Skip to content
Thoughtful, detailed coverage of everything Apple for 34 years
and the TidBITS Content Network for Apple professionals

Category: Security

Adam Engst 38 comments

What Should Apple Users Take Away from the CrowdStrike Debacle?

By now, you’ve heard of the CrowdStrike update bug that wreaked havoc on Windows-based PCs around the world. It didn’t affect Macs, and it’s unlikely that something similar could. What about iPhones and iPads? Will the industry learn from this debacle or continue with business as usual?

Adam Engst 3 comments

Backblaze Raises Its Fully Refundable Price for Restoration Drives

Online backup service Backblaze will soon increase the fee it charges to restore data by shipping you a USB hard drive from $189 to $279. However, the change is largely moot since the company refunds the full amount when you return the drive.

Adam Engst No comments

Apple Explains How to Identify Social Engineering Attacks

Apple has updated a support document with helpful advice about how to identify and report social engineering attacks such as phishing messages, phony support calls, and more. Share it widely!

Adam Engst 8 comments

Hackers Claim to Have Stolen Phone Numbers of 33 Million Authy Users

If you published a two-factor authentication app, wouldn’t you require authenticated requests to all endpoints?

Rich Mogull 11 comments

How Apple Intelligence Sets a New Bar for AI Security, Privacy, and Safety

Apple Intelligence, backed by the company’s Private Cloud Compute service, takes a new approach to generative AI which prioritizes user security, privacy, and safety. Cloud computing expert and TidBITS security editor Rich Mogull explains how this works, starting with the chips in our iPhones.

David Shayer 32 comments

Block SMS Text Spam with Nomorobo

SMS text spam was driving David Shayer crazy, and with the US election season heating up, the problem was only getting worse. After trying various strategies, he managed to rein in the problem with Nomorobo. 

Adam Engst 45 comments

Text Conversations with an iPhone Thief

Veronica de Souza shares the texts she received from the thieves who stole her iPhone and then tried to convince her to unlock it.

Adam Engst 3 comments

Kini Motion Detector Adds Email Notifications and Previews Stasis Mode

The Kini motion detectors can now alert you to motion using email instead of or in addition to SMS, making them usable by those outside North America and opening up automation options. Kinisium is also testing a Stasis Mode that alerts you when a Kini hasn’t moved as anticipated.

Adam Engst 11 comments

Reacting to Unsolicited Two-Factor Authentication Codes

We’re all accustomed to receiving two-factor authentication codes via SMS, but if you ever get one that you didn’t request, don’t ignore it because it might indicate that the credentials to one of your accounts have been compromised.

Glenn Fleishman 16 comments

Find Hidden Cameras While Traveling

Airbnb’s policy change to ban all indoor cameras at listed properties highlights the scourge of tiny cameras used for snooping. Here’s how to discover if you’re being watched in a rental, hotel, or elsewhere.

Adam Engst 6 comments

Apple’s Wi-Fi-based Positioning System Reveals Access Point Locations

University of Maryland security researchers used a clever approach to querying Apple’s location API to determine the locations of more than two billion Wi-Fi access points worldwide. You can opt out.

Adam Engst 7 comments

Slack AI Privacy Principles Generate Confusion and Consternation

After a section of a Slack document laying out its privacy principles surrounding AI was taken out of context on social media, controversy ensued. Adam Engst attempts to calm the waters, with help from ChatGPT.

Adam Engst 7 comments

iOS 17.5 Adds Cross-Platform Location Tracking Alerts

Apple has released a large set of operating system updates, including iOS 17.5, iPadOS 17.5, macOS 14.5 Sonoma, watchOS 10.5, tvOS 17.5, HomePod Software 17.5, macOS Ventura 13.6.7, macOS Monterey 12.7.5, iOS 16.7.8, and iPadOS 16.7.8. New features include alerts for Android-paired tracking devices moving with you and a new game and leaderboard for Apple News+ subscribers.

Adam Engst 1 comment

CryptoChameleon Phishing Kit Targets LastPass, Others

If you have a LastPass account, beware of voice phishing calls that will warn about your account being accessed from a new device. Are we on the cusp of being targeted by AI-driven phishing calls?

Adam Engst 60 comments

Widespread Reports of Apple ID Accounts Being Inexplicably Locked

If your devices mysteriously ask you to reset your Apple ID password and then lock your account, you’re not alone. Unfortunately, there’s nothing to do but go with the flow.