1. It's the year 2032, you bought a faulty product.
2. You want to fill a repair/damage claim.
3. You're asked to take a photo of it.
4. Turns out your photo must come from a bootloader locked phone running stock because "Content Credentials", which "attest" you didn't photoshop the pics, are mandatory.
5. You must have a googled device to simply get your money back.
2. You want to fill a repair/damage claim.
3. You're asked to take a photo of it.
4. Turns out your photo must come from a bootloader locked phone running stock because "Content Credentials", which "attest" you didn't photoshop the pics, are mandatory.
5. You must have a googled device to simply get your money back.
π24π3π€―3
https://support.google.com/pixelcamera/answer/16507662?hl=en
For reference, as you can see, they're clearly not about individual's authorship, where the image author would be the one holding the signing key. It's attestation of "genuine device" embedded in the captured media.
For reference, as you can see, they're clearly not about individual's authorship, where the image author would be the one holding the signing key. It's attestation of "genuine device" embedded in the captured media.
Google
Fix issues with Content Credentials on Pixel Camera - Pixel Camera Help
You can verify how an image was created or edited with your Pixel camera. Content Credentials uses metadata attached to an image that describes the imageβs history. This is part of Googleβs efforts t
π14β€1
Tadi Channel
https://support.google.com/pixelcamera/answer/16507662?hl=en For reference, as you can see, they're clearly not about individual's authorship, where the image author would be the one holding the signing key. It's attestation of "genuine device" embedded inβ¦
Their design is so much non-private that they had to mention a "strict no-logging policy" on their servers.
π€―8π5
Tadi Channel
https://support.google.com/pixelcamera/answer/16507662?hl=en For reference, as you can see, they're clearly not about individual's authorship, where the image author would be the one holding the signing key. It's attestation of "genuine device" embedded inβ¦
I've heard people are interested in reading more, this is one additional resource that describes completely authoritative use of content credentials that includes concepts like app whitelisting:
https://security.googleblog.com/2025/09/pixel-android-trusted-images-c2pa-content-credentials.html
https://security.googleblog.com/2025/09/pixel-android-trusted-images-c2pa-content-credentials.html
π7
I wanted to post this pic and say I miss Syncthing Lite, meanwhile it's resurrected and I didn't notice, wtf.
https://github.com/researchxxl/syncthing-lite/
Yes, we deserve file browsing over P2P without constantly running Tailscale that occupies your Android VPN slot. To get "normal people" off the cloud, you need syncing and browsing that works between their phone, tablet, wife and her husband, while the only laptop at home is sleeping.
https://github.com/researchxxl/syncthing-lite/
Yes, we deserve file browsing over P2P without constantly running Tailscale that occupies your Android VPN slot. To get "normal people" off the cloud, you need syncing and browsing that works between their phone, tablet, wife and her husband, while the only laptop at home is sleeping.
β€9π1
Tadi Channel
I wanted to post this pic and say I miss Syncthing Lite, meanwhile it's resurrected and I didn't notice, wtf. https://github.com/researchxxl/syncthing-lite/ Yes, we deserve file browsing over P2P without constantly running Tailscale that occupies your Androidβ¦
The dev handling it is fresh and kinda odd, don't get your hopes up :( There's a mini-drama regarding that at https://github.com/researchxxl/syncthing-android/issues/16.
GitHub
status Β· Issue #16 Β· researchxxl/syncthing-android
Description of the issue status Steps to reproduce invite nel0x here and get help to carry on setup build and release: use old maintainers signing allowed? can we play sign? reinstate gh action wor...
π1
Want to clean up your storage, but have no idea where to even start? It's simple and psychologically effective and assumes you're already in a root shell of your terminal:
No, -d doesn't stand for deletion of your files, it's depth. You'll get a relatively quickly generated list of largest directories and files sorted by size in less than 20 seconds unless you check on a desktop with HDD.
cd /data/du -ma . -d 100 |sort -nNo, -d doesn't stand for deletion of your files, it's depth. You'll get a relatively quickly generated list of largest directories and files sorted by size in less than 20 seconds unless you check on a desktop with HDD.
β€11π2
Tadi Channel
A common misconception is that uninstalling a preloaded app is significantly better than disabling it. This aside, Nothing now gets closer to Moto, surprisingly risking their Apple-ish brand image for something that would be more expected on the CMF lineups.
https://www.reddit.com/r/NothingTech/comments/1peea5e/ive_found_one_source_of_40_battery_drain/
The worst thing about bloatware is system integration that doesn't make it possible to cut it off without consequences.
(It's something I gotta give to the straightforward uninstallation argument β there's a higher chance that the system won't insist to run an app that was intentionally removable)
The worst thing about bloatware is system integration that doesn't make it possible to cut it off without consequences.
