Business

Apple, Google Covid-19 contact tracing to require verification, but what does that mean?

Mark Gurman:

Apple Inc. and Google addressed questions about their upcoming Covid-19 smartphone contact-tracing solution on Monday, providing details about a partnership that has raised concerns among some privacy and cybersecurity experts.

One specific concern that was making waves was that of a bad actor seeding false positives. For example, imagine someone putting a device out there that made contact with your iPhone, then reporting it had tested positive, marking you as having had contact with someone who was infected. Much room for malevolent mischief here.

The companies said the tool will require users to verify positive diagnoses before putting that information into the system. Test results will be checked by public health agencies that are building mobile apps that will work with the contact-tracing technology, Apple and Google added. They also defended the privacy of the system, reiterating that users’ names and locations would not be shared or stored.

So far, so good. If the tests are accurate, this should be a good solution.

Enter CNN, with this article, titled Prominent scientists have bad news for the White House about coronavirus antibody tests:

First, the US Food and Drug Administration relaxed its rules, and now companies can sell antibody tests without submitting validation data that shows they actually work.

The American Public Health Lab Association says that has resulted in “crappy” tests flooding the market.

And:

There has been concern that some of the tests might confuse the coronavirus causing the current pandemic with one of several coronaviruses that cause the common cold.

“Lots of tests confuse the two,” Relman said.

Whether these third party tests are used as part of the verification process for Apple/Google contact tracing or not, need this fixed ASAP.

Google lowering Nest camera quality ‘to conserve internet resources’

Greg Kumparak, TechCrunch:

Google says it is temporarily lowering the video quality of Nest Cams in an effort to limit how much bandwidth each camera uses and, in turn, “conserve internet resources.” The adjustment is rolling out over the next few days, and Google says anyone who has their quality settings adjusted will get a notification in the Nest app.

More streaming, more Zoom/Skype/FaceTime, no question we’re using more internet in my house in corona time.

Amazon, Netflix, and YouTube have each taken steps to limit the strain they might be adding to the network, while Sony has been capping PlayStation game download speeds.

Interesting times. Imagine if we had to go through this without the internet.

HomePod now runs on tvOS

Filipe Espósito, 9to5Mac:

Unlike all other versions of the HomePod Software, 13.4 is derived from tvOS, and no longer the original iOS that iPhone and iPad runs. As we said, this doesn’t affect how you use your HomePod since they all run with the same base system, but it makes us think about what Apple is working on for the future of HomePod.

And:

iOS is designed to work on devices that rely on an internal battery, which means that the way iOS manages power consumption is different from how tvOS does it. Apple TV is always plugged in, and so is the HomePod.

And:

Both Apple TV and HomePod also operate as a home hub for HomeKit, since they’re devices that are always connected at home.

As is, my HomePod and Apple TV do not connect at all. If I ask HomePod Siri to turn on my Apple TV, I jump into a rabbit hole of HomePod trying to run a shortcut, but ultimately failing.

I’m wondering if this path will allow HomePod Siri to act as a hands-free Apple TV remote, with all the power of my iPhone’s Remote app.

And, perhaps, HomePod Siri would know all the shows, Apple TV+, Netflix, Prime Video, etc., give me the power to ask questions, such as, “When is the next episode of The Morning Show” going to drop?” As is, I get, “I can’t get info about TV shows on HomePod. Sorry about that.”

I would welcome these sorts of changes.

The iPad is the only tablet worth buying

If you know someone considering a tablet purchase, this is a good resource to slide their way.

It makes a reasonably easy-to-understand case for the iPad as best-in-class. But it also talks through the differences between all the current models.

Data race video: Most used operating systems of all time

[VIDEO] This is a data race, a video (embedded in main Loop post) that shows change in data over time, usually over many years. In this case, we’re looking at market share of operating systems from 2009 (when iOS was a baby) through today.

The big players to keep an eye on are Windows, Android, iOS, and macOS. Obviously, there’s a lot of overlap between all of these, since many (most?) people use more than one, some people use all of them.

Here’s the data source used for the video.

Apple’s response to Senators’ letter questioning privacy of Covid-19 tools

Bloomberg:

Apple Inc. responded to Democratic Senators who sent a letter to Chief Executive Officer Tim Cook with questions related to the privacy of the iPhone maker’s Covid-19 screening tools.

