Some Android Phone Manufacturers Lying to Users About Security Updates
theverge.com
theverge.com
Updates are guaranteed and encryption is second to none.
I had tons of fun “encrypting” android on my milestone and Samsung galaxy S2 but it was just a show, and things really haven’t improved since then even on google devices.
Heck after doing proper analysis of ARM trust zone and getting first hand access to some of the trustlets the industry uses to facilitate HVB, encryption and other security features on ARM devices there is no way I’m touching them again if I can avoid it.
As for security patches even a Google device isn’t guarantee of updates as if you buy one through a carrier they are responsible for the updates which is something I found out with the original LG Nexus (5?).
Even flashing a Google clean ROM didn’t help getting OTA updates since it seemed they were checking the IMEI.
After the let down which was the One Plus One it was iPhone all the way.
The Android ecosphere particularly with respect to security is a really good case for the appropriate use of the word "clusterfuck".
And even once a user is aware their phone may not be up-to-date, it's not easy for them to determine this nor what they are missing.
So, why not at least give users a good overview of this? Turn them into a more informed consumer?
Unless all you want to do is push ads at them...
https://opensource.srlabs.de/projects/snoopsnitch
with fdroid link if you want that
What I meant was, to see Google endorsing it -- on their own site(s). Even if/where they do, obviously in its current state the app won't be functional for the average user.
Sorry, I didn't read further in before making my comment.
Regarding that, it would be useful if Google provided or enabled such a tool for the average, locked-down user to review the exact state of their Android OS (less carrier specific modifications) and updates to same.
Here's their vintage/obsolete products info page: https://support.apple.com/en-us/HT201624
This is one thing I think Linux distros could do better: not just advertising upgrades to the next release, but warning when the current release is (soon to be) no longer maintained.
Despite that, a custom ROM feels like having a modern device again. All the marketing-driven little walls are gone.
I have a few WP devices that had more updates than all my Android systems together.
Until Google gets really starts forcing the OEMs to provide updates, nothing will change for the regular users.
Treble is not the solution, as the OEMs are the ones that should provide the updates and certification is only required if devices are actually shipped with 8.0.
Of course technically inclined users will just root their devices, assuming they are willing to trust random downloadable firmware blobs.
Hmmm. Current new iPhone 6s - $449, SE - $349 and plenty of used and refurbished options from $300.
Also some people like to have the opportunity for once on their life to buy brand new things.