Live data from Hacker News

Reclaiming Mobile Privacy with GrapheneOS

xn--gckvb8fzb.com

51–60 of 80 posts

Re: Reclaiming Mobile Privacy with GrapheneOS

#51
post #27

I love GrapheneOS. Before trying it one should consider that unlike some "sister" projects, it does not support signature spoofing, so if you need SafetyNet or something similar, you will likely be out of luck. On one hand I like the no spoofing position the devs took, on the other hand my banking app.

GrapheneOS has the sandboxed Google Play compatibility layer. Most banking apps work fine on GrapheneOS. Certain banking/financial services check for a Google certified OS via remote attestation. SafetyNet attestation is deprecated and being shut down and the Play Integrity API is the current way. Both of these support hardware-based attestation available on every device launched with Android 8 or later which cannot…

First of all, thanks for the very detailed write up. Someone (maybe you) had explained this to me in a chat and it was convincing to me, but I didn't really do it justice in my comment.

> The reason for this is because we don't really want to ship a set of hacks which will stop working when they improve it and will permanently stop working when a service starts checking for strong verification.

This is what I really like about the project philosophy. I think you all are right even though the decision breaks some compatibility.

Re: Reclaiming Mobile Privacy with GrapheneOS

#52
post #25

I love GrapheneOS. Before trying it one should consider that unlike some "sister" projects, it does not support signature spoofing, so if you need SafetyNet or something similar, you will likely be out of luck. On one hand I like the no spoofing position the devs took, on the other hand my banking app.

I am able to run all banking apps from my 3 different banks that I use. Try it, you might be surprised.

I think it's a fair point that compatibility pain is low, but it does exist and people should consider it.

Then there's also play services. A lot of things do work without it, but a lot either won't start (Uber) or become annoying with pop-up errors (Robinhood). It really makes me appreciate software that was designed to work without all that stuff.

Re: Reclaiming Mobile Privacy with GrapheneOS

#53
post #18

I love GrapheneOS. Before trying it one should consider that unlike some "sister" projects, it does not support signature spoofing, so if you need SafetyNet or something similar, you will likely be out of luck. On one hand I like the no spoofing position the devs took, on the other hand my banking app.

They have a sandbox which can run google’s services. I read plenty of people saying that they could successfully run their banking app without spoofing.

This is true, but it solves a different (though often related issue).

Re: Reclaiming Mobile Privacy with GrapheneOS

#54
post #34
post #12

I had to switch back to iOS. My smartphone is my primary camera and I missed lots of important shots because the Graphene camera was so slow to double click launch from locked (on a flagship pixel $LATEST pro max whatever). I really miss syncthing.

You can speed up app launching by turning off the optional exec-based spawning feature. Our camera app also has a Latency mode which recently became the default instead of Quality mode. Google and Apple camera apps essentially always use something resembling the Latency mode, but with lower JPEG quality by default.

My iPhone 12 Pro shoots raw in less than a second from locked.

Re: Reclaiming Mobile Privacy with GrapheneOS

#55
post #26
post #12

I had to switch back to iOS. My smartphone is my primary camera and I missed lots of important shots because the Graphene camera was so slow to double click launch from locked (on a flagship pixel $LATEST pro max whatever). I really miss syncthing.

You can just use any other camera app. I use the Google Camera on my Pixel 6.

I was using whatever app launches when double clicking the lock button. I don’t think the issue was with the specific app launched, but with the system to launch it.

Re: Reclaiming Mobile Privacy with GrapheneOS

#56
post #26
post #12

I had to switch back to iOS. My smartphone is my primary camera and I missed lots of important shots because the Graphene camera was so slow to double click launch from locked (on a flagship pixel $LATEST pro max whatever). I really miss syncthing.

You can just use any other camera app. I use the Google Camera on my Pixel 6.

I tried the google camera app on GrapheneOS and can't make it work, in CalyxOS it just works

Re: Reclaiming Mobile Privacy with GrapheneOS

#57
I used GrapheneOS for a year and it was not very smooth. But maybe it would have been different with this new google sandbox, which I will have a look. But I think I might go try Calyx this time

The phone bricked due to frequent updates. Which now I see happened to many people with Pixel phones, custom ROM or original. I did not find a easy way to delay or disable the updates.

