3 ms·
But GrapheneOS relies on a proprietary, black-box security chip from Google... who pinky-promised to open-source it but never did, and that just doesn't sit wel
by ranger_danger 21d ago
But GrapheneOS relies on a proprietary, black-box security chip from Google... who pinky-promised to open-source it but never did, and that just doesn't sit well with me.
I think it's entirely possible that a compromised Titan module (whether such code ships with the device or is updated at a later point) could leak keys via some covert method, and possibly transmit via the baseband or through some other application/method where the OS is not really aware of what's going on.
- mitxela 20d agoThe government only gets to use this once, and they probably won't use it on you.
- fsflover 20d agoI don't believe that they will use this against me. But I do believe in the right to use devices without backdoors for everyone, so I support something else instead.
- drdexebtjl 20d agoWhy? They’ll use it as many times as they want while claiming they used something else.
- ranger_danger 18d agoThat, or they'll just decline to actually prosecute any targets that aren't worth revealing a backdoor during discovery.
- Cider9986 18d agoSo you'd rather choose a chip with demonstrated weaker security over one with demonstrated stronger security because of a hypothetical risk that has no supporting evidence?