Beta testers and contributors are needed for the new hardened Android compatible mobile OS in early development. Releases are available for the Pixel 2, Pixel 2 XL, Pixel 3 and Pixel 3 XL on the update server at seamlessupdate.app. Sources are at github.com/AndroidHardeni.
Conversation
Google and Samsung are minting billions on the OS, yet they are looking for open source contributors to fix these issues? After RedHat made billions with open source efforts, these days nobody bothered to contribute to Open Source. Let Google pay for those beta testers.
1
1
It's not Google asking for contributions and help with identifying and fixing the issues. This project involves having a downstream fork of the Android Open Source Project providing privacy and security improvements along with filling in gaps left by not having Play Services.
1
1
An example of a fixed issue is github.com/AndroidHardeni. This patch can and probably should be submitted to AOSP, but it the bug doesn't make any real difference for them because they don't use a hardened memory allocator. It's harmless for them and just technically wrong / ugly.
1
2
Google pays substantial bounties for discovering security issues, and I've gotten a substantial amount of money by reporting security bugs to them. However, most of these issues are not actually security bugs and only a subset actually cause harm via actual memory corruption.

