The 2016 MacBook Pro no longer receives the latest OS and Apple officially restricts it to Monterey. My primary concern is securty, and this end of support means the end of OS security updates (and the more rare firmware updates from Apple). I have a newer machine I use that is supported; but the 2016 MBP is still a capable machine that can be derisked and made more secure, both in macOS and additional OS partitions (such as Ubuntu). The purpose of this guide is to address that.
- Known hardware vulnerabilities in Intel processors are an issue regardless of what OS you use (another reason to consider the whole machine "insecure" for sensitive tasks)
- firmware vulnerabilities assuming Apple no longer publishes these; however, I need to do some more reading here; it's possible another OS like Ubuntu, with its own OS and drivers, may work around or minimize some of these known firmware issues, even though the firmware is lower in the stack