frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

OpenCiv3: Open-source, cross-platform reimagining of Civilization III

https://openciv3.org/
553•klaussilveira•10h ago•157 comments

The Waymo World Model

https://waymo.com/blog/2026/02/the-waymo-world-model-a-new-frontier-for-autonomous-driving-simula...
876•xnx•15h ago•532 comments

How we made geo joins 400× faster with H3 indexes

https://floedb.ai/blog/how-we-made-geo-joins-400-faster-with-h3-indexes
79•matheusalmeida•1d ago•18 comments

Unseen Footage of Atari Battlezone Arcade Cabinet Production

https://arcadeblogger.com/2026/02/02/unseen-footage-of-atari-battlezone-cabinet-production/
13•videotopia•3d ago•0 comments

Show HN: Look Ma, No Linux: Shell, App Installer, Vi, Cc on ESP32-S3 / BreezyBox

https://github.com/valdanylchuk/breezydemo
191•isitcontent•10h ago•24 comments

Monty: A minimal, secure Python interpreter written in Rust for use by AI

https://github.com/pydantic/monty
190•dmpetrov•10h ago•84 comments

What Is Ruliology?

https://writings.stephenwolfram.com/2026/01/what-is-ruliology/
7•helloplanets•4d ago•3 comments

Show HN: I spent 4 years building a UI design tool with only the features I use

https://vecti.com
303•vecti•12h ago•133 comments

Microsoft open-sources LiteBox, a security-focused library OS

https://github.com/microsoft/litebox
347•aktau•16h ago•169 comments

Sheldon Brown's Bicycle Technical Info

https://www.sheldonbrown.com/
347•ostacke•16h ago•90 comments

Dark Alley Mathematics

https://blog.szczepan.org/blog/three-points/
75•quibono•4d ago•16 comments

Hackers (1995) Animated Experience

https://hackers-1995.vercel.app/
444•todsacerdoti•18h ago•226 comments

Show HN: If you lose your memory, how to regain access to your computer?

https://eljojo.github.io/rememory/
242•eljojo•13h ago•148 comments

PC Floppy Copy Protection: Vault Prolok

https://martypc.blogspot.com/2024/09/pc-floppy-copy-protection-vault-prolok.html
46•kmm•4d ago•3 comments

Delimited Continuations vs. Lwt for Threads

https://mirageos.org/blog/delimcc-vs-lwt
17•romes•4d ago•2 comments

An Update on Heroku

https://www.heroku.com/blog/an-update-on-heroku/
379•lstoll•16h ago•258 comments

How to effectively write quality code with AI

https://heidenstedt.org/posts/2026/how-to-effectively-write-quality-code-with-ai/
225•i5heu•13h ago•171 comments

Why I Joined OpenAI

https://www.brendangregg.com/blog/2026-02-07/why-i-joined-openai.html
103•SerCe•6h ago•84 comments

Learning from context is harder than we thought

https://hy.tencent.com/research/100025?langVersion=en
162•limoce•3d ago•85 comments

I spent 5 years in DevOps – Solutions engineering gave me what I was missing

https://infisical.com/blog/devops-to-solutions-engineering
131•vmatsiiako•15h ago•56 comments

Introducing the Developer Knowledge API and MCP Server

https://developers.googleblog.com/introducing-the-developer-knowledge-api-and-mcp-server/
41•gfortaine•8h ago•11 comments

Show HN: R3forth, a ColorForth-inspired language with a tiny VM

https://github.com/phreda4/r3
63•phreda4•9h ago•11 comments

Female Asian Elephant Calf Born at the Smithsonian National Zoo

https://www.si.edu/newsdesk/releases/female-asian-elephant-calf-born-smithsonians-national-zoo-an...
20•gmays•5h ago•3 comments

Show HN: ARM64 Android Dev Kit

https://github.com/denuoweb/ARM64-ADK
14•denuoweb•1d ago•2 comments

Understanding Neural Network, Visually

https://visualrambling.space/neural-network/
262•surprisetalk•3d ago•35 comments

I now assume that all ads on Apple news are scams

https://kirkville.com/i-now-assume-that-all-ads-on-apple-news-are-scams/
1035•cdrnsf•19h ago•428 comments

Zlob.h 100% POSIX and glibc compatible globbing lib that is faste and better

https://github.com/dmtrKovalenko/zlob
6•neogoose•2h ago•3 comments

FORTH? Really!?

https://rescrv.net/w/2026/02/06/associative
56•rescrv•18h ago•19 comments

Show HN: Smooth CLI – Token-efficient browser for AI agents

https://docs.smooth.sh/cli/overview
85•antves•1d ago•63 comments

WebView performance significantly slower than PWA

https://issues.chromium.org/issues/40817676
20•denysonique•6h ago•3 comments
Open in hackernews

GrapheneOS and forensic extraction of data (2024)

https://discuss.grapheneos.org/d/13107-grapheneos-and-forensic-extraction-of-data
319•SoKamil•4mo ago

Comments

nithssh•4mo ago
The post had some nice structural discussion about digital forensics
Thorrez•4mo ago
[2024]

And it looks like this is the draft, and it was published on the author's blog here: https://telefoncek.si/2024/05/2024-05-30-grapheneos-and-fore...

p0w3n3d•4mo ago
There is no such thing like "bad government" and "good government". I mean - it really depends on people's views, therefore we must not blissfully put our data into govt hands because "they will protect us from terrorists and child rapists". What they will do, actually, is that for sure they will abuse innocent citizens at some point of time. They will. Even if they don't, they will. Or maybe they are doing it right now and they need more control to make it easier
marcofloriano•4mo ago
No. When the government fails to delivery what people need (not necessarily wants), you have a bad government. When gangs and bandits (or drugs, or diseases, or whatever) takes on the street, it's not about people's view, it's just bad stuff that the government need to address or there's no point on having a government.
pona-a•4mo ago
The 50s~70s are idealized by many as an American golden age, despite higher reported crime. Law enforcement back then did not have AI-powered surveillance camera networks, widely deployed IMEI stingrays, private data-brokers, or the ability to remotely activate any phone's microphone with 0-click RCE.
crumpled•4mo ago
What's the 0-click RCE thing?
dns_snek•4mo ago
A type of exploit (Remote Code Execution) that can be used to secretly infect your device with spyware without requiring any interaction from you (0-click).
pona-a•4mo ago
Pegasus [0] and the like — commercial spyware updated with the latest exploit chains, developed in-house or purchased from markets like Zerodium, sold as terrorism-prevention tools to such trustworthy states as Russia, UAE, and Hungary.

[0] https://en.wikipedia.org/wiki/Pegasus_(spyware)

__MatrixMan__•4mo ago
Agreed. There are problems that governments solve and if a government can't solve them it's a bad one.

Maybe consensus shifts (or goes away) about which problems are the domain of government, buy ultimately it's about efficacy against those. The rest is a distraction.

jbstack•4mo ago
Aside from the fact that there's a subjective definition problem here (how do we decide what people "need"?), I think this an unrealistic view. By this definition, every government that has ever existed or ever will exist is a "bad" government because no government can ever tackle every single problem 100% of the time. Many problems are extremely difficult to solve (e.g. global warming), and others simply cannot be solved without creating other problems.

For example, people "need" access to healthcare, but there's essentially an unlimited amount of money you could spend to keep improving healthcare (e.g. opting for increasingly expensive treatments with diminishing returns on health outcomes). The more money you allocate to healthcare, the less you have available to spend on other things that people "need". Sure, you can tax more up to a point, but eventually that tap runs dry and you're forced to reallocate existing resources.

As another example, people "need" criminals to be punished in order to be able to live in a safe a crime-free society. People also "need" to not be put in prison when they are innocent. But you can never be 100% sure that a convicted criminal actually committed the crime. Locking up criminals implies by necessity that you will also lock up some innocent people. No government can solve both of these problems simultaneously which means they are all "bad".

