PSA: do not install the latest bitwarden apk, there's a signature mismatch. Could be nothing but better safe than sorry.

https://github.com/bitwarden/mobile/issues/3062

Reply to this note

Please Login to reply.

Discussion

Consider vaultwarden instead.

https://github.com/dani-garcia/vaultwarden

Vaultwarden is just the serverside. You still need the client app from bitwarden.

Ah, you are of course correct.

I think i've seen a 3rd party client called Goldwarden on #Flathub though

No android client though

good catch

Obtainium rejected to install the update 🤩

Updates are always protected at the OS level which trusts keys on first install and autorejects updates with key mismatches.

The ones vulnerable to attack are first-time installers...

Oh wow lots of information I didn't know. So it wasn't Obtainium who checked the signature, it was Android.

Correct.

thank you very much

Not on the F-droid repo apparently or else it's not picking up that apk...

i saw,this ticket got closed, but wasnt abke to determine the solution in git. care to break it down? thanks friend 🤙

It got closed because they already fixed their build pipeline. They still haven't released a version with a fixed signature so we are all gonna have to wait.

lol, bitwarden... more uberghey pseudo security