This is an automated archive.
The original was posted on /r/opensource by /u/AvatarQwerty on 2023-08-18 08:32:03+00:00.
I don't want to be controversial or criticize OS softwares, which I appreciate very much and continue to use on a daily basis, but I wanted to share with you this story that has left me very puzzled about the security of some of this software and use the incident to ask for your advice.
Sometime ago I was trying to get rid of some proprietary programs I use on my Android smartphone using F-Droid alternatives, but an unfortunate thing happened.
I don't remember exactly which app I used, because I had tried 2 or 3 different similar apps on F-DROID, but while using one of the alternative apps to Spotify, I think someone stole my account.
At the time I didn't notice it, but later after some months, trying to Login again I realized something was wrong and going through recived emails, I noticed that the Spotify login email was changed without my knowledge and now I have no control over that account.
I'm pretty sure the password was stolen in this way, precisely because this is the only time I've entered the Spotify password outside of the official site; because the timing of the email change matches the timing of using these alternative apps; and also because my email has not been compromised nor other passwordmanagers.
Now I am asking for Spotify support to recover the account or possibly to delete it, but fortunately there was no sensitive data in this accaount, but the fact is that this story has me quite disappointed because now my trust in some OS software is gone.
I would like to understand therefore, how I can identify among the opensource software for both pc and android those that are most reliable and that I can be quite safe in using, while I would like to try to figure out how I can try to detect the most suspicious apps and programs in order to avoid this problem again.
I thank you in advance