I found that the company I work for is putting backdoor into mobile phones
security.stackexchange.com
security.stackexchange.com
If you think something is wrong, have the courage to say so directly, don't hide behind a commit message.
Personally, I think the poster should make the change and then announce it. I'm not saying he should be cowardly. If anything, I think the cowardly choice is to futz around trying to get consensus an elusive around doing the responsible thing.
That's what I did when I worked for a large nefarious killing machine provider when I had a tony stark moment, grew some balls and worked out what they were doing was utterly wrong.
I informed them that I was bound by British law as well which supercedes any corporate rules and contracts.
Of course, this exchange does suggest bad things about the company's ethics and competence.
Maybe I'm missing something, but it says nothing about what might possibly happen in case their remote assistant is remotely activated. Also it's unclear how large is their user base. Everyone kind of assumes serious implications, though.
IMO if this whole thing is true, it indicates that the company probably doesn't have good QA and development process in place. Otherwise either such a bug would not exist (most likely it was left for debugging purposes), or it would really be a product of an evil intent (and hidden from uninitiated developers).
[1] http://articles.businessinsider.com/2011-06-27/news/30048253...
There are so many instances of this, it seems each week we hear from another backdoor like this[1].
[1] http://it.slashdot.org/story/12/04/26/1411229/backdoor-found...
http://www.engadget.com/2012/03/20/verizon-updates-revolutio...
Aww, sweet innocence.
I'm not saying that you should try and lose your job, but you should make your disagreement known.
I have one of those...
Or ThisIsAFault.