Per one tech forum this week: “Google has quietly installed an app on all Android devices called ‘Android System SafetyCore’. It claims to be a ‘security’ application, but whilst running in the background, it collects call logs, contacts, location, your microphone, and much more making this application ‘spyware’ and a HUGE privacy concern. It is strongly advised to uninstall this program if you can. To do this, navigate to 'Settings’ > 'Apps’, then delete the application.”

  • mctoasterson@reddthat.com
    link
    fedilink
    English
    arrow-up
    8
    ·
    1 hour ago

    People don’t seem to understand the risks presented by normalizing client-side scanning on closed source devices. Think about how image recognition works. It scans image content locally and matches to keywords or tags, describing the person, objects, emotions, and other characteristics. Even the rudimentary open-source model on an immich deployment on a Raspberry Pi can process thousands of images and make all the contents searchable with alarming speed and accuracy.

    So once similar image analysis is done on a phone locally, and pre-encryption, it is trivial for Apple or Google to use that for whatever purposes their use terms allow. Forget the iCloud encryption backdoor. The big tech players can already scan content on your device pre-encryption.

    And just because someone does a traffic analysis of the process itself (safety core or mediaanalysisd or whatever) and shows it doesn’t directly phone home, doesn’t mean it is safe. The entire OS is closed source, and it needs only to backchannel small amounts of data in order to fuck you over.

    Remember the original justification for clientside scanning from Apple was “detecting CSAM”. Well they backed away from that line of thinking but they kept all the client side scanning in iOS and Mac OS. It would be trivial for them to flag many other types of content and furnish that data to governments or third parties.

    • woobat@midwest.social
      link
      fedilink
      English
      arrow-up
      2
      ·
      33 minutes ago

      thank you for posting this. it’s not yet installed on my phone for some reason, but i will be checking this page every couple days to make sure it stays that way.

  • Xanza@lemm.ee
    link
    fedilink
    English
    arrow-up
    6
    ·
    2 hours ago

    Seems to be innocuous, but there’s no harm in removing it. Next update, it’ll be returned, so the better solution long-term will be (if you’re rooted) is to use an application to freeze it, which effectively disables it and it should survive and update. If you delete the app, a new update will put it back.

    • HeyThisIsntTheYMCA@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      3 hours ago

      My older brother swipes through your phone’s photos without asking, so I put some colonoscopy pictures in there. He hasn’t tried to look at photos on my phone since.

      Oh Google what have you done to yourself.

  • potentiallynotfelix@lemmy.fish
    link
    fedilink
    English
    arrow-up
    1
    ·
    1 hour ago

    Interestingly I don’t have it on my stock samsung phone. I haven’t updated it since oneui 6. Is safetycore installed by update or by GMS?

  • PokerChips@programming.dev
    link
    fedilink
    English
    arrow-up
    2
    ·
    1 hour ago

    And interestingly enough my phone crapped out on this post. But at least I was still able to read the the post.

  • CaptKoala@lemmy.ml
    link
    fedilink
    English
    arrow-up
    14
    ·
    4 hours ago

    Thanks for bringing this up, first I’ve heard of it. Not present on my GrapheneOS pixel, present on stock.

    I suppose I should encourage pixel owners to switch from stock to graphene, I know which decide I rather spend time using. GrapheneOS one of course.

    • SayNaughtOfIt@feddit.org
      link
      fedilink
      English
      arrow-up
      1
      ·
      2 hours ago

      I’ve got a Pixel 8 Pro and I’m currently using the stock OS. Anything in particular that you miss with Graphene OS?

    • Flying_Hellfish@lemmy.world
      link
      fedilink
      English
      arrow-up
      2
      ·
      3 hours ago

      I’ve looked into it.l briefly. Did you have any issues switching? I’m concerned about how some apps I need would function.

      • CaptKoala@lemmy.ml
        link
        fedilink
        English
        arrow-up
        3
        ·
        3 hours ago

        I did a fair amount of research before the switch to find alternatives to Google services, some I’ve replaced, others I felt were too much of a hassle for my phone usage.

        I’ve kept my original pixel stock, the hardest part about switching this one over was plugging it in and following the instructions.

        I’m hoping to get rid of my stock OS pixel soon, it would appear my bank hasn’t blocked it’s app on Graphene, unlike Uber.

        For the rest I’ll either buy a cheap af shitbox to use purely for banking and Uber (if it comes to that).

        If you’ve any other questions I’m happy to help find then answers with you, feel free to DM me.

  • LotrOrc@lemmy.world
    link
    fedilink
    English
    arrow-up
    16
    ·
    5 hours ago

    I just un-installed it

    Anyone know what Android System Intelligence does? Should that be un-installed as well?

    • starman2112@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      3
      ·
      2 hours ago

      Jesus Christ they’re like bed bugs

      Is it too much to ask that my phone only contain the shit that makes it work, and not anything else?

      • A_Random_Idiot@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        edit-2
        2 hours ago

        Its a classic example of using “BUT THE CHILDREN” to be invasive dickheads.

        And it immediately reminds me of the story of the guy whose kid had a rash in the diaper area during covid, and the pediatrician requested pictures to remotely diagnose and treat, which google flagged as child pornography and called the cops on him, and banned/locked him out of everything (phone number, emails, pictures, etc etc) because he had everything on google.

        and no amount of the police, or even doctor, insisting the pictures were medical necessity and not child pornography would convince google to restore his acount or even let him recover his number/email/pictures/etc.

  • Event_Horizon@lemmy.world
    link
    fedilink
    English
    arrow-up
    9
    ·
    5 hours ago

    It didn’t appear in my apps list so I thought it wasn’t installed. But when I searched for the app name it appears. So be aware.

      • Ledericas@lemm.ee
        link
        fedilink
        English
        arrow-up
        1
        ·
        2 hours ago

        you can look it up on your app managment settings too, search for it there.

      • viking@infosec.pub
        link
        fedilink
        English
        arrow-up
        2
        ·
        3 hours ago

        Play Store, it doesn’t show in local search results, but they list it as installed.

        • A_A@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          edit-2
          2 hours ago

          Even worse, i found this comment in the app store and it did the same on my device :

          Installed automatically without my knowledge, no notification, only found it because of a friend’s post, and even then, you only see it through a link, it doesn’t come up in your app list or a search of the Google play store. I thought it felt like my battery was draining a little quicker too, which is apparently also something noticed in connection to having this app. Uninstalling.

          The app can be found here :
          https://play.google.com/store/apps/details?id=com.google.android.safetycore
          .

          • Ledericas@lemm.ee
            link
            fedilink
            English
            arrow-up
            2
            ·
            2 hours ago

            i was able to find it on my oneplus, and i also noticed, why is my oneplus 12r draining so fast?

  • serenissi@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    3 hours ago

    an app on all Android

    not my android :)

    BTW did anyone reverse engineer it? Or doing rn (I’m HTH)?