Earlier quoted context omitted.
Two fixes that would be trivial to backport to mainline Android.
You can configure USB port for charging only in the developer options.
Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
71–80 of 372 posts
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#72Earlier quoted context omitted.
No American company has a choice when the Feds want data stored on a company's server. That doesn't stop Apple or any other company from designing devices that attempt to keep prying eyes out of the data stored on your device.
The government has ways of twisting the arms of uncooperative people/organizations into providing all the backdoors they need. Everything from increased tax and regulatory scrutiny to "discovering" CSAM on executives' computers or phones. The government does what it wants because it's the government. Mere laws generally don't stand in its way for long.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#73Another great thing about GrapheneOS (besides security) is that Google Play Services can be installed without elevated privileges and even in a separate profile which can't run in the background. This makes the phone suitable for both normal usage and for those cases where you need to use some "official" app. It passes Play Integrity "MEETS_BASIC_INTEGRITY" but of course doesn't pass higher levels but not because it'…
https://xkcd.com/1200/
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#74Earlier quoted context omitted.
Two fixes that would be trivial to backport to mainline Android.
iOS already does both of this afaik. At least the automatic reboot part, I think the USB data functionality is disabled in some cases while locked too.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#75Earlier quoted context omitted.
iOS already does both of this afaik. At least the automatic reboot part, I think the USB data functionality is disabled in some cases while locked too.
iOS is also compromised according to other cellebrite docs so that makes me think Graphene OS just might not be worth the effort for them.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#76Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#77> Notably, the Pixel 10 series is moving away from physical SIM cards. Is it? I hadn't followed news of the new Pixels. I don't like the idea of modernizing this and going full eSIM. It will introduce a lot of new friction, somehow I don't doubt it. Just now arrived to Mexico for a quick trip and grabbed a prepaid SIM from a 7-11 in the airport. All quick and simple. I doubt things would be so seamless when not havin…
I'm sure eSIMs are a good idea if your aim is to gain even more control over our personal devices.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#78They couldn't answer the question most on my mind: "We’ve reached out to Google to inquire about why a custom ROM created by volunteers is more resistant to industrial phone hacking than the official Pixel OS. We’ll update this article if Google has anything to say."
Example: https://old.reddit.com/r/GooglePixel/comments/ytk1ng/graphen...
Also Google Pay is missing.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#79They couldn't answer the question most on my mind: "We’ve reached out to Google to inquire about why a custom ROM created by volunteers is more resistant to industrial phone hacking than the official Pixel OS. We’ll update this article if Google has anything to say."
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#80They couldn't answer the question most on my mind: "We’ve reached out to Google to inquire about why a custom ROM created by volunteers is more resistant to industrial phone hacking than the official Pixel OS. We’ll update this article if Google has anything to say."
GrapheneOS makes security trade-off that are inconvenient to the user. This results in a far more secure device, but nonetheless a device that the general public would find far more annoying. Google would lose a proportion of its user base by implementing the same protections. Example: https://old.reddit.com/r/GooglePixel/comments/ytk1ng/graphen... Also Google Pay is missing.
I see just one minor tradeoff - no face unlock.