The developer is making unproven accusations. That, alone, is enough for me to say he can go suck an egg. To claim Apple "covered up" one of the bugs, without proof, is very unprofessional and not worthy of credit.
Not sure, I suspect any developer who has not returned it will probably have their dev account flagged internally.I was just thinking about this recently. Did Apple ultimately get all of those devices back?
If by loan you mean put down a non-reimbursed deposit or later low ball reimbursement to terminate the program in under a year then sure your definition of “free” differs from the English dictionary. 😝In the end Apple loaned the DTK for free to devs they got full reimbursement for that. But against dev feedback to issues/bugs, its sheer luck you get acknowledged unless what you are reporting concerns something they are working on at that time. This having to make it public to get their attention is not helping them, even if it's typical of larger companies.
The developer is making unproven accusations. That, alone, is enough for me to say he can go suck an egg. To claim Apple "covered up" one of the bugs, without proof, is very unprofessional and not worthy of credit.
Tokarev first contacted Apple about these bugs between March 10 and May 4, so Apple has had months to issue patches, but it's worth noting that several security researchers and Tokarev himself have confirmed that the bugs are not highly critical as exploiting them would require a malicious app to first receive App Store approval.
Apple has not been a leading tech company for a long time. They are just about marketing a so-so product to kids that don't know any better to make the big bucks.Gotta up your game on security, Apple. Security == Privacy.
I don't have much tolerance for being aware of serious flaws and not acting on them immediately.
I don’t know, I mean this IS a non-critical bug. Maybe… jsut maybe Apple DID cover it up because they were like “NAAAAAH, iOS ONLY HAS CRITICAL BUGS! We can’t let the world find out that Apple ALSO has NON-CRITICAL bugs. We’d be laughed out of the CRITICAL BUGS ONLY Sunday luncheons!!”The developer is making unproven accusations. That, alone, is enough for me to say he can go suck an egg. To claim Apple "covered up" one of the bugs, without proof, is very unprofessional and not worthy of credit.
The import of the issue that the developer states is “not highly critical”? Shouldn’t a CEO-level response be expected for something more like a highly critical bug? OR… I don’t know, at least… just plain… critical?Given the import of the issue itself and the attention it has received, this is an issuer deserving of a CEO-level response with an apology and an action plan to fix the issue.
I guess it’s only a matter of time when they realize that anybody on the forums, feedbacks, community discussions, etc can potentially go full nuke on social media, in which case I hope they start getting onto things before it comes to that…This is most companies anymore these days
This I find crazy…In a good place? Not so sure about that. Sounds like they haven't even looked into trying to fix them yet. A developer in the Jailbreak arena saw his post and created a patch for the jailbreak community within a day or two. How ironic.
Apple can't do the same with their resources? Hmm.
What you indirectly suggest here is dangerous and a common mistake.Let’s see, bugs they are investigating but don’t have a solution is better that having an open door to flaws like Android that these same security folks clearly don’t hold Google to the same standard. On more than one instance there have been multiple major flaws that went years unpatch and when they were to deep they just stopped support of after two years. Imagine to stink if instead of repairing it they said, instead of 5-6 year of support like normal, we are going to just start over at 2 year right now. Even though most devices are stuck on the old OS
The import of the issue that the developer states is “not highly critical”? Shouldn’t a CEO-level response be expected for something more like a highly critical bug? OR… I don’t know, at least… just plain… critical?
If not, I’ve submitted a BUNCH of “not highly critical” bugs as well. I’ll be expecting my CEO-level response any day now!
This is most companies anymore these days
Thank you. Aurotocorewct gwts me a gain.Okay. Pretty sure they edited their message but if not then my bad. The rest of my statement still holds true.
And since we are nitpicking: you’re* not your
Apple needs to greatly improve on their interaction with all developers and bug bounty participants.No question that Apple needs to greatly improve on their interaction with bug bounty participants.
I do. Exploits can put a lot of people in danger.and i don't even blame the hackers. finding these takes a lot of time and skill.
Isn‘t it a bit extreme to hold a congress hearing over how a company handles a bug bounty program?At this point I’d be ok with congress pulling apple’s CEO, CTO and CSO in for a hearing.
Apple or the Unicode consortium?Apple is busy creating new emojis, no time to fix bugs.
Hot take! If that’s how you feel, I don’t understand why you are spending time on an Apple rumor web siteThey are just about marketing a so-so product to kids that don't know any better to make the big bucks.
You are making not just unproven, but demonstrably wrong accusations:The developer is making unproven accusations.
i've been out of it for a while now but untethered jailbreaks used to be worth a million. probably more now.
You are making not just unproven, but demonstrably wrong accusations:
The developer has proven his point by publishing these exploits, and he would be in really deep **** if he hasn't hadcontacted Apple upfront.
Just wanted to quote this in bold, since it's the sort of thing people keen on criticizing tend to tune out:
I'm not saying Apple did everything right here, but I think this does put things in perspective.