• Turret3857@infosec.pub
    link
    fedilink
    English
    arrow-up
    32
    ·
    3 months ago

    I don’t understand how in the fuck any of this situation makes sense. We’re closing AOSP, but OEMs (Graphene is an OEM now I guess) still get AOSP, but the changes can be reverse engineered… Why? What middle management fuckery is afoot here? Who do we need to be directing hate towards?

    • bus_factor@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      3 months ago

      They don’t want to disclose vulnerabilities, because they know most people are not going to upgrade their ancient phone?

      • Turret3857@infosec.pub
        link
        fedilink
        English
        arrow-up
        9
        ·
        3 months ago

        Are you being /s? Genuinely, do you really feel just because vulnerabilities aren’t publicly exposed they can’t be exploited?

        • bus_factor@lemmy.world
          link
          fedilink
          English
          arrow-up
          10
          ·
          3 months ago

          I made a guess at their official reasoning for the policy. I made no comment about my own feelings or beliefs beyond that. And no, I don’t think that would stop anyone.

          Do you have a better guess at why they’re doing this? Because I can’t think of another reason why they’d be sharing the patches but prohibiting disclosure of them.