From the letter Apple sent in response:

Consistent with Apple’s strong dedication to user privacy, the COVID-19 app and website were built to protect the privacy and security of users’ data. As you note, use of the tools do not require a sign-in or association with a user’s Apple ID, and users’ individual responses are not sent to Apple or any government organization. Access to important information and guidance regarding individual health or the health of a loved one should not require individuals to compromise their privacy rights. Rather, it is in times like these, that our commitment to protecting those rights is most important. Our COVID-19 app and website were designed with that in mind. We appreciate the opportunity to provide the Senators with more information about the COVID-19 app and website.

The letter goes into a fair amount of detail, solid answers to solid questions. Worth taking the time to read.

I found question 2, and the response, to be especially interesting:

Are the Apple screening site and app governed under the terms of the HIPAA? If not, please explain why.

In a nutshell, the response:

Neither the site nor app are covered by HIPAA. Notwithstanding, we have applied strong privacy and security protections to the app and the website, including designing both tools to meet some of the technical safeguard requirements of HIPAA, such as access controls and transmission security.

And for Google folks, The Verge has a well written post that includes some detail on Google’s approach.

As a reminder, here’s a link to a comic about COVID-19 contact tracing that helped me wrap my head around the basic concepts.

UK nods to Apple/Google coronavirus API with contact tracing app plans

BBC News:

The BBC has learned that NHSX – the health service’s digital innovation unit – will test a pre-release version of the software with families at a secure location in the North of England next week.

And:

People who have self-diagnosed as having coronavirus will be able to declare their status in the app.

The software will then send the equivalent of a yellow alert to any other users who they have recently been close to for an extended period of time.

If a medical test confirms that the original user is indeed infected, then a stronger warning – effectively a red alert – will be sent instead, signalling that the other users should go into quarantine.

There’s been a lot of pushback on the idea of embedding contact tracing in your smartphone. At least some of this pushback seems based on faulty assumptions.

While this is not the actual Apple/Google API, this comic about COVID-19 contact tracing does a great job of laying out the mechanics. I think this is worth reading before you make any assumptions about contact tracing and privacy.

Joanna Stern: Laptop webcam showdown

[VIDEO] Obviously, not a scientific review, but still worth watching (video embedded in main Loop post). I have spent a lot of time on Zoom this past week. Way more than I cared to, but that’s another story.

One lesson I learned: Lighting makes a huge difference. Do a search in YouTube for “Zoom lighting” and you’ll see a bunch of videos that lay out the basics.

Make the most of what you got.

15 iPad trackpad gestures

Jason Cipriani, CNET:

Being able to control your tablet without touching the display brings the iPad closer to working as a laptop, and in turn, makes it easier to get more work done.

And:

However, not all trackpads or mice are created equal. There’s a big difference in overall experience when using Apple’s first Magic Trackpad or its newer Magic Trackpad 2, which we’ll cover more in-depth below.

Really nice collection of animations, very useful.

Apple Maps will soon display COVID-19 testing locations

Benjamin Mayo, 9to5Mac:

Apple has launched a portal for hospitals, healthcare providers and businesses to register as a COVID-19 testing location. Apple will review the application and when approved, the location will start appearing on Apple Maps.

The testing locations will appear with a red medical glyph icon, and a special banner in the Apple Maps card.

This will become very important as we start easing lockdown restrictions. I can imagine situations where an all-clear is required before you are allowed into densely populated areas. This is an incredibly complex problem to solve.

Will we reach a point where our iPhone broadcasts our COVID-19 status to allow us back into work, or into, say, a sporting event? Privacy concerns abound. Surreal times.

When Android Police raves about the iPad

Android Police:

Even if you don’t like Apple, or you think iOS is derpy and restrictive — which is, in my opinion, unarguably true — iPads really do offer the best big-screen tablet environment.

The first half of that sentence is what I expect from Android Police. But what I didn’t expect is the linked post’s rave about the iPad.

Consider how I got here. The linked post’s headline is Do yourself a favor and buy an iPad during lockdown. And they’re not wrong.

Comment: Why I ditched the Kindle in favor of Apple Books on iPad Mini

Bradley Chambers, 9to5Mac:

I closed out the mobile version of the Kindle website, and I reinstalled Apple Books. As I opened it, it felt like a breath of fresh air. The overall design is just stunning. I hadn’t spent a lot of time with the new interface that Apple released with iOS 12, but I was quickly blown away.

When I read this piece by Bradley Chambers, I. realized that I had been locked into the Kindle app on my iPad for a long, long time. So I fired up Books and dug in. Bradley is right. Apple Books really is a breath of fresh air.