Even the most competent "good" government ultimately has to select among which "bad" things it is going to allow to continue and which it will solve.

danans•4mo ago
> Sure, you can tax more up to a point, but eventually that tap runs dry and you're forced to reallocate existing resources.

Since the 1980s, we have been consistently taxing less. If the tap is dry, it isn't because of over-taxation - it's because there's a reservoir of wealth hoarded by the relatively few.

A even cursory glance at the trajectory of wealth distribution will make that clear.

jbstack•4mo ago
> Since the 1980s, we have been consistently taxing less

Who is "we"? We're talking about governments in general ("good" vs "bad" ones), and I have no idea what jurisdiction you are referring to.

In any case, I didn't say the tap is dry. I said if you keep raising taxes it will eventually run dry. Or to put it another way, taxes are not an unlimited resource that you can keep increasing as much as you'd like. At some point you'll hit a ceiling where raising taxes any further doesn't produce additional tax revenue.

For example, as you raise income tax rates, people have less incentive to advance their careers (e.g. by chasing promotions or improving their skills), and people have more incentive to leave the jurisdiction and go somewhere with lower taxes. Up to a point, the increase in tax rates produces a net extra revenue for the government. Above a certain point, the number of people who stop paying taxes (e.g. by leaving or by working less) outweighs the gains from those who continue to pay. This is why you'll rarely see any government with excessively high top-bracket tax rates (e.g. 60 - 100%), because it results in tax losses.

MrOwen•4mo ago
How are you coming to the conclusion that it will run dry? For example, in the US, arguably the most prosperous period here was in the first half of the 1900s. It is when Roosevelt's New Deal went into place and the US experienced extraordinary growth and prosperity. Do you know what also coincided with this? The marginal income tax rate. From wikipedia:

> For tax years 1944 through 1951, the highest marginal tax rate for individuals was 91%, increasing to 92% for 1952 and 1953, and reverting to 91% 1954 through 1963.

Since that time, the income tax rate has declined, especially for the higher brackets. From my perspective, it kinda just sounds like wealthy people got greedy and they were able to advocate for income tax changes. Back then, they couldn't pull as much funny business as they do today with high compensation modalities ($1 trillion for Musk?) so they opted for marginal tax rate reduction. But there's no evidence from what I can see that the the money was about to "run dry." Quite the opposite it seems. Even in nordic countries, the money is not "running dry". They have great support systems in large part because of the high marginal tax rates.

jbstack•4mo ago
Consider what would happen if the tax rate was 100% across all tax types, and you'll probably see then how there's an upper limit to how much tax revenue can be raised by a government. Would you get up and go to work if you got to keep 0% of your earnings? How about if you got to keep 1% of them? 2%?

Surely we can agree that there is a threshold, even if we don't agree where that threshold is. That's all there is to the point I'm trying to make: tax resources are limited and therefore all governments must ultimately allocate those limited resources and cannot simply spend unlimited amounts on any "good" projects that they'd like.

danans•4mo ago
> tax resources are limited and therefore all governments must ultimately allocate those limited resources and cannot simply spend unlimited amounts on any "good" projects that they'd like.

That's a strawman. There are no proposals for a 100% tax across tax types. There is an argument for reversing the direction of the last several decades in which taxes on the wealthiest have been dramatically cut.

jonas21•4mo ago
> Since the 1980s, we have been consistently taxing less.

Assuming "we" means the United States, this isn't really true. Tax revenue as a percentage of GDP has been remarkably stable, not just since the 1980s, but since the end of World War II [1].

The long-term average since 1945 is 16.85%, the average in the 1970s (i.e. the decade before the 80s) was 16.76%, and the average in the 2020s is 16.96%.

[1] https://fred.stlouisfed.org/series/FYFRGDA188S

dragonwriter•4mo ago
> Since the 1980s, we have been consistently taxing less.

In the US at least, that’s the perception because the tax cuts get a lot more publicity than the increases; everyone know that Reagan passed what was, to that time, the biggest (at least in aggregate nominal terms) tax cut in US history, fewer know that he followed it with the biggest increase.

But what has actually happened is a series of tax burden shifts (often, downward from the wealthiest, though some have been the other way or largely orthogonal to wealth.)

b112•4mo ago
Since the 1980s, we have been consistently taxing less. If the tap is dry, it isn't because of over-taxation - it's because there's a reservoir of wealth hoarded by the relatively few.

A even cursory glance at the trajectory of wealth distribution will make that clear.

Others have attempted to refute your above statement, but it's not really relevant. Your response does not really align with the parent post, because at no point did the post you replied to say "We need to tax less all the time!" or even "we need to tax less!" or "we cannot have better health care".

None of these things were said, advocated for, or espoused as a position.

Instead, they said "you cannot solve everything ever, and everything has tradeoffs", along with "because if you try, you run out of money no matter what".

This seems like a fair statement. Would you care to address that?

danans•4mo ago
> Instead, they said "you cannot solve everything ever, and everything has tradeoffs", along with "because if you try, you run out of money no matter what".

> This seems like a fair statement. Would you care to address that?

Sure. That's like saying fire is hot and water is wet. The fact that tradeoffs obviously exist doesn't mean we can make meaningful changes to improve things.

b112•4mo ago
I think you mean "doesn't mean we can't", but you seem to be hyper-focusing on the summary statement I wrote, of the original author's post. That summary statement was in place to explain why your original post wasn't addressing the issue.

But that statement was summarizing a portion of the original author's post. If placed back in the context it came from, you can see the original author was not saying we cannot make meaningful changes. At all.

Instead, the author was said:

Aside from the fact that there's a subjective definition problem here (how do we decide what people "need"?), I think this an unrealistic view. By this definition, every government that has ever existed or ever will exist is a "bad" government because no government can ever tackle every single problem 100% of the time. Many problems are extremely difficult to solve (e.g. global warming), and others simply cannot be solved without creating other problems.

Thus, they are not defining this as a "we cannot improve things", but instead "if we improve things, some will see that as bad" conjoined with "in other cases, we improve things, but not as fast/completely as desired".

As far as I can see, there is not a single point that the original author said we cannot improve things. They don't even hint at that.

attila-lendvai•4mo ago
sure, but does government prevent wealth inequality, or maybe the very cause of it?

(research hint: inflation, and that millennia old quote/insight: the more numerous the laws, the more corrupt the government...)

danans•4mo ago
> sure, but does government prevent wealth inequality, or maybe the very cause of it?

Neither. Government is just the system through which policy that either greatness or lessens inequality is implemented. For example, government can decrease an inheritance tax, therefore increasing inequality, or they can do the opposite to reverse it.

estimator7292•4mo ago
Everything is bad if we simply redefine "good" to mean "immaculately perfect and infallible in literally all conceivable scenarios"
jbstack•4mo ago
Sure. But the original commenter's point that whether a government is "good" or "bad" is subjective because it's dependent on people's views. Other commenters objected to that and appear to see it as objective: a government is either clearly good or clearly bad, and there's no debate to be had.

The reality however is that all governments are a mixture of good and bad, and different people will see that mixture in different proportions. One person might overlook the fact that their government funds the Israeli military because their government does plenty of other "good" things to make up for it. Another person might find that to be a completely unacceptable compromise.

npoc•4mo ago
There is no man-made global warming crisis. The earth is in fact one of the coldest periods in history.

Thoroughly explained here: https://youtu.be/KDwCUAueLUU

What the "man-made global warming crisis" is, is an example of how a corrupt/captured state will overreach and control the people for its own gain through manipulation. Many governments are captured by the now global financial system that has almost unlimited power due to its money printers. It charges interest on money that it prints out of thin air. By leveraging its existing power to steer the governments to spend money it is able to effectively spend printed money (governemnt loans) on itself and then receive interest on that money as a bonus. A positive feedback loop that ends in global domination by the unelected financial system with the national and international central banks at its heart. Even worse is that it's power obtained essentially through fraud - it's all based on lending out something for interest that isn't theirs. It started with them lending out gold that people had given them to safely look after in their vaults.

n4r9•4mo ago
Requiring people to watch a 1hr+ video to understand your argument is a big red flag.
npoc•4mo ago
Why's that? A topic as big as this takes quite a lot of refuting.

If you're interested in finding the truth, then you'll at least begin watching it to see if it offers any promise.

const_cast•4mo ago
The trouble with videos is you can just... choose not to include stuff that obviously refutes your argument.

The reality is that global warming is definitely happening, and also the Earth is definitely not flat. But it's pretty easy to make a super convincing argument that the Earth is flat - you just don't mention any of the math behind why the Earth is round and then you can have a 5 hour long video filled to the brim with evidence the Earth is flat.

And it's not even lying. We're not saying anything that's not true. We're just choosing to omit data and evidence that proves us wrong. We can even include fake data and evidence, if we want, and refute that - ie build a strawman.

npoc•4mo ago
But surely that holds true for any evidence? Much of the video is showing how (and why) the government-funded evidence for global warming is wrong.
n4r9•4mo ago
Videos are a terrible way to convey logical arguments. It's much harder to skip back and forth, search for specific bits, etc ... . They're for entertainment, which encourages a suspension of critical thinking. If you're confident there's a solid argument to be made, make it in text so it can easily be analysed and challenged.
n4r9•4mo ago
I watched the first ten minutes. It's the standard boring exercise of cherry picking a few theoretical physicists who weigh in on climate science despite having little to no experience in it.
npoc•4mo ago
Well, I'm afraid that that only goes to prove errors in your intuition and critical thinking skills. Your facts are incorrect and your logic uses an appeal to (lack of) authority fallacy.
n4r9•4mo ago
The ten minutes I watched was one big appeal to authority. "Here's Doctor X, a highly respected scientist. Look at all the big name universities he's linked to. Listen to him waffle on about how he thinks climate science is corrupt."

Appeal to authority is a dubious fallacy to invoke in the first place. If I need to assume something about (let's say) geology - which I know little about and haven't the time to research myself - I'm going to trust the general consensus of professional geologists. I'm not going to waste my time listening to a marine biologist who sounds like a crank and claims they've discovered that the whole field is bogus.

"If you're interested in finding the truth, you'll at least" check out this (surprise surprise, textual) take-down of the movie, with a comprehensive set of links debunking (in, surprise surprise, text form) the hackneyed climate myths that it brings up: https://skepticalscience.com/climate-the-movie-a-hot-mess-of...

npoc•4mo ago
> The ten minutes I watched was one big appeal to authority. "Here's Doctor X, a highly respected scientist. Look at all the big name universities he's linked to.

Fair point. Although two wrongs don't make a right.

> If I need to assume something about (let's say) geology - which I know little about and haven't the time to research myself - I'm going to trust the general consensus of professional geologists.

This is the intelligent, inituitive approach - I agree. However one of the main points that the documentary makes is that there's a hidden corruption involved which means that in the case of climate this is actually the wrong approach to take. The combined state and money printer-backed financial system has an enormous incentive to encourage scientists to find a global climate crisis, and because most scientists rely on government funding, they in turn have enormous incentives to produce statistics that align with this, or else lose their funding. The so-called climate experts that are presented to you are in fact selected by this system because they produce work that aligns with the system's incentive to make people believe there is a climate crisis.

This corruption all stems from the fact that we gave a few questionable people a money printer, and decades later they're getting closer and closer in their ultimate goal of enslaving the world.

https://x.com/OppCostApp/status/1952831340597948565 (only a two minute video this time)

Read "The Creature from Jekyll Island" or "Broken Money" by Alden for the full story.

n4r9•4mo ago
This might be a compelling take except that many climate deniers/skeptics - including several featuring in that movie - are funded by fossil fuel companies and right-wing think tanks.
npoc•4mo ago
Define "right-wing".

Ultimately either the evidence is correct or it's not, no matter how it's funded. This documentary demonstrates how much of the current mainstream evidence is in fact incorrect, explains why it's incorrect (both the errors and the incentives involved) and then provides evidence for why the small degree of measured warming over the last decades is both happening perfectly naturally and is not very significant compared to periods in the history of mankind.

You must at least admit that much of the evidence backing the climate "crisis" we have been fed over the last decades was actually just projections from models. Models that have generally been proven to be completely wrong. If you take a look for real evidence of detrimental effects from any change in the climate, it's simply not there.

n4r9•4mo ago
In which case I'd appreciate seeing something in text form, since the first ten minutes is uncompelling and does not demonstrate what you say it does, and I'm not inclined to spend much time verifying my suspicions. Another commenter has linked to a review (here [0]) which demonstrates that graphs have been used in a totally misleading way in the film. Indeed this is exactly the sort of thing that makes 1hr+ films a big red flag for me.

[0] https://www.lse.ac.uk/granthaminstitute/news/fake-graphs-and...

npoc•4mo ago
I disagree completely. Videos allow you to time-stamp exact moments for reference and provide animated evidence, rather than just stills. Some videos are meant for entertainment, others are not. Same goes for books and other text-based media. Life itself is presented to our brains in a dynamic audio-visual format - does that encourage the suspension of critical thinking, or does it provide more nuance not available in just words and static pictures?
n4r9•4mo ago
> Videos allow you to ... provide animated evidence.

If you want to do that, far better to embed animations in a mostly-textual doc.

> Life itself is presented to our brains in a dynamic audio-visual format ... does that encourage the suspension of critical thinking?

Yes, to an extent. Or at least text allows critical thinking more easily than the average conversation does. Text makes it really easy to pause and think for a moment before reading on. Or to check back on something you vaguely remember reading beforehand. It's a more active form of ingest than watching a video. Video-makers have many more techniques at their disposal to slip their narrative past critical filters, such as varying the speed of delivery, or using music to invoke emotional reactions.

jbstack•4mo ago
I disagree strongly with you on this, but nonetheless I think you've proven the point that the original comment was making i.e. that what constitutes a "good" or a "bad" government is subject to people's views.

In my view, a government that does nothing to tackle global warming is "bad". In your view, a government that spends resources on something you think is a fraud, is also "bad". We can't both be right.

npoc•4mo ago
We can both be right - when man-made global warming isn't actually a thing.

I agree that

> a government that does nothing to tackle global warming is "bad"

and I think you would likely also agree that

> a government that spends resources on something you think is a fraud, is also "bad"

The only difference is that it has managed to convince you that man-made global warming is real, just like it did me for a long time.

b112•4mo ago
Nonsense. The Earth used to be a boiling lump of magma at once point before it cooled, but guess what -- humans can't live on liquid rock. Warmest or coolest is irrelevant over the lifetime of the Earth. What matters is "modern humans".

Global warming is indeed real. Effective change doesn't have to cost a dime. An example is forcing people to buy electric cars at some point. The government spends nothing, people just buy new cars when their old cars expire, now people are driving new cars. Solved.

(you may notice that incentives are gone in most countries now)

And if the weirdos would stop trying to crush every tiny part of carbon emissions, dams provide an immense amount of cheap, clean power once built. We can even make concrete using low-emission methods. Regardless, dams are far better than coal or gas (yes they are random anti-concrete weirdos), so moving on a path to 'better' is laudable and helpful.

(Yes, anti-concrete weirdos are either useful idiots or secret lobbyists. Why? Well, my city puts more concrete into new basements in a single year, than go into a dam that lasts 50 years. Yet I only hear people blather on about dams, which would save immense pollution from coal, the worst polluter it would replace. Also, I've now out-conspiracied the conspiracy guy I'm replying to.)

Power plants expire, whether gas, coal, etc, and instead of revamp you slowly build new, and expire the old.

None of this has to cost. There is no cabal to enact global warming related change.

npoc•4mo ago
To clarify I meant over the last 5 million years.

There has been no man-made climate change during the period of "modern humans" either.

It's not a conspiracy as such - it helps to think of government and corporations as an AI. A hive intelligence with constraints and goals. The constraint is to operate within legislation and keep the people on board, the reward/goal is to acquire money/power.

