• breakingcups@lemmy.world
    link
    fedilink
    English
    arrow-up
    3
    ·
    2 hours ago

    There’s a lot unclear, but it seems that an actual compromised update was released on official infrastructure (and subsequently removed from some devices by Play Protect). A transparency statement from the developer is still forthcoming. I’m not risking anything, not even updating to the new app, until all the dust has settled.

    • BrikoX@lemmy.zipM
      link
      fedilink
      English
      arrow-up
      1
      ·
      edit-2
      51 minutes ago

      The app id is being changed, so there is no way to push new updates with that signature anymore. Hence the need to re-install the app.

      Also it looks like the developer is adding VirusTotal scan workflow for all new releases moving forward.

      That said, I’m not familiar with the developer or the situation enough to comfortably say it’s safe.