Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

What do you think are the possible issues for full encryption of iCloud backups?


This is the issue with iCloud backups not being encrypted:

https://uk.reuters.com/article/us-apple-fbi-icloud-exclusive...

Not saying I agree or disagree with it, but it's something worth highlighting


News agencies get things wrong. 'Sources' are often times extremely unreliable, or don't always present the whole picture. Not that I'm absolving Apple here, just that I've been indirectly on the receiving end of 'sources' and Reuters being technically right, but very, very wrong.


One important implication of not using full encryption is that it protects users from themselves. If a user forgets their password, Apple can still unlock their data. From a security perspective, this obviously isn't ideal. But, from the perspective of the average user who has lost all of their data, this is great.


I should be given the choice to turn it on though. I understand Apple not wanting to deal with the annoying customer who forgets their password, loses everything, and blames Apple. I’ve seen enough forgotten password people while waiting at the Genius Bar to sympathize with Apple. But just because some of their customers can’t handle the responsibility doesn’t mean none of their customers should have the option. I encrypt my hard drive despite Apple’s warnings about FireVault. I understand the risk, have weighed the pros and cons, and have taken steps to mitigate the risk.


It is very typical of Apple, unfortunately, to leave out power features in order to focus on excelling at the basics. I switched to an iPhone from a rooted Android a few years ago, and while I do miss that level of control, I don't have to worry about the overhead that that type of Android device commands.


I entirely agree with this, and I expect this is what will happen over time.

But, just like with FileVault, the roll out will most likely be relatively slow and progressive.


Every big iPhone/iOS keynote I think "this is the year!", but it never happens .


This. As an example, my mother (who is over 90) got locked out of her icloud account a couple years ago, from getting unexpected password prompts on her ipad and not understanding which password was required, she entered the wrong one too many times. We had recorded our answers to the “security questions” when setting up the account, but they were not accepted either. In the end, we managed to restore access via a rather cumbersome process. No complaints about that, of course; the important part is that she did get her access back in the end.


Pressure from the FBI, according to Reuters:

https://www.reuters.com/article/us-apple-fbi-icloud-exclusiv...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: