zlacker

[return to "Apple Could Kill CAPTCHAs with Private Access Tokens"]
1. stevew+e3[view] [source] 2022-06-15 11:19:37
>>matthe+(OP)
I posted a comment a few days ago here (https://news.ycombinator.com/item?id=31670689#31671551) about my views about this “feature”, which I’ll repeat verbatim here. Needless to say, it’s something I don’t like.

Original comment follows:

In my view, this would just DRM-ize everything on the web. Of course, Cloudflare and Fastly don't talk about this much, and Cloudflare keeps assuring you'll still get captchas if device attestation fails or is unsupported. But realistically, once all Microsoft, Google and Apple implement it in their devices, there isn't much of a reason to keep accepting non-attested devices. You can already see where this is starting to go - if you're using Linux/BSD or another niche OS, congratulations, you can't submit forms any more. And since device verification would become extremely cheap to perform this way, you'd also see websites protected entirely by this tech, effectively locking out Linux/BSD users. The Cloudflare article also talks about how, at least in the case of Apple, they'd run something like a posture assessment to confirm that your device components are genuine. I can also see this new tech locking out users of non-OEM repairs. This is a much bigger deal than what it seems like on the surface, and I'm genuinely scared about how this one simple move dwarfs all of the "evil" things that big tech has done so far.

◧◩
2. polote+si[view] [source] 2022-06-15 13:10:12
>>stevew+e3
Even at Apple, plenty of developers run on Linux. I would be surprised - after resisting to use OSX - that they will be ok to create a system that will prevent them from using linux
◧◩◪
3. wonder+Ak[view] [source] 2022-06-15 13:21:41
>>polote+si
Apple has 12k+ engineers, I doubt they won’t find a few thousands to just do it.
[go to top]