3 ms·
In regards to your first link, the quote "'It’s concerning – and sends the message that [GrapheneOS] is criminal by default,' said Christophe Boutry, a cybersec
by Tanoc 2mo ago
In regards to your first link, the quote "'It’s concerning – and sends the message that [GrapheneOS] is criminal by default,' said Christophe Boutry, a cybersecurity and surveillance expert." really is leading language. It's stating that protection is criminal and that vulnerability is law-abiding.
- microtonal 2mo agoThis is why it is important to continue iterating everywhere that device security is important for everyone. iPhone has nearly the same level of protection and we also do not see it as 'criminal by default'. Secondly, it is important to get as many people to use GrapheneOS as possible, including non-tech people. The more widespread it becomes, the harder it will become to paint this picture.
- kungito 2mo agosounds to me like iphone isnt actually that safe otherwise it wouldnt make sense. maybe we are missing some critical information
- Cider9986 2mo agoGrapheneOS seems to be consistently the hardest to exploit AFU based on various Cellubrite leaks. iPhones have better protection than all other Androids except Pixels.
- microtonal 2mo agoI might be wrong, but I get the impression that the GrapheneOS folks generally recommend GrapheneOS > iOS > Pixel >> everything else. It might have to do with e.g. Apple having rolled out MIE at a broader scale than Google rolling out MTE on PixelOS, where AFAIK it is still largely opt-in (not 100% sure, I always wipe a Pixel immediately).
- Cider9986 2mo agoAgree. I didn't mean to say stock pixels are better than iPhones.
- K3V1N_FLYNN 2mo ago[flagged]
- K3V1N_FLYNN 2mo ago[flagged]
- stef25 2mo ago> The iPhone Probably the latest models. Cop told me they have problems cracking those. Older models not so much, that's pretty common knowledge.
- K3V1N_FLYNN 2mo ago[flagged]
- Cider9986 2mo agoSource: I made it up
- close04 2mo agoIs this because of vulnerabilities baked in the HW (or bootROM or any other unpatchable area)? What’s the situation on older Pixels? Are they generally safer than an iPhone for HW issues? It’s expected that given a few years some vulnerabilities will crop up for most hardware. So then the best chance for security is to stay up to date with everything, including the latest HW model. At least this gives an attacker a window of only ~1 year to find and exploit a vulnerability.
- Cider9986 2mo agoI heard that the MIE is giving them trouble.
- stef25 2mo agoWhat he told me is all I know. If you look at the various devices that are sold to LE they clearly state which models can be hacked. Did a deep dive in to those devices after that conversation and if I remember correctly they openly state which models can be attacked. Some devices (old ones) you can get on ebay.
- inigyou 2mo agoIIRC it was the only one that Cellebrite couldn't break, but this was based on quite old news.
- grapheneos 2mo agoThere are more recent leaks. The last release of GrapheneOS they've been able to exploit on locked device is still from 2022 as of a couple months ago. They take longer to break into iPhones than stock Pixels but that may largely be due to Google giving much earlier access for public testing. They have a far shorter window to prepare for a new iOS release before it's in production as a regular update for users.
- matheusmoreira 2mo ago> The last release of GrapheneOS they've been able to exploit on locked device is still from 2022 as of a couple months ago. That's impressive!!
- mycall 2mo agoPerhaps GrapheneOS should just be an ASOP release with implicit security features that makes it hard to notice it is anything different. If people think it is a vanilla Android install, it would give them no reason to imply criminal activity.
- Cider9986 2mo agoNot worthwhile or feasible. The OS is not designed to hide its identity.
- chasil 2mo agoGoogle is never going to put their administrative access in a restricted sandbox. That is diametrically opposed to their interests in data collection.
- hedora 2mo agoThey'd also have to update all their phone spec sheets -- not having the sandbox doubled graphene's battery life on my Pixel 6 Pro (in practice and vs. advertised specs).
- chasil 2mo agoI'm not sure that I agree that iOS devices have equal protection. The recent Darksword exploit should give everyone pause in asserting that iOS is secure: https://www.malwarebytes.com/blog/mobile/2026/03/a-darksword-hangs-over-unpatched-iphones https://www.malwarebytes.com/blog/mobile/2026/03/a-darksword... I trust iOS with my banking and financial apps in a way that I would never trust Google, but I am under no illusion that any architecture can be completely secure. On the Linux side, I have found SELinux maddening at times in forcing me to the syslog to enable and permit what I need the machine to do. I have never seen anything this obstreperous in a BSD, but perhaps I have not looked with sufficient depth. In any case, the Trust / SELinux / Enforcing status is a sizable advantage against iOS.
- matheusmoreira 2mo agoGrapheneOS is good enough to have an entire column dedicated to it in Cellebrite's support matrix, and if I remember correctly the device could break into iPhones but not phones running GrapheneOS.
- one33seven 2mo agoAFAIK iPhones in lockdown mode are meant when comparing iPhone to GrapheneOS
- close04 2mo agoHe’s a “surveillance expert” so the language is not at all surprising. These are the people who always bring up the appeal to emotion, associating a benign act with something unpalatable, criminal, terrorist, think of the children. When your job depends on not understanding and all that.
- deleted 2mo ago[deleted]
- ChoosesBarbecue 2mo agoI'm fairly certain the person being quoted is saying the opposite of what you've implied - i.e. he thinks it is concerning THAT GrapheneOS is automatically associated with criminality.
- close04 2mo agoYou’re right, I misinterpreted but now that you mention it it’s like those ambiguous figure images, irreversibly collapsed on the proper interpretation. In this case I can only assume my interpretation of “surveillance expert” is also completely off. Can’t edit, flag away.
- Tanoc 2mo agoIt was the article author's choice to include that language without wider context. People say things that can undermine their own position all the time, and it's those that present those statements that influence whether that happens or not. Think about how I soloed that quote out of the wider article for example.
- deleted 2mo ago[deleted]