Post B4cQVzERKcSTIu4A64 by dacmot@sunny.garden
 (DIR) More posts by dacmot@sunny.garden
 (DIR) Post #B4IAxVLSYibiIAFbbE by IzzyOnDroid@floss.social
       1 likes, 0 repeats
       
       Oh my, those clowns again. They cannot even tell servers apart, but want to play the "Safety Police"? What are they doing for a living, by the way (apart from slurping and selling our data)?Yes, that's the same file as in January. On a different server. But they flag yet another, that does not even have that file. Incompetent folks, they should shut down that "service". Will they ever stop that nonsense?!?#Google #SafeBrowsing #failure
       
 (DIR) Post #B4ICCg7krhoA1Jdj3w by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       Oh, did I mention that that file does not even exist – for 2 month now? 🤦‍♂️ So even if it would have been malicious: a timely warning for those who trust that snake oil, would you agree? How often do they update, I wonder…
       
 (DIR) Post #B4IFLVP6OLoZEzedaS by IzzyOnDroid@floss.social
       1 likes, 0 repeats
       
       For those who missed the history: https://gitlab.com/-/snippets/4909577#google-safebrowsingMaybe they should scan storage.googleapis.com. Plenty of malware hosted there. So then, they can flag… err… google.com? How fortunate that site is exempt from being scanned, huh?
       
 (DIR) Post #B4Ju8sYNIkqwYI37yK by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       Of course the review failed (as usual, without a notification mail). Now they pick random APK files: remove one, then it's the next. Until the repo is empty, I guess. Snippet updated.Disable "Safe" browsing, it's snake oil as you can see. We've been libeled now many times, always false positives. See https://gitlab.com/-/snippets/4909577#notes-on-how-to-disable-google-safebrowsing-in-browsers-on-android for how to disable it.Of course all our APKs have been scanned, multiple times, with many engines. They're clean. Says even G's own scanner.#Google #SafeBrowsing
       
 (DIR) Post #B4JyBE7oTAVTqp05Z2 by jmcs@jsantos.eu
       0 likes, 0 repeats
       
       @IzzyOnDroid I think this far beyond the point it can be justified with incompetence on their part. People will complain less about the developer registration if most 3rd party "app stores" implode before it's rolled out.
       
 (DIR) Post #B4K22aZw1AfahSI5ho by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       @HugeGameArtGD Nope.The F-Droid clients would be unable to handle that. Plus a lot of the tooling would need lots of adjustments. Not to forget that THAT then indeed could be seen as "malicious"Easiest solution would be to shut that service down. To split up those heavy corporations, which just can act this way because of their monopoly powers. But that would require someone in the correct position to ACT, instead of… well… (looks toward Ireland, frustrated, thinking DPC must mean D.Pays Cash)
       
 (DIR) Post #B4NexZQrKe43NoWW6C by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       I had filed a reevaluation request before I tooted this. 2 days later, no reply yet (why does their bot take THAT long?). Instead I hear, another "fine tool" kicked in: Play "Protect" refuses installation of the allegedly malicious app, and even uninstalls them AUTOMATICALLY, without asking you! https://github.com/sunilpaulmathew/AppVaultX/issues/6#issuecomment-4079105010Another rather questionable tool you might consider to get rid of (unless you install a lot from "questionable sources").#Google #SafeBrowsing #PlayProtect
       
 (DIR) Post #B4PtcT23oqFp56EtVI by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       Day 3 now. Still no response to my review request. I've filed another now as reminder. Still wonder what takes their bots that long. But well, after all, it took them 9 years to find the initial file. Hope it doesn't take the same time now to clear it again 🙈
       
 (DIR) Post #B4SC2uMF26akqlM8hs by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       Day 4. A response, finally. The usual clown message: Review failed. Well, the "clown message" is the one in the attached graphic: They don't know themselves. Something something link, but they don't know which. Or, in other words: "These URLs host malware or unwanted software downloads: None". 🤦‍♂️If that's how reliable their services are, maybe they should NOT hold the keys to the entire Internet (and app stores)? 🤔 #Google #SafeBrowsing
       
 (DIR) Post #B4UTTVBgoIFa8qbhiK by oraculix@ieji.de
       0 likes, 0 repeats
       
       @IzzyOnDroid At this point, "Safe" browsing got simply ridiculous. Or, as you said, Mafia-like. "Nice website you've got here. Would be a shame if someone had to keep all your visitors «safe» from seeing it." Unfortunately the average Joe doesn't have an idea what's happening and will shy away from your site. Or simply not find it in Google Search anymore in the first place.
       
 (DIR) Post #B4UbU0banagrDQTYLA by oraculix@ieji.de
       0 likes, 0 repeats
       
       @IzzyOnDroid I had the same happen to my @homelab recently: *All* my subdomains blocked (www, Immich, Nextcloud, Forgejo,...), and of course Google's so-called reports don't tell you a iota about why.It turned out to be my Tweet archive that I put online after I left Twitter. Once I locked it behind a ".htaccess" (with a password you don't even need to guess), my domain was considered "safe" after a few hours.Probably one of the links I tweeted years ago got hijacked by a spammer. But *of course* this is just "unsafe" on my domain! The same "unsafe" content on Xitter must not be blocked.
       
 (DIR) Post #B4UbU0plws25vP6sRU by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       @oraculix Something like that. Affected APKs are usually from Github, and still available there. Do you think *.github.com would be flagged by now? 'course not. Never forget, all (your data) is always safe with the big corps. So, to be safe, why not just upload all malware to storage.googleapis.com! Oh, wait… isn't it there already? Going by all those spam & scam mails with URLs pointing there, that's the impression one might get…Unfortunately, we can't put our APKs behind .htaccess 🤪
       
 (DIR) Post #B4cA94J0heBF73FnXc by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       Day 4 again, without any response. Quite a reliable service that: you can rely on it to let you wait. What does that run on, that it takes that long? An Arduino Pico? Needless to say that the alleged malware file does not even exist, and never was malicious.Filed another review request.Again: disable that stuff. Seems to have more false positives than real stuff. Especially as entire domains hosting the real stuff (like storage.googleapis.com) are excluded from scan.#SafeBrowsing #Google
       
 (DIR) Post #B4cDaAhdKIDQdOO1Cq by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       "Google Safe Browsing missed 84% of confirmed phishing sites in our dataset. […] Google is, quite literally, hosting phishing attacks on its own infrastructure and not catching them with its own detection tools"https://www.norn-labs.com/blog/huginn-report-feb-2026#Google #SafeBrowsing
       
 (DIR) Post #B4cQVzERKcSTIu4A64 by dacmot@sunny.garden
       0 likes, 0 repeats
       
       @IzzyOnDroid abysmal and shameful. Nothing more than #securitytheater. They should clean up their house before banning "sideloading" and third party app stores.
       
 (DIR) Post #B4cQVzUONJDc6NWtxg by desantis@mastodon.bida.im
       0 likes, 0 repeats
       
       @dacmot @IzzyOnDroid A classic case of too big to care. I can’t wait for the bubble bursting so that all of these huge tech companies that don’t give a shit about their users can go down with their ships.
       
 (DIR) Post #B4cQVzf1jlj2dMVOXQ by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       @desantis @dacmot or up, on one of their richest "members" starship – right into the sun 🙊 💨 🎶 "Sunshine, sunshine reggae…" 🎶
       
 (DIR) Post #B4icPIaPL4rDhYg7iC by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       Finally, the Goog console shows green again for our sites, with "no issues detected". Hope it stays that way 🤞
       
 (DIR) Post #B5I87WKVV1zsBCPAPo by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       New month I guess? 4 weeks since the last fake alert? Can someone please shut down whatever produces all those false positives?!?Yupp, this time Goog claims we've been hacked. They just don't know where. So I've requested a review now, stating all indicated pages have been cleaned 🤷‍♂️Should you still use that "safe" browsing – consider switching it off. Or at least be very skeptic when it shows you something.#Google #SafeBrowsing
       
 (DIR) Post #B5I9NaapW4tfzPGXom by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       Should they one day have a "real alert" – who'll will believe it? Having received so many false ones over the last months, and only false ones at that, it's close to impossible that one can take the next one serious.Btw: I thought that must be some LLM, as I never received a human reply. But naaah, cannot be: I never got some "Of course, you are absolutely right…" either 🙈
       
 (DIR) Post #B5IFJLmvDbWadhHejo by liberloebi@digitalcourage.social
       0 likes, 0 repeats
       
       @IzzyOnDroid At least you know that you are!
       
 (DIR) Post #B5IFZt90y5EYj2VGym by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       @liberloebi I'm an LLM? Naaah 🤪 I do make em-dashes, but that they stole from me, not the other way around! I already made them when they weren't a thing – like, 10+ years ago…And if you meant the other half: I'd never admit that! 🤣
       
 (DIR) Post #B5IP3LYtI7FOqUjDxA by liberloebi@digitalcourage.social
       0 likes, 0 repeats
       
       @IzzyOnDroid That referred to your being absolutely right 😉And if I thought you were a LLM - I'd never talk to you!
       
 (DIR) Post #B5KjePbdbWHTVEsuKu by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       Oof, that's unexpected: cleared within 24h! And yeah, we shall "… fix vulnerabilities that caused your site to be compromised." Wish I knew how to fix those false positives once and forever…
       
 (DIR) Post #B5RqDxP5teL8I84MOu by IzzyOnDroid@floss.social
       0 likes, 0 repeats
       
       This incompetence is … olympic? Took them just 2 days to pop this up again. Instructions they give on how "to fix this problem":"Check the example URLs on the 'Security Issues' page in Search Console. Note that this page displays a list of samples and not an exhaustive list of problematic URLs."No, indeed no "exhaustive list". It's an EMPTY list, so this advice cannot even be followed 🤦‍♂️They shall be trusted to control safety of all Internet & devices? 🤯 #Google #SafeBrowsing