Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.
I don't like the idea that ALL of my passwords are behind FaceID, which is a lot easier to get through.

Ideally, I want to have groups of passwords and have a user setting to allow some groups open via FaceID and others via password.

Lacking that, I have to separate the passwords between two unrelated and unconnected password managers.


Passwords is fine. Not perfect, but good enough for most people. It's the "all or nothing" approach to FaceID that I have an issue with.
Face ID is not less secure than Touch ID. Your notion that Face ID is easier to get (for the average person who isn’t an identical twin with the exact same facial proportions measured) than Touch ID is false.
 
I've been using Keychain Access for years. Super simple. But Apple has really outdone themselves with the new Password management at the OS level. Stellar implementation, although I sometimes have to manually update website domains so they are not too general. Luckily, it makes that easy, too. Passcodes are brilliant!
I liked Keychain Access for allowing custom user/pass entries and hope I don’t lose it with this new app.
 
Face ID is not less secure than Touch ID. Your notion that Face ID is easier to get (for the average person who isn’t an identical twin with the exact same facial proportions measured) than Touch ID is false.

They are both insecure as they are not secrets. They are convenient biometric proxies for secrets.

See my post above.
 
I completely agree with this one.

Recently I got so utterly hammered on cocktails in Malta that I was unconscious. A friend managed to unlock my phone with FaceID and work out where I was staying in AirBnB and order a Bolt taxi back to it on my phone without my interaction or attention.

I literally just realised reading your post that he had access to everything that I have as does anyone else who can unlock my phone. For example if I've been clonked on the head or otherwise incapacitated. That attack surface area is completely untenable.

I am seriously considering getting a Pixel 7A and chucking GrapheneOS on it and using it as a very minimal surface area (just for travel) device and dumping my iPhone entirely.

Note I have everything in a keepass database as well entirely offline.
It takes strength and some balls to whack someone over the head. It’s dangerous. And it draws attention. And the victim is incapacitated, unmoveable, and their eyes are closed. And the prison sentences tend to be much higher when violence is involved.

A date-rape drug can be easily slipped into a drink by anyone, the victim can be moved out of sight without anyone paying attention, and they keep their eyes open so using FaceID is easy.

Which is why putting FaceID on financial apps on a phone that people carry in their pockets is such a horrible idea.
 
  • Like
Reactions: cjsuk
It takes strength and some balls to whack someone over the head. It’s dangerous. And it draws attention. And the victim is incapacitated, unmoveable, and their eyes are closed. And the prison sentences tend to be much higher when violence is involved.

A date-rape drug can be easily slipped into a drink by anyone, the victim can be moved out of sight without anyone paying attention, and they keep their eyes open so using FaceID is easy.

Which is why putting FaceID on financial apps on a phone that people carry in their pockets is such a horrible idea.

Of course. The old XKCD comes in here

security.png


As for the FaceID on financial apps, yes that. I am just removing that now.
 
  • Like
Reactions: SnowCrocodile
I completely agree with this one.

Recently I got so utterly hammered on cocktails in Malta that I was unconscious. A friend managed to unlock my phone with FaceID and work out where I was staying in AirBnB and order a Bolt taxi back to it on my phone without my interaction or attention.

I literally just realised reading your post that he had access to everything that I have as does anyone else who can unlock my phone. For example if I've been clonked on the head or otherwise incapacitated. That attack surface area is completely untenable.

I am seriously considering getting a Pixel 7A and chucking GrapheneOS on it and using it as a very minimal surface area (just for travel) device and dumping my iPhone entirely.

Note I have everything in a keepass database as well entirely offline.
Use 1Password and enable travel mode. Also perhaps drink less 🤷‍♂️😂
 
  • Like
Reactions: cjsuk
I liked Keychain Access for allowing custom user/pass entries and hope I don’t lose it with this new app.

It's still in macOS 15.1 but looks a little outdated.
Screen Shot 2024-09-23 at 01.37.35.png

By the way... There is also still the DVD Player and I wonder if it is able to play BDs too? They even updated it from Intel to Apple Silicon, what didn't exist officially in 2019.

Screen Shot 2024-09-23 at 01.39.15.png
 
t's still in macOS 15.1 but looks a little outdated.

By the way... There is also still the DVD Player and I wonder if it is able to play BDs too? They even updated it from Intel to Apple Silicon, what didn't exist officially in 2019.
View attachment 2425799
I didn't even realize macOS HAD a DVD player app.

o_O
 
I didn't even realize macOS HAD a DVD player app.

o_O

It's hidden here now. Can't also remember when I saw it the last time in the standard Application folder, but I remember it had been there.

Screen Shot 2024-09-23 at 02.12.55.png
 
  • Like
Reactions: iRizz
I feel like I'm losing my mind because of this app's existence.

I have an external BD drive, that I used when DVDs were still needed to install Windows on Mac with BootCamp. But no BD movie to try it.

But I remember there was a Region Code for DVDs in the player and you could only change it a few times. If I am not confusing it with another player for Windows.
 
So you would buy an Android phone or a Windows computer so that your passwords are managed cross-platform even though you use only Apple devices? Yes, makes total sense…
Please show me where I said I ONLY use Apple products. I'll wait. Moving on from the silly comments, As many people who've been using Apple for decades, leaving the walled garden is very difficult. Plus, Apple has a reputation for not playing nice with other platforms. So, some people might have a iPhone but work on Windows at work. If they lose their phone or are restricted from using their phone while at work, then you've just created a significant pain point and possible security friction as some people may start to write down passwords.
 
  • Like
Reactions: SnowCrocodile
Please show me where I said I ONLY use Apple products. I'll wait. Moving on from the silly comments, As many people who've been using Apple for decades, leaving the walled garden is very difficult. Plus, Apple has a reputation for not playing nice with other platforms. So, some people might have a iPhone but work on Windows at work. If they lose their phone or are restricted from using their phone while at work, then you've just created a significant pain point and possible security friction as some people may start to write down passwords.
There is no walled garden. And switching platforms isn’t difficult either. Naturally comes with compromises as it isn’t the same and doesn’t have the same functionality. And no any decent company provides password management software of an enterprise grade which Apple Passwords most definitely is not. That is where the likes of 1Password come into play. A good acceptable use policy would explicitly forbid storing/mixing corporate passwords with personal software tools.
 
There is no walled garden. And switching platforms isn’t difficult either. Naturally comes with compromises as it isn’t the same and doesn’t have the same functionality. And no any decent company provides password management software of an enterprise grade which Apple Passwords most definitely is not. That is where the likes of 1Password come into play. A good acceptable use policy would explicitly forbid storing/mixing corporate passwords with personal software tools.
So you haven’t used MS Authenticator then ?
 
Great to have a dedicated app. But how on earth do you forget to add the secure notes!?

Now I still have to open the keychain with an extra dialog to access those. Sometimes I question what these guys are doing .....
 
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.