Two things stand out in particular to me. First, the process of sliding the scrollbar to jump to a different location is so much better in Books. As you slide, a popup appears that shows both chapter number/title and page number. Much better than Kindle’s clunky navigation process.

Add to that, the process of searching for and purchasing new books. To be fair, Apple’s 30% fee makes it obvious why Amazon makes you exit the Kindle app and buy your books on the web. Definitely not their fault. But still. Buying new books in the Apple Books app is a pleasure.

EPIX, Showtime, other Apple TV+ third party channels free for the month

MediaPlayNews:

Apple TV Channels, which like Amazon Channels, offers access to third party over-the-top video platforms, is offering extended free access to content during the coronavirus pandemic.

Apple is extending to 30 days free trials to ViacomCBS’ Showtime OTT and MGM-owned Epix (through May 2 with no subscription required), AMC Networks’ Acorn TV and Lifetime Movie Channel, among others.

Lots of great, binge-worthy content here. If you’ve not yet seen it, check out the excellent Pennyworth (on EPIX), a sort of Batman pre-history, but focused on Alfred.

And on Showtime, there’s Billions, Dexter, and Ray Donavon. My tastes do run a bit dark, don’t they?

Tim Cook, a voice of calm and reason

[VIDEO] Watch the video in the tweet below. Apple is working hard to help, ramping up a manufacturing chain to produce face shields for health workers, and getting those face shields into the hands of those who need them.

And sharing the details is Tim Cook, a calm, rational voice at the center of the storm. Well done Tim. Well done Apple.

https://twitter.com/tim_cook/status/1246916489589837824

Inside Apple TV+’s Amazing Stories

Have you watched Amazing Stories? If not, this will give you a taste. To me, this genre is interesting, sort of a palette cleanser between other shows. Like Little America, you can watch one, or binge the whole thing, stop any time you like.

I see this as the short story collection, a break from the commitment to a full length novel.

An iPhone you can use underwater, and one that uses your face to guide rotation

William Gallagher, AppleInsider:

It may seem as if the iPhone, iPad, and even Mac, have not changed their user interface in years, but in truth Apple is continually revising its software. Apple is also increasingly good at hardware surviving underwater, plus it continues to look into actually making devices remain usable when submerged.

These issues are revisited in two new patents, one of which will concern anyone who’s truly wanted to operate an iOS device underwater. And the other uses technology to solve a small but recurring annoyance.

I would absolutely love the ability to use my iPhone camera under water (without a special case). There are issues with waterproofing the phone itself, but beyond that is the complexity of interacting with a phone within the physics of water. Complicated problem.

Then there’s using your face to orient your device:

All iPads have always automatically rotated their screen so that you can hold them in landscape or portrait, and such that you can hold them any way up. However, every iPad user has also had the experience of having to physically rotate the device in order to get it to check again after it’s turned the wrong way.

Happens to me every single time I fire up my iPad. Every time. I’d love to see this problem solved.

Great read.

The mighty Mini: Adapting Apple’s diminutive tablet to work and play

John Voorhees wrote a terrific appreciation piece, for MacStories, on the under-appreciated iPad mini. Worth reading, especially worth scrolling through to see all the use cases for which the iPad mini is just perfect.

At the very least, I think the iPad mini is perfect for reading. It’s got the right screen proportion, bigger than iPhone, but still very light. And it supports trackpad and mouse input. Spot on.

Ryan Pickren found a bug in Safari that let malicious code access iOS and macOS camera. Apple gave him $75K

Ryan Pickren:

This vulnerability allowed malicious websites to masquerade as trusted websites when viewed on Desktop Safari (like on Mac computers) or Mobile Safari (like on iPhones or iPads). ​> Hackers could then use their fraudulent identity to invade users’ privacy. This worked because Apple lets users permanently save their security settings on a per-website basis. ​> If the malicious website wanted camera access, all it had to do was masquerade as a trusted video-conferencing website such as Skype or Zoom.

And:

I reported this bug to Apple in accordance with the Security Bounty Program rules and used BugPoC to give them a live demo. Apple considered this exploit to fall into the “Network Attack without User Interaction: Zero-Click Unauthorized Access to Sensitive Data” category and awarded me $75,000.

If this sort of thing concerns you, put a post-it over your Mac and Mac display cameras.

