Latest in Gear

Image credit: Felix Zahn via Getty Images

Apple assures Mac users its anti-malware feature isn't spying on them

The system is designed to prevent users running malicious apps, not track users.
Daniel Cooper, @danielwcooper
November 16, 2020
256 Shares
Share
Tweet
Share

Sponsored Links

BERLIN, GERMANY - FEBRUARY 04: Symbol photo. A man is typing with his hands on a keyboard of a MacBook Pro on February 04, 2020 in Berlin, Germany. (Photo by Felix Zahn/Photothek via Getty Images)
Felix Zahn via Getty Images

Apple has been forced to clarify how its Gatekeeper anti-malware platform works after security researchers suggested the system was violating privacy. The company, as spotted by 9to5Mac, has updated its support documentation to explain that the system does not track what its users are doing. At the same time, Apple has said that it will change how Gatekeeper functions in future to further minimize future risks.

This story begins back on November 12th, when a large number of Mac users reported failures opening third-party apps. The issue also spread to Apple’s own platforms, like iMessage and Apple Pay, which started to behave erratically for a short period of time. It was caused by Gatekeeper, a security system Apple introduced back in Mountain Lion to check if it should run a piece of software.

Essentially, if your Mac is connected to the internet, Gatekeeper will check to see if it’s safe to run a piece of software. Say, you click launch on Photoshop, your computer will ping an Apple server to ensure that Adobe still has a valid developer certificate. This process ordinarily is quick and invisible to users, except the volume of people upgrading to MacOS Big Sur overwhelmed the system and slowed it to a crawl.

Researchers, curious as to the cause of the slowdown, began analyzing the data their computers were sending to Apple’s servers. They claimed that the OS was sending details about what you were using in plain text to Apple HQ, which naturally caused plenty of consternation. Such claims were debunked by researcher Jacopo Jannone, who explained that OCSP, or Online Certificate Status Protocol, doesn’t work like that.

Apple has, however, said that it will look to ensure that Gatekeeper will, in future, further encrypt its transmission data and allow users to opt-out of the system. Although that might not be wise since, after all, the point of the system is to prevent malware running on your computer. The company added that it is going to work to ensure that server overloads like the one that happened last week don’t happen again. 

All products recommended by Engadget are selected by our editorial team, independent of our parent company. Some of our stories include affiliate links. If you buy something through one of these links, we may earn an affiliate commission.
Comment
Comments
Share
256 Shares
Share
Tweet
Share

Popular on Engadget

Fox Sports used a Sony A7R IV to give NFL broadcasts a cinematic look

Fox Sports used a Sony A7R IV to give NFL broadcasts a cinematic look

View
HBO Max lists all the devices that can play 'Wonder Woman 1984' in 4K HDR

HBO Max lists all the devices that can play 'Wonder Woman 1984' in 4K HDR

View
SpaceX shows off its Starship test flight one more time

SpaceX shows off its Starship test flight one more time

View
Five must-play games for your new PS5

Five must-play games for your new PS5

View
Apple rolls out lower App Store fees for 'Small Business' developers

Apple rolls out lower App Store fees for 'Small Business' developers

View

From around the web

Page 1Page 1ear iconeye iconFill 23text filevr