Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Measures like SIP force application developers to create workarounds that compromise system security even more. Remember the recent Zoom vulnerability where they created a special service to autoupdate Zoom? If the system is too restrictive, developers will try to punch holes in it to accomplish what they need.


> Measures like SIP force application developers to create workarounds that compromise system security even more. Remember the recent Zoom vulnerability where they created a special service to autoupdate Zoom? If the system is too restrictive, developers will try to punch holes in it to accomplish what they need.

That wasn't related to SIP, so I don't think we can just throw random unrelated security issues against SIP to justify it being a bad thing.

Bedsides, is the moral of the Zoom story really that application Developers should be given unfettered access to the OS and the freedom to do whatever they want? It sounds like the opposite - an example of exactly why security has to be built into the OS and can't be left to companies like Zoom.


Those who want security over performance will get neither security nor performance.


I for one am really really glad zoom is unable to mess with the rest of the macos system…




Consider applying for YC's Winter 2026 batch! Applications are open till Nov 10

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: