Live data from Hacker News

GrapheneOS is the only Android OS providing full security patches

grapheneos.social

311–320 of 467 posts

Re: GrapheneOS is the only Android OS providing full security patches

#311
post #302

Earlier quoted context omitted.

What would they gain from making it closed source? There isn't any distribution of AOSP that competes with Android. If they would close-source it, the community for sure will pick up the pieces.

GrapheneOS is the community picking up the pieces.

They're not. They're heavily dependent on Google, especially CVEs.

Re: GrapheneOS is the only Android OS providing full security patches

#312
post #222

https://tbot.substack.com/p/grapheneos-new-oem-partnership > GrapheneOS has officially confirmed a major new hardware partnership—one that marks the end of its long-standing Pixel exclusivity. According to the team, work with a major Android OEM began in June and is now moving toward the development of a next-generation smartphone built to meet GrapheneOS’ strict privacy and security standards.

We will see how that goes. I love GrapheneOS, I've used it for years, but the details matter. An OEM partnership might promise a lot at the start, but a lot can change between now and delivery.

Worst case scenario we still have Google Pixels.

Re: GrapheneOS is the only Android OS providing full security patches

#313

Earlier quoted context omitted.

Indeed. However, in terms of the independence, better choices exist.

If someone is making a new browser, considering you want to support the same web standards as everyone else, being independent is pretty low on the priority lists. In fact it is more of a liability since it could make for compatibility issues.

I don't understand what you're talking about. Firefox supports all reasonable standards and so does GNU/Linux.

Re: GrapheneOS is the only Android OS providing full security patches

#314
post #303
post #269

Earlier quoted context omitted.

Pixel hardware is below average? Since when? That sounds like a flagship phone to me.

In raw cpu and gpu performance terms it is quite weak compared to other flagships. You dont notice unless youre gaming or encoding video or doing other heavy workloads. The daily driver experience is very smooth. The cameras and camera software is in the top 5 consistently though, the screens are also really good, so its a mixed bag hardware wise.

Meh good enough for everything unless you use your phone as a "gaming pc". But the extra open-ness and security is worth it for me.

Re: GrapheneOS is the only Android OS providing full security patches

#315

https://tbot.substack.com/p/grapheneos-new-oem-partnership > GrapheneOS has officially confirmed a major new hardware partnership—one that marks the end of its long-standing Pixel exclusivity. According to the team, work with a major Android OEM began in June and is now moving toward the development of a next-generation smartphone built to meet GrapheneOS’ strict privacy and security standards.

Oh that's one of the best news in the smartphone world in a long time. It's impossible to escape the Apple/Google duopoly but at least GrapheneOS makes the most out of Android regarding privacy. I still wish we could get some kind of low resource, stable and mature Android clone instead of Google needlessly increasing complexity but this will over time break app compatibility (Google will make sure of it) Edit: I do…

I’ve been an iPhone user from the beginning but this would really tempt me.

Re: GrapheneOS is the only Android OS providing full security patches

#316

As a LineageOS user, I'd be interested in the disparity between GrapheneOS and LineageOS.

Here is a good comparison among the major open source android distributions

https://eylenburg.github.io/android_comparison.htm

Re: GrapheneOS is the only Android OS providing full security patches

#317
post #90

Earlier quoted context omitted.

Or use everything via the web browser; but yes, I think apps are the main reason we can't just have a generic Linux phone OS on an open hardware platform

Isn't there an emulator that can run Android apps inside any Linux distro?

No. There are a few that claim to, but none of them are actually any good. Waydroid, for instance, requires that your kernel is compiled in basically "Android mode" (e.g. binder enabled).

Re: GrapheneOS is the only Android OS providing full security patches

#318

Earlier quoted context omitted.

Some of the funnest work, if you could get it, was swapping ssds out of laptops coming through customs for high value targets.

Which is another reason we need to strip this hardware attestation stuff out of the hardware. It either needs to use exclusively keys the user loaded into the device themselves or the keys aren't on the device whatsoever and then the "high value targets" verify the contents of the drive from a known-clean machine once they get it back from the adversarial foreign officials before putting it back into service. Or bett…

These are new machines before users get a chance to load anything. Thus the customs part.

Re: GrapheneOS is the only Android OS providing full security patches

#319

Earlier quoted context omitted.

If you have a Pixel -> Graphene, if not -> Lineage. I personally don't care about "security" all that much, my main reason for using Graphene is freedom to use my hardware in any way I wish. This means unrestricted ability to run any program on the phone from any source. Sideloading restrictions don't apply to Graphene, and it is also impossible for state actors to impose things such as client-side scanning of text m…

Don't understand your statement about avoiding client-side scanning of text messages. I've always assumed it would be done by the apps themselves, e.g. WhatsApp, Telegram, etc..

I think they're saying the phone doesn't stop you from installing a version which doesn't do that.

Re: GrapheneOS is the only Android OS providing full security patches

#320

Earlier quoted context omitted.

Some of the funnest work, if you could get it, was swapping ssds out of laptops coming through customs for high value targets.

Can you expand a bit? They didn’t notice the ssd swapped? Which country? Customs as in sending deliveries or passing a border with a laptop?

A company buys laptops for its employees and they get shipped from outside the US, and before they get delivered nice changes have been made.

Any specific individual that is high value will walk into a store and buy from stock.

Post reply on HN