Hacker Newsnew | past | comments | ask | show | jobs | submit | subscribed's commentslogin

I have a few years old account. One day they just blocked be out and rudely demanded a phone number.

At the time I had TOTP based 2FA since forever.

Fine, I got myself a burner number (not sharing a real number with creeps and bullies), account tot unblocked. I kept using it.

A week later I deleted a phone number form my account (marked as optional after all), and the account got immediately, immediately blocked, after I saved the changes.

F** Discord and its ilk.


£200-ish for Pixel 8, 4 more years of support.

No, it's much more. Google gates some of the features.

Stock Android (AOSP) misses stuff like Call Screen, Hold for Me, Direct My Call, Digital Wellbeing,

If it was the same the hostility like this wouldn't matter that much: https://www.androidauthority.com/google-not-killing-aosp-356...


Oh, Xperia.

Wonderful hardware but f*k Sony with the update policy.

My last Xperia was I Mk 2. Nominally flagship. Great hardware, great spec, I loved the form factor.

It got one major Android update and total of 18 months of security updates since the release.

Like, WTH?

No more Sony for me.


Refurbished Pixel 7 pro (EOL next year) or Pixel 8 (EOL 2030) is £200-240 here.

> What is the difference

Except the CQ you only transmit for the specific recipient.

I believe broadcasting in one way only (there's no conversation part).


And to make things worse, genders differ between languages, say, German, Portuguese, or Slavic languages :)

If the hardware security is on par with iPhone / pixel 8+, then sure.

Otherwise there's no need for NSA backdoors (as Cellebrite matrix shows) :)


Because it's much worse (for me).

However at this point, as a GrapheneOS user if I couldn't use it for any reason I'll go to iOS (even though I used it for a couple of years and I've been fed up).


They can't due to the shortcomings of the hardware (why develop a hardened os to the grossly insecure hardware) or the vendor (no/slow updates, etc).

Anyone is free to fork, add the desired hardware support and flash.

(that's aside of some Moto flagships in 2027)


they can, but don't want to

OK, I'm confused, explain how they can deliver comparable security on a hardware that does not offer the same capabilities, from a vendor who doesn't provide patches.

You say they can. How?


The hardware capability that GrapheneOS loves to use as a shield to deny support for other devices is the ability to use custom AVB keys. Without custom keys you can't relock the bootloader after installing a custom OS on most phones. The consequences of having an unlocked bootloader are that you are susceptible to an evil maid attack.

This is a real threat, but the reality is that the average person is more likely to be hacked/spied on from the software side, which Graphene would protect you from as effectively as it does on Pixel.


You have a fundamental misunderstanding of what AVB is used for.

Fully supporting and using AVB grants protection against persistence of *all* kinds. If an attacker gains privilege escalation through a remote attack, persistence become much easier if the system is not cryptographically verified every time the device boots.

Keystore and Attestation also rely on the bootloader being locked. If the hardware root of trust reports the device as untrusted, there is a broken chain of trust for biometrics, encrypted app data that uses the hardware keystore, and any form of attestation checks (like AOSP's Hardware Attestion API) will report the device as untrusted.

Going back to the first point, if it is possible to modify the system and gain persistence, there is also the possibility of modifying the kernel, which would allow an attacker to rewrite or patch the kernel, rendering AOSP's sandbox useless.

This would also make it more vulnerable to downgrade attacks because rollback protection is tied to a locked bootloader and AVB.

This could all be accomplished through remote exploitation. The "software side" you speak of is built atop AVB as a minimum requirement to assure that the software you're running is unmodified and intact.


So you're saying that being unable to prove the provenance of the image (whether it's original or not), becoming immediately exposed to downgrade attack, to someone injecting malware to /sys and you being unable to detect it.... That's not a big deal?

:)

Well, go for it, fork and "provide support" to the hardware hostile to non-stock OS, be a hero :)


hostile to non-stock OS - where are you getting this from?

If the bootloader cannot be unlocked, relocked, or doesn't provide timely updates to firmware/hardware, it's hostile.

The rest is not (might be lazy, insecure or just silly but not hostile)

It's surprising some vendors still don't support unlocking and/or relocking.


smartphones aside pixel like Fairphone do explicitly allow alternative OS, definitely cannot pretend they are hostile

Fairphone?

Delayed patches (they don't keep up with AOSP), missing secure element (makes disk encryption key cracking trivial in comparison).

Fairphone 6/6+ (the latest), is based on..... It's pretty hard to find the Android version it's based on... Got it. They ship phones based on Android 16 half of the year after the release of 17 (9 since public beta).

Many security patches are NOT backported to 16, which makes Fairphone insecure by design.

They allow relocking the bootloader, which is nice, If they also support custom AVB keys, I'd say this is a fine example of the example of the vendor that is not hostile, just not good enough.

I wouldn't say they're hostile - Samsung is hostile for example.

So, what's your angle here? Do you want me to go through every vendor you bring up or what?


I didn't insinuate hostility of every vendor except Google.

You're not engaging with my words but you're instead twisting them. I'll stop wasting my time on you.

I am pretty sure I understood quite well.

> Well, go for it, fork and "provide support" to the hardware hostile to non-stock OS, be a hero :)


No, you're maliciously extending my words about some vendors to all vendors.

In the comment about issues with software and hardware, that somehow is being painted as GrapheneOS fault, I mentioned (among other things) hardware hostile to non-stock OS.

I didn't say it's Fairphone, I didn't name them.

You brought them up, so I addressed that, explained why I don't consider Nothing hostile but just vulnerable by default and inadequate. I even provided an example of the vendor I actually consider hostile (Samsung).

So if you understood quite well, you're trolling now and not discussing in the good faith.

The alternative is you didn't understand and thought I consider ALL vendors as hostile, which is putting claims in my mouth, which would be fine if you asked, but you keep discussing with strawman.

So please go bother someone else; this is the second time you're doing that and I wasted enough time on that.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: