Earlier quoted context omitted.
Which are absolutely shit because your data exits out on the other side of the world with 150ms extra latency. Getting an (e?)SIM from a local carrier is always better and often cheaper too.
And you can buy an eSIM from a local carrier, which will then email you a code. It's unheard of for local carriers to mail physical SIMs to the other side of the world.
Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
271–280 of 372 posts
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#272Earlier quoted context omitted.
Which particular thing you consider inconvenient or even annoying? You can even install Google Play there. I see just one minor tradeoff - no face unlock.
They removed pattern lock, which makes me uncomfortable. I don't care for touch/fingerprint (or face) because biometrics aren't protected in the fifth amendment right to be free from self-incrimination. The only screen lock is PIN.
> Pattern unlock is a badly designed lock method that's a major downgrade from the security of a PIN for multiple reasons.
> Pattern lock is even more dangerous to people who are as you say more casual users. It is a badly designed and dangerous feature. iPhones not having this is very good for users. We will not add back a major flaw in the OS security design.
If this makes you uncomfortable somehow? OK? Maybe it's not an OS for you :)
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#273Earlier quoted context omitted.
Is the battery life better with Graphene?
I would say, similar. In theory it may be slightly worse, because you are not using play services to deliver notifications, but each app does their own fetching (I believe that's how it works), but you will also restrict apps more (due to e.g. being able to restrict network access), so the two sort of cancel out.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#274Earlier quoted context omitted.
Google OS-level integration is absent, and while Google Play Services can be installed, you're still missing things like Chromecast. Also, there's more manual configuration (although I don't remember exactly what, I've never used GrapheneOS). A lot of stuff you do get for free, but not all of it, and stuff that's been removed as a "feature" isn't always stuff that nobody wants.
Is it really missing Chromecast? I read that it works if you have Play services (but haven't tried)
I do have sandboxed Google services installed.
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#275Earlier quoted context omitted.
Neither have had any known BFU on the latest iOS for years. AFU is occasionally possible but most of the leaks had latest software and hardware as still protected. Powering off the phone is always still a good idea though if you can.
That's not true. Cellebrite has working BFU and AFU exploits for recent iOS and usually catches up to the latest iOS versions and hardware in weeks or a couple months. They do not have working brute force support for the Pixel 2 / Pixel 6 or later / iPhone 12 or later due to the secure elements but can still exploit the devices in BFU mode and extract the data available before unlocking. iPhone 17 may work out better…
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#276Earlier quoted context omitted.
> It sounds like you’re talking about the benefits of having both? physical sims make no contribution to any of their points.
> 2. if I get a tourist sim card at an airport That sounds like it would be a physical sim, or am I incorrect?
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#277Earlier quoted context omitted.
> In fact, looking at the news this week, the same question applies to Microsoft and Apple as well. Are they too big and distracted to care about security? Yes, of course they are, but its more rational than just being distracted. If not caring does does not lose you a significant amount of revenue why should you care? The same applies to big players in the industry with regard to security and quality in general. In…
> If not caring does does not lose you a significant amount of revenue why should you care? Sounds like it's time for heavy regulation. These corps are not "normal" businesses anymore, I think special (and stricter) rules should apply to them.
Regulation is a very poor substitute for competition, and for well informed customers.
Some of what I said in this comment is relevant: https://news.ycombinator.com/item?id=45780529
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#278Earlier quoted context omitted.
My banking apps run on it, but my concert ticket app doesn't, so I have a separate phone just for that one app.
Can concert tickets not be bought in a web browser?
Re: Leaker reveals which Pixels are vulnerable to Cellebrite phone hacking
#279Earlier quoted context omitted.
Are you affiliated with the project? I see all your posts are about Graphene OS. On HN it is customary to state it: you often see "author here" in discussions where the author joins. If you are part of the team I would suggest against using the third person ("they have a team..."). I know strcat is the lead Graphene OS developer, and it seems you and Andromxda are very knowledgeable about the project and very active…
It's literally ONE click away from the GrapheneOS main page, lol, the literacy levels gone through the floor. https://grapheneos.org/history/ > GrapheneOS now has multiple full-time and part-time developers supported by donations and multiple companies collaborating with the project. This is beyond being just shockingly, willingly ignorant and this is out there re on the open, so in the spirit of your own response, I…
I myself am not affiliated in any way with their "infamous competition", not even as a user of their software, so I have nothing to disclose. (Actually, I am a Graphene OS user.)