At this stage the financial system (which we gave a money printer!) has obtained enough power to steer legislation in its favour and keep the people on board though manipulation of the mainstream media and education.

Show me the incentives and I'll show you the outcome.

I completely agree that there's no reason why we can't replace power plants with more environmentally friendly ones as they are retired, but ask yourself why Germany then has shut down it's fully operational nuclear power plants. Even with energy shortage and the many of the plants ready to be turned back on tomorrow, the state refuses to.

n4r9•4mo ago
Manmade climate change is in the context of the last two millenia. The issue is not just the absolute temperature but the rate of change and human survivability. Homo sapiens only evolved ~200k years ago.
hgomersall•4mo ago
Thoroughly debunked here: https://www.lse.ac.uk/granthaminstitute/news/fake-graphs-and... And here: https://science.feedback.org/review/review-climate-the-movie...

That film is full of misleading nonsense. Like, charts that have been altered to apparently suit a narrative.

dizhn•4mo ago
"people" being their own citizens. Many governments do not limit their activities to their own people and they have almost opposite rules for their own people vs others. Not that the picture is so clear for their own people either.
jMyles•4mo ago
> there's no point on having a government

Can we just use this as our point of agreement?

netdevphoenix•4mo ago
This sounds extremely simplistic. Countries are isolated universes. Actions of a government in a country affect other countries. Some problems require multiple governments to work together (see global warming and supply chain issues). Different governments have different priorities at any given time even if they all have roughly the same absolute list of issues
Rygian•4mo ago
> therefore we must not blissfully put our data into govt hands

Extending this reasoning, we should not blissfully put our data into anyone's hands.

Government mission at least have a veneer of public servants, as opposed to private hands whose only real motivation is fiduciary obligations towards the shareholders.

WinstonSmith84•4mo ago
it's about the interests of each party.

The interest of a government is to control its citizen, either now or at some point in the future.

The interest of a private company is to make more money.

Between the two, I certainly prefer a private company attempting to monetize my data rather than a government trying to control me either now or in the future. And let's stop the bs about "public servants", even in the EU which is maybe the most democratic bloc in the world, governments are trying to impose a chat control (among other laws restricting freedom). It's just in the nature of governments to control its population

Rygian•4mo ago
You missed a spot:

In most situations, private companies will share any data they have about you with the government anyway. And can be compelled by law to do it.

So going private is net loss.

IlikeKitties•4mo ago
> There is no such thing like "bad government" and "good government".

Of course there is, compare the government of Finland to that of North Korea. Just because there are shades of grey and human institutions are generally susceptible to corruption greed an power politics doesn't mean there aren't governments that are different not only in degree but in kind.

codys•4mo ago
It is strange how folks are refusing to admit they can even _evaluate things_ in a bunch of cases. We're seeing that here, but I've also noticed it in other posts on HN: a disagreement with the position of the article is framed not as a distinct examination which comes to different conclusions, but instead commenters claim the post author was foolish in even attempting to evaluate the thing the post is about.

To some degree it feels like bits and pieces of anti-intellectualism getting into folks brains: rejecting the idea that folks can think about things at all.

themaninthedark•4mo ago
It feels like a nihilistic take partnered with the view that everyone has a valid viewpoint.
isaacremuant•4mo ago
Finland will approve shit like chat control, age verification or covid lockdowns against civil rights.

Whataboutism is bullshit. Power corrupts. It doesn't matter if you idealize a government, it's still composed of people who get compromised by money, power and general corruption.

squigz•4mo ago
I think this sort of thinking is symptomatic of something very problematic: that if a government doesn't align with your views, it's a bad one. We've forgotten that, in order for a civilization to survive, with many, many viewpoints, we must compromise sometimes.
Anonyneko•4mo ago
It's an interesting argument in theory, but in practice the government in my country of origin actively searches through people's phones to find evidence of wrongthink (e.g. donations or incriminating social media activity), for which they sentence people to incredibly long prison terms.

The latest example: https://en.zona.media/article/2025/08/27/irin

That said, no matter how secure GrapheneOS may be, for this particular threat a permanently clean phone is a necessity.

IlikeKitties•4mo ago
If the reaction to "I'm not unlocking my phone" is being beaten and put into a gulag, no technical solution will help.

But countries that have fallen that far off the path are not worth saving anyway.

mordnis•4mo ago
Maybe we should have no government, because they always have some information on us which can be abused
rangerelf•4mo ago
You're being willfully dense, I do not believe it's up for debate.

Governments that public force to kidnap, torture, murder, "disappear" their own citizens, are bad. Plenty of examples to go around, both historically and currently: China, Russia, México, North Korea, Belarus, the balcans, plenty of African governments, etc.

It shouldn't matter that "34% of my neighbors" want me sent to a concentration camp, personally I wouldn't want to end up there.

The example you're giving, the whole "it really depends on people's views, ..." is a bad government.

And the truth is that it's easy to be a good government: don't be bad.

Edit: fixed a word.

chuckSu•4mo ago
You’ve got quite a list of examples there. In 2025 that list of examples should include the US and Israel
themaninthedark•4mo ago
Try earlier than that for the US:

>In 2015, the Guardian revealed Chicago Police had allegedly employed torture and days-long unlawful detention at the secretive “black site”-like Homan Square facility

And the federal government knew and participated.

>“When we’re doing joint operations with the federal government, it’s generally — it’s under the supervision of an Assistant U.S. Attorney and they’re merely using our facility because it’s more convenient."

https://thegrayzone.com/2025/03/15/feds-used-chicago-black-s...

jbstack•4mo ago
Ok, so how do you categorise a country like Norway (typically viewed as a "good" country by most people) which knowingly invests money from its sovereign fund into companies which are linked to the Israeli military which (in many people's view) is currently causing genocide and widespread starvation?

At what point does the "good" cross over into the "bad"? Is it ok that having a highly regarded government comes at the price of dead children? How about the sizeable group of people (e.g. in the US and Israel) who don't believe there is any genocide at all? Doesn't that make the whole thing subjective?

groggler•4mo ago
No.. If one follows that absolutism then people deserve nothing better than the worst government anyway because of social slippery slopes like the popular worship of Charles Manson.

There are obviously a lot of dimensions and clusters within those dimensions and we can't always say exactly which nationalist fascists to beat to death with hammers for the global good, but we can say Norway is a bit removed from them.

pkphilip•4mo ago
If you go by examples like that then there are a number of nations you cannot support at all - consider for example that China has the Uyghur concentration camps, US has Guantanamo Bay and now the new prisons in partnership with El Salvador. Belgium got away scottfree with their genocide in Africa, Turkey carried out a genocide in Armenia, France still collects fines from its previous colonies etc.
KyleBerezin•4mo ago
Or more likely, regardless of intentions, they will accidentally let it fall into a bad actors hands.
tomtomistaken•4mo ago
Time for a Bitcoin moment, but for governments.
DANmode•4mo ago
DAOs?
tomtomistaken•4mo ago
DAO based maybe, yes.
foofoo12•4mo ago
> it really depends on people's views.

No it does not. It depends on peoples morals.

dragonwriter•4mo ago
> > it really depends on people's views.

> No it does not. It depends on peoples morals.

Morals are a kind of views.

foofoo12•4mo ago
It's the fundamental principles of right and wrong. Morals. It's not just views or kind of.
dragonwriter•4mo ago
Beliefs about what is fundamentally right and wrong are, in fact, views.
attila-lendvai•4mo ago
then child rape is just a clash of views... you sure you really want to go down that road?
dragonwriter•4mo ago
> then child rape is just a clash of views

Who said “just”? I'm arguing against minimizing conflicts of views as inherently insignificant, low consequence things.

foofoo12•4mo ago
You can call them views, and you can call your tap water a solution of dihydrogen monoxide with contaminants. It isn't helpful.
breppp•4mo ago
Only someone who never lived under a bad government would claim all governments are equally bad.

