Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

F-Droid is also vulnerable to signing key compromise. All apps in F-Droid are signed by F-Droid keys. Ifwhen those are compromised, you could be backdoored. (Play Store apps are signed by each individual developer’s keys.)

Also: That’s not what “forced” means at all.



Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: