frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

GrapheneOS is the only Android OS providing full security patches

https://grapheneos.social/@GrapheneOS/115647408229616018
78•akyuu•3h ago

Comments

komali2•52m ago
> may i ask how you obtain the source? Are you registered as an OEM at Google?

Same question, how does Graphene get patches?

AlgebraFox•49m ago
Yes. They've parterned with an OEM. In fact, they are making an official GOS phone with that OEM.
styanax•45m ago
Here's the discussion forum post going over it: https://discuss.grapheneos.org/d/27068-grapheneos-security-p...
subscribed•39m ago
They have partnership an OEM who provides them with sources.

Currently they're only permitted to release binaries of the patches due to the embargo, this is why these patches are in the parallel stream/optional (so people unhappy with being unable to see the sources won't have them shoved down their throats).

I don't have URLs at hand at the moment but all these questions have been asked many times and explained extensively on their discussion forum.

I, for one, feel safe. I was patched since late October (IIRC) for the vulnerabilities that Android-related outlets were warning about in early December.

It's quite surreal how unsafe the standard Android is. And how Google and the big companies pretend old devices (these running Android 11, 12, 13, not updated for several years) are safe and secure. While all it takes is the user stumbling upon one malicious we page or getting a WhatsApp message they won't even see.

walterbell•46m ago
https://tbot.substack.com/p/grapheneos-new-oem-partnership

> GrapheneOS has officially confirmed a major new hardware partnership—one that marks the end of its long-standing Pixel exclusivity. According to the team, work with a major Android OEM began in June and is now moving toward the development of a next-generation smartphone built to meet GrapheneOS’ strict privacy and security standards.

nanomonkey•46m ago
As a LineageOS user, I'd be interested in the disparity between GrapheneOS and LineageOS.
worldsavior•45m ago
https://eylenburg.github.io/android_comparison.htm
uneekname•38m ago
This is a great resource! Thanks
mcsniff•23m ago
If you care about security above all else and you have a Pixel, GrapheneOS should really be your only consideration.

LineageOS has a place for those who care less about security and more about features, "freedom", compatibility, community etc...

I was a LOS user and maintained my own forks for devices, but switching to GrapheneOS was a good decision and I don't really miss anything.

zekica•22m ago
They have different goals:

GrapheneOS wants to make a FOSS Android with the security model that makes it hard for any bad party to break into the phone.

LineageOS wants to make a FOSS Android that respects user's privacy first and foremost - it implements security as best as it can but the level of security protections differs on different supported devices.

Good news is that if you have a boot passphrase, it's security is somewhat close to GrapheneOS - differing in that third parties with local access to the device can still brute-force their access whereas with GrapheneOS they can't - unless they have access to hardware level attacks.

xxmarkuski•8m ago
Graphene OS provides advanced security capabilities and a thorough defense-in-depth approach including a hardened supply chain. GOS aims to provide mechanisms to protect against 0day attacks. For example Celebrite can not open up GOS. GOS relys on hardware support provided by Pixels. Graphene OS works on getting their developments upstream.

For a list of security features see here [0].

[0] https://grapheneos.org/features

SubiculumCode•23m ago
Why was it that in the early PC days, IBM was unable to keep a lid on 'IBM compatible', allowing for the PC interoperability explosion, yet today, almost every phone has closed drivers, closed and locked bootloaders, and almost complete corporate control over our devices? Why are there not yet a plethora of phones on the market that allow anyone to install their OS of choice?
idle_zealot•17m ago
> Why are there not yet a plethora of phones on the market that allow anyone to install their OS of choice?

There are technical reasons, but as ever the real underlying causes are incentives. Companies realized that the OS is a profit center, something they can use to influence user behavior to their benefit. Before the goal was to be a hardware company and offer the best hardware possible for cost. Now the goal is to own as large a slice of your life as possible. It's more of a social shift than a technological one. So why would a company, in this new environment, invest resources in making their hardware compatible with competing software environments? They'd be undercutting themselves.

That's not to say that attempts to build interoperability don't exist, just that they happen due to what are essentially activist efforts, the human factor, acting in spite of and against market forces. That doesn't tend to win out, except (rarely) in the political realm.

i.e. if you want interoperable mobile hardware you need a law, the market's not going to save you one this one.

jMyles•16m ago
Obviously this situation can't go on.

If neither of the two major players can make an open, secure, _simple_, easy-to-understand, bloat-free OS, then we somehow need another player.

Presently (and I confess, my bias to seek non-state solutions may show here), it seems that a non-trivial part of the duopoly stems from regulatory capture insofar as the duopoly isn't merely software, but extends all the way to TSMC and Qualcomm, whose operations seem to be completely subject to state dictates, both economic/regulatory and of the darker surveillance/statecraft variety (and of those, presumably some are classified).

I'm reminded of the server market 20ish years ago, where, although there were more than two players, the array of simple, flexible linux distros that are dominant today were somewhere between poorly documented and unavailable. I remember my university still running windows servers in ~2008 or so.

What do we need to do to achieve the same evolution that the last 2-3 decades of server OS's have seen? Is there presently a mobile linux OS that's worth jumping on? Is there simple hardware to go with it?