Only someone who never has seen war would think they need no defense

Razengan•4mo ago
In the past, whenever I read someone say stuff like what I myself say down below, I put them down as a crackpot:

But as time goes by and I travel the world, I find it's hard to deny that there are and always were distinct classes within human civilization, though the lines may be blurred here and there, and almost everything within every human society serves to preserve those classes, whether as the direct intentional goal or as a convenient side effect.

"Govern" is to "rule"

Other commenters mention the lack of government, and pockets of chaos where gangs/bandits/warlords/disasters run rampant, but those too are different classes versus each other, or vacuums where classes have yet to [re]form.

mrbluecoat•4mo ago
TL;DR:

> Cellebrite admits they can not hack GrapheneOS if users had installed updates since late 2022.

azalemeth•4mo ago
I really love Graphene OS but I _wish_ there was a version in which you could get a root shell and extract private data of apps you install when verified as the user. The developers are on record as saying that root blows a hole in their security model (it does!) but if there was _some_ way of doing it safely, so I can modify applications I as the user wish to, it would be my ideal OS. I know I could download and self sign it, but I'd rather not…
subscribed•4mo ago
You can't have a cake and eat it. A root access is a big hole, there's no way mainline will support it.

As for the possible way, you answered yourself already (custom keys and images) :)

imiric•4mo ago
> A root access is a big hole

How so?

On Linux, I can add an account to the sudoers list, and have the flexibility to configure the level of security appropriate for my use case. I have yet to experience any security issues (that I'm aware of). Why isn't this possible on my mobile device as well?

This absolute stance is not right. Security is not binary, but a spectrum. I should be allowed to have full control over my device without this being a security risk.

rfoo•4mo ago
Well, anyone with actual root on a secure (locked, verified boot on) Android phone can hard brick it with a single command. Yes, you can yell at the user telling them it's their fault. Still something you usually do not want to support.

I don't think having authorized temporary root is inherently insecure, but on the other hand making sure it is secure could be a huge time sink.

Now, the original request here, modifying user app (I'd assume it's not system app) data, is reasonable. Designing a properly authenticated way to allow doing so would be an interesting challenge.

fsflover•4mo ago
> Designing a properly authenticated way to allow doing so would be an interesting challenge.

Qubes OS solved this problem. I don't see any flaws in their security model relying on vurtualization.

subscribed•4mo ago
Oh, I agree that the initial request is more than reasonable. Titanium Backup is something i miss every day.

Especially since Seedvault is.... ekhm, lacking.

tiberious726•4mo ago
Seedvault is the /worst/. I ranted about it here a few months ago, and the lead dev says he's aware they really need something better: https://news.ycombinator.com/item?id=42541520
subscribed•4mo ago
How so?

Root can access absolutely everything.

Malware capable of getting root can access / exfiltrate anything, use your network, flash your firmware, can persist permanently, can use you as a vector.

Shellshock, log4j, Heartbleed. Hundreds of the big profile vulnerabilities that can be exploited on the system in an attempt to obtain root. And then you're cooked.

You really think a malware with the root access can't do much?

Why do you think selinux (and similar) even exist?

This isn't absolute stance. This is just stating that having a root access on the proruction/daily system is the opposite of security.

imiric•4mo ago
I understand the risks, but just because they theoretically exist doesn't mean that they pose an active threat in all scenarios, or that they can't be mitigated.

The idea of locking the system down completely and preventing anyone from accessing it is technically more secure, but it creates many practical issues for tech-savvy people who want full control over their devices, which is the vast majority of the GrapheneOS user base.

If SELinux can mitigate the risks, then sure, let's use that. I don't really care what the technical solution is to this problem.

I'm just saying that:

a) As a user of an OS I want to be allowed full control over my device and not have babyproofed functionality because "it's for my own good". That is the realm of walled garden OSs from most major corporations which I deliberately avoid by using GOS in the first place.

b) My personal threat model doesn't involve using a bunch of untrusted applications, and I'm fine with trading some security for convenience. If the risks from choosing convenience can't be mitigated, then my OS should be flexible enough to allow me to make that choice. Other OSs can do this, so why can't GOS? I'm inclined to believe that there's no technical reason for it, but it's something that maintainers simply don't want to support. Which is fine, it's their project and their prerogative, but then let's not pretend that this is a discussion about security.

wkat4242•4mo ago
Yes but root still exists in phones just like it does in servers. It's just not accessible by the user. The OS does run processes as root and it needs it for things like updates.

Also, the user having root access doesn't mean that every process they run has root rights. For rooted phones there's apps to control what it's used for. Anything else just runs with the limited rights as before.

Of course those 'sudo' apps would be an attack vector but a pretty niche one.

Batman8675309•4mo ago
>You can't have a cake and eat it.

That is usually how it's done, yes.

djrj477dhsnv•4mo ago
I wish this as well. I make a userdebug build myself to get adb root, which isn't difficult, but would be a lot nicer if it were officially supported.
imiric•4mo ago
That's interesting. Can you share a guide for doing that?
rjdj377dhabsn•4mo ago
You can just follow the official build instructions with a single change: when specifying the build target, change it from -user to -userdebug:

https://grapheneos.org/build#setting-up-the-os-build-environ...

imiric•4mo ago
Hhmm that seems like a hassle, TBH.

One of the things I like the most about GOS is the web installer, and how easy it is to use. If I need a custom build, to run my own server, and sacrifice performance for it, it doesn't seem worth it. It would also be good to know what a debug build entails, how exactly it is "less secure", and so on. Since this is unlikely to be documented by the GOS team, a 3rd party guide would still be helpful.

j4hdufd8•4mo ago
This is well documented in AOSP, what do you mean?
3abiton•4mo ago
> It would also be good to know what a debug build entails, how exactly it is "less secure".

Using software engineering terms, think of the official GOS as production release, and the debug version as test release. You deploy it by actiually building it, like building a linux kernel. This takes lots of reaources (RAM + storage). But also is quite flexible because you can compile and build it whenver there is a new update. And you can sign the build yourself. The reason why they say it's insecure is the same why your server sysadmin does not give you the root password. You can do some serious damage if you have no idea what you're doing. On Android, root allow you to peek on other processes and apps, so if you grant root to a malicious app, high risk of data leakage. That's it though. Been rooting and building roms since early android days, no issues for me as I tend to use open source tools most of the time.

colordrops•4mo ago
What is the threat model when enabling root on a phone and why can't it be mitigated? Root is enabled on most servers and desktops and we are surviving fine.
Brian_K_White•4mo ago
The way apps behave and the user interface to apps and the way they are used, the level of basic visibility and control that the user has moment to moment, is totally different on a phone than on a pc.
j4hdufd8•4mo ago
How so?
subscribed•4mo ago
This is why most desktops and servers are comparably much less secure.

Check why Qubes OS was developed.

buckle8017•4mo ago
The user has real dom0 root on qubes.
sterlind•4mo ago
Is Qubes resistant to forensics? I think its selling point is multi-level security and lateral movement prevention, not safeguarding data on a stolen laptop.
strcat•4mo ago
No, it's not resistant to forensics unless it's turned off when obtained. The hardware / firmware / software makes no serious attempt to protect a device in the After First Unlock state.
const_cast•4mo ago
In practice, desktops and servers are quiet secure because you don't need to download random closed-source firmware and apps to use your device.

iOS and Android are a security nightmare. Downloading a random-ass executable to pay for parking is asking for trouble. Relying on millions of lines of proprietary Google code that you-don't-know-what-it-does is asking for trouble.

This code could have, and almost certainly does have, spyware, keyloggers, and various other forms of malware. You're simply trusting that it doesn't, because it's unverifiable.

And this doesn't even TOUCH on all the vulnerabilities associated with cellular networks, the baseband, SS7, etc. Good luck auditing that code.

At least on a server I can have some baseline guarantees about what software I'm running and what it's doing. Whereas on a phone, your location could constantly be triangulated, your phone identity spoofed, your cellular traffic sniffed, and on and on and you'd never know.

