Hacker News new | past | comments | ask | show | jobs | submit login

The only way to change the signing key for an app (on an unrooted phone at least) is by completely uninstalling it (which deletes the main data directory) and then installing a new version. In fact, Google lost the key for their OTP authenticator app at one point, requiring all users to install the new app manually before they would receive updates again.



Have you got a link? I can't find any info on that happening


Couldn't find the blog post I read way back when it happened. The closest thing I could find was an Android news site describing the problem. [1]

I'm 90% sure that a Google engineer admitted it on their official blog, but that was 2 years ago so I might be misremembering it.

[1] http://www.androidpolice.com/2012/03/22/psa-googles-authenti...




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: