Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
tholdem
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
tholdem
3d ago
GrapheneOS making compromises on their requirements would signal that vendors producing low quality, less secure hardware and software is OK. On something as important as a secure and private smartphone, GrapheneOS not making compromises is
2.
▲
by
tholdem
10mo ago
I am currently using 4 banking apps from 3 different banks on GrapheneOS, they all work just fine. I'm also using WhatsApp and would not use the backup feature to Google Drive even on PixelOS. Uber (haven't tried the for drivers a
3.
▲
by
tholdem
1y ago
Yes, all notifications work fine with sandboxed Play Services installed. All my banking apps also work fine. I haven't really had any problems with app support or any other problems for the many years I've run GrapheneOS as my dai
4.
▲
by
tholdem
1y ago
What are these technical solutions?
5.
▲
by
tholdem
1y ago
If you allow root, there is no need for additional privEsc exploit. Also does LineageOS actually ship security patches reliably for software and firmware? How is Magisk helping to resist attacks?
6.
▲
by
tholdem
1y ago
If you are fine running an OS with horrible security and privacy, then LineageOS and it's forks are fine. If you want the best privacy and security, then GrapheneOS is the best option.
7.
▲
by
tholdem
1y ago
This just doesn't work the way you think, this mentality is not just outdated, but dangerous. People who think like that are more subject to "low IQ" attacks than people who accept the fact they are subject to the same "
8.
▲
by
tholdem
1y ago
Maybe once the ads start showing on Whatsapp it gets easier to convince people to switch.
9.
▲
by
tholdem
1y ago
No root is a major security feature, you have chosen an OS that prioritizes security. Use some other browser if dark mode is really important to you. I think the launcher is good and I can't think of anything to improve on it. I'm
10.
▲
by
tholdem
1y ago
So you're saying don't use a smartphone at all, which isn't possible, or use CalyxOS, which not only suffers from the same "problems" you criticize in GrapheneOS, but is also inferior in every way when it comes to s
11.
▲
by
tholdem
1y ago
Why do you think that's interesting? Google is highly respected for its security practices. Do you think Apple engineers use some special hardened iOS?
12.
▲
by
tholdem
1y ago
Your logic seems to fall apart here. > an operating system which essentially handles all of your private data. This is exactly why one should continue using GrapheneOS as it is by far the best, most secure and private option. If you do n
13.
▲
by
tholdem
1y ago
You don't need to wipe the phone when updating GrapheneOS. It's as painless as on stock Pixel OS. OTAs downloaded and installed on the background, just reboot the phone after.
14.
▲
by
tholdem
1y ago
There is so much misinformation about GrapheneOS. Other hardware is not supported for very good reasons. Mainly because the most basic security features are simply not available on other hardware. Google goes out of their way to support oth
15.
▲
by
tholdem
1y ago
You are implying Meta and others were able to just siphon data from any website via WebRTC using their native apps, but this was not the case. They were only able to track which websites you visited if that website already embedded the comp
16.
▲
by
tholdem
1y ago
How can you compare iOS or Android security with desktop Linux security? Have you checked what it takes to achieve those 0-click root exploits on iOS or Android compared to a desktop Linux distro? Not even in the same league.
17.
▲
by
tholdem
1y ago
Yes, but this was about Silverblue and how it implements some additional sandboxing, which it doesn't. SELinux is great, but maintaining it and creating configs is huge amount of work and where on AOSP, every process is strictly confin
18.
▲
by
tholdem
1y ago
It may be in the future, but for now it is no different from Fedora Workstation in terms of security. Please correct me if I am wrong. AFAIK Silverblue has no additional sandboxing or any other improvements to security.
19.
▲
by
tholdem
1y ago
Sandboxing should be built in and by default, not DIY and glued on, like with apparmor and firejail. "Your car does not come with a seatbelt? Seatbelt parts are easy to order online and assembled on any car, it's your fault for no
20.
▲
by
tholdem
2y ago
> What concerns me more is that Apple is the only company audibly making a stand. But still Apple operates in China and Google does not. This is weird to me. Google left China when the government wanted all keys to the citizens data. App
21.
▲
by
tholdem
2y ago
No need to turn JS off. Turn on Lockdown mode which disables Javascript JIT and WASM, which might be enough
22.
▲
by
tholdem
2y ago
> This is significantly underestimating the benefits of Qubes. Are you using your online banking in the same browser that you use for random web surfing? I do it in separate VMs with hardware isolation. Same compartmentalization with all
23.
▲
by
tholdem
2y ago
QubesOS is great if you need to do work and personal stuff on the same computer. I do most of my stuff in the browser and have a separate computer for work. I am mostly interested in making initial access as expensive and difficult as possi
24.
▲
by
tholdem
2y ago
Yes all software will have security issues, but Chromium is much harder target to exploit than Firefox.
25.
▲
by
tholdem
2y ago
If security is not that important, Firefox or Safari. If you care about security, Chromium.
26.
▲
by
tholdem
2y ago
I want to use Tldraw as a simpler alternative to Figma. I want to drag and drop Web Components (or React components) into the canvas to play around with different UI ideas. Maybe a built in library of Shadcn components I could mock up an UI
27.
▲
by
tholdem
2y ago
> Thing is that Android is probably no more secure than a standard desktop experience specifically due to the very uncontained Play Store, the prevalence of sideloading apps and rooting doesn't really help at all. This is completely
28.
▲
by
tholdem
2y ago
The vast majority of Linux desktops run ChromeOS. So you think Linux and privacy don't go together?
29.
▲
by
tholdem
2y ago
Good actors do it mostly for money and fame, bad actors do it mostly for money. Both actors do it for open source and closed source software. Isn't it a good thing that anyone can effectively use tools to check for potential vulnerabil
30.
▲
by
tholdem
2y ago
Why do you think bad actors "audit" open source more than good actors? Isn't it more the case that all actors audit all software? Open source just has potentially more "auditors" than closed source? (I don't un
More ›