For those unfamiliar, GrapheneOS is a privacy and security enhanced custom ROM endorsed by Snowden. Despite these big names, plenty of people give it backlash

Even @TheAnonymouseJoker@lemmy.ml gives it backlash despite being a moderator of Lemmy’s biggest privacy community. A quote here: “grapheneOS trolls are downvoting every single post and comment of mine, and committing vote manipulation on Lemmy. They are using 5-6 accounts.” That was in response to downvotes on a comment posted in the c/WorldNews community, which is entirely unrelated to technology.

One of the reasons is that GrapheneOS can only be installed on Google Pixels due to security compatibility, which makes complete sense considering Android should be most compatible with Google’s own devices. GrapheneOS even lists the exact reasons they chose Pixels, and encourage people to step up and manufacture a different supported device.

One year ago, Louis Rossmann posted this video outlining his reasons for deleting GrapheneOS. Mainly, he had multiple bad experiences with Daniel Micay (the founder and main developer of GrapheneOS) which put his distrust in the GrapheneOS project. Since then, he has stepped down and will no longer be actively contributing to the project.

So, I am here to learn why exactly people still do not like GrapheneOS.

    • Andromxda 🇺🇦🇵🇸🇹🇼@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      0
      ·
      edit-2
      28 days ago

      For a good reason. Pixels are currently the only phones besides iPhones with proper hardware security. Only Pixels support hardware memory tagging, have a secure element (Titan M2) that supports the Android StrongBox and Weaver API, insider attack resistance and hardware key attestation. They also have a programmable USB controller, that allows you to fully disable any USB data connections while the OS is running. The GrapheneOS team maintains a list with hardware requirements at https://grapheneos.org/faq#future-devices

          • muntedcrocodile@lemm.ee
            link
            fedilink
            English
            arrow-up
            0
            ·
            27 days ago

            How are they blanking a replay to a comment just cos the comment being replied to is on .ml thats cooked is it cos ur banned or cos im banned or both or are they just morons and screwed it up?

              • muntedcrocodile@lemm.ee
                link
                fedilink
                English
                arrow-up
                0
                ·
                27 days ago

                Thats photographic proof of .ml selectively federating the modlog to do all sorts of dodgy things such as hiding who committed what actions and generally trying to hide mod/admin abuse.

                  • muntedcrocodile@lemm.ee
                    link
                    fedilink
                    English
                    arrow-up
                    0
                    ·
                    26 days ago

                    So .ml ia broken and nobody has fixed if for months now? U expect me to believe this bullshit. Also pretty sure the modlog doesnt include any posted link just a link to the post which should now no longer exist. The only reason I can imagine fucked shit would be in the modlog was if the .ml moderators where posting it in the summary field themselves.

      • Possibly linux@lemmy.zip
        link
        fedilink
        English
        arrow-up
        0
        ·
        edit-2
        28 days ago

        Bla bla I will just keep the same phone I’ve had for years

        Also I don’t care about the form factor of Pixels

      • umbrella@lemmy.ml
        link
        fedilink
        arrow-up
        0
        ·
        edit-2
        27 days ago

        not in my country, they are expensive and unavailable. and you have to be ok with their form factor and features over the other options.

        overall needing to have one specific phone can get very restrictive.

        • Kilgore Trout@feddit.it
          link
          fedilink
          arrow-up
          0
          ·
          26 days ago

          Is it a reason to hate the GrapheneOS project? Pixel phones are simply the best Android devices for security. You should hate other phone manufacturers that don’t care at all.

          • umbrella@lemmy.ml
            link
            fedilink
            arrow-up
            0
            ·
            26 days ago

            i don’t hate graphene in and of itself, i simply can’t use it. and its not much use to most people when most people don’t own pixels.

            we should hate most phone manufacturers because they are pretty much all shitty.

