Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

>I trusted apple.

To what? Write 100% bug free software? I don't think that's actually achievable, and expecting so is just setting yourself up for appointment. Apple does a better job than most other vendors except maybe GrapheneOS. Mainstream Android vendors are far worse. Here's Cellebrite Premium's support matrix from July 2024, for locked devices. iPhones are vulnerable after first unlock (AFU), but Androids are even worse. They can be hacked even if they have been shut down/rebooted.

https://grapheneos.social/system/media_attachments/files/112...

https://grapheneos.social/system/media_attachments/files/112...

https://grapheneos.social/system/media_attachments/files/112...

 help



These links working for anyone? 403 for me

Updated the links. The original were from discuss.grapheneos.org but it looks like they don't like hot-linking.

Qubes OS does a much better job though, because it relies on security through compartmentalization, not security through correctness.

The problem with that is it runs on a desktop, which means very little in the way of protection against physical attacks. You might be safe from Mossad trying to hack you from half way across the world, but you're not safe from someone doing an evil maid attack, or from seizing it and bruteforcing the FDE password (assuming you didn't set a 20 random character password).

TPM with Heads protects my laptop from such attacks just fine. All based on FLOSS.

> assuming you didn't set a 20 random character password

It doesn't have to be all random characters for good protection.


If someone puts passwords shorter than 30 characters on their devices, then everything that happens to them is their own fault.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: