807
        you are viewing a single comment's thread
view the rest of the comments
    
  
  
    view the rest of the comments
        this post was submitted on 07 Oct 2025
        
  
      
  
      807 points (100.0% liked)
      Technology
    76544 readers
  
      
      3052 users here now
  
      This is a most excellent place for technology news and articles.
Our Rules
- Follow the lemmy.world rules.
 - Only tech related news or articles.
 - Be excellent to each other!
 - Mod approved content bots can post up to 10 articles per day.
 - Threads asking for personal tech support may be deleted.
 - Politics threads may be removed.
 - No memes allowed as posts, OK to post as comments.
 - Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
 - Check for duplicates before posting, duplicates may be removed
 - Accounts 7 days and younger will have their posts automatically removed.
 
Approved Bots
        founded 2 years ago
      
  
  
      MODERATORS
      
  
    
The vast majority of malware isn't delivered via play store because of the existing measures and protections they have. Same reason you see very little app-store-based malware on iOS. DISCLAIMER: YES MALWARE EXISTS ON APPLE HARDWARE PLEASE DON'T SHOUT AT ME. Talking specifically about anything installed via first party stores on both platforms.
Their main issue is this: dumb people install apks from spurious website and infect their phones. The least controllable and most pervasive factor here is the intelligence and knowledge of the user which cannot be controlled for by Google. So by eliminating the ability to exploit this entirely, it will eliminate that specific vector.
It's a sledgehammer solution that naturally comes with many downsides like disrupting intelligent and knowledgeable users that just want to hack around with FOSS and such.
Google is relying on It being too expensive for malware creators to have to guide each individual user through adb installation and usage process just to get access to their phone. Most scammers only do that level of interaction to extract actual cash/gift cards from the target.
I am personally and directly affected by their decision in many negative ways, but I'm not so dense as to not understand why they're doing it.
/corpodronespeak
EDIT: bots help Xitter maintain inflated usage figures which justify people's jobs, share prices, etc. Bots are a feature, not a bug.
yes, of course malware is distributed via apk.
But what's the difference between:
?
Isn't exactly the same stuff? Or there's someone that is actually thinking that criminals will use their real ID card for the verification?
Does not change anything for malware distribution, except bother them for a dozen minutes meanwhile they "verify" their stolen ID
Because it can be invalidated. That's the difference.
It's absolutely not foolproof, but nothing is. Most actions corps take for this stuff only slows down the spread. Hackers and bad actors innovate way faster than companies can keep up with. So companies cast a wide net with their solutions. And the cycle continues.
No they don't. Most people don't even know what an apk even is.
Most people don't know what a bootloader is. They still turn their devices on and off every day.
This whole conversation is about adding obstacles to prevent non technical users from doing things they don't fully understand.
The overwhelming majority of Android users don't even know where to start to install software outside of the Play Store. If they're even aware that it's possible.
It's actually an incredibly common way that they are infected, especially in places where WhatsApp is the default communication platform
Yes you're right. If they knew, it would likely come with the knowledge that, if someone asks you to do this, you're probably being scammed.
That's what makes them most vulnerable to these kinds of scams.