• 0 Posts
  • 15 Comments
Joined 11 months ago
cake
Cake day: August 15th, 2023

help-circle

  • That… is not a study by anyone who knows what they are talking about. It also does not mention fingerprints at all.

    They seem to believe that the app can use permissions undeclared in the manifest file because they obviously think it’s only for the store to show the permissions to the user. Android will not actually allow an app to use undeclared permissions. The most rational explanation is the codebase is shared with different version of the app (possibly not released) that had different manifests.

    It also makes a big deal of checking if running as root. That is not evidence of having an escalation exploit. If they have an ability to get root before running the app why would they need to use the app to exploit it? They could just do whatever they wanted and avoid leaving traces in the app. Though I doubt they would root phones to just brick them. It’s the kind of mischief you would expect from a kid writing viruses, not an intelligence agency or criminal enterprise.

    Users who root their own phones are very unlikely to run temu as root. In fact a lot of apps related to shopping or banking try to detect root to refuse to work as your system is unsafely. In any case it’s a very niche group to target.

    To keep things short, that ‘study’ does not really look credible or written by actual experts.













  • … Do you think I can just keep the last comment in mind or something?

    The discussion takes place in a post linking https://lemmy.world/post/16211417 . Surely that brings it into scope? The linked post begins

    I feel like we need to talk about Lemmy’s massive tankie censorship problem

    That does seem hostile to me. As does the drive to try and split communities

    Also, me calling you out is not “blackmailing”, just me ensuring that downvotes like yours don’t become a pile-on.

    You have to be kidding me. Why would tagging people who downvoted a post prevent a pile-on of downvotes? Is it a lemmy bug? Or is it that some people who would want to downvote your post would be intimidated by being ‘called out’? Maybe my English is bad but vote->get called-out seems to fit ‘blackmail’ just fine.