TWiT: Zoom, But Use Protection

I have the privilege of being on MacBreak Weekly almost every week but it's still really fun to go on This Week in Tech and talk about the wider range of stories affecting us all.

Apple+Google COVID tracking app, 5G towers burning, Zoom tips

With Leo Laporte, Georgia Dow, Owen JJ Stone, and yours truly.


AirTags: Apple’s Next Little Thing

New iPhones are cool. The new entry-level iPhone is cool, the upcoming iPhone 12. Cool. But sometimes it’s what comes with new iPhones that ends up being really cool. Like the iPhone 7 and AirPods.

And… I think it’s about to happen again. With AirTags.

If you’re not familiar with the term, AirTags are the long-rumored little thin-mint shaped accessories from Apple that’ll give pretty much anything you own Find my iPhone-like capabilities. Maybe better.

Now, Apple hasn’t announced AirTags yet, not at the September 2019 iPhone 11 event that was… or at any March 2020 iPhone event that wasn’t.


Apple has been slow jamming all the set up work for them for over a year already, starting with the new Find My network last June at WWDC 2019 and a deeper dive at BlackHat 2020.

Now, as you know, I’m never as interested in the what and when as I am the how and why.

So, let’s start with the how, or the highly differentiated user experience in Apple parlance.

I figure it’s going to go something like this:

You unbox your AirTags and immediately pair them with your iPhone or iPad. On the outside, it’s super slick and easy, just like AirPods. Tap to connect and done.

On the inside, though, something really clever happens. And it’s all about privacy and security.

The set up creates an elliptic curve P-224 private key pair as well as a symmetric key and stores both in your iCloud Keychain, Apple’s built-in security system, and then syncs it to all your other Apple devices over secure CloudKit. The same way health data and other sensitive information gets synced.

Then, let’s say you put an AirTag in your house keys and…

…promptly lose your house keys.

Maybe on your next trip to the supermarket because that’s pretty much the only place many of us can go right now.

OK, so, what AirTags do, their literal one job, is to broadcast a Bluetooth Low Energy beacon. Think of it as an uterly silent ping… ping… ping. That just says “I am here.”

Now, the beacon is based on your symmetric key which, because of P-224, is 28 bites, and fits just ever so nicely inside the 32-bite packet limit for Bluetooth 5.0.

Because it’s Bluetooth, it doesn’t matter if that the AirTag isn’t on Wi-Fi or a cellular network. It’s doesn’t need to get on the world wide internet. It’s just raising its electromagnetic hand locally. Hyper locally. Within Bluetooth range.

Because it’s Low Energy, it’s also going to have minimal impact on battery life. Which is good. Because a dead AirTag would be much harder to find.

And, because the beacon is only BASED on your static symmetric key, even though it’s pinging away like the Red October over there, it makes it hard for anyone to use those pings to try and track you over time and space.

See, what it does is take your symmetric key and, every 15 minutes, uses it to generate a second key that’s based on your original key and that time interval. Then, it derives a third, public key and uses that to unlinkably diversify the actual data in the ping it’s so busy broadcasting out.

To ridiculously over simplify it, it’s like taking the letters of your name, adding all the letters that spell out the time, shaking them all together, then wrapping them up in a new rando lock-box every 15 minutes, and throwing the box into a lake filled with other boxes that are also changing, seemingly at random, every 15 minutes.

You know your name and you have the key to the box, but good luck to anyone else trying to break in and figure it all out.

What this means is, shopping malls can’t the AirTags ping to log you as you go from store to store, not for longer than 15 minutes, and no one can use it to track your location for any longer than that either. Not in any place where there’s any density of Bluetooth activity.

Now, if someone else with an Apple device comes within Bluetooth range of the AirTag attached to your house keys, and they’ve also opted-in to the Find My network, they become what’s called a finder. And no, that doesn’t make the rest of us losers. Except for that yeah, we lost our wallet. But whatever.

Here’s what happens next:

The finder’s device, let’s say it’s an iPhone, will pick up the public key being broadcast by your AirTag and use it to ECIES the finder’s location. That data is then hashed into a lookup index using SHA256 and relayed to Apple.