I mean, just this week we saw a post on here about ICE using fake cell towers to identify protestors. That shit is truly trivial to do, and people have been doing it for almost two decades. You wanna talk CVE? Start with that.

integralid•4mo ago
Threat model is that you can "spy" on what your applications are doing, or do things undesirable to application owners (like making screenshots).

This is desirable to end users, but my understanding is that making your os rootable will make applications like bank apps blacklist your os, and make it more or less unusable for a normal user.

sterlind•4mo ago
You can enable root on GrapheneOS. It will erase your data, however, so make a backup before you do. But if you really want root you can save your data, root, restore, and leave root on.
lc5G•4mo ago
How can I enable root?
sterlind•4mo ago
sorry, I was mistaken. it looks like you'll have to build a userdebug build in order to gain root.
megaloblasto•4mo ago
I've always found it strange that GrapheneOS only runs on Google hardware. Can anyone explain this choice?
keerthiko•4mo ago
most of the explanation from the horse's mouth will be found here:

https://grapheneos.org/faq#device-support

megaloblasto•4mo ago
Thanks

> These devices meet the stringent privacy and security standards and have substantial upstream and downstream hardening specific to the devices

It still seems strange. A big part of GrapheneOS is to provide a safeguard from Googles data hoarding, yet it works primarily on Google phones.

fdsfdsfdsaasd•4mo ago
Yes, a situation that Google is steadily fixing.
warkdarrior•4mo ago
Conspiracy theory time: GrapheneOS is a skunkworks project from Google, to sell more Pixel hardware.
subscribed•4mo ago
Considering last years development and quite open Google hostility?

No.

GoS have provided a lot of patches upstream, Some of which were even applied. Despite that they wouldn't get early access to A16 just because. Access EVERY vendor promising to preinstall privileged Google services has.

Allegedly Google security team was very happy about that idea, but got vetoed by management.

rfoo•4mo ago
> It still seems strange. A big part of GrapheneOS is to provide a safeguard from Googles data hoarding, yet it works primarily on Google phones.

That's the most confusing part. IMO GrapheneOS is not mainly about "provide a safeguard from Googles data hoarding", instead this is more like a side quest.

GrapheneOS is about creating a mobile OS that is more secure against advanced threats [0] than anything else, including stock Pixel OS and iOS.

[0] Currently my rule of thumb is, anyone who can find and write exploits for new memory corruption bugs for the wanted attack surface, or who can buy such capability, qualifies as advanced threat. Hence Cellebrite qualifies as a borderline "advanced threat".

kelnos•4mo ago
That doesn't seem odd to me. Google's data hoarding is done in software, not hardware. Remove Google's add-on software and you have a more or less blank slate to work with. I don't see why we'd expect any different.
zahllos•4mo ago
This is the answer. Google play services and related privileged components are the non-open source blob hoarding data, along with whatever backend services you use from Google. These components are part of the stock android image that comes on the device that's replaced entirely by GrapheneOS.

Naturally if you continue to use Google services then the data hoarding continues.

AlgebraFox•4mo ago
They've clearly explained here. I'm not sure how many people would keep asking the same question without even doing a simple web search.

https://grapheneos.org/faq#future-devices

megaloblasto•4mo ago
Someone clearly replied with the same link. I'm not sure how many people would keep replying the same thing without even doing a simple thread search.
garciansmith•4mo ago
They posted within a minute of each other, so likely did not see the the response and were typing theirs as the other got posted.
tcfhgj•4mo ago
not sure if it is an explanation or a justification
raziel2p•4mo ago
what's the difference?
sandreas•4mo ago
AFAIK the Pixel devices are the only ones that reliably allow bootloader unlocking / re-locking, that is required to perform custom os installs.

There are others e.g. Motorola ones or Fairphone, that also allow this but it's a good idea to focus on a specific set of devices keeping maintenance as low as possible and security focus as high as possible.

There are alternatives like /eOS/ or CalyxOS supporting more devices and I experienced exactly this "no longer supported" issue with my Xiaomi A2, which suddenly disappeared from the list of supported devices (see https://calyxos.org/news/2021/03/29/mi-a2-ten-firmware/).

strcat•4mo ago
Pixels are the most secure Android devices and the only ones meeting the hardware security requirements for GrapheneOS at this time. GrapheneOS is working with a major Android OEM towards their future devices meeting these requirements.

Neither /e/ or CalyxOS is a hardened OS. They provide much weaker protection against these attacks than the stock Pixel OS or especially an iPhone. They're weakening privacy and security substantially including lagging many months and even years behind on standard security patches. CalyxOS has not shipped the June 2025-06-05 patch level or later. /e/ is regularly many months behind on OS and browser security patches along with very often being a year or more behind on kernel updates and firmware/driver updates.

See https://discuss.grapheneos.org/d/24134-devices-lacking-stand... with in-depth information about /e/ on Fairphone devices with links to multiple articles from third party security researchers covering it and other information.

Those non--Pixel devices do not provide a secure base either.

octo888•4mo ago
Curious if you've already read the comprehensive FAQ entry and are trying to imply something?
megaloblasto•4mo ago
Kind of. I don't use grapheneOS and I'd like to, but de-googling your phone by buying a Google phone seems a bit sketchy. I don't want to take away from a privacy focused project. I'm super thankful for this option and I can't stand android or iPhone. But in the back of my mind I wonder if I'm being tricked.
SirHumphrey•4mo ago
As for why graphene uses graphene uses pixels - their FAQ does a good job explaining. As for why google keeps the bootloader opened and maintains (until recently) good enough device-tree support- I would guess mostly historical reasons? Before becoming as mainstream as they are now nexus and pixel phones used to be in part android development devices and certain creature comforts stuck. This seems to be souring though, so some of the people there may be in talks with an OEM for a graphene os specific device[1].

[1]: https://discuss.grapheneos.org/d/23886-partnership-between-g...

megaloblasto•4mo ago
This is great info. Thanks.
fsflover•4mo ago
I agree with you, it's a dangerous and suspicious choice, https://news.ycombinator.com/item?id=45100831
octo888•4mo ago
I'm suspicious of your comment. You got beef or had a run in with the people who run the project...?
fsflover•4mo ago
I don't have and never had any connection to GrapheneOS developers, positive or negative, online or offline, nor am I working for any of their competitors. I only have the philosophical disagreement with their decisions explained in my link above.
subscribed•4mo ago
Okay, I'll bite - what phone GOS should run on?

Remember the context is having a *secure* handset in hand.

matheusmoreira•4mo ago
He's not wrong from a computer freedom perspective. GrapheneOS is actively hostile to things like complete root access. It blows a hole in the security model. It's also very much enabled by the exact same sort of user hostile cryptography that corporations use to lock down their devices. Things like hardware attestation which protects apps from us. We can't easily do things like MITM an app to reverse engineer it.

I still it's superior to any stock Android OS but the risks associated with giving up freedom for security must be considered. The ideal is to have security while simultaneously maintaining our power as the owners of the machine.

strcat•4mo ago
GrapheneOS only supports devices where users can have full control over the OS and replace it. Choosing to use GrapheneOS is fully optional and people who don't want a strong security model can use something else. Not clear how GrapheneOS in any way hurts people's freedom by giving them a highly private and secure OS option for devices which meet our requirements. We're working with an OEM on towards more devices meeting our requirements which will support using other operating systems too. If you want another OS, you can use one. If you want to modify GrapheneOS in any way you want, that's fully supported. We provide easy to follow build instructions. You can make a userdebug build with ro.adb.secure=1 if you want root access at the cost of security.
fsflover•4mo ago
> people who don't want a strong security model can use something else

You have a very special threat model, which you for some reason always call the best or the only one reasonable. In reality, depending on the user's threat model, your approach can fail miserably. For example, if my threat model includes that Google can utilize their control over the hardware to undermine my security, then your approach fails [0]. And this is a real-world example.

Don't get me wrong, I still agree that your approach is very secure, it should exist, and you're doing an amazing job for the Community. Just that you shouldn't behave as it's the only viable one.