Tiny Core Linux: a 23 MB Linux distro with graphical desktop

http://www.tinycorelinux.net/
162•LorenDB•3h ago•85 comments

HTML as an Accessible Format for Papers

https://info.arxiv.org/about/accessible_HTML.html
80•el3ctron•2h ago•37 comments

GrapheneOS is the only Android OS providing full security patches

https://grapheneos.social/@GrapheneOS/115647408229616018
79•akyuu•3h ago•15 comments

Z-Image: Powerful and highly efficient image generation model with 6B parameters

https://github.com/Tongyi-MAI/Z-Image
31•doener•6d ago•2 comments

Touching the Elephant – TPUs

https://considerthebulldog.com/tte-tpu/
64•giuliomagnifico•5h ago•20 comments

Linux Instal Fest Belgrade

https://dmz.rs/lif2025_en
91•ubavic•7h ago•12 comments

Infisical (YC W23) Is Hiring Engineers to Build the Modern OSS Security Stack

https://www.ycombinator.com/companies/infisical/jobs/2pwGcK9-senior-full-stack-engineer-us-canada
1•vmatsiiako•30m ago

Mapping Amazing: Bee Maps

https://maphappenings.com/2025/11/06/bee-maps/
21•altilunium•6d ago•11 comments

A compact camera built using an optical mouse

https://petapixel.com/2025/11/13/this-guy-built-a-compact-camera-using-an-optical-mouse/
186•PaulHoule•3d ago•33 comments

The unexpected effectiveness of one-shot decompilation with Claude

https://blog.chrislewis.au/the-unexpected-effectiveness-of-one-shot-decompilation-with-claude/
76•knackers•1w ago•42 comments

Self-hosting my photos with Immich

https://michael.stapelberg.ch/posts/2025-11-29-self-hosting-photos-with-immich/
534•birdculture•6d ago•290 comments

How I discovered a hidden microphone on a Chinese NanoKVM

https://telefoncek.si/2025/02/2025-02-10-hidden-microphone-on-nanokvm/
160•ementally•3h ago•45 comments

Kids who ran away to 1960s San Francisco

https://www.fieldnotes.nautilus.quest/p/the-kids-who-ran-away-to-1960s-san
66•zackoverflow•4d ago•4 comments

Cloudflare outage on December 5, 2025

https://blog.cloudflare.com/5-december-2025-outage/
727•meetpateltech•1d ago•530 comments

The Absent Silence (2010)

https://www.ursulakleguin.com/blog/3-the-absent-silence
48•dcminter•4d ago•11 comments

Schizophrenia sufferer mistakes smart fridge ad for psychotic episode

https://old.reddit.com/r/LegalAdviceUK/comments/1pc7999/my_schizophrenic_sister_hospitalised_hers...
342•hliyan•10h ago•291 comments

PalmOS on FisherPrice Pixter Toy

https://dmitry.gr/?r=05.Projects&proj=27.%20rePalm#pixter
151•dmitrygr•14h ago•17 comments

Netflix to Acquire Warner Bros

https://about.netflix.com/en/news/netflix-to-acquire-warner-bros
1631•meetpateltech•1d ago•1241 comments

Gemini 3 Pro: the frontier of vision AI

https://blog.google/technology/developers/gemini-3-pro-vision/
508•xnx•1d ago•267 comments

Wolfram Compute Services

https://writings.stephenwolfram.com/2025/12/instant-supercompute-launching-wolfram-compute-services/
200•nsoonhui•10h ago•102 comments

Making tiny 0.1cc two stroke engine from scratch

https://youtu.be/nKVq9u52A-c?si=KVY6AK7tsudqnbJN
112•pillars•5d ago•28 comments

Divine D native Linux open-source mobile system – Rev. 1.1 Hardware Architecture

https://docs.dawndrums.tn/blog/dd-rev1.1-arch/
37•wicket•4d ago•7 comments

Leaving Intel

https://www.brendangregg.com/blog//2025-12-05/leaving-intel.html
301•speckx•20h ago•171 comments

Netflix’s AV1 Journey: From Android to TVs and Beyond

https://netflixtechblog.com/av1-now-powering-30-of-netflix-streaming-02f592242d80
516•CharlesW•1d ago•266 comments

Frinkiac – 3M "The Simpsons" Screencaps

https://frinkiac.com/
138•GlumWoodpecker•3d ago•46 comments

Have I been Flocked? – Check if your license plate is being watched

https://haveibeenflocked.com/
252•pkaeding•14h ago•169 comments

Patterns for Defensive Programming in Rust

https://corrode.dev/blog/defensive-programming/
303•PaulHoule•1d ago•76 comments

Why Speed Matters

https://lemire.me/blog/2025/12/05/why-speed-matters/
73•gsky•4h ago•29 comments

Idempotency keys for exactly-once processing

https://www.morling.dev/blog/on-idempotency-keys/
164•defly•5d ago•66 comments

The missing standard library for multithreading in JavaScript

https://github.com/W4G1/multithreading
117•W4G1•20h ago•31 comments