Blacksky has delivered on bluesky’s promise of federation by setting up their own app view, creating a complete and independent third party implementation.
https://blacksky.community/profile/did:plc:w4xbfzo7kqfes5zb7r6qv3rw/post/3mcozwdhjos2b
Mcc has an interesting thread on mastodon (https://mastodon.social/@mcc/115918042095581428) which asks a bunch of questions about what the actual consequences of this might be, and no-one really seems to know, but no-one has much faith in the engineering or moderation chops of the bluesky team.
It looks like bluesky is somewhat vulnerable to rich trolls, because the main barrier to entry is cost… blacksky has budget of maybe 80000 usd/year (https://opencollective.com/blacksky) which is well within the reach of a whole bunch of people prepared to spend money to be egregious assholes, especially if they already have access to suitable talent and equipment. It’ll be bleakly interesting to see who tries this first.
This is fun: a zero-click android exploit that allows arbitrary code execution and privilege escalation. Y’know, the worst kind. How did we get here?
AI, making everything worse, even before it runs!
https://projectzero.google/2026/01/pixel-0-click-part-1.html
Every now and then, I think about going back to android, and then I read stuff like this. FWIW, iOS had a closely related bug, but compiled the offending code with bounds checks, so it wasn’t usefully exploitable (and required some user interaction, too).
Anyway, if you do android, maybe check if automatic transcription is enabled.