{"id":35883,"date":"2020-07-02T15:38:16","date_gmt":"2020-07-02T15:38:16","guid":{"rendered":"https:\/\/packetstormsecurity.com\/news\/view\/31353\/After-Six-Months-Of-Stonewalling-By-Apple-App-Dev-Goes-Public-With-macOS-Privacy-Protection-Bypass.html"},"modified":"2020-07-02T15:38:16","modified_gmt":"2020-07-02T15:38:16","slug":"after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/","title":{"rendered":"After Six Months Of Stonewalling By Apple, App Dev Goes Public With macOS Privacy Protection Bypass"},"content":{"rendered":"<p>Six months after software developer Jeff Johnson told Apple about a privacy bypass vulnerability opening up protected files in macOS Mojave, macOS Catalina, and the upcoming macOS Big Sur, the bug remains unfixed \u2013 so he&#8217;s going public.<\/p>\n<p>Johnson, who runs app developer Lapcat Software, said he submitted details about the problem to Apple&#8217;s Security Bounty program on the day it <a target=\"_blank\" rel=\"nofollow noopener noreferrer\" href=\"https:\/\/developer.apple.com\/news\/?id=12192019a\">opened<\/a> for business, December 19, 2019. The problem appears to be with Apple&#8217;s Transparency, Consent, and Control sandboxing system.<\/p>\n<p>Essentially, naughty apps can exploit the bug to access protected files, such as your browser history, that should be off limits.<\/p>\n<p>In a <a target=\"_blank\" rel=\"nofollow noopener noreferrer\" href=\"https:\/\/lapcatsoftware.com\/articles\/disclosure2.html\">blog post<\/a> on Tuesday, he explains that after asking Apple for a status update in January this year, in April, and again in June, and being told each time the iGiant is still investigating, he has decided to disclose his findings in an effort to push back against the tech titan&#8217;s boasts about security and privacy.<\/p>\n<p>&#8220;For technical reasons, I don&#8217;t believe that the issue will be fixed by Apple before Big Sur is released to the public in the Fall,&#8221; he wrote. &#8220;I&#8217;ve seen no evidence that Big Sur makes any effort in this direction, and Apple&#8217;s email to me shows no evidence of that either. Therefore, I&#8217;m disclosing the issue now.&#8221;<\/p>\n<p>He <a target=\"_blank\" rel=\"nofollow noopener noreferrer\" href=\"https:\/\/lapcatsoftware.com\/articles\/disclosure.html\">revealed a similar issue<\/a> last October after reporting it in February of that year and waited eight months for Apple to fix it, to no avail.<\/p>\n<h3 class=\"crosshead\"> <span>Mutiny on the Bounty<\/span><br \/>\n<\/h3>\n<p>Johnson in his post expressed dissatisfaction with the <a target=\"_blank\" rel=\"nofollow noopener noreferrer\" href=\"https:\/\/developer.apple.com\/security-bounty\/\">Apple Security Bounty<\/a> program, calling the experience a disappointment and stating he doesn&#8217;t intend to participate in the future.<\/p>\n<p>&#8220;Talking to Apple Product Security is like talking to a brick wall,&#8221; he said in an email to <i>The Register<\/i>. &#8220;I suspect that Apple doesn&#8217;t trust outsiders with any information, but this attitude is counterproductive, because it just alienates the people who report bugs, and turns them away from bug reporting. Distrust from one side causes distrust from the other side too.&#8221;<\/p>\n<div class=\"promo_article\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/regmedia.co.uk\/2020\/06\/23\/apple_wwdc.jpg?x=174&amp;y=115&amp;crop=1\" width=\"174\" height=\"115\" alt=\"Apple CEO Tim Cook, WWDC 2020\"><\/p>\n<h2 title=\"The Lord of the iThings will see you now\">Apple says if developers are unhappy with its App Store decisions, it will entertain appeals against its rulings \u2013 and even its own rules<\/h2>\n<p><a href=\"https:\/\/www.theregister.com\/2020\/06\/23\/apple_developer_relations\/\"><span>READ MORE<\/span><\/a><\/div>\n<p>This latest bug can be exploited by a maliciously crafted app to bypass a privacy system known as Transparency, Consent, and Control (<a target=\"_blank\" rel=\"nofollow noopener noreferrer\" href=\"https:\/\/developer.apple.com\/videos\/play\/wwdc2016\/705\/?time=674\">TCC<\/a>) that was introduced in OS X Mavericks and got strengthened in subsequent releases through technologies like System Integrity Protection (SIP) in El Capitan (the branding transition from Mac OS X to macOS didn&#8217;t happen <a target=\"_blank\" rel=\"nofollow noopener noreferrer\" href=\"https:\/\/www.theregister.com\/2016\/06\/09\/apple_to_kill_off_mac_os_x\/\">until mid-2016<\/a>).<\/p>\n<p>Starting in 2018, with macOS Mojave, TCC expanded to require apps to get special permission to run AppleScript, and that&#8217;s when, Johnson says, developers really took notice of it.<\/p>\n<p>TCC is a sandboxing system designed to enforce user privacy decisions, like approving or denying app access to location data or data stored in files like the contacts database. What Johnson discovered is a way to let unauthorized apps access protected files.<\/p>\n<p>His proof-of-concept code demonstrates how a user-installed macOS app can access files that should be protected by TCC, specifically in <code>~\/Library\/Safari<\/code> directory, and then posts the data to a remote server. The files stored in that directory include lists of bookmarks, browser history, downloads, and other data related to browsing sessions. If another app were targeted, the bypass would provide access to other app-specific files.<\/p>\n<p>The bypass is made possible by two flaws. First, exceptions to TCC blocking \u2013 specified by the file <code>~\/Library\/Application Support\/com.apple.TCC\/TCC.db<\/code> \u2013 rely on the app&#8217;s bundle identifier instead of the file path. So an app with a copy of that identifier in another location gets treated as the original, authorized app. The other is that TCC&#8217;s code signature check is not very thorough and doesn&#8217;t spot modified resources, because running a deep check of an app and its resource files <a target=\"_blank\" rel=\"nofollow noopener noreferrer\" href=\"https:\/\/news.ycombinator.com\/item?id=23691120\">can take a long time<\/a>.