dazinism · @dazinism
778 followers · 3546 posts · Server social.coop

@shadow8t4@masto.werefox.dev
I'd agree a Pixel 3a is a great choice.
Theres a new wave of alternative operating systems that provide close to production quality experience & security

Also CalyxOS just put up downloads for their Mi A2 builds - not as good a phone, only one year of full security updates left, but they do a 6gb/128gb model
@kyzh@rage.love

#grapheneos #calyxos #rattlesnakeos #hashbangos

Last updated 5 years ago

dazinism · @dazinism
778 followers · 3546 posts · Server social.coop

@ytvwld
If you followed my link...

"won't work unless you have access to the private platform key used by your ROM. So making this available in F-Droid (at least for Android Pie and later) would be pointless."
Worth reading the whole issue.

Currently the only folks I know using it are on all just have support for the Pixel 2, 3 & 3a @rugk @zhenech @hirojin@dev.glitch.social - 1/2

#grapheneos #calyxos #rattlesnakeos #hashbangos

Last updated 5 years ago

dazinism · @dazinism
778 followers · 3546 posts · Server social.coop

@cwebber
Meanwhile there's recently been a whole load of nice work on seedvault- a backup app for

Automatic encrypted backups to USB storage and soon .

github.com/stevesoltys/seedvau

Already built into calyxos.org and coming soon to GrapheneOS.org and, I think, eventually to

#aosp #nextcloud #hashbangos #lineageos

Last updated 5 years ago

dazinism · @dazinism
778 followers · 3546 posts · Server social.coop

@dredmorbius
Not so sure
'Android' is a term used for forks of AOSP that conform with the 'compatibility test suit' and have Google Play Services (GPS)
There are a number of holes in AOSP that are normally filled by GPS (like backup) these holes are being filled eg.
github.com/stevesoltys/seedvau

New wave of AOSP forks is pushing things forward & quick to adopt this kind of work
CalyxOS.org GrapheneOS.org

Likely will eventually land in LineageOS
@tab

#hashbangos #rattlesnakeos

Last updated 5 years ago

dazinism · @dazinism
778 followers · 3546 posts · Server social.coop

@yojimbo

Without an exploit it shouldn't be possible to unlock the bootloader without being able to login to the phones main user account.

Having a locked bootloader also provides verified boot which helps guard against persistent device compromise.

On a few devices it is possible to relock the bootloader hub.libranet.de/wiki/and-priv-

Theres some nice alternative operating systems that provide 'factory' images with verified boot @deejoe

#calyxos #grapheneos #hashbangos #rattlesnakeos

Last updated 5 years ago

dazinism · @dazinism
778 followers · 3546 posts · Server social.coop

@emacsomancer
Yeah disabling Google apps &/or switching off their permissions will help against this

Best get a phone with a close fork. Like , or better one of the new wave of open source privacy & security focused forks.
Get all the solid security & privacy features from AOSP (big improvements in recent years) arxiv.org/abs/1904.05572
AOSP doesnt spy on you & is much more secure than desktop linux ported to a phone @Blort

#aosp #lineageos #calyxos #grapheneos #rattlesnakeos #hashbangos

Last updated 5 years ago

dazinism · @dazinism
778 followers · 3546 posts · Server social.coop

@kemonine

>I generally run non rooted, vanilla firmware these days (one plus / Sony normally)

Isnt Oneplus a bit shady though? eg. this mentions a couple of things vice.com/en_us/article/59y4vz/
also aren't they a bit slack with security updates?

Have you checked out , & - production grade AOSP forks (full verified boot, monthly security updates for 3+ years from device launch) available for Pixel phones + Calyx has early support for the Mi A2
Graphene is 1/2

#grapheneos #calyxos #hashbangos

Last updated 5 years ago

dazinism · @dazinism
778 followers · 3546 posts · Server social.coop

@kemonine
You seen the backup app that the folks have been doing a load of work on?

Uses the same internal AOSP stuff as Google cloud backups and ADB backup- so no need for a rooted device. Although it'll have to be built into the OS.

Its going to output encrypted backups with yubikey support. Output to USB key or Nextcloud.
gitlab.com/calyxos/calyxos/iss

is set to use it once its finished, already include it in their builds.

