Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
ysnp
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
ysnp
4d ago
Can you report this to GrapheneOS?
2.
▲
by
ysnp
8d ago
>The first ticket you link is not by someone who seems to work on GrapheneOS https://github.com/flawedworld for example as part of GrapheneOS organisation and has interviewed for GrapheneOS in the past ( https:/
3.
▲
by
ysnp
12d ago
Since we're steelmanning, I would like to add a bit more. GrapheneOS will never be closed source/proprietary because they believe code freedom (and user freedom by extension) is paramount. They have repeatedly said they don't
4.
▲
by
ysnp
12d ago
>Aurora is a lot less invasive while achieving that same goal, but they recommend installing Googleware instead... GrapheneOS vehemently opposes 'for security'.. It's more accurate to say they suggest improvements not vehe
5.
▲
by
ysnp
13d ago
Could you list a couple of the biggest functionality losses from AOSP due to GrapheneOS changes? I might be misunderstanding what you mean.
6.
▲
by
ysnp
14d ago
What functionality and features are lost in the base Pixel OS (not apps) as a direct result of GrapheneOS's changes to AOSP?
7.
▲
by
ysnp
14d ago
GrapheneOS have mentioned wanting to expand the logging/intrusion detection capabilities of their Auditor app but contend with the need to include it as a system app which is against their philosophy (PoLP). It is not accurate to say t
8.
▲
by
ysnp
14d ago
Could you please explain why supporting MTE/potentially EMTE in production as a goal represents a niche use case? Isn't mitigating memory corruption issues a mainstream ideal? How else would you propose to do it?
9.
▲
by
ysnp
14d ago
Are there any alternatives for a similar runtime security improvement?
10.
▲
by
ysnp
14d ago
As far as I'm aware, they do not get the security patches and early bulletin access from Google. They get that from an undisclosed OEM.
11.
▲
by
ysnp
14d ago
>For example they have stated they won't try to spoof SafetyNet because "we don't lie about security features" They said they don't want to do it because it would stop working in the future when Google move to en
12.
▲
by
ysnp
14d ago
I have mentioned F-Droid many times in the official Matrix before they moved to Discord and not been banned. You might be misunderstanding what actually happened or have not asked the moderators why someone was banned.
13.
▲
by
ysnp
14d ago
>Citation needed. grapheneos themselves sure doesn't understand this The GrapheneOS team understand full well that in cases where the Play Store does not allow installing an app on your device due to device or georestrictive rules y
14.
▲
by
ysnp
15d ago
They (GrapheneOS development team) live and breathe the principled stance you seem to be describing. They are staunchly against authoritarianism and mechanisms that are vulnerable to government coercion which is why they promote Android IAR
15.
▲
by
ysnp
15d ago
They suggest PlayStore if you need to get apps that are only available on the Play Store. They do not recommend it above other options, and have mentioned that they very much disapprove of Play App Signing being mandatory.
16.
▲
by
ysnp
18d ago
Much of that is out of their hands unfortunately. Motorola don't use the latest Snapdragon SoCs in most of their more affordable models, and Qualcomm are the only ones so far (outside Samsung/Google) who seem willing to support wh
17.
▲
by
ysnp
18d ago
As far as I understand, broad device support is a non-goal for the GrapheneOS project. They are striving for decent security/privacy rather than wanting to attach their name and resources to mediocre standards. I believe nothing preven
18.
▲
by
ysnp
18d ago
If you know any top level mobile division people at Sony you could encourage them to reach out and commit to meeting GrapheneOS's requirements.
19.
▲
by
ysnp
18d ago
They have bare minimum sane standards for device support but it seems picky from the outside because most Android OEMs are incompetent.
20.
▲
by
ysnp
18d ago
Can someone from AOSP/Pixel hardware security shed some light? This is strange timing, especially when the approach has been validated by Apple also.
21.
▲
It appears Google cut ARM hardware memory tagging support on Pixel 11 series
(grapheneos.social)
7 points
by
ysnp
18d ago
|
0 comments
22.
▲
by
ysnp
1mo ago
Just to note Revolut are quite famously anti-security and GrapheneOS have had to work around attempts to ban it on a few occasions. You may have meant the swiss finance app Yuh or something else.
23.
▲
by
ysnp
3mo ago
Can Android OEMs, bundling Google Mobile Services for Android certification, choose different trust roots for verification? >The correct thing to complain about is requiring developer mode for unverified installs, which doesn't seem
24.
▲
by
ysnp
3mo ago
Can you add CopperheadOS data 2014-2018 and AndroidHardening Project from 2018-2019?
25.
▲
by
ysnp
3mo ago
For what it's worth, strcat is the GrapheneOS founder so they will have a keen insight into current plans.
26.
▲
by
ysnp
4mo ago
Any promising mesh networks, radio networks or routing protocols worth looking into?
27.
▲
by
ysnp
4mo ago
It may be worth noting that GrapheneOS in most cases to date are not the initiators for conversations around extra device support. They do not control which mobile divisions and engineering teams can come to them and back genuine interest w
28.
▲
by
ysnp
4mo ago
The details of the partnership are mostly disclosed in the joint announcements but GrapheneOS has no say or influence on Motorola's stock Android image and policy. The main objective of the partnership is to do what you described in th
29.
▲
by
ysnp
4mo ago
I've not seen someone refer to a portion of GrapheneOS's mitigations as superficial and meaningless before. What might an OS with significant improvements to usable attack surface reduction and exploit mitigations look like to you
30.
▲
by
ysnp
4mo ago
They have commented elsewhere that any inclusion/exclusion criteria (if at all) should be transparent and collaboratively decided rather than arbitrary, monopolised or ineffectual/deceptive. They mention several times that people
More ›