|
|
|
|
|
by piffey
1199 days ago
|
|
Actually yes it does. 3rd party app stores is where the majority of Android malware comes from. The vast majority of mobile malware is all Android for this reason. Whenever I need low hanging fruit for mobile malware analysis it’s always start at a third party Android App Store. It’s a dumpster fire. iOS’ advantage is it’s walled garden. It’s a place where a lot of trust is curated for the nontechnical. This evaporates that. What appears good for the highly technical is not always good for the user. We can’t be expecting grandmothers to check signatures, ensure an app has certificates pinned, trust that a company won’t let its update domains lapse, and understand public key crypto to set up their GPG keys for a messaging alternative much less handle them properly. Hell I’ve had senior engineers send me their private GPG key when requesting their public key. |
|
Your argument was that the moment there is no longer a need to be constrained by Apple's App Store rules, your Samsung dishwasher will make you install its app through Shady Store Incorporated, because it's easier, and it'll make your grandma install it.
Except that doesn't happen. Noone has done that. The highest profile case is Fortnite, and it makes you install it either through Epic Games, or the Samsung Galaxy Store, and the only reason for that is that Google feels entitled to taking 30% of transactions too.