Hacker Newsnew | past | comments | ask | show | jobs | submit | more willstrafach's commentslogin

In current versions? What permission is this?


.icu, .club, and a few other gTLDs can often be found for sale at $1-2/year, so they are used by entities in need of low cost disposable domains.


yeah but this guy was already counting 80000+ domains, that is at least the same amount of money, or is there some deal if you buy a large number of domains?


That is incorrect, Corellium does not ship Apple code.


My understanding was that the copyright portion of the suit was over them doing exactly that? Maybe running it in the cloud vs shipping it, but e.g. https://techcrunch.com/2020/12/29/apples-lawsuit-against-cor... mentions iOS IPSW files.

Edit: it seems like they downloaded the file from Apple's site. The order says using the IPSW file was fair use, and that doesn't appear to depend on them downloading it vs shipping it. I don't think that makes a different. The cellebrite usage is also fair use for the same reasons (doesn't compete with Apple, transformative usage, etc)


If it had a T2, that will store the Apple ID.


1. You’re allowed to use IDFA. But users will now have to allow access, as a permission dialog will pop up first.

2. The IDFA is just a simple static UUID. It cannot do a very good job at preventing fraud. There is no way to validate anything about it or affirm that it ties to a genuine device.


1: I expect this will translate to the majority of traffic will not have IDFA available, either by apps not wanting to annoy users by asking, or users saying no.

2: On a single request, yes. But users typically make very large numbers of requests over time. The pattern of requests that you'd see from a real user looks pretty different than what you'd see from a bot.


>2

Of course they look different over time, isn't the problem here that same data can be used to do statistical analysis for other purposes than fraud prevention?


I'm responding here to willstrafach 's claim that "The IDFA is just a simple static UUID. It cannot do a very good job at preventing fraud" and wil421's earlier "Can you explain how Apple’s anti tracking measures are going to hurt small business and make fraud easier?"

But yes, of course IDFA can be used for things other than ad fraud detection.


Pager messages collected on September 11, 2001. They are also a type of communication which is transmitted without encryption.


s/is/was/

I miss the days when there was a messaging service you could buy in order to recieve text messages nationwide without transmitting your location.

RIP POCSAG


POCSAG and FLEX are still quite active, in the UK at least.


I regularly stumble on POGSAG form hospitals/ are homes/logistics places. They throw a lot of credentials around.


The list can be found here: https://support.apple.com/en-us/HT210770



Do you have a source on Apple “killing IDFA”?

My understanding is that they are going to simply show a consent dialog before allowing an app to access the IDFA, similar to what they have done for years to access other sensitive data like Contacts, Location, etc.


This exists, though not exactly as you describe: https://en.wikipedia.org/wiki/ASmallWorld


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: