Skip to main content

The Guide to saving yourself from buildbots.

Since the past few years we have seen a tremendous growth in the number of buildbots claiming themselves to be Android DEVS, most of the people are aware of it and try to avoid them as much as possible, but the average joe usually gets trapped in the web of miraculous changelogs these buildbots type, so i am trying to put together some information which might help a few of us to keep ourselves and our devices at a distance from these fame hungry teens with a 14yo mindset.


1) What is AOSP?

-In most simple words, Android Open Source Project is the pure android source maintained by google.

2) What is CAF?

-CA means CodeAurora and F stands for Forums, Codeaurora maintains a lot of projects listed under

https://www.codeaurora.org/projects

CA is responsible for providing various drivers required for Qualcomm chipsets, CAF provides a fork of AOSP+Changes for Qcom chipsets which OEMs buy from CAF.

Now the "scam" ran by buildbots under Caf's name is

"CAF kernel", buildbots will say that they are providing PureCAF kernel and kernel with CAF bits, this is total bullshit, all Qcom devices run on kernel sources provided by caf so anyone marketing their kernels as caf and non-caf, its utter garbage and stay away from it. This case is slightly different for Pixel devices.

3)Voltages alteration

-The older chipsets like snapdragon 2xx, 4xx, 6xx, 820 allowed alteration of cpu voltages from kernel device tree, but since the arrival of new soc like sd7xx or 845,855, all the voltage regulation is carried on by the bootloader and the kernel cannot change it.

4)Identifying buildbots

-Buildbots are basically people who get their hands on some free server and start cloning trees and building roms without any knowledge of version control or how any other things work, they exhibit the tendency to act pro, change their names and bios to cringe stuff like "android developer, dont pm" etc., mind it there are legit guys who have been in the android community since years and yet they arent very well known while the buildbots will be called "sar, sir" everywhere.

If you see a specific pattern of changelogs like "Improved performance, improved battery backup" everytime then there's a chance that its a buildbot since they havent done anything, they have no idea what to put in the changelogs and so they just add the generic stuff which attracts normal users.

Comments

Popular posts from this blog

What is BLACK WINDOWS 10 V2 windows based penetration testing os,and what are its features.Download link inside

                         Black Windows 10 V2

Mandiant Discloses Critical Vulnerability Affecting Millions of IoT Devices

Today, Mandiant disclosed a critical risk vulnerability in coordination with the Cybersecurity and Infrastructure Security Agency (“CISA”) that affects millions of IoT devices that use the ThroughTek “Kalay” network. This vulnerability, discovered by researchers on Mandiant’s Red Team in late 2020, would enable adversaries to remotely compromise victim IoT devices, resulting in the ability to listen to live audio, watch real time video data, and compromise device credentials for further attacks based on exposed device functionality. These further attacks could include actions that would allow an adversary to remotely control affected devices. At the time of writing this blog post, ThroughTek advertises having more than 83 million active devices and over 1.1 billion monthly connections on their platform. ThroughTek’s clients include IoT camera manufacturers, smart baby monitors, and Digital Video Recorder (“DVR”) products. Unlike the vulnerability published by researchers from Nozomi Ne...