mathstodon.xyz is one of the many independent Mastodon servers you can use to participate in the fediverse.
A Mastodon instance for maths people. We have LaTeX rendering in the web interface!

Server stats:

2.8K
active users

#appleappstore

0 posts0 participants0 posts today

Has anyone out there on apple, using family sharing for purchases figured out how to do this simple thing?

I want to have two cards, one to share with my family, the other for my subscriptions. The idea being that they can then use the shared card for purchases, but the subscriptions card only gets used for monthly subscriptions.

As far as I can tell, apple has the most brain dead payment system on the planet. You can specify multiple cards. but it NEVER USES anything but the defualt, and your family cant choose their own payments even. This level of bullsh!t is what makes me frustrated with apple.

@da_667 @campuscodi

#StateSponsoredMalware#SSM™ by #GammaGroup.Com does this also as their #FinFisher #FinSpy #Finsky product dubbed #TheEnemyOfTheInternet since the early 2010's as well as stream the screen in real time with the full disk access to the files, neatly force a #MITM #ForcedMDM #ForcedProxyNetwork on your device for easy fisher price type access to your compromised devices, passwords, all E2E services, online accounts, financial apps, messaging apps, SMS/MMS, iMessage, RCS, everything, from a small company that has 100's of MILLIONS of compromised devices, just on #Android alone, installed via the #GooglePlayStore & #AppleAppStore, infecting #Linux, #Windows, #MacOS, #Solaris, #IOS & more.

Seems like these ' new features ' are just a cover for the existing installs of this #spyware iF you look at it but, could be a product, locally exploited also, as a new built-in spyware package, as it reads now, for simple #ediscoverable things later in the #Fortune1000s & mom & pop businesses to worry about, especially when $_scenarios_list.xlsx plays out. 💯🤦‍♂️🤦‍♂️🤦‍♂️🤦‍♂️

Replied in thread

@chris_spackman: IMO an increasing amount of compromised client devices is already manifestating.

For example, figure 7 (animated GIF) in blog.group-ib.com/godfather-tr IMO excellently clarifies the problem: once software runs on a device, it can often impersonate legit apps and request for additional permissions, including those for operating as an "accessibility service" on Android (which renders malicious software into an Attacker-in-the-Middle on your client device).

Unfortunately, physical buttons are rapidly disappearing from smartphones and tablets: every "button" now exists of pixels on a touchscreen. However, under which conditions are pixels (those that simulate, for example, a button) trustworthy: is the operating system controlling them, or a malicious app? I.e. what exactly is the user interfacing with?

In landscape mode, Safari on iOS even, by default, hides the browser's address bar. Too often security is sacrificed for convenience.

Unfortunately some marketeers claim that their solution remains secure even on compromised client devices, which is snake oil (or even fundamentally impossible) if the user cannot distinguish between what is fake and what is legit (example: coronic.de/en/protect/ ).

In addition, cybercriminals seem to be increasingly succesful in having their malicious apps bypass checks and end up for download in Apple's play store, while recently the EU forced Apple to permit app-sideloading for EU citizens.

Furthermore users may be social engineered into installing "legit" apps such as AnyDesk on their portable devices (available for Android and iOS/iPadOS in the "true" stores, with multiple reviews written by defrauded users).

Also, continuously adding complexity is asking for trouble, such as virtualization in upcoming Android releases. Guest-to-host escape vulnerabilities are increasingly common.

Portable devices, now as powerful as supercomputers from a decade ago, hardly produce any (user-accessible) logs that may help the user uncover that their device was compromised; also there's no big red LED that lights when malware is detected.

Finally cybercrime is condoned or even facilitated by big tech because it generates income for them.

The more profitable it is for criminals to obtain access to client devices and/or to cloud-accounts, the harder they'll try and the more will succeed.

I guess all this sounds pessimistic, but that is how I see things.

cc: @SGgrc

Group-IBGodfather: A banking Trojan that is impossible to refuseGroup-IB discovers banking Trojan targeting users of more than 400 apps in 16 countries
Replied in thread
@Chris Heuer :_v: Another case of a journalist who hasn't understood the #Fediverse yet. The only server-side project he's aware of that uses #ActivityPub is #Mastodon. I'm only ever convined that this is not the case when someone at least name-drops more of them.

When I saw that #Pixelfed was mentioned, I considered it a saving throw first. But to the author, Pixelfed is just another mobile app, i.e. another end-user client for Mastodon itself. He isn't aware that Pixelfed is an entirely independent project that develops its own server code which does not run on Mastodon.

The author sees Mastodon as the entirety of the Fediverse. Worse yet, Mastodon = Fediverse is set in stone for him. Mastodon is the very definition of the Fediverse. It seems completely, utterly unimaginable for him that Mastodon could possibly share the Fediverse with other projects. Hence he wants Mastodon to cover use-cases which there are already Fediverse projects for.

He wants Mastodon to be more like #Reddit. Little does he know that #Lemmy exists and is literally "Reddit in the Fediverse," and Mastodon federates with it. Not to mention that #Friendica, #Hubzilla and #Streams can cover the group/forum use-case, too, all of which Mastodon is known and proven to federate with.

He wants Mastodon to become a full-blown blogging platform. There's #WriteFreely for that. There's #Plume for that. There's an ActivityPub plugin for #WordPress for that. Again, Hubzilla can do that, too. Once again, all this federates with Mastodon.

I'm not even fully convinced that he has even understood that Mastodon is not simply a smartphone app with that name which he found in the #AppleAppStore. (All professional journalists have iPhones. Change my mind.)
hub.netzgemeinde.euNetzgemeinde/Hubzilla
Replied in thread
You know, this makes me wonder why people who don't like how #Mastodon works and who want features which Mastodon doesn't and will probably never have don't mass-migrate to another #Fediverse platform which would offer them what they want, e.g. #Akkoma.

Is it because it was difficult enough to adapt from Twitter to Mastodon, and they don't want to learn how to use yet another online platform?

Is it because there's no official Akkoma app on the #AppleAppStore and the #GooglePlayStore that's also named Akkoma?

Is it, which I suspect the most, because none of them knows that anything else than Mastodon exists in the Fediverse? They simply don't know there's such a thing as Akkoma?

Is it because they can't believe that they could move to Akkoma and still re-connect with all their followers and followed from Mastodon? It was hard enough to understand that they can be on one instance and follow someone on another instance after all.

Or is it because it isn't worth the effort when 99% of your followers are still on Mastodon and would still be excluded from most of Akkoma's extra features?
hub.netzgemeinde.euNetzgemeinde/Hubzilla
Replied in thread

@MattBinder
BINDER!!! I told you all this Musk stuff on #Twitter was going to take off! Should've taken my call! 🙂
But seriously, glad you're here.
It will be interesting to see how the MSM spins this. They'll try to understand #Musk 's actions as if rational.
BTW, i quoted your friend @Esqueer about other actions that people can take to prevent harm via social media when I was on @TheBradBlog
Both #appleappstore rules #EU regulations need to be readdressed

bradblog.com/?p=14498

bradblog.comMusk's Twitter Takeover Turns from Dumb to Dangerous: 'BradCast' 12/14/2022Guest: Media activist (and Musk's former corporate PR trainer!) 'Spocko'; Also: Oregon Guv commutes all state death sentences; Schumer says ECA reform to be included in lame duck spending bill...