So, Apple ends up having your public key and the location where it was broadcast stored for that lookup table.

Now, your identity remains private because the public key doesn’t contain anything about it. It’s just a pseudo-random blob of data. So, the finder has no way of knowing who you are just because they came within range of your AirTag or house keys.

And because this is all happening behind the scenes, the finder doesn’t even know they’re relaying any information to Apple or maybe even that your house keys are there. Not unless they stumble on them completely separately from the Find My system.

Second, if you’re the finder, you don’t have to worry about your privacy either. The location data comes from your iPhone using typical location services — Wi-Fi router mapping, cellular triangulation, assisted GPS, but nothing aside from the location is sent. Nothing that says you’re the one at that location. You could literally be anyone.

Also, because Bluetooth LE, and things like network coalescence, which basically just means Find My waits to relay until the processor and modem are waking up anyway, like to check for messages, there’s very little impact on the finder’s battery life either. Even if it’s constantly, passively, picking up pings. Just like it would be from AirPods, Apple Watch, AirDrop, or other accessories or features anyway.

And, the Find My network is opt-in. No one has to be a finder and relay AirTags if they don’t want to. Though the more literally the better for everyone.

The relay is encrypted from the finder’s device to Apple, so even if somebody bothered to try and eavesdrop on it, all they’d get is that pseudo-random blob. And, since Apple doesn’t have your private key, only your devices do, Apple can’t tell what’s in the blob either. Not that it’s for your device, not what time, and not where. All Apple can do is store the report or reports as they come in.

Ok, so, how do you get your house keys back?

Well, once you realize they’re missing, you turn on your iPhone, hit the Find My app, and tap on the AirTag that’s attached to them.

Then, your iPhone will first pull that AirTag’s information from iCloud Keychain and start going back and computing all the 15-minute interval public keys and lookup indexes its generated, and ask Apple’s servers for any matching reports.

If there are any, Apple will send them down, again as encrypted blobs between their servers and your iPhone so no one can listen in, and then your iPhone will ECIES decrypt them and show you where your AirTag has been, and when.

In other words, your house keys will just show up in Find My the way your iPhone or iPad or other Apple kit has for years now and, hopefully, you’ll simply be able to go out and pick them up. No frantic calls to families or locksmiths, not with all this going on as well.

Right now, today, you can use Find My to ping any device with a speaker — yes, fine, one ping only — so you can try to find them even if you can’t immediately see them.

But, accessibility not only demands options but really is for everyone. So, soon, I imagine that soon you might be able to use things like the U1 spatial positioning chip in the iPhone 11 to laser pointer the location of your lost device, or the LiDAR scanner on the new iPad Pro to augment the reality of the world transparent around you and make your lost items glow. Like neon.

That’s the how. The way, in this case, I think is easy: AirTags, like AirPods, will further add to the value of owning an iPhone, and the network value of owning multiple Apple products. Yeah, the ecosystem play.

For Apple, they spent a decade building up the iPhone and iCloud as a platform so they can now use that platform to build up the next decade of products… and more recently, services. AirTags+?

For us, we get convenience and features greater than the some of any individual part.

But, there will be a few question, even controversies Apple will have to address.

First, some people are going to worry that AirTags will be abused by bad actors. That someone could just drop one into your gym bag and use it to track you.

That’s something Apple should get ahead of right away, during the introduction, however it’s done.

Sure, people can do that already with similar, existing products like Tile. And never mind every action show on TV has had a plot or several showing exactly that being done with a cell phone. That won’t stop it being made all about Apple, because nothing makes a product or headline as mainstream as making it all about Apple.

Second, some people are going to accuse AirTags of stepping all over Tile, because Tile is similar and already exists. Just like there were headphones before AirPods and prior versions of pretty much everything Apple’s ever made.

Apple’s advantage will be integration with Apple devices in a way that’s not only unmatched by third parties but unmatchable. Tile’s will be the ability to do everything Apple typically refuses to do, like offer a lot of options, including cross-platform support for Android.

AirPods are super popular now, to be sure but, in part thanks to them, we now have very similar headsets and much better competition from a wide range of companies.

