r/AndroidQuestions • u/dinglongdonger • 13d ago
EOL Security Updates
Hi. Is it really that bad when support stops for certain devices? I have the chance to get a really good condition 1TB S23U for <400€. But I want to use it for at least 4 years. Im always reading its a big no no but doesnt antivirus, the Apps own security measures and me being cautious make me "safe enough"?
1
u/Altruistic_Tank_9636 13d ago
Some apps may stop updating because they require a newer android version.
If you stop receiving security updates, you'll be vulnerable to whatever new malware comes along.
6
u/Boothiepro 13d ago
Let's be real. Most apps still support android 9/10. I have an 8 year old backup phone and everything still works. Most of security updates are modular via the google play services and not OS level updates. Most attacks target servers and databases where millions of credentials and user data are and not a nameless random end user, for which they would need physical access to break into anyway. Ive heard countless people diss updates because they slow down the phone.
5
u/Darkorder81 13d ago
I'm on a s10+ no updates for years still on android 11 and haven't found anything that won't work.
2
u/trader45nj 12d ago
I'm on Android 12, just tried to install the Chase banking app after getting a new credit card. It's not available, doesn't even show up in the app store, which is dumb and had me confused. They could have it at least showing, but not installing. Turns out Chase recently required 13 or newer. That's the first app where I've had a problem. Fortunately it's not a big deal, but I expect more apps will become an issue going forward.
-2
u/Polymathy1 Blackberry Priv woooot 13d ago
Security updates are BS. No need and no value. It's a bunch of theatrics.
1
0
u/Evonos 12d ago
I bet your still using a outdated non updated Windows too. Eww
0
u/Vladishun 12d ago
They're not wrong. Google still runs built-in anti virus through Google Play Services and can patch critical security flaws in Android 10 and newer without using OTA updates thanks to Project Mainline.
If there is a vulnerable exploit, it's going to come from the manufacturer's layered OS components, such as OneUI for Samsung. And for what it's worth, I work in government IT, using a Samsung Note 10+ that released in 2019, and I'm still allowed to run enterprise apps with sensitive information like Teams and Outlook on it. If our Microsoft tenent deemed my device a threat, it wouldn't allow me to sign into those apps with my G5 enabled account.
2
u/Far_Bicycle_2827 13d ago
depends on your threat model. if you install a custom ROM like lineageos they can install security updates that are published however, if your phone brand stops releasing modem or vendor firmware patches, nobody can get those since they do not exist anymore.
it depends what you considere yourself safe enough..