3 ms·
No, what's really disappointing is FUD directed at debugging tools. These sorts of "presentations" and "research" are pointless. Anyone who does IOS developme
by ddp 12y ago
No, what's really disappointing is FUD directed at debugging tools. These sorts of "presentations" and "research" are pointless. Anyone who does IOS development knows about these tools, they're not secret. Apple has Tech Notes and documentation in Xcode on them going back years. Let's please try to focus our ire where it's needed.
And to whoever said that Google is "very open" about their malicious app problems, well, gosh, where to start...
Google's Android is the cause of the malicious app problem. By not allowing users to have fine-grained access control on the various entitlements in Android, Google is forcing users to adopt an all-or-nothing approach to every app they download. Don't like that this app wants access to your Contacts? Fine, then don't install it. The root problem here is not allowing the user to determine, after-the-fact, what privileges an app should have. Apple gets this right, Google fails miserably.
Of course there's also no one Android. You know that, right? There's a bunch of different Androids from a bunch of different carriers all of which run different hacked-up versions littered with a bunch of crap code from carriers that almost no one wants. Code which I imagine is also littered with security bugs because it's written by carriers who barely give a damn if this junk even works and wouldn't know "secure" if it hit them in the head.
And on top of all that, depending on your phone and depending on your carrier, that brand new phone you just bought might even be running an Android that's years out of date and full of known vulnerabilities. There's no comparison when it comes to timely IOS security updates and Android. The Android ecosystem is a complete fail on the security front at the moment. Period.
Google can play dumb if they want. Plausible deniability is oftentimes quite useful after all...
- cbtacy 12y agowell played fanboy. well played.
- happyscrappy 12y agoThese type of stories are up voted without being read because, despite intimations that iOS users are hipsters, the real hipsters are people who use Android because of some imaginary freedom. Most Android users don't care about fake hipster stances and just want a cheap phone. They are not willing to pay for security and they have none as any moderately talented hacker can own an Android easily even if the user only uses apps from Google's walled garden due to carrier foolishness. Pretty sad to see HN so taken in by this nonsense.
- rahimnathwani 12y agoHow could a cracker own my Android? I bought an unsubsidised Moto E. It has no carrier bloatware, and prompts me when there is a new version of firmware available. If it's not rooted, and I only install apps from Google Play, what are the known attack vectors?
- djrogers 12y agoThe answer is in the question: http://www.pcworld.com/article/2099421/report-malwareinfected-android-apps-spike-in-the-google-play-store.html http://www.pcworld.com/article/2099421/report-malwareinfecte...
- rahimnathwani 12y agoThe definition of malware in that article is quite broad, and includes apps which are just 'collecting and sending GPS coordinates'. Even if one of the apps I've installed from Google Play is malware (by the definition in the article) it doesn't mean my phone is 'owned'. An attacker can't run arbitrary code on the device or get copies of my data or send texts pretending to be me.
- awalton 12y agoWhat's really funny is that you turned an article completely about an Apple security problem that they should probably fix, into a completely off topic rant about Android. Well played.