post
POV: You're Google and think EU didn't fine you enough lately.
I don't think it's quite a bad as the title implies, though I wonder how long this slow process of locking down Android will contained continue for. Hopefully the EU demands from the likes of Epic will stop too much control being taken away from the user.
This is why I decided to not use Google services this Graphene install. I have zero doubt Google is going to try and lock down the ability to use anything outside of the PlayStore in an IOS type move. Just hope a better Linux based phone gets done quickly because I'm not sure how many iterations of alternate Android OS generations will be able to exist as they lock things down.
Though I understand the reason, I find this ironic given how invasive play store apps can be. My cars official app requires full location access all the time, otherwise it pops up asking for it every time you open it. Meanwhile some FOSS app that can be code reviewed and sideloaded is more difficult to give needed acess.
and FOSS apps that can be fully code reviewed and confirmed safe, unlike anything proprietary, will still cause banking apps to refuse to run on your unrooted device. I had to go back to carrying a physical key around with me. (the foss apps were there first)
They need it for 2 things I believe.
- They show a map where vehivle last parked compared to you.
- They could use it for their proprietary phone as key feature that doesn't work and is unreliable compared to using UWB.
- Gonna add this one since its totally the reason, sell your data. They store the car data, why not get the phones location data so you can get them all the time!
Sideloading is the only reason i use android over ios...
Ironically sideloading is pretty easy on iOS nowadays
all it does is prevent sideloaded apps from having access to sensitive permissions by default, which is a good thing.
Personally, I like the first one and wouldn't use an option to automatically give those permissions to all apps.
Being a power user doesn't make anyone immune from malware, it just needs to pass some sniff tests. It was by luck that that backdoor in the Linux kernel was found and it's naive to believe every single malware app is going to be obvious with unrealistic promises and/or bad grammar and spelling. Permissions requests are a clue that an app is doing something it shouldn't be. And Facebook is considered trusted by many despite an insider even confirming the "talk about something near your phone and fb will advertise it to you" being real.
When you download an app, unless you either wrote it yourself (including all libraries) or have checked the source for open source apps (again including libraries), you can only guess at what it is really doing. And just because an app does what it claims to do doesn't mean it isn't doing anything else, so the "well, it does work" test isn't a great security test.
For the app developers being able to block side loading, it says it uses meta data to enforce that. Couldn't modders just modify that meta data so that it doesn't realize X' app is actually a modified X app? It would need to do something more complex than a checksum or hash to detect it's the same app.
I mean, I love "fuck Google" bandwagons, but either I'm missing something or this one doesn't seem like that big of a deal.
Wait, am I to understand they're intending on making it that you cannot just install any apk you choose because it's your phone and your business? Is that going to be no longer possible?
If you were to read the article you'd find that sideloaded apps will have restricted permissions that the user will have to un-restrict one by one.
Will the permissions still be allowable by goinv to the app info page from the settings, clicking the 3 dot menu in the corner and taping to allow restricted settings?
top 50 comments