this post was submitted on 01 Sep 2026
199 points (96.7% liked)

Technology

87833 readers
3248 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] NewOldGuard@lemmy.ml -3 points 3 days ago (2 children)

I want to love this but I can't compromise my security for this device. If y'all ever add MTE and the other features required by Graphene I'll be the first in line

[–] Adderbox76@lemmy.ca 5 points 3 days ago (1 children)

Fair enough. But too many people think privacy and security are the same thing.

GrapheneOS is dedicated to both privacy and security, whereas e/os (while it does have some security improvements over stock android) is much more focused on the privacy side of things.

[–] Zarobi@aussie.zone 1 points 3 days ago (2 children)

There is some overlap. Can't have privacy problems if everything's encrypted and they have no access to your data in the first place

[–] iopq@lemmy.world 5 points 3 days ago

You can still have privacy issues. For example, everything's encrypted, but you're the only one with the exact fingerprint so every adveriser and government agency knowns who you are

[–] cunnililgus@sopuli.xyz 1 points 2 days ago

They only need to know who, where and when, they dont really care about what or why.

[–] ExLisper@lemmy.curiana.net 3 points 3 days ago (1 children)

Yeah, same for me. I'm sure I'm on top of CIA's list of "people to hack" so no security compromises for me.

[–] NewOldGuard@lemmy.ml 3 points 3 days ago* (last edited 3 days ago) (3 children)

I get the sense this is sarcastic lol. In my opinion though, privacy without security isn't very useful. Yes I can avoid corporate or government spying when I'm in physical control of a device like this, but what if I get arrested on some false pretenses and they use cellebrite to gain access? Or the same at an airport when traveling? If you're any form of political dissident, activist, or a member of a marginalized group, being targeted this way is a very real possibility. And as soon as that insecure but "private" device is out of your hands, all that data is free game for the govt.

[–] NuclearDolphin@lemmy.ml 4 points 2 days ago (1 children)

This is why threat modeling is important.

but what if I get arrested on some false pretenses and they use cellebrite to gain access?

Chances are they can clone the eMMC and wait for a CVE. Or threaten or hold you until you cave. If a lawsuit is your only recourse, I would expect any constitutional barriers to be ignored in practice. Your best bet is to never end up being an explicit target, which may be more difficult for certain individuals.

My threat model considers dragnet surveillance as the primary threat, so I'd compromise on surviving dirty maid type attacks in favor of reducing the information my device gives out.

Obviously if your device is being actively exploited, you cannot be private. But your security requirements increase greatly if your data footprint indicates to them that you warrant targeted scrutiny.

[–] NewOldGuard@lemmy.ml 1 points 2 days ago* (last edited 2 days ago)

100% agree with you, for who I am and what I do I know that I need a device that is as tamper resistant as possible with the smallest attack surface feasible. That goes for remote execution as much as the evil maid scenario. But this is entirely catered to my threat model and risk tolerance. And sure there is the possibility of the rubber hose cryptanalysis but that doesn't mean we should give up on securing as much as possible on the device side. It's the swiss cheese model and we're plugging a hole at a time lol

I advocate for everybody to use as secure a device as practical, and for these mitigations to be the default, but I'm fundamentally speaking for myself in this thread with my stance on fairphone and /e/OS right now. I want to support repairability and ethical supply chains too without compromising on my more core tech needs

[–] ExLisper@lemmy.curiana.net 3 points 3 days ago

political dissident, activist, or a member of a marginalized group

or a journalist or a politician. Vast majority of people aren't any of those and don't have to worry about cellebrite. Most people here that talk like Graphene OS is their only option really just need deGoogled device, not the most secure phone in the world.

[–] iopq@lemmy.world 2 points 3 days ago

Or you have a funny picture of Vance on your phone and immigration doesn't allow you in