this post was submitted on 09 Aug 2023
299 points (97.8% liked)

Apple

17525 readers
12 users here now

Welcome

to the largest Apple community on Lemmy. This is the place where we talk about everything Apple, from iOS to the exciting upcoming Apple Vision Pro. Feel free to join the discussion!

Rules:
  1. No NSFW Content
  2. No Hate Speech or Personal Attacks
  3. No Ads / Spamming
    Self promotion is only allowed in the pinned monthly thread

Lemmy Code of Conduct

Communities of Interest:

Apple Hardware
Apple TV
Apple Watch
iPad
iPhone
Mac
Vintage Apple

Apple Software
iOS
iPadOS
macOS
tvOS
watchOS
Shortcuts
Xcode

Community banner courtesy of u/Antsomnia.

founded 1 year ago
MODERATORS
 

The NightOwl application has existed since 2018 and is used to automatically switch between light/dark modes on the operating system. It is an alternative to the built in macOS automatic mode which only switches when the user steps away from the computer.

However, the application has been bought out by “TPE.FYI LLC” in late 2022 that forcibly joins your devices into a botnet for use of market research, without your knowledge (other than the TOS in small text on the download page) or express consent (this feature cannot be turned off, even when the app is quit). This is documented in their terms of service.

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 24 points 1 year ago (3 children)

Use free and open source software

[–] [email protected] 39 points 1 year ago (2 children)

Something being open source doesn't automatically make it safe to use. Sure, it means it's easier for people to check for security issues, but how many people actually have the knowledge and the time to do it? And even then, take the log4j vulnerability from a while ago, it's been present in the code since 2013 and only reported in like 2021.

[–] [email protected] 5 points 1 year ago

Common sense still prevails. Don't install obviously shady freeware. Something like GIMP or Blender or Ubuntu or FreeCAD or ProjectLibre is going to be safe. Large community = most likely safe.

[–] sarchar 2 points 1 year ago (1 children)

FOSS isn't generally vulnerable to the "buyout" vulnerability. It's not new that a valuable browser extension is bought out and repurposed, but FOSS is less likely to fall to these bugs. (also fuck WEI. You'll get more of this with WEI)

[–] [email protected] 4 points 1 year ago

FOSS isn't generally vulnerable to the "buyout" vulnerability.

Oracle has entered the chat.

[–] [email protected] 5 points 1 year ago

You still need to build package and install it yourself though or else you are trusting someone else. Open Source software has been used as a vector for attacks before by bad actors getting access to the build system or source code.

[–] [email protected] 2 points 1 year ago

I try to where I can, but unfortunately this is not always an option for me.