Skip to main content

The level of Mac malware is not acceptable, says Apple’s Craig Federighi at Epic trial

The level of Mac malware is not acceptable, says Apple’s Craig Federighi at Epic trial

/

Federighi said his own family members have encountered malware on macOS

Share this story

Key Speakers At The Apple Worldwide Developers Conference (WWDC)

The antitrust case between Apple and Epic continued today, and it brought Craig Federighi, Apple’s senior vice president of software engineering, to the stand. Federighi’s mission was pretty clear from the outset: to extol the security benefits that come with iOS’s walled-off ecosystem and warn of the dangers that would come with breaking the App Store model.

But in building that argument, Federighi also made some surprisingly blunt concessions about security on macOS.

“If you took Mac security techniques and applied them to the iOS ecosystem, with all those devices, all that value, it would get run over to a degree dramatically worse than is already happening on the Mac,” Federighi said in the testimony. “And as I say, today, we have a level of malware on the Mac that we don’t find acceptable and is much worse than iOS.”

Federighi made the claim as part of a broader argument for why iOS could not adopt the same software model as macOS, which allows for alternate software sources like the Epic Games Store. But in making the case for iOS security, the software chief ended up painting a bleak picture of security on the desktop platform. The full exchange is presented in context below:

Judge Rogers: There are multiple stores on the Mac. So, if that can happen on the Mac, why should we not allow the same stores to exist on the phone?

Craig Federighi: Yeah, it’s certainly how we’ve done it on the Mac and it’s regularly exploited on the Mac. iOS has established a dramatically higher bar for customer protection. The Mac is not meeting that bar today. And that’s despite the fact that Mac users inherently download less software and are subject to a way less economically motivated attacker base. If you took Mac security techniques and applied them to the iOS ecosystem, with all those devices, all that value, it would get run over to a degree dramatically worse than is already happening on the Mac. And as I say, today, we have a level of malware on the Mac that we don’t find acceptable and is much worse than iOS. Put that same situation in place for iOS and it would be a very bad situation for our customers.

Federighi also cast the difference between the two platforms in unusual terms, describing the desktop platform as something akin to a car. “If operated correctly, much like that car, if you know how to operate a car and obey the rules of the road and are very cautious, yes,” he said when asked directly whether macOS is safe. “If not, I’ve had a couple of family members who have gotten some malware on their Macs.” macOS allows software to be downloaded and installed from the web, but Apple advises customers that restricting this functionality to the App Store is “the most secure setting.”

In contrast, Federighi presented iOS as a child-safe version of the less restricted macOS. “With iOS, we were able to create something where children — heck, even infants — are able to operate an iOS device and be safe in doing so. It’s really a different product,” Federighi said.

Federighi’s testimony comes in the final days of the trial, with much of the remaining time devoted to testimony from Apple executives. CEO Tim Cook is expected to take the stand on Friday, with closing statements from both sides given on Monday.

Today’s Storystream

Feed refreshed 43 minutes ago Yes, it happened again.

T
Thomas Ricker43 minutes ago
Pausing Starlink RV subscriptions is a great cost-saving feature.

Starlink can be expensive, but for me, paying an average price of €53/mth this year for fast internet from the remote beach where I work and play during the summer is totally worth it (read my review here). When my Starlink RV service is active, it costs €105 each month. But autumn is approaching so I’m closing my surf shack and pausing my subscription until April. With any luck, the price will be reduced again by the time I fire it back up.


J
External Link
Jess Weatherbed7:45 AM UTC
Adobe has a $2.3 billion pot to keep Figma CEO and employees around for four years.

Forbes calls the retention package historic, with Figma CEO Dylan Field set to take home about half of the $2.3 billion earmarked as part of the acquisition by Adobe. Figma and Adobe would jointly decide what “subset of Figmates” would be entitled to the stock grants which vest in four years.

Neither Adobe nor Figma were available to speak to Forbes about the behemoth retention package, though we imagine those sharing in the riches would say “10/10, would be acquired by Adobe again.”


T
External Link
T.C. Sottek3:47 AM UTC
My Twitch streamer of the week is Reapz.

Hello, night Verge. The admins are asleep, so I’m going to post one of my favorite streams.

I spend a lot of time watching Twitch, and I’m constantly amazed by the creativity of variety streamers. Today I’m calling attention to Reapz: an Aussie who has one of the most creative technical setups I’ve seen. With a virtual soundstage and desk, he’s created the closest thing I’ve seen to a late night host on Twitch.


N
Youtube
Nilay Patel12:43 AM UTC
I want to interview the Sony party speaker team so badly.