Apple could, and I’d argue should, offer APIs, application programming interfaces, for third parties to make all this stuff better for everybody. Sure, Sony or Tile wouldn’t be able to do anything like the custom silicon Apple will be pouring into their own accessories, but Apple should want any experience to always be better on Apple devices.


MacBook Air (2020) Review: One Month Later

The new MacBook Air, an update to the 2018 redesign, got pretty good reviews when it came out a month ago. People liked the new keyboard, the new chipsets, and the lower price. But, there were a few criticisms as well. Basically, the still low-res webcam, some concerns about thermal throttling on the faster CPUs, and the battery life.

Since then, I've had time to pound on the Magic keys, compare the webcam to pretty much everything else I have, really dig into the thermals, and there's even been a macOS Catalina supplemental update.

So, what's the verdict? Read the whole thing in my weekly column over at iMore.


VypDrive: Going Indie

Vyyyper streams his streams. Or something like that. I love chatting with him and really appreciate the way he brings on so many diverse personalities and lets them share their unique insights and situations with his viewers. Your's truly included.


The Dalrymple Report

Jim was one of the first people to call me up after I tweeted that I was leaving iMore, and he's not only been a mentor but a good friend for almost a decade. Even if he moved from Canada to the U.S. and left me all this snow.

We’re back after a three week hiatus and we’re joined once again by Rene Ritchie. Rene has some big news to talk about this week, and we delve into the streaming services I’ve been trying out while in quarantine.


Rocket: WeWork Continues

Next up, Brianna Wu, Christina Warren, and Simon De Rochefort were kind enough to have me join the on Rocket, one of my absolute favorite tech shows:

We've got another special guest this week: Rene Ritchie, who has just left iMore after a long tenure to fly solo with his own YouTube channel! But first, another installment of the WeWork saga, the Stalk Market, and then finally Resident Evil 3.


The Talk Show: A Kryptonian Baby

I have amazing friends and peers who, upon hearing I left iMore to go indie, invited me on their podcasts to help get the word out about my new gig. I'm grateful in the extreme.

First up, John Gruber's The Talk Show:

Rene Ritchie returns to the show to talk about going independent after 11 years at iMore. Topics include the new MacBook Air and iPad Pros, and we answer questions sent by listeners.


Apple, Google releasing APIs for COVID-19 Tracking on iOS, Android

Apple and Google partner on COVID-19 contact tracing technology

There will obviously be privacy concerns, but Apple has built up a solid reputation here and I'm hoping we can trust them to make sure data is collected with full disclosure and used ethically and appropriately.

That understood, this is fan-freaking-tastic. Kudos to both companies for making it happen.


Today at Apple… at Home!

I've been waiting/hoping for this to happen. These courses are terrific and I'm so very glad Apple is sharing them online now.


The New iPhone 12 Home screen. Kinda.

Yesterday I talked about an iPhone 12 diagram supposedly ripped from a leaked internal iOS 14 build. Well, there were also a couple other diagrams leaked as well, one of which shows a new iPhone Home screen. Or, at least that’s how many people ran with it. What it really showed was a Rorschach test for whatever it is you secretly wish the iPhone Home screen, or Springboard, would look like.

We’ll only know for sure when Apple shows off iOS 14, presumably in June.

But, what it does give me, right now, today, is this excuse to tell you what I want to see:

Constrained customization. That’s it.

But hear me out.

I want a grid that I can fill up any way I like, and configure however the mood strikes me.

Black Home screen with grid overlay

First, I want a search box, a whole horizontal row. Like Spotlight is now, but always there if I want it to always be there.

Yeah, just like Android has had since Cupcake or beignets, or whatever. Good is good.

If my primary means of finding secondary or tertiary apps, buried somewhere on some Home screen in the stack, is to swipe down Spotlight and start typing, then just let me save myself that swipe. Just let me tap and start typing.

Also, in addition to letting me type out search queries, let me type out commands. Actions.

Basically, anything I can say to Siri to do I should be able to type to Spotlight. webOS, even BlackBerry 10, used to have this feature. It was great. It can be great again.

