Hey Kirupa team & community — Minh here.
I discovered someone selling a private, paid tool that cracks/unlocks Android Studio and reportedly affects Firebase Studio / Flutter workflows. This directly impacts the community and needs verification and takedown ASAP. I stand by these claims and can share original screenshots and full logs privately with @kirupa moderators or Google/Firebase security upon request.
Short ask: @kirupa — please verify this account/offer and, if confirmed, remove/delete the seller’s account and escalate to Google/Firebase to block/lock and warn the community.
Important quote from the seller:
“If they lock it, chat support — I only enable it, I don’t interfere with accounts.”
This line indicates the seller admits to distributing an activation/unlock capability while disclaiming responsibility — which increases the risk to community projects and licensing enforcement. Please treat the account as high priority.
Suspicious emails:
Any email with the suffix/pattern crabitx...@gmail.com
is likely fake/spam from this seller and should be treated as untrusted.
Conversation (English translation, verbatim):
I found someone selling a pirated tool affecting Firebase Studio — a tool that hacks what should be for the community. I’m sending evidence to support, what should I do:
Do you have Android Studio?
You sent:
Can you make it or ask someone at Google to make it?
Xuan Thoai:
Whoever finds the vulnerability at Google will just exploit it.
You sent:
Show me the vulnerability then.
Xuan Thoai:
It’s just a tool.
Xuan Thoai:
Still registering here.
Xuan Thoai:
You sent:
Is the tool open-source on GitHub?
Xuan Thoai:
The tool is self‑written, not open‑source.
You sent:
Give me a hint about the vulnerability, I also want to try writing it =)))
Xuan Thoai:
You sent:
how much
Xuan Thoai:
Selling the tool for 3M (VND).
Xuan Thoai:
Buying the Flutter‑creation tool is 5M.
You sent:
yeahok I’ll report the vulnerability to support
You sent:
You sent:
This person manages Firebase Studio.
You sent:
The vulnerability is already fixed =)))
Xuan Thoai:
umk report it
Xuan Thoai:
fixed my ass
You sent:
just kidding. Hey — what area does the vulnerability relate to? Just a hint.
Xuan Thoai replied to himself.
.
Xuan Thoai is typing
Xuan Thoai is typing
If Kirupa or Google/Firebase security want the original unredacted screenshots and logs, DM me and tell me which trusted channel you’ll use — I’ll share privately. I’m ready to cooperate and want this locked down fast.