After uncovering a ferocious horde of hidden spyware in official Android apps the Yale Privacy Lab and Exodus have pitched in with F-Droid's app store that only allows apps that include their source-code and whose licenses require anyone who modifies them to also include the source.
They argue that the proliferation of spyware in Android stems from the project's "original sin": a directive to create an alternative Linux ecosystem that eliminated the "GNU" part of "GNU/Linux": that is, the part of the licensing regime that required programmers who modified open projects to make their projects open, too. In so doing, Google created a constellation of apps and tools that can be trojanized without violating the software license and without any way to audit the modifications and spot the malicious code.
Google’s choice to limit copyleft’s presence in Android, its disdain for reciprocal licenses, and its begrudging use of copyleft only when it “made sense to do so” are just symptoms of a deeper problem. In an environment without sufficient transparency, malware and trackers can thrive.
Android’s privacy and security woes are amplified by cellphone companies and hardware vendors, which bolt on dodgy Android apps and hardware drivers. Sure, most of Android is still open-source, but the door is wide open to all manners of software trickery you won’t find in an operating system like Debian GNU/Linux, which goes to great length to audit its software packages and protect user security.
Android Users: To Avoid Malware, Try the F-Droid App Store [Sean O'Brien and Michael Kwet/Wired]
US Air Force research scientist Michael Hansen created Rhasspy as a privacy-oriented alternative to surveilling "voice assistant" products like Google Assistant, Alexa and Siri; the free/open project supports dozens of languages from German, French and English to Mandarin, Vietnamese and Russian, and is designed to run on Raspberry Pi-based devices.
Librecorps is a program based at the Rochester Institute for Technology's Free and Open Source Software (FOSS) initiative that works with UNICEF to connect students with NGOs for paid co-op placements where they build and maintain FOSS tools used by nonprofits.
Phil from Adafruit writes, "For a limited time, whenever you buy a Circuit Playground Express the regular price of $24.95 here, on this page, Adafruit will automatically donate one to Black Girls CODE. Black Girls CODE's goal is to empower young women of color ages 7-17 to embrace the current tech marketplace as builders + […]
It’s no secret that when it comes to building your brand online, nothing beats having a powerful and streamlined website. BoxHosting Website Hosting makes it easy to create an extensive online presence with room for 500 domains, 500 10GB email accounts, and unlimited desk space—and you only have to pay $45 for life. In addition […]
There’s never been a better time to work as a web developer—regardless of whether you’re looking to work with a big company or as a solo freelancer. The Essential PHP Coding Bundle will get you up to speed with one of the world’s most popular and powerful web development scripting languages, and it’s currently available […]
There’s overwhelming support for clean energy, and the planet is giving us more reasons to invest in renewable power sources with every passing year. Even in the most inhospitable areas, wind and solar can provide a good chunk of our power, if not all of it. So why aren’t we all taking advantage of it? […]