Not naming names, but there are some utter cowboys in the #webdev game. An entirely 'random' example for you: a major website launch where a) the mobile version of the website is unreadable and b) they update the A records but leave the AAAA ones pointing to the old site. Drives me nuts.
If anyone ever needs any technically competent web development where things are checked properly before release do let me know 🙂
so macOS automatically scans local files on your mac for malware, based on remote signatures downloaded from apple.
https://tidbits.com/2022/09/02/macoss-new-xprotect-now-regularly-scans-for-malware/
anyone wanna bet it can detect anything on your mac that apple wants to detect?
yet another new apple phone-home process you can block all network for: ndoagent, the new device outreach agent, which as far as i can tell only exists to upsell spam you. it phones home to fetch https://cdsassets.apple.com/library/APPLE/asset/ndoV2.plist which doesn't have much in it.
more info at
/System/Library/PrivateFrameworks/NewDeviceOutreach.framework/ndoagent
apple is using their private relay service (which presumably obscures client ip from apple APIs, but let's take them at their word on this) for a lot of macos-to-apple connections these days.
...including the connections to xp.apple.com from the T2/M1/M2 updater process during macOS updates. however, i have analytics off, and no telemetry from my machine should be going to xp.apple.com regardless, IP address obscured or not. :/
Hacker, researcher, entrepreneur. Make sure we're connected at https://sneak.berlin/list
these toots are also available at https://s.sneak.berlin/@sneak.rss if you're into that.