    • qweertz@programming.dev
      link
      fedilink
      arrow-up
      0
      ·
      28 days ago

      It is ironic, but that’s the best you can get in terms of security on Android, which is why GrapheneOS supports nothing else

      • twig@lemmy.dbzer0.com
        link
        fedilink
        arrow-up
        0
        ·
        27 days ago

        I don’t think it’s ironic. Google benefits massively from their projects like AOSP or OpenTitan being open source, and they even benefit from projects like GOS doing some heavy lifting for them in developing bug fixes that get integrated upstream.

        The fact that their mobile phones are relatively friendly to alternate operating systems is of pretty significant benefit to them.

        Google is invested in security research, albeit usually for reasons that don’t benefit users.

        • qweertz@programming.dev
          link
          fedilink
          arrow-up
          0
          ·
          27 days ago

          Google is a tech giant, which abuses peoples privacy with every click

          Their phones enable users to (at least partially) escape that bs

          that’s what I found to be ironic

      • hifov7@futurology.today
        link
        fedilink
        English
        arrow-up
        0
        ·
        27 days ago

        A lot of people here have higher priority for privacy over security. If you wanted maximum security you should be fine with using even apple products, they’re incredibly secure. But privacy- that’s a completely different thing. Hell, even the community is named privacy. The freedom to compromise alleged security features for privacy should be an option for users.

        • twig@lemmy.dbzer0.com
          link
          fedilink
          arrow-up
          0
          ·
          27 days ago

          I’m sorry, but that’s just not how security works. Most of the “security” features exist because of patching known vulnerabilities. What this means in real terms: vulnerabilities and how they work are published to the public. There are people who specifically write and sell malware to exploit these known vulnerabilities. This is happening all the time. If you have a permissive security model, you are opening all of your information up to compromise

          You cannot reasonably expect privacy on a system that makes major concessions to security. Security is necessary for privacy. The two are not the same thing, but one is needed for the other.

          But also… GrapheneOS is in fact a very privacy-friendly operating system. I would consider it the most privacy-friendly in fact.

          • semitones@lemmy.ml
            link
            fedilink
            English
            arrow-up
            0
            ·
            27 days ago

            For me it is a matter of trust. What does it matter if you’re getting security updates faster than everyone else if you’re getting them Solar Winds? In other words, if you don’t need security against nation-state actors, the highest threat is Google / Apple themselves.

            • twig@lemmy.dbzer0.com
              link
              fedilink
              arrow-up
              0
              ·
              edit-2
              26 days ago

              Your logic doesn’t escape me but in point of fact, when we’re talking about GrapheneOS we’re not talking about volunteering usage data to Google. GrapheneOS does a better job of protecting user privacy than any other mobile option I can think of.

              The problem I have is treating security and privacy like they’re opposing forces. They’re not. You don’t need to make security concessions to ensure privacy and that line of thinking doesn’t make sense when you examine it.

              Genuinely curious: what your privacy metrics (what does this actually mean to you) and what is an organization that you trust?

              • semitones@lemmy.ml
                link
                fedilink
                English
                arrow-up
                0
                ·
                26 days ago

                Not too many unfortunately. I trust Proton bc I am not breaking any Swiss laws, and I know they leak recovery emails so I don’t have one listed, but that’s about it.

                To be honest I’m not an expert in this, definitely haven’t achieved de-googled life yet, but someday I dream I will. Even if they are not collecting usage data they’re surely getting metadata

                • twig@lemmy.dbzer0.com
                  link
                  fedilink
                  arrow-up
                  0
                  ·
                  26 days ago

                  I think that’s a good baseline. Not placing unnecessary trust is definitely a priority. The idea is definitely to remove as much of the need as possible for trust.

                  You have good goals and they are attainable. I wish you luck.

      • ubergeek77@lemmy.ubergeek77.chat
        link
        fedilink
        arrow-up
        0
        ·
        28 days ago

        The guy you were replying to is saying “People hate GrapheneOS because it requires a Pixel,” they were not saying “everyone in the world should be using a Pixel” as you seem to have mistaken.

