6 ms·
I call "running unsigned binaries"
by viktorcode 11mo ago
I call "running unsigned binaries"
- RedComet 11mo agoThey are signed, though. Just not by Google.
- natch 11mo ago“Running binaries signed either by yourself or by whoever wants to spy on you.” That last part there is the problem.
- grep_name 11mo agoIt's an excuse. Give me the option to install the software I see fit. Period.
- generic92034 11mo agoIs this not a meaningless differentiation if Google does no assume any responsibility for apps on the Play Store?
- RedComet 11mo agoLet's ignore all of the preinstalled programs, which are signed by Google and do a great deal of spying. Do you think the 100 most popular F-Droid apps do more spying than the 100 most popular Play store apps?
- natch 11mo agoNo, that’s a straw man. The popular ones are not the concern.
- RedComet 11mo agoA straw man in your favor, maybe. Shall we compare the 100 least popular of each store? Those are more likely to be outright malware on Play.
- natch 11mo agoThe popularity in app stores has no bearing. Some problem apps can be on no store, just locally installed. This has been well covered in the past and you are playing catch up. It’s about abusive household members who spy on their grown children, siblings, roommates, girlfriends, parents, etc. with apps they install on their devices if given a route to do so.
- RedComet 11mo agoThe sideloading change doesn't protect against abusive household members, though. Simple lock screen hygiene and periodic reminders about invasive permissions (e.g. accessibility & location) would do more. And let us not even pretend that is the true motivation for the change. An incidental consequence that you find defensible is simply that.
- viktorcode 11mo agoSigned by any non-authorised signature is the same as unsigned from security perspective.