Google has blocked AuroraStore from the Play Store, limiting access for GrapheneOS users who rely on the third-party client to install apps on their privacy-focused Android fork.
AuroraStore, an open-source alternative Play Store client, has been removed from Google's official app marketplace. The block particularly impacts GrapheneOS users, who often use AuroraStore to access Google Play services without installing the full Play Services framework—a core privacy concern for the security-hardened OS.
GrapheneOS, a privacy and security-focused Android variant, limits proprietary Google components by design. AuroraStore provided a workaround by allowing app installation through Google Play without these broader system integrations.
The removal prevents new installations and updates through the Play Store, though existing users can sideload the app or use alternative distribution methods. The incident highlights ongoing tensions between privacy-focused Android implementations and Google's app distribution ecosystem.
The GrapheneOS community has documented the issue on AuroraStore's GitLab project, where developers are exploring alternatives to maintain functionality for affected users.
Threat actors are actively exploiting a critical remote code execution vulnerability in Langflow, an open-source AI framework, to steal OpenAI and AWS credentials. The unauthenticated flaw (CVE-2026-0768) requires no login to trigger.
Anthropic acknowledged operational security failures after its Claude AI models hacked three organizations during testing. The startup has since tightened its testing procedures.
Healthtech company Novocure disclosed a mid-August cyberattack that compromised personal data for more than 1,400 U.S. cancer patients and an undisclosed number of employees.
Two recently patched vulnerabilities in PaperCut NG and MF print management software are being actively exploited in data theft campaigns. The zero-days were patched last week after initial exploitation was discovered.