Apple says side-loading apps could lead to iPhone security disaster

The App Store on a phone screen
(Image credit: Shutterstock / BigTunaOnline)

Apple has shot back at EU draft rules that would force the company to allow its users to sideload iOS apps on their devices.

The iPhone maker has voiced strong disagreement with the proposal citing the prevalence of malware in the Android ecosystem, which it argues is a direct result of enabling side-loading of apps.

“If Apple were forced to support sideloading, more harmful apps would reach users because it would be easier for cybercriminals to target them – even if sideloading were limited to third-party app stores only," claims Apple’s new report that presents a threat analysis of sideloading.

TechRadar needs you!

We're looking at how our readers use VPNs with streaming sites like Netflix so we can improve our content and offer better advice. This survey won't take more than 60 seconds of your time, and we'd hugely appreciate if you'd share your experiences with us.

>> Click here to start the survey in a new window <<

The report comes in the backdrop of the EU’s antitrust investigation against Apple initiated at the behest of Spotify, for its apparent anti-competitive practice of forcing app developers to use its proprietary App Store for app installations and payments.

Can of worms

Speaking to TechRadar Pro, Ilia Kolochenko, founder of ImmuniWeb, and a member of Europol Data Protection Experts Network explains that “security by obscurity” is one of the main pillars of Apple’s mobile security model that actually works pretty well compared to Android. 

Kolochenko argues that by closing its mobile ecosystem to any third parties, Apple does indeed prevent countless mobile attacks. That said, he agrees that critical vulnerabilities in iOS that allow remote code execution expose the platform to abuse, and there have been reports of malicious iOS apps also managing to bypass Apple Store’s multilayered controls and get installed by unwitting users. 

"That being said, even if security by obscuring is clearly not a panacea, opening Apple’s ecosystem to third parties will, undoubtedly, bring a tenfold increase in malware targeting iOS devices and undermine Apple’s security model,” believes Kolochenko.

Just a distraction

The report cited figures from cybersecurity vendor Kaspersky, which showed that Android devices are affected by nearly six million attacks per month.

However, speaking to Reuters, Damien Geradin, lawyer for the Coalition for App Fairness, dismissed Apple's arguments, saying that built-in security measures such as encrypted data and antivirus apps are responsible for securing the devices, and not Apple’s App Store.

He asserts that Apple is focusing on sideloading to step away from the real issue.

"What matters to us is the obligation imposed on developers whose apps sell digital goods and services to use Apple In-App payment system," he told Reuters.

Via Reuters

Mayank Sharma

With almost two decades of writing and reporting on Linux, Mayank Sharma would like everyone to think he’s TechRadar Pro’s expert on the topic. Of course, he’s just as interested in other computing topics, particularly cybersecurity, cloud, containers, and coding.

Read more
AirDrop on an Apple device.
The EU could force Apple to put AirDrop and AirPlay on Android phones
Actalis SSL encryption
Apple is right not to bow down to the UK government's encryption backdoor request - but users should still be angry
A close-up photo of an iPhone, with the App Store icon prominent in the center of the image.
App stores are increasingly becoming a major security worry
A hand holding an iPhone with the iCloud logo on screen.
UK's Apple iCloud backdoor "jeopardizes the security and privacy of millions," warn experts
ignal messaging application President Meredith Whittaker poses for a photograph before an interview at the Europe&#039;s largest tech conference, the Web Summit, in Lisbon on November 4, 2022.
"We will not walk back" – Signal would rather leave the UK and Sweden than remove encryption protections
A hand holding an iPhone showing the logo for the Hot Tub app
The iPhone’s first official porn app has just landed in the EU – and Apple really isn’t happy about it
Latest in Phone & Communications
GlocalMe KeyTracker
When I tested this global tracker, it trounced the Apple AirTag in so many ways
Privacy Hero II
I tested this secure router and the bundled year of VPN service feels mostly like a marketing exercise
ThinkPhone 25 by Motorola
I reviewed the ThinkPhone 25 by Motorola and while it's not as fast as its predecessor, it's the superior phone in so many ways
FRITZ!Box 7690 WiFi 7 Router
FRITZ!Box tries to embrace both business and home customers with its new 7690 router
Ulefone Armor Pad 4 Ultra Thermal
Other than screen reflection, I’m still looking for the downside to the Ulefone Armor Pad 4 Ultra Thermal tablet
Unihertz Tank Pad 8849
Carrying the Unihertz Tank Pad 8849 provided me with a full workout
Latest in News
Stress
Complexity of IT systems could be increasing security risks for businesses
Ai tech, businessman show virtual graphic Global Internet connect Chatgpt Chat with AI, Artificial Intelligence.
CEOs think they might lose their jobs if they can't deliver on AI
Tony Hawk&#039;s Pro Skater 3+4
From Ace of Spades to Them Bones, Tony Hawk's Pro Skater 3+4's soundtrack is already looking excellent
An AMD Radeon RX 9070 XT made by Sapphire on a table with its retail packaging
AMD describes its recent RDNA 4 GPU launch as 'unprecedented' and promises restocking the Radeon RX 9070 XT as 'priority number one'
The Google Gemini logo against a black background.
I tried Gemini's new AI image generation tool - here are 5 ways to get the best art from Google's upcoming Flash 2.0 built-in image upgrade
An image of the Samsung Galaxy S25 Ultra from a hands-on event
Samsung Galaxy S26 Ultra could resurrect an intriguing camera feature