And I know, swiping down for spotlight isn’t hard. Talking to Siri isn’t hard. But not everyone experiences the world in the same way and the option for Spotlight and Siri object permanence and the ability to just type when it’s socially awkward to talk, or if you can’t talk, isn’t just a nice to have.

Second, complications, like on the Apple Watch. One by one, two by one, two by two. Four by one. Hey, maybe even four by two. You can call them widgets if you like but, to me, Apple Watch complications have always been more glanceable, more information-filled, and just flat-out more useful than any widget system. At least for me.

And I know… I know…. for years we’ve been told that people don’t use widgets. That they look nice but almost no one ever changes the defaults or interacts with them in any meaningful way. For non-nerds, they’re decorative. Ornamental.

That’s why the Mac Dashboard went away and modern Android phones are far cleaner than back in the glory days of HTC.

And maybe iPhone owners only want them because we don’t have them.


I’m willing to bet the company that’s been iterating on the Watch system for years could figure out Home screen complications. And Lock screen complications too.

Third, a row or more of Siri suggested apps. Siri don’t always talk good, but man alive are the suggested apps so almost always on point.

Thanks to a variety of signals from past behavior to current time and location, I can’t tell you how often I swipe down to Spotlight an app and it’s just already there, right there, staring back at me, good to go.

And I know… again, I know… it’s a slippery slope. When apps are static, always exactly where you expect them to be because they’re always exactly in the same place, you can build up muscle memory. You don’t have to scan for them. Don’t even have to think about them. There’s almost no cognitive load. You just tap, sometimes before you even realize it.

But having the same app in the same physical space is also limiting, because physical space is limited, and no two apps can occupy it at the same time.

Siri suggested apps add the element of time, effectively multiplying the space out towards infinity.

They could even work like Watch faces in a way, where you could set up a few different options based on time and location. Ones that are biased towards being at home or traveling, going to the Gym or when a game is on. Whatever.

Fourth would be those static apps, and for every reason I just said. There still needs to be a place for our most frequently used apps to be just exactly where we expect them to be, so we can hit them whenever we need them without a first thought, never mind a second.

The dock is already super static but it’s also super set in its ways. If you want to go crazy and have two rows, though, why should the dock stop you? It’s not the boss of you. Have two rows. Or a little arrow that pops it double, like Siri Suggested apps already have. Or, and I’m just spitballing here, an expander that opens it up to a full on app drawer that contains everything you’ve ever downloaded from the store, sorted how you like, in grid or in list view like the Watch does and some other rumors have already suggested for iOS 14.

Fake concept mock up Home screen

That’s what I want. And if you just spent this entire video thinking, wait, all Rene’s really just done is describe the minus one Home page already does, you know, the Today View or widget screen or whatever you want to call it, if you think all I’ve just done is describe that with a few tweaks…

Well, then, you’re exactly right.

See, I think Apple’s been not-so-secretly experimenting on us for years with the minus one Home screen. Trying out all the less conventional, more interesting ideas there, safely adjacent to the good old — really old — main Home screen grid.

They’ve just never had the nerve to let us make it the main Home screen. To take it from minus to one. To flip a switch, demote the grid, and promote this admitted more complex but also more flexible system to prime time.

To do pretty much what the Apple Watch did from the very beginning and has gotten much better at in recent versions of watchOS — make the launcher not just a static launcher but a flexible, context sensitive informer as well.

I mean, I get it. Back when Steve Jobs introduced the original iPhone, with a Home screen that looks so very much like it still does today, it was never meant to be a destination. No one was meant to just sit on the Home screen and… abide.

It was meant to be a jump point. The place from which you could launch into any of a handful of apps at first, hundreds of thousands now.

Just like the Home button was meant to be an escape hatch. Something that jumped you back to a known state any time you finished what you were doing or simply got lost and wanted to go back.

Now, the Home button is fading and a better, more flexible, and yes, more complex gesture navigation system has taken its place.

So, maybe it’s time for the old Springboard to fade as well, and let the better, more flexible, and yes, more complex minus one Home screen take its place. If not as the default yet, than as an option for those who are ready.

Ready to stop chasing after our apps and to have those apps, their superficial information and modularized functionality, all come to us.