# MacOS Security Design Features, Flaws, And Futures - Patrick Wardle - ASW #392 Page: https://stenobird.com/podcast/security-weekly-podcast-network-audio-319755/macos-security-design-features-flaws-and-futures-patrick-wardle-asw-392 Text version: https://stenobird.com/podcast/security-weekly-podcast-network-audio-319755/macos-security-design-features-flaws-and-futures-patrick-wardle-asw-392.md Podcast: [Security Weekly Podcast Network (Audio)](https://stenobird.com/podcast/security-weekly-podcast-network-audio-319755) Published: 2026-07-21T09:00:00+00:00 Episode link: http://sites.libsyn.com/18678/macos-security-design-features-flaws-and-futures-patrick-wardle-asw-392 Audio file: https://dts.podtrac.com/redirect.mp3/traffic.libsyn.com/secure/pauldotcom/ASW_392_1--dd54e5ec-1c44-4b95-a180-6783e400a446--audio-converted--7f99787d-5369-4d3b-ab57-177186e2cb91.mp3?dest-id=13427 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/security-weekly-podcast-network-audio-319755/episodes/macos-security-design-features-flaws-and-futures-patrick-wardle-asw-392 Duration seconds: 4326 ## Resource Appsec often frames usability and security as at odds with each other. Apple's software has famously emphasized the importance of usability while also creating a solid security foundation. Patrick Wardle talks about how he's seen malware shift from Windows to macOS, how Apple's aggressive stance on deprecation benefits security, and the areas of the OS where he still sees plenty of opportunity for more security research. We discuss how developers make defensible design choices, why privacy needs security, and some security principles that any app developer should keep in mind regardless of their programming language or operating system. Resources: https://objective-see.org/blog/blog_0x86.html https://objective-see.org/products/lulu.html https://objectivebythesea.org/v9/index.html Visit https://www.securityweekly.com/asw for all the latest episodes! Show Notes: https://securityweekly.com/asw-392 ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/security-weekly-podcast-network-audio-319755/episodes/macos-security-design-features-flaws-and-futures-patrick-wardle-asw-392/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/security-weekly-podcast-network-audio-319755/macos-security-design-features-flaws-and-futures-patrick-wardle-asw-392.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.