We have found an interesting vulnerability in a #Matrix#Android client:
🧩 Software: #Element X Android 📦 Affected Version: <= 25.04.1 🆔 CVE: CVE-2025-27599 📊 CVSSv3.1: MEDIUM ⚠️ Prerequisites: Clicking on a crafted hyperlink or using a malicious app
Since Element X Android usually has the permission to access camera and microphone, this can be used to record audio and video from the victim. Pretty bad! 😨
i’m going to write a longer blog post about this, but There’s an underlying current of capitalism brain within this article that manages to blame poor blind people. It’s just shy of calling those that expressed dissatisfaction entitled. Of course I think that independent developers should get compensated. This article though, goes beyond that premise. In short, this article unironically encapsulates the modern viewpoint of the blind community in one post and amplifies why our community really, really, needs to examine more intersectionality and especially class consciousness as opposed to just blindness issues. For me, it just reinforced the notion I have that blind people Across countries really don’t like poor blind people and has the constant common ableist mentality among our community that breadcrumbs are enough, and we shouldn’t ask for more or criticize anything because we get use out of the thing we’re criticizing. For example, I’m pretty sure that there wasn’t a horde of blind people emailing the developers 24 hours a day. I suspect the author forgot that timezones exist and that there are other blind people across the world that are emailing at different times of the day and night. I found myself rolling my eyes at the very surface level arguments this article was proposing as a reply to the backlash. Blind Users' Negative Attitudes Towards Paid Apps: Mindsets and the Struggles of Sustainable Development - Accessible Android https://accessibleandroid.com/blind-users-negative-attitudes-towards-paid-apps-mindsets-and-the-struggles-of-sustainable-development/#Android#Blind
One of the reasons why #Apple is more successful than many #Android OEM’s is due to their phenomenal customer service & support for devices years after launching them.
I wish #Google had that level of support, as the latter often abandons projects (which is very frustrating).
* No disruption for devs. No special requirements needed by Play and Fdroid. Just keep compiling and releasing your APKs in your rrepo. * Meanwhile for users, immediately receive the latest update once it's available. No more waiting for the update to get approval.
Sehe ich das richtig, dass ich #duolingo entweder mit nerviger Werbung oder gar nicht nutzen kann, wenn ich für mein #android keinen #google Account habe? #unplugtrump