Earlier quoted context omitted.
GrapheneOS makes security trade-off that are inconvenient to the user. This results in a far more secure device, but nonetheless a device that the general public would find far more annoying. Google would lose a proportion of its user base by implementing the same protections. Example: https://old.reddit.com/r/GooglePixel/comments/ytk1ng/graphen... Also Google Pay is missing.
Which particular thing you consider inconvenient or even annoying? You can even install Google Play there. I see just one minor tradeoff - no face unlock.
Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
101–110 of 372 posts
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#102How come not a single Cellebrite device got "lost" and thoroughly analyzed? Surely quite a few police depts are rather lax.
A bunch of their software was also leaked in a hack back in 2023: https://ddosecrets.com/article/cellebrite-and-msab
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#103Earlier quoted context omitted.
iOS is also compromised according to other cellebrite docs so that makes me think Graphene OS just might not be worth the effort for them.
iOS was hackable in 2024 for certain hardware (in particular the checkm8 era phones) or for iOS versions which had known vulns at that point. Modern hardware with updates was still listed as “in research” which means “we can’t”.
Edit: last released leak showed they had broken the then most recent iOS release (17.5.1) in AFU state on all but the most recent hardware which was marked "available in CAS"
https://discuss.grapheneos.org/d/14344-cellebrite-premium-ju...
The good news is neither pixel nor iOS seems to show full file system extract under BFU state in the recent tables I can find.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#104Wow. I was just thinking about jumping ship from iPhone to Pixel.
All iPhones were vulnerable according to the last available iOS support matrix.
To calibrate your sense of time, the iPhone 15 had been released in September 2023 and that doc is dated April 2024, so ~6 months.
And just for completeness, here was the Android doc that leaked at the same time: https://www.documentcloud.org/documents/24833831-cellebrite-...
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#105Earlier quoted context omitted.
Anyone can build GrapheneOS from source code, which I doubt is true of any law-enforcement honeypot.
See my footnote in original comment.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#106Earlier quoted context omitted.
Anyone can build GrapheneOS from source code, which I doubt is true of any law-enforcement honeypot.
Exactly what someone who sets up a honeypot targeting nerds would want you to think.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#107Earlier quoted context omitted.
You can configure USB port for charging only in the developer options.
I think that's at the OS level. I think there are things that could be done through the firmware level.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#108Earlier quoted context omitted.
GrapheneOS makes security trade-off that are inconvenient to the user. This results in a far more secure device, but nonetheless a device that the general public would find far more annoying. Google would lose a proportion of its user base by implementing the same protections. Example: https://old.reddit.com/r/GooglePixel/comments/ytk1ng/graphen... Also Google Pay is missing.
Which particular thing you consider inconvenient or even annoying? You can even install Google Play there. I see just one minor tradeoff - no face unlock.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#109Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#110There’s always the hope they are hit back: Cellebrite can develop solutions to automate the hacking of target phones, but in doing so their physical devices are exposed to being hacked as well.