Live data from Hacker News

Android 10: Google Confirms 193 Security Vulnerabilities Need Fixing

forbes.com

1–10 of 70 posts

Re: Android 10: Google Confirms 193 Security Vulnerabilities Need Fixing

#2
>The top changes include "scoped storage" to give users more control over files by only allowing Android 10 apps a filtered view of their app-specific directory and specific types of media.

A great change. I don't mind having to spend some time going over each time, making sure the right settings are in place for security and privacy.

The other changes for location and camera access by apps are good too. Just hope the update will include my old-ish device.

Re: Android 10: Google Confirms 193 Security Vulnerabilities Need Fixing

#3
> Google will now require developers to use resettable identifiers to keep track of users. That way, if these digital fingerprints are ever compromised, or if you want to wipe your digital slate clean, there's a mechanism to do that.

Does this mean device fingerprinting will no longer be allowed?

Re: Android 10: Google Confirms 193 Security Vulnerabilities Need Fixing

#6
post #4

Google is really doubling down on privacy right on the heels of repeated scandals. Wonder if i will last longer than customer's memory of said scandals before they go back to the business model that brings them the money.

As long as we get to reap the benefits at least for a bit - I'm happy. Plus, I always find that a bad company/product trying to do better often spurs on superior competitors. WhatsApp has been rubbish for a while now and so better messengers like Wire, Telegram, Signal etc. have appeared. Maybe someone will use Google's new privacy-related advances to improve their service as well.

Re: Android 10: Google Confirms 193 Security Vulnerabilities Need Fixing

#7
We can still not sandbox apps access to data by default. Numerous academic projects have show how this can be implemented, e.g. by fudging data when details are not needed. Also, in order to get these security fixes I have to buy a new device from one of their partners.. Google has failed society by advancing surveillance capitalism to the extreme.

Re: Android 10: Google Confirms 193 Security Vulnerabilities Need Fixing

#9

> Google will now require developers to use resettable identifiers to keep track of users. That way, if these digital fingerprints are ever compromised, or if you want to wipe your digital slate clean, there's a mechanism to do that. Does this mean device fingerprinting will no longer be allowed?

Alas not allowed != not happening. Just look at the eternal grindstone Apple has to go through.

Re: Android 10: Google Confirms 193 Security Vulnerabilities Need Fixing

#10
post #7

We can still not sandbox apps access to data by default. Numerous academic projects have show how this can be implemented, e.g. by fudging data when details are not needed. Also, in order to get these security fixes I have to buy a new device from one of their partners.. Google has failed society by advancing surveillance capitalism to the extreme.

my android one branded Nokia has had a decent amount of updates and my partner's last few Motos. it's getting better for Android slowly
Post reply on HN