this post was submitted on 23 Dec 2024
4 points (100.0% liked)

Freedom in Mobile Computing

38 readers
1 users here now

/c/LibreMobile is a community for discussion of Free (Libre) Software in the mobile space, including Android and non-Android Linux-based OS’s.

Please don’t discuss, promote, advocate, advertise, or ask for help with proprietary software in this community. This includes using libre software with the purpose of enabling proprietary software (such as microG, Aurora Store, sandboxes, etc).

Proprietary apps are still proprietary even if they have no trackers or a nice-sounding privacy policy.

founded 2 years ago
MODERATORS
 

The linked article leads to EC recommendations on mobile payment systems. This bit is interesting:

8.1 KC MPSPs should distribute the payment-related software and authentication tools, including personalised security credentials, installed in the mobile device via a secure “distribution channel” (e.g. software preloading managed by qualified vendors following auditable procedures; off-line Recommendations for the security of mobile payments / software loading at authorised agents or local branches; or on-line downloading from trusted entities using security procedures¹⁸).

footnotes:

18: Examples of on-line software downloading:

  • the user interface “app” (UI_App) is downloadable from a trusted “market store” with clear security policies and sound security measures (e.g. Apps Public Store requiring security evaluation and digital signature of “apps”);
  • the payment software application that is resident in the SE (SE_Applet) is downloadable inside the SE, using a secure channel between the central server and the SE itself (e.g. encrypted SMS messages, secure OTA services, internet banking services).

“Trusted entities” is where everything goes to shit. The banks blindly trust Google despite being scientifically proven to be relatively insecure. Even if Google had their own shit together, a surveillance advertiser cannot have the trust of anyone with a bit of street wisdom.

no comments (yet)
sorted by: hot top controversial new old
there doesn't seem to be anything here