This is like the fifth or sixth generation of these things. What are their meetings like? Do they go to frat parties to get feature ideas? Why did they go from “Mega Bass” to “Extra Bass” for the past few years back to “Mega Bass” for this one? Is this one team’s passion project or do they hire mercenary party speaker engineers? Please, someone contact me.


M
Youtube
Mitchell Clark12:18 AM UTC
“You think Big Brother is watching you on the subways? You’re absolutely right.”

New York City is planning on adding two surveillance cameras to its subway cars, around 13,000 in total. The Gothamist pointed out governor Kathy Hochul’s (frankly incredible) remarks about the move.

She said the similarity to 1984’s Big Brother is intentional. “If you’re concerned about this, best answer is don’t commit any crimes on the subways.”


J
Twitter
Jay PetersSep 20
Control’s lead designer shared video of an early build of the game with in-development graphics.

Some have criticized GTA VI’s graphics seen in the videos that leaked this weekend. But this early footage of Control shows how even some of the best-looking games use placeholder assets during development that are improved upon for a game’s final release. I’m a big fan of the boxes with “THROW ME” printed on the sides.


M
External Link
Mitchell ClarkSep 20
Satellite-to-phone service is getting closer.

The FCC has given Lynk, one of the companies competing with SpaceX, T-Mobile, and Apple, a license to operate a commercial satellite-to-mobile communication service (though currently it’s only for coverage outside the US).

Lynk will still have to find a mobile carrier to work with and get FCC approval for that specific service, but it’s now cleared an important hurdle — plus, the company’s CEO told Fierce Wireless that it’s currently “working with testing” for two US carriers.


Welcome to the new Verge

Revolutionizing the media with blog posts

Nilay PatelSep 13
E
External Link
Emma RothSep 20
Crunchyroll looks ready to dump anime voice actors who push for union deals.

Kyle McCarley, the American voice of Shigeo “Mob” Kageyama in Mob Psycho 100, posted a video to YouTube, claiming Crunchyroll refused to even discuss a Netflix-like union contract ahead of S3.

According to Kotaku, the Sony-owned service confirmed it will “recast some roles.” McCarley’s voice fits the role of Mob so well it will be missed, but the consolidation of anime streaming rights leaves fewer companies to negotiate with — or watch.


J
The Verge
YouTube’s biggest defense against TikTok: money.

The company is going to start giving creators a share of ad revenue when commercials play between YouTube Shorts. The platform’s relatively generous payments are a large part of its rich creator culture, and now we’ll find out if they’re enough to lure short-form creators away from TikTok.


E
Twitter
Signal, the encrypted messaging app, gets free promotion from Twitter’s lawyers.

Last year, Elon Musk tweeted “Use Signal,” leading to a spike in new users. Twitter’s lawyers said in a footnote in a previous filing that Musk had been messaging with investor Marc Andreessen of a16z on Signal about a Twitter investment. The problem for Twitter’s discovery process is that Signal messages can be set to auto-delete; Musk’s lawyers maintain he doesn’t ordinarily use Signal for business. Now, there’s a sealed motion that.... contains Musk’s Signal tweet. 👀


A
Alex CranzSep 20
If you’re into the minimalist PC build then Nvidia’s latest GPUs might present a problem.

Nvidia finally announced the 40-series—specifically the more expensive and more powerful 4090 and 4080. But big power means these are some big cards and that could be a problem for PC builders who prefer smaller, minimalist looks for their PCs. Builders at the /sffpc subreddit, that focuses on small form factor pc builds, are already worried.


B
The Verge
A lot of people seem to agree that lock screen widgets are one of the best new features of iOS 16.

So we put together a how-to on customizing your iPhone’s lock screen and wallpaper with widgets and design options, and even linking them to Focus modes. It’s easier than you’d think.


M
Youtube
Mitchell ClarkSep 20
Apple replaced the iPhone 14 Pro’s SIM slot with a block of plastic.

iFixit’s teardown of the iPhone 14 Pro gives us a look at what’s behind the Dynamic Island, and does a good job of demonstrating why the regular iPhone 14’s removable back glass is so nice.

We also get to see what’s taken the place of the SIM slot: a bare PCB, and a plastic spacer. So useful!


D
External Link
David PierceSep 20
Bluetooth speakerphones are an underrated accessory.

Wirecutter has a good roundup of options, which are as good for Zoom calls as advertised, but they’re also just useful in life! I use mine roughly as a desk phone, and also connect it every time we’re doing the “everyone gather around the phone to talk to Grandma” thing. I have the Jabra Speak 510, and love it.