frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

How frequently do vulnerabilites affect TLS on Android?

2•CAPSLOCKSSTUCK•1h ago
It's a bit of a hand-wavy question, but my Samsung S21 will get its last security update in January, and I was trying to figure out how many vulnerabilities/CVEs (say, in the past few years) would have affected the threat model I care about (mostly just TLS to my financial institutions).

Moreover, if I access the web through mobile Firefox (which is updated via the Play Store for longer than my phone gets system-wide security updates), how bad are the vulnerabilities really?

I found a study that brushes on some of these topics ("Common Security Vulnerabilities in Android Apps: A Comprehensive Guide" published in IJFMR), but I would be curious to see something like:

- a concrete vulnerability, even if it only affected a small number of Android devices - a combination of flaws that would have ostensibly allowed an attacker to get my credentials/access to my financial accounts - something affecting Firefox specifically

(Disclaimer) I'm upgrading to an in-date smartphone, but I just thought it would be a fun exercise since we always hear about the importance of updates minus the specifics . . . .

Comments

leakycap•1h ago
Do you specifically want Android?

It takes a lot of work to have a secure device when you're using a carrier-subsidized Android device.

More than a lack up updates, personal choices like which apps you install/behavior like what websites and extensions you use/uses of the device like what type of network you connect to has more potential for security risks than the immediate lack of updates.

~~~

Request a copy of your data from Samsung via the account data request, open it in Excel, and tell me if you want to use anything they make for your personal confidential communication. I loved my Samsung device but a single request of my data export made me close my account and get rid of all the Samsung devices I owned.

DE25-Nano FPGA Development and Education Board with ARM HPS and 2GB RAM

https://www.terasic.com.tw/cgi-bin/page/archive.pl?Language=English&No=1384
1•teleforce•1m ago•0 comments

Tech CEOs Are Using AI to Inflate Their Stocks [video]

https://www.youtube.com/watch?v=T7oJsuoGl5s
2•mgh2•2m ago•0 comments

Greatest irony of the AI age: Humans hired to clean AI slop

https://www.sify.com/ai-analytics/greatest-irony-of-the-ai-age-humans-being-increasingly-hired-to...
1•wahvinci•4m ago•0 comments

Live Nation CEO Says Concerts Are 'Underpriced.' Are They?

https://www.rollingstone.com/music/music-news/live-nationceo-concerts-aunderpriced-are-they-12354...
1•coloneltcb•5m ago•0 comments

Free, strong Password and Passphrase Generator for online security

https://www.scambare.com/p/password-generator.html
1•sbworker•7m ago•0 comments

Show HN: Nan0.art – AI image generation without the prompt engineering hassle

https://nan0.art
2•tavitao•8m ago•0 comments

The Little Book of llm.c – friendly explaining llm.c in plain English

https://github.com/little-book-of/llm.c
2•scapbi•9m ago•0 comments

What happens when junior design jobs disappear?

https://www.itsnicethat.com/features/welcome-to-the-entry-level-void-light-and-shade-digital-220925
1•twalichiewicz•10m ago•0 comments

AI Cover Letter Generator – Free Professional Cover Letters

https://ai-coverletter-generator.com/
1•frankylarry•10m ago•0 comments

Dashbullet – Build and talk to your internal tools

https://dashbullet.plust.click/
1•Jacques2Marais•14m ago•1 comments

The Meaning of Nostalgia (1971)

https://time.com/archive/6814695/time-essay-the-meaning-of-nostalgia/
1•thomassmith65•20m ago•0 comments

China to launch K-Visa for global talent

https://www.business-standard.com/immigration/china-to-launch-k-visa-for-global-talent-as-us-slap...
3•rexbee•26m ago•1 comments

I made a real-time transcription WebSocket API

https://livestt.netlify.app/
1•erikjbz•29m ago•1 comments

In Depth Look at GitHub Funding Phishing Scams

https://jimmysong.io/en/blog/github-gitcoin-fund-phishing-2025/
1•greenie_beans•35m ago•0 comments

An OCaml driver for Timeplus Proton timeseries streaming database

https://github.com/mfreeman451/proton-ocaml-driver
1•cloudsql•35m ago•0 comments

Should Neovim support transitive plugin dependencies?

https://sink.io/jmk/neovim-plugin-deps/
1•todsacerdoti•36m ago•0 comments

Deep Hanging Out (1998)

https://www.nybooks.com/articles/1998/10/22/deep-hanging-out/
2•mitchbob•45m ago•1 comments

The Rabbit Hole of Building a Filesystem Watcher

https://amandeepsp.github.io/blog/fs-watcher/
1•amandeepspdhr•46m ago•0 comments

Peter Thiel Wants Everyone to Think More About the Antichrist

https://www.wsj.com/tech/peter-thiel-antichrist-lectures-dd28c876
3•zzzeek•49m ago•2 comments

Study finds caffeine increases task persistence under pressure

https://www.psypost.org/study-finds-caffeine-increases-task-persistence-under-pressure/
5•ivewonyoung•49m ago•0 comments

SpessaSynth: A SoundFont2-based synth written in vanilla JavaScript

https://github.com/spessasus/SpessaSynth
1•8bitsrule•50m ago•0 comments

AI SEO Is LLMBO

https://www.juicylinks.ai
1•pruufsocial•52m ago•2 comments

New study shows plants and animals emit a visible light that expires at death

https://pubs.acs.org/doi/10.1021/acs.jpclett.4c03546
2•ivewonyoung•52m ago•1 comments

Crazy pitch: Engineers on the job hunt: pivot, become recruiter make $200k-$300k

1•Shooogur•58m ago•0 comments

ReviewPro SaaS would appreciate feedback

https://reviewpro-production.up.railway.app/
1•reivewPro•1h ago•1 comments

Kansas sues social media app Snapchat

https://kansasreflector.com/2025/09/23/kansas-sues-social-media-app-snapchat-for-harming-teenager...
3•mikece•1h ago•0 comments

Jaguar Land Rover hack 'has cost 30k cars and threatens supply chain'

https://www.thetimes.com/uk/transport/article/jaguar-land-rover-hack-has-cost-30000-cars-and-thre...
7•petethomas•1h ago•0 comments

Launching the x402 Foundation with Coinbase, and support for x402 transactions

https://blog.cloudflare.com/x402/
1•SerCe•1h ago•0 comments

France's Mistral AI plans expansion into Canada

https://www.theglobeandmail.com/business/article-france-mistral-ai-expansion-canada-cohere-openai/
2•petethomas•1h ago•1 comments

Show HN: Clipboards.pro – A simple clipboard manager I built out of frustration

https://clipboards.pro/
1•quangpl•1h ago•1 comments