[0] https://news.ycombinator.com/item?id=45208925

matheusmoreira•4mo ago
> Not clear how GrapheneOS in any way hurts people's freedom

It's not GrapheneOS itself that's doing this. It's technology like hardware attestation. Stock Android is rapidly becoming just as bad as iOS in this regard.

Remote attestation is a technology that enables discrimination against us. By using it, corporations can tell we've "tampered with" our own phones by doing things such as installing GrapheneOS. That's simply not a power I want them to ever have. They should be none the wiser.

The problem is they will abuse that power to deny service to anyone who isn't using a phone owned by corporations. GrapheneOS itself will probably be among the casualties. Bank apps work on it for now but there's no guarantee at all that they'll keep working in the future. Banks can just flip a switch and the apps simply stop working. No valid attestation that a corporation such as Samsung owns your phone? No service. Discrimination.

For corporations, device security means their app is secure from us. They should never be safe from us. That is my ideological point. We should be able to do anything we want, and they should be able to do nothing we don't allow.

I understand that you're doing your best to use this cryptography to protect us. I really respect the work that's being put into GrapheneOS. In fact I'd be using it right now if I could get my hands on a Pixel.

I'm just saying this hardware attestation technology enables discrimination against us.

fsflover•4mo ago
The answer is in the above link.

> secure

Different threat models exist. For example: https://source.puri.sm/Librem5/community-wiki/-/wikis/Freque...

Also, what I predicted has just happened: https://news.ycombinator.com/item?id=45208925

other8026•4mo ago
Pixels are the only devices that are out right now that meet the project's requirements. The project is in talks with a major OEM to have some of their devices meet GrapheneOS's requirements and have official support for GrapheneOS. Assuming all continues to go well, the project has said they expect those devices to be out in 1-2 years.
reactordev•4mo ago
As long as the USB port of your phone is used, you can not stop it. This is the backdoor the governments want without having to be tethered. Vote for privacy. Vote against the police state. Vote for freedom.

Libertarian rant aside. Governments fund these kinds of operations in secret so they can "effectively do their jobs". There's a ton of subcontractors working on AWS platforms that do analysis of this UFED "dump". (just a zip file of your phones directories). Emails, Phone logs, Carrier settings, Browser History, Text Messages, Cookies, Apps, App Logs, App Data, if it's on your phone, it's in the zip.

WithinReason•4mo ago
> As long as the USB port of your phone is used, you can not stop it.

According to TFA GrapheneOS can disable the USB port too

reactordev•4mo ago
Which is the only defense when law enforcement takes your phone. GrapheneOS is the only ones that will let you.
matheusmoreira•4mo ago
> Vote

Sure... Vote "correctly" and then watch the world burn anyway when the politicians start spinning some nonsense about money laundering drug trafficking child molesting terrorists.

nixgeek•4mo ago
This feels like countering insinuations on the Internet with insinuations on the Internet.

Cellebrite doesn't publicly publish the latest support matrix so we have no real idea what progress if any they've made against recent iPhones and iOS versions, nor any real detail on how something like Lockdown Mode influences outcomes for their software.

Nor does this show anything about Pixel 9 or Pixel 10 and the newest variants of Android OS (which for Pixel 10 makes sense given (2024), but for Pixel 9 does it?).

What we do know as both companies disclose this is that Apple implements particularly with Advanced Data Protection enabled significantly more E2EE than Google, and both companies invest significantly through i.e. Apple's SEAR into the security of their hardware, software and platforms.

That GrapheneOS exists is great but I don't think this post helps much.

vqtska•4mo ago
There is someone who leaks Cellebrite's support matrix to GrapheneOS dev's and it confirms that they are still unable to exploit it.

"Their documentation has explicitly listed GrapheneOS for years due to the high demand from their customers for breaking into it. It shows they were last able to exploit a GrapheneOS release with a 2022 or earlier patch level.

We have their June 2025 documentation and could obtain the newer documentation if we ask for it, but we have much bigger priorities than that right now and we would have been contacted by the main person providing it if anything relevant changed."

https://x.com/GrapheneOS/status/1965464817914831070

jeroenhd•4mo ago
Documents have been leaked at the beginning of this year: https://osservatorionessuno.org/blog/2025/03/a-deep-dive-int... which do include the Pixel 9. They show GrapheneOS being pretty secure in comparison to other vendors at the very least, with GrapheneOS being marked as unsupported if patched beyond 2022. They also show GrapheneOS beating the stock Google firmware.

One reason GrapheneOS fights these threads is by doing what Google doesn't want to do out of user friendliness, like disabling USB in AFU mode. Unlike Google, Samsung, or Apple in non-lockdown mode, GrapheneOS doesn't need to deal with upset users when they need to unlock their phone before hooking it up to their car/display/flash drive/3.5mm jack converter/etc.

GrapheneOS also enables security features when compiling the OS that have a performance impact but mitigate security risks. They end up with a slower phone with less battery life that's protected better against extremely uncommon attack vectors.

GrapheneOS explained how these security features would've prevented at least one targeted attack from leading to exploitation: https://grapheneos.social/@GrapheneOS/114081909020398165

We don't know the current state of Celebrite's capabilities, but the fact they struggled for at least three years last time intel leaked out does paint a good picture for GrapheneOS. I'm sure the GRU and NSA have exploits that can hack even GrapheneOS, but at least they're not the type that makes it into commercially available exploit kits as of now.

other8026•4mo ago
> GrapheneOS also enables security features when compiling the OS that have a performance impact but mitigate security risks. They end up with a slower phone with less battery life that's protected better against extremely uncommon attack vectors.

Apps may take slightly longer to launch, which was more noticeable on older devices, but not so much on modern supported devices. I understand that some of the other exploit protections mean that apps and processes take up slightly more memory, but that's another thing that people don't seem to be affected by.

As for battery life, not really. Most people report having roughly the same battery life with GrapheneOS as with the stock OS. People who don't install Google Play report much better battery life. Sure, the exploit protections might use a small amount of extra power, but it's negligible as far as I can tell based on my own experiences and what other people report.

SpaghettiCthulu•4mo ago
Some devices are listed with both "BFU Yes" and "BF No" under the "... BFU" column (for example, the newer Pixel devices table). What do these mean in combination?
strcat•4mo ago
This is a post by a user on the GrapheneOS forum not associated with the project in any way from May 2024. Their post referenced April 2024 Cellebrite capabilities rather than the July 2024 data or later where they had fully caught up to recent iPhones and iOS. The post is from May 2024, they didn't have time travel.

GrapheneOS has access to recent Cellebrite Premium documentation from the past couple months which shows the state of things in the previous published documentation from earlier in 2025 along with the 2 snapshots published in 2024 has been carried over.

Crontab•4mo ago
I am probably the only one but the geek in me would love to see an article where digital forensics are used against the most common operating systems in their most secure configuration - just to see how they compare with one another.
bflesch•4mo ago
All is well
jijijijij•4mo ago
> most common operating systems in their most secure configuration

Air-gapped and turned off?

dsign•4mo ago
This kinds of make me want to get a pixel and install GrafeneOS there.

I'll admit that big companies may have some incentive to protect their users' privacy; but they are an easy legal target. If tomorrow the US or EU pass legislation that mandates a backdoor in all mobile devices, the entire world is screwed.

into_ruin•4mo ago
FWIW, the UK recently cited the Investigatory Powers Act of 2016 in an attempt to force Apple to create a backdoor, but Apple refused
bornfreddy•4mo ago
> ...but as far as we know Apple refused.

Fixed that for you.

jajuuka•4mo ago
To be fair after that came out they disabled ADP for the whole country. If they were willing to go along with it then that would not be the course they would take.

Not to mention it's a colossally dumb move to create a back door into your system that anyone can access and can break things like government contracts. Apple is greedy but they aren't suicidal.

truelson•4mo ago
My last pixel (4a) started falling apart after about a year and a half. Is there an android device that's a bit more hardy? I switched back to apple as I was able to use an SE for YEARS. Would love to try running GrapheneOS, though.
crumpled•4mo ago
My wife uses her Pixel 4a to this day. I moved on from mine after some problems, but a factory wipe of the 4a actually fixed all of the problems with mine too.