(It's something I gotta give to the straightforward uninstallation argument β there's a higher chance that the system won't insist to run an app that was intentionally removable)
Reddit
From the NothingTech community on Reddit: I've found one source of 4.0 battery drain
Explore this post and more from the NothingTech community
π4π3
Oppo Find X7U is now unintentionally bootloader unlockable for free, presumably as long as it's not updated too far.
π₯17β€4π2
Congrats 9to5Google for misinformation π₯°
You don't have to ask engineers, you don't have to ask nerds. Ask any global shutter camera owner if they're exempt from motion blur.
Rolling shutter causes a movement distortion and motion blur is ironically capable of hiding it. Global shutter would be the natural next step after solving dynamic range. But will single frame quality be good enough to alleviate the concern of noise increase the global shutter sensors are known from? Time will tell.
You don't have to ask engineers, you don't have to ask nerds. Ask any global shutter camera owner if they're exempt from motion blur.
Rolling shutter causes a movement distortion and motion blur is ironically capable of hiding it. Global shutter would be the natural next step after solving dynamic range. But will single frame quality be good enough to alleviate the concern of noise increase the global shutter sensors are known from? Time will tell.
π12π1π1
Imagine trying to figure it out in 2012:
- Damn, this high-end phone actually sucks in use.
- You know what to do.
- No, bank apps won't let me.
- Damn, this high-end phone actually sucks in use.
- You know what to do.
- No, bank apps won't let me.
π18π2π2β€1
https://arstechnica.com/gadgets/2025/12/i-switched-to-esim-in-2025-and-i-am-full-of-regret/
The correct future would be eSIMs downloaded onto removable eUICCs. Sadly, adoption of removable eUICCs only gives a signal to phone vendors through carriers that "eSIMs are getting more popular", ending up in reduced number of physical slots on devices.
The correct future would be eSIMs downloaded onto removable eUICCs. Sadly, adoption of removable eUICCs only gives a signal to phone vendors through carriers that "eSIMs are getting more popular", ending up in reduced number of physical slots on devices.
Ars Technica
I switched to eSIM in 2025, and I am full of regret
Swapping SIM cards used to be easy, and then came eSIM.
π9π2
https://nebelwelt.net/blog/2025/1227-fiasco.html
Hi Google, please kindly downgrade probably millions or at least hundreds of thousands of Redmi Note 11S units to MEETS_DEVICE_INTEGRITY, thanks.
Hi Google, please kindly downgrade probably millions or at least hundreds of thousands of Redmi Note 11S units to MEETS_DEVICE_INTEGRITY, thanks.
nebelwelt.net
Not To Be Trusted - A Fiasco in Android TEEs
Android has become a diverse, multi-faceted, and complex ecosystem. In our research, we came across a Xiaomi Redmi Note 11S and wanted to get...
π10π2
iOS preloads the stock camera as soon as your finger is placed on the icon of home screen.
https://blog.jgc.org/2025/12/if-you-care-about-security-you-might.html
Finding that out must've felt similar to discovering that Samsung phones randomly vibrate when auto brightness hits max (except that it sounds like a bug).
https://blog.jgc.org/2025/12/if-you-care-about-security-you-might.html
Finding that out must've felt similar to discovering that Samsung phones randomly vibrate when auto brightness hits max (except that it sounds like a bug).
blog.jgc.org
If you care about security you might want to move the iPhone Camera app
There's a quirk in the iPhone Camera app that can drive a security conscious iPhone owner crazy: if you touch your finger on the Camera app ...
π9π€―2
Tadi Channel
https://nebelwelt.net/blog/2025/1227-fiasco.html Hi Google, please kindly downgrade probably millions or at least hundreds of thousands of Redmi Note 11S units to MEETS_DEVICE_INTEGRITY, thanks.
BTW, think of it as a litmus test for every "reputable" """keybox extractor""" wannabe (I'm speaking of all keybox sellers who claim to extract them from devices rather than OEM leaks) who won't manage to do anything despite the writeup. Since it couldn't be reliably sold (keyboxes are mostly model/batch-specific, not unit-specific, duh, you're probably lied to by an incentivized person if you're told otherwise), it'd be excellent for promotion of a monetized venture. And yet you likely won't see it for the first time from any such a place. At best, you'll see some AI slop gibberish on why publishing it would be irresponsible, while irl it's just skill issue at dealing with EL3 pwn-ed hw.
BTW, if anyone knows how many keyboxes were ever provisioned in total to RN11S, lemme know, comparing the output from https://github.com/vvb2060/KeyAttestation across different manufacturing date and regions will suffice.
BTW, if anyone knows how many keyboxes were ever provisioned in total to RN11S, lemme know, comparing the output from https://github.com/vvb2060/KeyAttestation across different manufacturing date and regions will suffice.
β€2π€―2