#calyxos #grapheneos #hashbangos

Last updated 5 years ago

dazinism · @dazinism
778 followers · 3546 posts · Server social.coop

@tercean @Fellmoon

has been working on making it easy to do custom reproducable builds of . Looks like is probably going to adopt their build system.

github.com/hashbang/os

#hashbangos #aosp #rattlesnakeos

Last updated 5 years ago

dazinism · @dazinism
778 followers · 3546 posts · Server social.coop

@hexmasteen
I'd get the Mi A2, the only device on that list thats getting support of the new wave of security and privacy focused AOSP forks

These forks are different to and other ROMs as they maintain verified boot - a powerful security feature

Talking about

Mi A2 support from calyxos.org has got some very experienced (and well respected) devs actively working on it
gitlab.com/calyxos/calyxos/iss

Otherwise consider a Pixel

#lineageos #calyxos #grapheneos #rattlesnakeos #hashbangos

Last updated 5 years ago

dazinism · @dazinism
778 followers · 3546 posts · Server social.coop

@leogaggl
Think devices that have a proper open bootloader are limited. I'm talking about devices where it can be relocked & verified boot works.

Current devices I'm aware of are the Google Pixels & Mi A2, although I think there are a few more.

and all have proper support for this. All support Pixels, Calyx has early support for the
@eff

#calyxos #grapheneos #hashbangos #rattlesnakeos #mia2

Last updated 6 years ago

dazinism · @dazinism
778 followers · 3545 posts · Server social.coop

@nolan
I expect the oneplusone won't of had any firmware updates for sometime now

There's a new wave of privacy and security focused alternative android operating systems- tight forks of
Use their own factory images, no custom recovery, full monthly security updates including all firmware updates (unlike ), full verified boot, makes it all nice and easy to use
Only on Pixel phones, but is working on support for the Mi A2

@friedger

#aosp #lineage #calyxos #grapheneos #hashbangos #rattlesnakeos

Last updated 6 years ago

dazinism · @dazinism
778 followers · 3545 posts · Server social.coop

@praveen

Theres a new wave of AOSP based operating systems that focus heavily on privacy and security. They support recent devices - so far only Pixels, but look set to also support some Android One devices

is working on support for the Mi A2, theres code in their repository
s.coop/aly-sources-published

There is also
@njoseph

#calyxos #hashbangos #grapheneos #rattlesnakeos

Last updated 6 years ago

dazinism · @dazinism
778 followers · 3545 posts · Server social.coop

@strypey
Yes, its possible to have multiple parties building and then only pull in verified builds- where builders are reporting matching builds.

is planning to do this with AOSP. Although they havent yet been able to get reproducable builds of AOSP
github.com/hashbang/os/blob/ma
@nicoalt@mastodonten.de @blaubachn@fosstodon.org

#hashbangos

Last updated 6 years ago

dazinism · @dazinism
778 followers · 3545 posts · Server social.coop

@kyzh

@kyzh
CopperheadOS is good as dead.
The dev carries on the work as , it's also inspired and upcoming

Sadly for decent security a device that still gets firmware and driver updates from the manufacturer is needed. Also, ideally a device that supports verified boot with an alternative OS. Very few do.

#grapheneos #rattlesnakeos #hashbangos #calyxos

Last updated 6 years ago

dazinism · @dazinism
778 followers · 3545 posts · Server social.coop

@hirojin@dev.glitch.social

There is a new wave of based operating systems for devices which have proper support for an alternative OS.

These OSs dont use TWRP and upgrading to a new Android version can be done without any more stress than a standard monthly security update.

#aosp #android #grapheneos #hashbangos #calyxos #rattlesnakeos

Last updated 6 years ago

dazinism · @dazinism
778 followers · 3545 posts · Server social.coop

@utzer

Maybe consider one of these forks

piunikaweb.com/2019/02/05/the-

They only run on Pixels.
Give a great camera & security -
Monthly updates
Verified boot

You could wait for the upcoming to be released. Hopefully by then will have reproducable builds sorted and be offering downloads of factory images, which would make adoption much easier (no need to build)

on some kind of arguably gives more and than

#aosp #pixel3lite #hashbangos #pixel #privacy #security #ios

Last updated 6 years ago