Security Hire, Twitter and Two-factor Authentication - TMO Daily Observations 2017-03-15
It’s security time on TMO’s Daily Observations. Kelly Guimont and John Martellaro join Jeff Gamet to talk about Apple hiring security specialist Jonathan Zdziarski, plus they talk about why two-factor authentication is so important. They also talk about what an awesome asset Tom Negrino has been to the Apple community.
Privacy and Encryption, HP's Push for Apple's Pro Customers - TMO Daily Observations 2017-03-09
FBI Director James Comey absolute privacy doesn’t exist in the United States. Dave Hamilton and John Martellaro join Jeff Gamet to look at what that means for privacy and security through encryption, plus John tells us why HP is targeting Apple’s Pro users with its new computers.
Apple Already Patched Most CIA Hacks From Wikileaks Report
According to the Wikileaks Vault 7 information dump, the CIA has been hard at work developing hacks to get into the data on our iPhones. Most of the exploits listed in the report, however, are already patched and Apple is working on taking care of the remaining few.
Wikileaks, CIA, and iPhone Hacks - TMO Daily Observations 2017-03-08
With the Wikileaks report out saying the CIA developed hacking tools to get into our iPhones, John Martellaro joins Jeff Gamet to look at Apple’s security measures for our mobile devices. They also look at the negative message Apple is sending customers by not giving us solid information about the Mac, and Kelly Guimont drops by for a few minutes, too.
iOS 10 Spying Possible With iCloud Backups
A scary piece from Motherboard brings to attention a tool for iOS 10 spying. A company called Mobistealth sells a special monitoring tool that can pull data from iCloud backups. And the device doesn’t need to be jailbroken to work.
iPhone 8: Goodbye Home Button, Hello Function Area
The latest in the steady stream of iPhone 8 reports says the familiar Home button with Touch ID is going away and in its place we’ll get the Function Area. That’s fancy talk for a space at the bottom of the iPhone screen for a row of virtual buttons.
Deleted Browser History From Safari Gets Saved To iCloud [Updated]
In unnerving news, Forbes reports that your web browsing history in Safari gets stored in iCloud, even if you deleted it. Using a special tool, a security analyst accidentally discovered an iCloud record called “tombstone,” and this is where Apple stores the deleted history.
Hackers Post Cellebrite's Smartphone Cracking Tools Online
A hacker dumped 900GB of hacking tools and data used by Cellebrite. The cache of data is on Pastebin, for now, at least. Cellebrite is an Israeli security company that came to public prominence when the FBI used its services to hack into the San Bernadino shooter’s iPhone.
Goodbye iPhone Activation Lock Checker, Presidential Immigration Ban and Apple - TMO Daily Observations 2017-01-30
Apple shut down its iPhone Activation Lock Status checker without any explanation, which raises a few questions. Bryan Chaffin and Dave Hamilton join Jeff Gamet to look at what may be behind Apple’s decision, plus they look at what impact the presidentail executive order banning immigration from certain countries could have on Silicon Valley companies such as Apple.
Apple Patches 8 Security Flaws in Apple TV with tvOS 10.1.1
Apple released tvOS 10.1.1 for Apple TV (4th Generation) on Monday. Apple’s general release notes specify only that, “This update includes general performance and stability improvements.” The Security Content document for the update details eight security flaws that were patched.
Apple Releases Sierra 10.12.3 Update with Fixes for PDF, MacBook Pro with Touch Bar, Security, More
Apple shipped macOS Sierra 10.12.3 on Monday. The update includes some relatively minor bug fixes, an issue with Adobe Premiere Pro on MacBook Pro with Touch Bar, a PDF encryption fix, and more. The update also includes fixes for eight security flaws.
FCC Net Neutrality, Backdoor Hacks, and New Apple Products - ACM 394
Outgoing FCC Chairman Tom Wheeler made a plea for the incoming administration to protect Net Neutrality. Bryan and Jeff discuss whether that plea is likely to fall on deaf ears [spoiler: yes, it will]. They also discuss the implications of the Cellebrite hack, and the fact that Apple released two product updates this week.
Managing Photos, Fixing Your Apple Watch & Resolving Network Issues – Mac Geek Gab 640
Migrating Photos to a new Mac, managing and syncing your family’s photos, speeding up iOS Spotlight searches, fixing an unresponsive Digital Crown on your Apple Watch and resolving website loading delays are just some of the things you’ll learn from your two favorite geeks in this week’s show! Listen as Dave Hamilton and John F. Braun answer your questions and solve your problems.
Vine's Demise, Avoiding Weak Passwords - TMO Daily Observations 2017-01-17
The video sharing social network Vine shut down today, and is being reborn as a Twitter feature. Bryan Chaffin and the Maccast’s Adam Christianson join Jeff Gamet to look at the state of social networks, plus they dive into the importance of strong passwords.
iOS Developers Get More Time To Use ATS
At its World Wide Developers Conference (WWDC) this year, Apple announced that all apps on its platform must support App Transport Security (ATS). The company told developers on Friday, however, that it is extending that deadline.
Congressional Encryption Working Group Backs Encryption, Thoughts on CES - ACM 390
The Congressional Encryption Working Group has issued a year-end report on encryption that finds weakening encryption would harm the national security interests of the United States. Bryan and Jeff discuss the implications, as well as a new request from the Turkish government asking Apple to unlock an iPhone 4s owned by an assassin. They cap the show with a preview of CES expectations.