Account Share

Discover and read the best of Twitter Threads about #playstore

Most recents (4)
1. I'm tweeting a lot these last days, let make a quick recap
2. @Gioneeglobal, a Chinese phone maker who sell his phone in the US under the name @BLU_Product, made a phone for #NorthKorea. Afaik, they didn't make a public statement.

3. @OnePlus removed the #angela backdoor I found last November from his products

Read 18 tweets
Hi @UIDAI πŸ‘‹! Do I have to explain you how real #Android developers are working?

On his official #Playstore account. @UDAI published today an app called "NewTest" with blank screenshot and testingtestingtesting[...] as description πŸ€¦β€β™‚οΈ

#AadhaarFail
They also have a 3rd app called "testBeta (Unreleased)" πŸ€¦β€β™‚οΈ. Yes, they called an "Unreleased" an app released on the PlayStore πŸ€¦β€β™‚οΈ...

@UIDAI maybe your interns can read this link support.google.com/googleplay/and… to know how to set up an alpha/beta tests...
Regarding how they used their #PlayStore account, I'm pretty sure they are unable to update the official #Aadhaar #android app because they lost the release key. Please @UIDAI, show me I'm wrong
Read 6 tweets
Hi #Aadhaar πŸ‘‹! Can we talk about the #BenefitsOfAadhaar for the #India population?

I quickly check your #android app on the #playstore and you have some security issues...It's super easy to get the password of the local database for example...πŸ€¦β€β™‚οΈ

play.google.com/store/apps/det…
The #Aadhaar #android app is saving your biometric settings in a local database which is protected with a password. To generate the password they used a random number with 123456789 as seed and a hardcoded string db_password_123 πŸ€¦β€β™‚οΈ
It can be good also to remove the "developer" endpoint from the release apk...
Read 12 tweets
Did Thread Reader help you today?
Support us: We are indie developers! Read more about the story
Become a πŸ’Ž Premium member ($30.00/year) and get exclusive features!
Too expensive?
Make a small donation instead. Buy us a coffee ($5) or help for the server cost ($10):
Donate with 😘 Paypal or  Become a Patron 😍 on Patreon.com
Hi @edawerd,

Few years ago you published 2 #android apps on the #playstore:
- No Root Screenshot It
- Screenshot It

FYI, the native library you coded had been used by #NorthKorea in an app called RedFlag aka Digital Signature Manipulation System

#KCC
cc @GustoHQ @willscott
The modified version of your library can be found here: github.com/fs0c131y/RedFl…

By checking the two versions, we can see they only modified few bytes of your lib. In fact, they only changed the "SCREEN_SHOT_IT_PACKAGE".
By the way, the software at lindylabs.com/screenshot_it to "enable" the app is no more available. So, please update your app or remove it from the store.

I'm staying at your disposal if you have any questions
Read 5 tweets
Related hashtags
Did Thread Reader help you today?
Support us: We are indie developers! Read more about the story
Become a πŸ’Ž Premium member ($30.00/year) and get exclusive features!
Too expensive?
Make a small donation instead. Buy us a coffee ($5) or help for the server cost ($10):
Donate with 😘 Paypal or  Become a Patron 😍 on Patreon.com