Urgent.News

What's breaking now, across thousands of outlets.

Tech

Google’s new Android sideloading rules are live — and here are all the ways to already bypass them

From Advanced Flow to ADB and Shizuku, power users can continue installing unverified APKs on Android.

Google’s new Android sideloading rules are live — and here are all the ways to already bypass them

Certified Android devices running Google Play Services in Brazil, Indonesia, Singapore, and Thailand have activated new sideloading restrictions as of the latest update. These devices actively block apps from unverified developers, a change set to roll out globally by 2027. While existing apps continue to function, updates necessitate bypassing the new safeguards.

Users can circumvent these restrictions through Google's multi-step "Advanced Flow," which involves toggling Developer Options, restarting the device, waiting 24 hours, and additional taps. Other methods include using ADB, Shizuku, rooting the device, or installing custom ROMs like Lineage OS and GrapheneOS. Despite these bypass options, turning off Developer Options after Advanced Flow setup won't undo the permission changes.

Google's move to tighten Android sideloading rules has already generated community chatter, with users sharing their experiences and frustration. Apps traditionally hosted on platforms like GitHub, F-Droid, and community-patched applications such as Morphe are now considered unverified, leading to their inability to install on these devices.

Written by urgent.news from Android Authority's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at androidauthority.com →

More in Tech

I tested 500 emails against HIBP. My validator found a major flaw.

I tested 500 emails against HIBP. My validator found a major flaw. api, #security, #python, #webdev On September 30, 2026, at 17:08 UTC, I sent test@gmail.com to the email validator I had just shipped…

  • Reporter's validator tested 500 emails
  • Found major flaw in breachcheck
  • Returned null istrustedidentity

The Soft 404 That Hid My Multi-Tenant SaaS From Google

Originally published on meridianbuild.dev , my engineering blog where I write up the real bugs and decisions behind the products I build.

  • Google Search Console's Soft 404 hides multi-tenant SaaS from indexing
  • Eglise en Ligne SaaS implemented fix in Next.js App Router project
  • Guard in [locale] layout returns real 404, eliminating Soft 404 errors

More from Thursday 1 October →