Millions of mobile phones come pre-infected with malware, say researchers
theregister.com
theregister.com
From a consumer POV, they are indistinguishable, are they not?
At least third party malware works silently and efficiently. First party hateware puts ads in the start menu.
I had a much longer comment, but it eventually detracted from this point: you can't guarantee where that data goes, how it's stored through its life, etc.
Inappropriate usage of PII can lead to severe consequences in most western countries.
Facebook still being around shows this is just wishful thinking.
We can clearly see where the incentives are aligned.
Also, be careful, the concept of "ethical frameworks" is used by companies to become their own judges and jury.
Sure, it's definitely a security risk.
However there is a strong line betweeen a first party spyware that collects data to sell, and the malware discussed in this article, that was specifically places there to try to steal your credit card or banking info for criminals.
I'm fine with legal penalties for the manufacturers in both cases though.
From a security perspective they’re totally different. Malware can be used to perform arbitrary code execution compromise my machine, pivot to my work computer compromise my aws keys, spin up $100k/mon infrastructure to run unrelated scams, syphon down my customer database ransomware it / post it on the dark web.
Telemetry is unlikely to do the above. If it does it gets reclassified as malware. The distinction is valid and useful.
Claiming otherwise is either ignorant in the extreme or deliberately deceptive. Which are you?
Microsoft, Google or Apple do not do this. Staff for telecoms in developing countries do.
The issue is some people have been conditioned into believing software that tracks your every move, restricts freedom to your hardware, and can be easily spied on, are fine as long as they come from [insert company of choice], because it “helps improve the experience”, or even worse, because they “have nothing to hide”.
I would make the argument that their long tail effects are worse.
Why do you differentiate when it’s pre-installed for you?
Apple, Microsoft and Google absolutely do this.
"Hey - they shouldn't take your data - that's our job! We paid to do that!"
No thanks, this was the last drop, I will unlock the bootloader and install a third-party ROM. Not decided yet, either Pixel Experience (a huge postitve factor here is that their ROMs are built using CI, not by humans) or crDroid.
In my home country they'd probably laugh you off if you'd try to return an otherwise perfectly working device because a bloatware app showed you an illegal ad.
That time I somehow got to hidden programs with debloater or something? And disabled the app... since then I value well known vendors more.
Not sure if this is exactly my case, but something very similar: https://www.reddit.com/r/privacy/comments/9ak1gt/i_bought_a_...
Just because the action is somewhat similar, the outcome is world's apart.