New iPad adds in hardware microphone disconnect

Apple Platform Security document:

All Mac portables with the Apple T2 Security Chip feature a hardware disconnect that ensures the microphone is disabled whenever the lid is closed. On the 13-inch MacBook Pro and MacBook Air computers with the T2 chip, and on the 15-inch MacBook Pro portables from 2019 or later, this disconnect is implemented in hardware alone. The disconnect prevents any software—even with root or kernel privileges in macOS, and even the software on the T2 chip—from engaging the microphone when the lid is closed. (The camera is not disconnected in hardware, because its field of view is completely obstructed with the lid closed.)

That’s the Mac side. On the iPad:

iPad models beginning in 2020 also feature the hardware microphone disconnect. When an MFI compliant case (including those sold by Apple) is attached to the iPad and closed, the microphone is disconnected in hardware, preventing microphone audio data being made available to any software—even with root or kernel privileges in iPadOS or in case the firmware is compromised.

The culture of camera and mic access on the Mac and iPad are very different. On my Mac, when the camera is in use, I see a light. And, as the note states, when the lid is closed, the camera is blocked.

Hardware disconnect does prevent the mic from working when the iPad case is closed. But what if I use my iPad without a case? And what about the camera without a case? There’s no hardware disconnect to rely on. Instead, Apple requires apps to ask for permission to access the camera and microphone.

Seemingly foolproof, but no.

“Hey Siri, play music on Spotify”

Michael Potuck, 9to5Mac:

After bringing the long-awaited feature to iOS last fall, Spotify has updated its app today to take advantage of Siri support on Apple Watch in watchOS 6.

And:

Spotify mentions in the release notes to use Siri with the music service on Apple Watch users can say, “Hey Siri, Play music on Spotify,” or just add “on Spotify” to any voice command to play content.

Works pretty much everywhere for me now, except HomePod. For that, you’ll need to use AirPlay.

Apple tells staff U.S. stores to remain closed until early May

Mark Gurman, Bloomberg:

In a memo to employees, Apple Senior Vice President of Retail and People Deirdre O’Brien told staff that the company anticipates that “flexible work arrangements will remain in place for all offices, and all retail stores will remain closed, until early May.”

She said that Apple is “continuing to monitor local conditions for every Apple facility on a daily basis” and that the company will make “reopening decisions on the basis of thorough, thoughtful reviews and the latest guidance from local governments and public health experts.”

Apple deciding to open a specific Apple Store will definitely be a canary in the coal mine, a sign that we’re heading back to normal, at least in that area.

Wondering what those early days will be like. Will there be social distancing methods in place? After all, until we have tests for everyone, and a widely available vaccine, how will stores prevent the spread of COVID-19?

Zoom responds

Eric Yuan, Zoom founder, on the Zoom blog:

Usage of Zoom has ballooned overnight – far surpassing what we expected when we first announced our desire to help in late February. This includes over 90,000 schools across 20 countries that have taken us up on our offer to help children continue their education remotely. To put this growth in context, as of the end of December last year, the maximum number of daily meeting participants, both free and paid, conducted on Zoom was approximately 10 million. In March this year, we reached more than 200 million daily meeting participants, both free and paid.

That’s amazing growth. Zoom has made Yuan one of the world’s richest people.

But Zoom is beset by security issues, with reports of attacks that can take over Windows machines and Macs, and lots of trolling Zoom-bombing (where an uninvited person joins a conference, frequently harassing the rest of the attendees).

Continuing:

We recognize that we have fallen short of the community’s – and our own – privacy and security expectations. For that, I am deeply sorry, and I want to share what we are doing about it.

Read the rest of the post for all the details. This feels like about as good of a response as we could have hoped for. Feels like the team got in over their head, were not prepared for this growth, did not anticipate the security issues that have emerged.

A big black eye for Zoom. Let’s see if they can recover. In the meantime, here are some alternatives.

Stephen Fry, reading first Harry Potter book, now free on Audible

Greg Kumparak, TechCrunch:

If you’ve ever tried to buy the Harry Potter audiobooks, you probably noticed something kind of tricky: there are two very different versions. The version most widely available in the U.S. is narrated by Jim Dale. The U.K. version is read by Stephen Fry.

And:

Audible has put the Stephen Fry version of “Harry Potter and the Philosopher’s Stone” up online, for free, until further notice.

This is part of J.K. Rowling’s COVID-19 response, which grants teachers an open license to post videos of themselves reading from the books as part of the #HarryPotterAtHome program.