And they immediately upgrade everything not just security updates, so something will probably break, apps stops working, and your workflow in general, because a lot of things change across android versions

Most people are not tying running away from the 3 letters agencies. We want as most privacy and security possible, but we also want a fast phone, usable, compatible with apps, and customizable. This OS looks more like a exercise in security, a good one, but clearly prioritized over privacy and usability

The developers, I am sure they are trying to do what they think is best, but they come across a bit arrogant

I don't care if root is an insecure vector, I will 100% root my phone. And use Google camera app. And use f-droid and whatever insecure app I wanna use

Especially in conflicts with other open source communities, like Bromite, F-droid, CalyxOS, ASOP, microg... deciding to just do as much alone as possible, which sounds unsustainable

Their built in browser still sends data to Google, privacy by blending in, but I would recommend install Bromite, with the model of blocking everything

Edits: several

Re: Reclaiming Mobile Privacy with GrapheneOS

#58
post #36
post #21

Earlier quoted context omitted.

They don't know much about it and haven't used it. CalyxOS isn't a hardened OS and isn't at all comparable to GrapheneOS. They recently didn't even ship half the baseline Android security patches for 2 months, let alone providing much better patching and substantially hardening the privacy and security of the OS. Unfortunately, they've chosen to promote it through inaccurate talking points about GrapheneOS and fabric…

(First, strcat, thank you so much for your work on GrapheneOS. I should have a little ETH to send to the project in a few weeks, to make this sentiment a bit more concrete.) Regarding community among people valuing security and privacy... On my most recent big phone/handheld switch, I tried CalyxOS first, but found that I personally preferred GrapheneOS. I think CalyxOS also has its merits. Users of CalyxOS and Graph…

I don't think a highly insecure OS not shipping privacy/security updates for months is even a reasonable choice for people who don't care much about privacy and security. Their site presents standard Android privacy/security features as their own and has news posts claiming to ship security updates where half the patches were skipped, so that's not a reliable source of information to use. They've heavily marketed CalyxOS based on false claims about privacy and security not only in CalyxOS but with a substantial focus on misleading people about GrapheneOS. Even as recent as today and yesterday, the leader of the Calyx Institute has been openly spreading misinformation and fabricated stories about GrapheneOS. Yesterday, he was openly doing it in their chat rooms with someone who has publicly, repeatedly called for me to kill myself and posted the usual Calyx claims that I'm "crazy", "delusional", "schizophrenic", "deranged", etc. Do you think this is appropriate behavior?

Check the recent screenshot I posted about a Calyx reseller who works with them (@maxtannahill) and is in several of their private Signal, Matrix and Discord chat rooms. I linked a thread where he openly states his neo-nazi views which he has done repeatedly. He's openly a holocaust denier who supports fascism, wants democracies turned into authoritarian dictatorships and overtly a white supremacist wanting the US as a white homeland. Calyx permits Kiwi Farms server in their room and has had no problem with the abuse targeted towards me. In fact, the leader of the organization has repeatedly participated in it when it happens, encouraging it while also steering it away from being done inside their rooms. These logs have been archived and while the lead CalyxOS developer has gone back and purged a lot of it from the Matrix history, much of it is still there. You can check for yourself what happened yesterday and can confirm the main person attacking me there and in other rooms is a Calyx community member friends with several of them and has openly told me to kill myself.

> Users of CalyxOS and GrapheneOS are relatively small groups, with overlapping interests, and together are stronger, if the tone is friendly competition and mutual assistance.

Calyx developers / leadership have repeatedly engaged in an extreme bullying/harassment campaign targeting me. They've heavily focused on spreading misinformation both about CalyxOS and GrapheneOS to mislead and scam users.

We're never going to work with people who have done these things. No one else should be working with them or tolerating them either, but unfortunately people don't do anything about the massive amount of charlatans and abusers in the privacy/security industries. It's sad. You should never expect that I'm going to tolerate it.

CalyxOS is not a hardened OS. It's also blatantly insecure by not shipping patches fully or on time while misleading users. I'm not sure how it's a competitor with GrapheneOS. Presenting it as a private and secure OS in their marketing doesn't make it one. Engaging in all kinds of abusive and underhanded behavior is not going to turn it into one either.

Re: Reclaiming Mobile Privacy with GrapheneOS

#59
post #17

Earlier quoted context omitted.

The background story of the project is quite sad, so it sort of makes sense that he is very defensive of it. (The project got some monetary support initially from a company, which later tried to hijack the whole open-source project (going by copperhead os nowadays, I believe). Fortunately thanks to Micay the original was unharmed (he revoked private keys, big kudos!), but they do throw shade at GrapheneOS promoting t…

Quoted post unavailable.

