Sponsored in part by... Smith Micro StuffIt Deluxe 12: breakthrough compression of MP3 files, PDFs,
iWork and MS Office files! Reduce JPEG file sizes with no loss in
quality, burn to CD/DVD, back up archives to iDisk and more. Buy
today for only $59.99! <http://www.stuffit.com/mac/deluxe/tb/>

 [F] TidBITS  / TidBITS  / TidBITS Talk  /

Bluetooth root exploit & "out-of-date" Macs

[jiclark]jiclark (apparently) - 01:14pm Oct 26, 2006 PST
via email

In this morning's ExtraBITS, as a part of the story about the latest
security flaw facing Macs with Bluetooth, there was the following
comment:

"…those Mac users have to have Bluetooth turned on and be out of date
on patches by months - or by more than a year!"

The implication is that this would be somehow unusual. I thought I'd
chime in to say that, as a small-time Mac consultant, I regularly see
machines that are *far* more 'out-of-date' than a year. It's quite
common actually, and relates to another common experience I have when
helping the average Mac user. That is, the tendency for people to be
unsure about whether or not they need to install every update that
appears in Software Update, and more often than not, their avoidance
of doing so.

In my opinion, Apple needs to do a better job of somehow flagging the
really essential updates, since the presence of things like the
"iTunes Phone Driver" makes it obvious that a lot of stuff that shows
up in SU is *not* essential. Maybe by highlighting essential updates
in red? I know the preference pane has a checkbox the enables the
downloading of "essential software" in the background, but for a lot
of the people I support, that's not workable, since broadband is
anything but ubiquitous around here.

While it's exciting to see Apple's current success and the increasing
market-share that goes along with that, they would be wise to come up
with a better way to get people to keep their software up-to-date, or
it will come back to haunt them someday…

I only post this because I feel like the closer one is to the rank of
'power user' these days, the farther out of touch they get with the
far greater number of 'average' users. Of course, by definition,
almost everyone that works at Apple falls into this category! Let's
just hope their not too arrogant (or simply out of touch) to pay
attention to issues such as this.

Thanks, I'm back to lurk mode now!
John


Mark as Read
  OutlineAll MessagesOlder MessagesOldest MessagesNewest MessagesNewer Messages

Nigel Stanger (apparently) - Oct 27, 2006 6:04 pm (#1 Total: 2)  

Reply to this message
via email - Dunedin, New Zealand  

Photo of Author
Posts: 422
Re: Bluetooth root exploit & "out-of-date" Macs

On 27/10/2006 9:14 AM, "John I. Clark" <jiclarkindependence.net> spake
thus:

> they would be wise to come up with a better way to get people to keep their
> software up-to-date, or it will come back to haunt them someday

This essay by Jef Raskin, written in 1979 (!), has some interesting
observations that show that this is by no means a new problem. The only
differences are the scale and the distribution medium. Sadly, his
recommendations for software updates clearly haven't been embraced by most
of the computing industry.

<http://jef.raskincenter.org/published/millions.html>

(Section "software updates" about a third of the way down, but the whole
thing is well worth reading.)

--
Nigel Stanger, Dunedin, NEW ZEALAND.
http://xri.net/=nigel.stanger


tekelenb (apparently) - Oct 27, 2006 6:09 pm (#2 Total: 2)  

Reply to this message
via email  

Photo of Author
Posts: 257
Re: Bluetooth root exploit & "out-of-date" Macs

At 13:14 -0700 UTC, on 2006-10-26, John I. Clark wrote:
> In my opinion, Apple needs to do a better job of somehow flagging the
> really essential updates

Agreed. In fact, Apple does provide a "recommended" flag. But for some reason
that flag is only made visible in the cli version of SU, not in the GUI
version. Even so, on this machine I still run Mac OS X 10.4.7 and iTunes
6.0.5, and the iTunes 7.0.1 update is labelled just as "recommended" as the
10.4.8 update (even though the 10.4.8 update contains security improvements
and the iTunes update is just to accomodate the new iTMS). I agree a
"required" flag should be added, and both flags should be available in the
GUI version of SU.


--
<http://www.greenmyapple.org/>



  OutlineAll MessagesOlder MessagesOldest MessagesNewest MessagesNewer Messages


 [F] TidBITS  / TidBITS  / TidBITS Talk  / Bluetooth root exploit & "out-of-date" Macs




Add a message

To add a message to this discussion, you must be a registered user. Enter your email address below. If you have an account associated with the email address you enter, you will be prompted for your password. If not, you'll be able to create a new account with no fuss.

Enter your email address:

Submit