        You’re getting very fired up and heated in the comments here… maybe take a break?

          • JJLinux@lemmy.ml
            link
            fedilink
            arrow-up
            0
            ·
            edit-2
            27 days ago

            Hey man, nice to see you raising hell again. How’ve you been? Haven’t seen you in a bit.

            BTW, I followed most of your guide, and my phone battery is lasting me upwards of 5 hours of screen on time since I applied your secret sauce. Never mind the ridiculously low data usage.

            And if anyone here is wondering, @TheAnonymouseJoker@lemmygrad.ml and I don’t see eye to eye 100%, and we started our conversations sort of being pricks to one another, until we started to finally get along. He does have some very valid insights and knowledge for privacy and security on Android devices and most with solid evidence, which raises the bar on trust. Having said that, regardless of how you choose to take his posts, I do urge you to at least consider his points. I’ve found them invaluable.

            • randint@lemmy.frozeninferno.xyz
              link
              fedilink
              English
              arrow-up
              0
              ·
              25 days ago

              I followed most of your guide, and my phone battery is lasting me upwards of 5 hours of screen on time since I applied your secret sauce. Never mind the ridiculously low data usage.

              Can you please give a link to this guide? Thanks.

              • JJLinux@lemmy.ml
                link
                fedilink
                arrow-up
                0
                ·
                edit-2
                26 days ago

                I welcome the challenge of meeting every kind of people. With you, honestly, it was fun, and from the get-go I was aware that we would just get along at some point.

                I’m very sorry to read about your injury man. I’ve been battling my own demons lately, with some very traumatic experiences I went through about 2 years ago. I forgave the people that caused the emotional and mental damage, but just this morning I woke up sweating and hyperventilating at 5am and could not go back to bed. Freaking nightmare of that crap had me relive the situation all over again.

                I guess that’s what makes us human. And people here, open your mind to what could be. Yes, this guy comes across as an asshole at first, don’t I know, but once you see beyond that defense wall, not only is he super cool, but a great conversation partner, specially when there are opposite views on each side. Pretty insightful that’s been my experience with him. And yes, he is very passionate about his beliefs, and more people should be like that instead of just following the flow.

                I’m still around but, as long as my wife and kids allow me to 🤣

                  • JJLinux@lemmy.ml
                    link
                    fedilink
                    arrow-up
                    0
                    ·
                    26 days ago

                    You know? I’ve been wanting to start journaling for years now, but have used work and responsibilities as an excuse to put it off. That’s entirely on me, and seems like you mentioning it was the call out I needed to remove the BS excuses. I’ll start in Joplin since I already have it, but if you have any suggestions on apps I can use on mobile and Linux, that’ll help a lot (after all, I know you KNOW about apps that work great).

                    Just added the podcast to my AntennaPod, thanks you.

    • EngineerGaming@feddit.nl
      link
      fedilink
      arrow-up
      0
      ·
      edit-2
      27 days ago

      Yea, my main issue is that because of the price, you’re locked to phones that are either out or almost out of support, or secondhand. Even the last generation’s cheapest model is $300! Though very tempted to try to save that anyway.

      Plus they are not officially sold here, so always a bit of a gamble.

      • babeuh@lemmy.world
        link
        fedilink
        arrow-up
        0
        ·
        edit-2
        27 days ago

        $306057512216440636035370461297268629388588804173576999416776741259476533176716867465515291422477573349939147888701726368864263907759003154226842927906974559841225476930271954604008012215776252176854255965356903506788725264321896264299365204576448830388909753943489625436053225980776521270822437639449120128678675368305712293681943649956460498166450227716500185176546469340112226034729724066333258583506870150169794168850353752137554910289126407157154830282284937952636580145235233156936482233436799254594095276820608062232812387383880817049600000000000000000000000000000000000000000000000000000000000000000000000000 ? Man that’s a lot

        Explanation

        The ! sign denotes a factorial, so 300! would be 300*299*298*298*…