Well, if it had a hostile takeover, I would sure as hell want to be notified of that.

Re: Reclaiming Mobile Privacy with GrapheneOS

#60
post #57

I used GrapheneOS for a year and it was not very smooth. But maybe it would have been different with this new google sandbox, which I will have a look. But I think I might go try Calyx this time The phone bricked due to frequent updates. Which now I see happened to many people with Pixel phones, custom ROM or original. I did not find a easy way to delay or disable the updates. And they immediately upgrade everything…

> I used it for a year and it was not very smooth

GrapheneOS isn't any less 'smooth' than the stock OS. You should read https://grapheneos.org/usage#exec-spawning about the optional secure spawning feature which requires additional time for cold start application spawning.

It doesn't really sound like you've used GrapheneOS

> I used it for a year and it was not very smooth

CalyxOS isn't a hardened OS. It substantially reduces security rather than improving it. It recently didn't ship half of the August security patches until part of the way into October including critical remote code execution vulnerabilities. They currently have missing security patches. They roll back the security model. It sounds like you're coming here from that community. A typical pattern from their community is pretending to be GrapheneOS users unhappy with it and spreading misinformation about it, which is obvious to people who know about it and have used it themselves.

> Besides the phone bricked due to frequent updates. Which now I see happened to many people with Pixel phones, custom ROM or original.

> I did not find a easy way to delay or disable the updates.

https://grapheneos.org/usage#updates-disabling

This has been near the top of the usage guide for years and if someone asked on the discussion forum, Matrix chat room, Twitter community or elsewhere they'd almost always be told about it or linked to it.

There's absolutely no common issue with Pixels being bricked on updates. It definitely doesn't happen outside of extremely rare cases with GrapheneOS. It's unlikely that it happened here. Sometimes users do think their device isn't booting since it can take ~20 minutes after certain kinds of updates, but it does boot fine, and if they power it off it will just trigger rolling back.

> And they immediately upgrade everything not just security updates, so something will probably break, apps stops working, and your workflow in general, because a lot of things change across android versions.

We follow along with the stable releases of Android. These go through months of public betas. It's not possible to delay upgrading the major release on Pixels without going months without providing full security updates like LineageOS and LineageOS derivatives like CalyxOS. Not providing critical remote code execution patches for literally months as was the case this year from August until part of the way until October for CalyxOS is a serious problem. This occurs for them regularly with the browser engine and other patches too.

> Lets be real most people are not tying running away from the 3 letters agencies. We want as most privacy and security possible, but we also want a fast phone, usable, compatible with apps, and customizable. This OS looks more like a exercise in security, prioritized over privacy and usability

This is not at all accurate. GrapheneOS is highly usable and has broad app compatibility. It has far broader app compatibility than the OS you're trying to promote (CalyxOS). If you've used GrapheneOS, then you're aware it has the sandboxed Google Play compatibility layer (https://grapheneos.org/usage#sandboxed-google-play) allowing using nearly every app on the Play Store without giving any additional access to Google Play than it would have through the SDK / libraries included in those apps.

> The developers, I am sure they are trying to do what they think is best, but they come across a bit arrogant.

I think what comes across as arrogant is someone who is clearly unfamiliar with GrapheneOS and what it provides pretending they know all about it and other projects they haven't used or familiarized themselves with either. Typical for Hacker News though.

> I don't care if root is an insecure vector, I will 100% root my phone. And use Google camera app. And use f-droid and whatever insecure app I wanna use

Google Camera works fine on GrapheneOS without anything special. Google Play works fine on GrapheneOS as regular apps in the full standard app sandbox with all the GrapheneOS improvements to the app sandbox and permission model, and absolutely no special access or privileges. If you've used GrapheneOS or just read our features page and usage guide, then I'm sure you know all this already and don't need me to tell you here.

> Especially to other open source communities, like Bromite, F-droid, CalyxOS, deciding to just do everything alone, which sounds unsustainable

Unlike those projects, we do a substantial amount of collaboration with upstream projects. We do upstream work on AOSP, the Linux kernel, LLVM and other projects. We work with DivestOS, ProtonAOSP and other projects on areas where we have aligned goals. We won't work with people who engage in spreading misinformation about our project and targeting our developers with bullying/harassment like many of the people involved with Calyx.

> Their built in browser still sends data to Google to increase privacy, by blending in, but I think I prefer Bromite model of blocking everything.

This is not accurate. Vanadium doesn't send any user data to Google.

Post reply on HN