You might think that Google's latest Android moves are designed to undercut choice and alt OEM/ODM ecosystems that could challenge Play...:

https://www.theverge.com/tech/897420/android-sideloading-unverified-developers-process

But rest assured, there's *plenty* of malware choice inside the walled garden:

https://www.pcmag.com/news/study-reveals-googles-play-store-is-main-distributor-of-malicious-apps

Google reveals its solution for true Android sideloading: a mandatory waiting period

The one-time ‘advanced flow’ for power users to sideload apps from unverified developers includes 24 hours of cooling off time.

The Verge

ICYMI, all of the arguments the mobile duopolists make to justify their chokehold over mobile software are bullshit, starting with security. Cutting off side loading furthers the coverup of native app insecurity:

https://infrequently.org/2026/01/naked-power/#the-security-argument

MADA hijinks (look it up), nerfing PWAs in Play, and failure to open up WebAPKs is a funhouse mirror of Apple's anti-web strategy.

Portability and interoperability are the duopolist's enemies, so a safe, powerful web is kryptonite.

/cc @owa @pluralistic

Naked Power

Apple and Google's app stores stand for nothing and will stand up to no-one. Good riddance.

Alex Russell

@slightlyoff It is true though that one common scam is tricking users into sideloading malware which then gains control over their android device.

https://www.channelnewsasia.com/singapore/android-malware-scam-millions-lost-cpf-savings-banks-police-4128246

Nearly 2,000 victims fell for Android malware scams, at least S$34.1 million lost in 2023

The majority of victims were aged 30 to 49, and were most frequently targeted on Facebook and Instagram.

CNA