Apple providing subsidies to authorized service providers that offer repairs on pickup and drop-off basis

Joe Rossignol, MacRumors:

In an effort to encourage social distancing, Apple has indicated that it will provide subsidies to Apple Authorized Service Providers that offer product repairs on a pickup and drop-off basis in the United States and Canada.

Here’s how this works. Go to https://getsupport.apple.com/ and start a repair request. Go through the first few screens to describe your issue. Then, when you get to the screen titled “How would you like to get help?”, select “Send in for repair”.

Apple is doing double-service here. They’re providing repair when their stores are closed, and they are helping keep small businesses afloat.

Layoffs at The Omni Group

John Gruber:

This feels like another kick in the nuts, in an ongoing series of kicks in the nuts. Oof. All of this — as Brent says, gestures at everything — aside, it is hard to shake the feeling that the market for independent professional software is coming apart at the seams, fraying irreparably.

So many layoffs, so many people impacted. This tunnel feels particularly long and particularly dark, hard to make out that little pinprick of light at the end of it.

Related: Michael Tsai’s rollup page with other posts from Omni Group folks looking for work. There’s a deep talent pool on the bench, an opportunity for someone.

Apple offering work-from-home support roles to retail employees

Joe Rossignol, MacRumors:

Apple has recently contacted some of its retail employees in the U.S. with an opportunity to work from home as a support advisor on a temporary basis due to the ongoing pandemic, according to sources familiar with the matter.

And:

Retail employees who accept this offer will receive the necessary equipment from Apple to offer support to customers by phone or online chat, as well as a small cash incentive, one source noted.

Looks like this offer applies to all retail employees.

How to enable waiting rooms in Zoom to prevent ‘Zoom bombing’

Zoom bombing. What are people thinking? And especially Zoom bombing like this.

The past week had not been good for Zoom. But no doubt, it fills a need and people will continue to use it. So follow the link, learn about waiting rooms, see if that’s a solution for you.

Russia ban on iPhones, computers without government mandated apps postponed

Mike Wuerthele, AppleInsider:

Russia’s lower house of parliament passed legislation in November 2019 that makes it mandatory for devices such as Apple’s iPhone that feature apps to include pre-loaded Russian-made ones. The legislation threatening the ban encompasses smartphones, computers, tablets, and televisions.

And:

Tass isn’t yet clear on the reasons behind the postponement. The delay may be technical, but is more likely related to the COVID-19 outbreak that is complicating device production and development at the moment.

Not the best time to hinder technology that allows people to communicate. The postponement makes a lot of sense.

Apple Pay and COVID-19

From the headline linked post about Publix rolling out Apple Pay:

A post on Reddit by user Gabriel2790 shows a picture of an internal document. “Contactless payments are coming to our store! What does that mean,” asks the document. “The most commonly known forms of contactless payment are Apple Pay and Android Pay.”

The document goes on to explain how customers will be able to use mobile phones, smartwatches, and contactless credit and debit cards, as well as what cashiers can expect from the transaction. At the bottom of the document, it shows that the store in question will receive the ability to accept contactless payments on March 31, 2020.

The number of in person credit card transactions is dwindling. But those few that still occur highlights the issue with someone else handling your credit card or placing your credit card in a slot that has held other people’s cards.

When Apple Pay first rolled out, I mostly thought about security and convenience. But now I think about transmission, in this case, of COVID-19.

In these days of fewer and fewer in person transactions, I can only imagine Apple Pay is showing shrinking transaction numbers along with all the other players. But as we emerge from this cocoon, I see big potential for Apple Pay, assuming the value of truly contactless payments is not lost as we rush to return to “normal”.

iOS 14 code reveals kids mode for Apple Watch activity rings

Zac Hall, 9to5Mac:

9to5Mac exclusively reported earlier this month that iOS 14 and watchOS 7 will include a new SchoolTime mode and kid mode. The latter feature includes the ability for a parent to set up and manage an Apple Watch for a child with a single iPhone.

Here’s a link to that post.

When an Apple Watch is configured in this new kids mode, Apple will treat the Activity rings differently for the first time.

And:

Apple Watch will instead replace the active calories metric for the move ring with a move time. For example, Apple Watch can track a goal of 90 minutes of movement throughout the day instead of 500 active calories burned.

I’ve long wondered (pure speculation on my part) if Apple would ever release an Apple Watch specifically for kids. One with geofencing built in that would notify parents if their child left school, or home. An active notification, rather than the passive use of “Find My”.

And, of course, sold in a smaller size, with kid oriented watch faces and bands.