And you know what else is cool? If the screen gets cracked or something doesn't work, you can take it to an independent repair shop and they can fix it.

crossroadsguy•4mo ago
The sad part is even security updates stopped for my pixel 5a.
edm0nd•4mo ago
Very affordable to do.

I bought a cheap refurbished Pixel 7 Pro off eBay for $250 and installed GrapheneOS on it. Threw an eSim $20/m plan on it and use it as my phone when I leave the house and go IRL.

If I ever lose it or it gets taken while traveling, who cares, its secure af. I just cancel my eSim and buy another phone to install GrapheneOS on all while my main phone Pixel 10 Pro is still safe and at home.

j4hdufd8•4mo ago
What's your threat model for this kind of security?
edm0nd•4mo ago
1 - My main phone has a bunch of work stuffs on it and all my authenticator stuffs and etc

2 - I've been raided by the FBI before in my past (used to be blackhat in my 20s but now im whitehat :))

3 - I lose my phone sometimes. far better to lose a dinky burner phone VS my main phone.

crossroadsguy•4mo ago
What is your main phone and setup?

Also — how well/bad Graphene plays with Play Store (esp wrt safety net checks) apps?

sathackr•4mo ago
I use it. No issue

The only app so far I've found that won't work is ParkMobile and you can just use their website

edm0nd•4mo ago
main phone is just a regular Pixel 10 Pro.

Depends on the apps. You wont be able to use a lot of apps like Chase Bank app and etc w GrapheneOS. Lots of errors bc it blocks a ton of shit your banking apps will need or want to use.

jcul•4mo ago
The stuff that I notice not working are:

* Google wallet NFC payments

* Always on now playing

* Always listening OK Google

Android auto used to not work but they added support. Voice commands to Google while driving don't work for me, but may be possible to get working.

Google voice commands work, but you need to open the Google app.

Google wallet works fine for tickets, bar codes etc, just no NFC payments.

Android song search works for me, there's a quick access file for it and it works great. I think pixels normally show what's playing on the lock screen, offline. I think this might be the same thing, triggered manually. Though I'm not sure if it's offline or not.

I'm in Ireland and any backing apps I've tried work fine, PTSB, AIB, revolut, IBKR, Trade Republic. I've had no issues there.

It's a very stable OS IMO, the extra user profiles, being able to choose whether to have Google play or not, and what level of access to give it. I've used it on a pixel 6, which died not too long ago, and now a pixel 9a.

matheusmoreira•4mo ago
I want to get a Pixel just for GrapheneOS as well but Google is incapable of selling those things worldwide despite being a trillion dollar corporation.
SapporoChris•4mo ago
I had issues buying my Pixel from Google. My memory is fuzzy, but I think after I activated my account they said great, We'll let you purchase in a month... A really cautious security model I suppose. I gave up and bought it on Amazon.
drnick1•4mo ago
What account? You can just walk into a Google store and buy one. Most big cities in the U.S. have one.
hxorr•4mo ago
The problem is step 0. Be in US
DANmode•4mo ago
Swappa.com, mail forwarding.
Johnny555•4mo ago
>...because it is doing far more hardening than iOS against these attacks. iPhones also have security element, but the companies developing attacks, had successfully bypassed secure element throttling from Apple for years (and are doing the same with Samsung and Qualcomm

Is it true that Pixels are more hardened against brute forcing the security module and that iphones (and other phones) are easily bypassesed by these hacking tools?

bri3d•4mo ago
I don't think I agree with this assessment; I have a lot of respect for GrapheneOS but they are very prone to this type of puffery, especially in face of criticism.

The information in this and other GrapheneOS articles comes from a leaked copy of the Cellebrite support matrix which is shipped with their end-user (law enforcement) devices, so it's a point-in-time look at one vendor's capabilities in one product line.

At the time this article was written, Cellebrite had brute force-based passcode access to iPhones before the iPhone 12 (prior to the Secure Storage Component), and supposedly had support for the iPhone 12 on iOS versions prior to 17 in development (vs. just under research), while they had no access to bruteforce on Android devices using the Titan M2 (Pixel 6 and later).

The general trust model is pretty similar: the user's passcode is entangled with (predictable) secure entropy and used to derive a key encryption key which can unlock the filesystem. Firmware running on a secure processor rate-limits passcode attempts.

Apple's implementation is well-documented here: https://support.apple.com/guide/security/secure-enclave-sec5... .

Google's implementation is called Weaver and I'm less sure how it works cryptographically, but it seems conceptually similar.

For more about the support matrix: https://osservatorionessuno.org/blog/2025/03/a-deep-dive-int...

Overall I would say that a modern iPhone running the latest iOS and a modern Pixel running GrapheneOS represent the absolute state of the art in protection, and seem to have pretty similar public support from forensic vendors. The article is right that essentially everything else is junk; hardware vendors by and large seem to really struggle to implement secure software (including ROMs and bootloaders).

DANmode•4mo ago
Yes, except for "easily".
t1234s•4mo ago
I currently use LineageOS on my pixel. Is it worth trying Graphine OS?
xvfLJfx9•4mo ago
Yes. LineageOS is an insecure mess.
j4hdufd8•4mo ago
It's widely supported
DaSHacka•4mo ago
Both of these things can be true at the same time.
pavon•4mo ago
I love the sandboxed Play Services. It works better than microg, and is more secure/private than installing Play Services normally which are your two options on LineageOS.

The main downside for me was the limited phone choice. I really liked being able to use a smaller Sony phone with LineageOS, but now that those aren't really available in the US, I had to move to big phone anyway and Pixels aren't the worst option out there.

notorandit•4mo ago
The only thing that comes to my mind is the so-called blobs, the closed source hardware drivers that are needed to make an Android phone work and that run at high privilege level.

If GrapheneOS is not tightly sandboxing them, then chances there are that a capable operator can use whatever backdoor each driver offers, mainly the wifi adapter, the baseband modem and the Bluetooth adapter.

No matter what GrapheneOS developers have done.

Imagine the wifi driver being able to spoof on pin entry procedure.

matheusmoreira•4mo ago
> If GrapheneOS is not tightly sandboxing them

It is. HN user strcat has posted extremely detailed comments on the matter.

https://news.ycombinator.com/threads?id=strcat

gslepak•4mo ago
Those considering a switch from iOS to GrapheneOS might be interested in this migration guide and review:

https://blog.okturtles.org/2024/06/the-ultimate-ios-to-graph...

2716057•4mo ago
Slightly off-topic: how many people are maintaining GrapheneOS? Suppose Daniel Micay suddenly disappeared from planet earth - is there someone who has the knowledge, access and keys to continue immediately?
mangologic•4mo ago
https://www.reddit.com/r/PrivacyGuides/comments/13spm4d/dani...

He stepped down as lead dev 2 years ago !!

2716057•4mo ago
Thanks, good to know. I was asking because the commit histories of some of the GrapheneOS components scream "mostly one man show".

https://github.com/GrapheneOS/Auditor/commits/main/

crossroadsguy•4mo ago
Surely there are competent Apple Photos and Google Photos alternatives like Ente. There are more.
captainmuon•4mo ago
> Cellebrite admits they can not hack GrapheneOS if users had installed updates since late 2022.

So, how do I know that GrapheneOS is not a honeypot for the really big fish?

At this point it seems if you really want to be safe, you have to add obscurity (in addition to conventional best practices). Like changing the pinout on your USB port so the exploit device can't connect.

j1000•4mo ago
I thought about this for a moment, reminds me of ANOM company. But isn't GraphaneOS open source?

Changing USB pins layout sounds like interesting idea.

jcul•4mo ago
As mentioned in the link, Graphene has a lot of additional security feature. It can auto reboot after X hours without being unlocked. You can lock down the usb port to be charge only, or even completely disabled so that the only way to charge is with the device powered off.