<\/p>\n<p>Johnson acknowledged that a privacy flaw leaking data is not particularly serious as far as such bugs go, but maintained it&#8217;s not something that should be ignored.<\/p>\n<p>&#8220;If you believe that macOS privacy protections are important, then yes, this is a very serious issue,&#8221; he said via email.<\/p>\n<p>&#8220;On the other hand, if you were very satisfied with the level of macOS system security that existed prior to 2018, then no, you might not care about this much. In either case, though, it&#8217;s a serious design flaw in the privacy protections system.&#8221;<\/p>\n<p>Johnson said he chose to write about the flaw because he felt Apple&#8217;s increasing use of restrictive privacy systems limits what legitimate developers can do without hindering the ill-intentioned building malware.<\/p>\n<p>&#8220;My personal opinion is that macOS privacy protections are mainly security theater and only harm legitimate Mac developers while allowing malware apps to bypass them through many existing holes such as the one I&#8217;m disclosing, and that other security researchers have also found,&#8221; Johnson wrote.<\/p>\n<p>Apple did not respond to a request for comment. \u00ae<\/p>\n<p> READ MORE <a href=\"https:\/\/packetstormsecurity.com\/news\/view\/31353\/After-Six-Months-Of-Stonewalling-By-Apple-App-Dev-Goes-Public-With-macOS-Privacy-Protection-Bypass.html\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":35884,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[60],"tags":[7041],"class_list":["post-35883","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-packet-storm","tag-headlineprivacyflawapple"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>After Six Months Of Stonewalling By Apple, App Dev Goes Public With macOS Privacy Protection Bypass 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"After Six Months Of Stonewalling By Apple, App Dev Goes Public With macOS Privacy Protection Bypass 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2020-07-02T15:38:16+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/07\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"174\" \/>\n\t<meta property=\"og:image:height\" content=\"115\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"After Six Months Of Stonewalling By Apple, App Dev Goes Public With macOS Privacy Protection Bypass\",\"datePublished\":\"2020-07-02T15:38:16+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/\"},\"wordCount\":846,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/07\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass.jpg\",\"keywords\":[\"headline,privacy,flaw,apple\"],\"articleSection\":[\"Packet Storm\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/\",\"name\":\"After Six Months Of Stonewalling By Apple, App Dev Goes Public With macOS Privacy Protection Bypass 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/07\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass.jpg\",\"datePublished\":\"2020-07-02T15:38:16+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/07\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/07\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass.jpg\",\"width\":174,\"height\":115},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"headline,privacy,flaw,apple\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/headlineprivacyflawapple\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"After Six Months Of Stonewalling By Apple, App Dev Goes Public With macOS Privacy Protection Bypass\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"After Six Months Of Stonewalling By Apple, App Dev Goes Public With macOS Privacy Protection Bypass 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/","og_locale":"en_US","og_type":"article","og_title":"After Six Months Of Stonewalling By Apple, App Dev Goes Public With macOS Privacy Protection Bypass 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2020-07-02T15:38:16+00:00","og_image":[{"width":174,"height":115,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/07\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass.jpg","type":"image\/jpeg"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"After Six Months Of Stonewalling By Apple, App Dev Goes Public With macOS Privacy Protection Bypass","datePublished":"2020-07-02T15:38:16+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/"},"wordCount":846,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/07\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass.jpg","keywords":["headline,privacy,flaw,apple"],"articleSection":["Packet Storm"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/","url":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/","name":"After Six Months Of Stonewalling By Apple, App Dev Goes Public With macOS Privacy Protection Bypass 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/07\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass.jpg","datePublished":"2020-07-02T15:38:16+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/07\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/07\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass.jpg","width":174,"height":115},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/after-six-months-of-stonewalling-by-apple-app-dev-goes-public-with-macos-privacy-protection-bypass\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"headline,privacy,flaw,apple","item":"https:\/\/www.threatshub.org\/blog\/tag\/headlineprivacyflawapple\/"},{"@type":"ListItem","position":3,"name":"After Six Months Of Stonewalling By Apple, App Dev Goes Public With macOS Privacy Protection Bypass"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/35883","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=35883"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/35883\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/35884"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=35883"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=35883"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=35883"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}