• Slashme@lemmy.world
    link
    fedilink
    English
    arrow-up
    8
    ·
    2 days ago

    graphene OS with duress PIN, but you don’t give them the PIN - you write it on a slip of paper that you put between the phone and the case. Now, whoever takes your phone without consent has a good chance of finding your bait and wiping it clean for you.

  • Pavidus@lemmy.world
    link
    fedilink
    English
    arrow-up
    36
    ·
    3 days ago

    For the last couple of years, we have traveled with burners and left our primary phones at home. Old phone models are surprisingly capable and cheap.

    • bedwyr@piefed.ca
      link
      fedilink
      English
      arrow-up
      12
      arrow-down
      1
      ·
      2 days ago

      I cut out the middle man and just switched to the old models permanently. I don’t need a smart phone, not f it’s spying on me.

      • Pavidus@lemmy.world
        link
        fedilink
        English
        arrow-up
        5
        ·
        2 days ago

        The main reason I didn’t go with this approach is because if they decide to take it, I’m out of a phone. If they take my cheap burner, it served its purpose.

      • bedwyr@piefed.ca
        link
        fedilink
        English
        arrow-up
        4
        arrow-down
        3
        ·
        2 days ago

        But, to wipe a computer, you have to delete, then write new information over it. Deleting just deletes the references or whatever to the information.

        • UsernamesAreForSuckers@lemmy.world
          link
          fedilink
          English
          arrow-up
          4
          ·
          2 days ago

          Factory reset - you can tie the phone to a blank cloud account easily, then switch back to your main cloud account with another factory reset when you are home and safe. Just an option for people who want to keep their device for the trip. Usually your main phone will have a really good camera and other capabilities burners don’t.

          • bedwyr@piefed.ca
            link
            fedilink
            English
            arrow-up
            2
            arrow-down
            9
            ·
            2 days ago

            I would not be so sure about that now a days. I bet the government(s) have backdoors to a lot of this. You heard it here first ish. So when it comes out, I do require you to say, that asshole online was right.

              • bedwyr@piefed.ca
                link
                fedilink
                English
                arrow-up
                1
                arrow-down
                4
                ·
                2 days ago

                As long as you agree you are shitbitch with a dirty asshole that pisses shit out of you dickhole, sure.

                • HubertManne@piefed.social
                  link
                  fedilink
                  English
                  arrow-up
                  2
                  arrow-down
                  1
                  ·
                  2 days ago

                  man did you ever misread this guys reply. he was using your own term. you really should have took it with good humor rather than as rage bait. you said you required people to say that asshole is right and he came back that asshole is wrong. I totally would have written something like that. although I personally do not think encryption might not have back doors so not as much on this particular comment but I totally love riffing on a line from a comment to make another comment.

  • LeapSecond@lemmy.zip
    link
    fedilink
    English
    arrow-up
    12
    ·
    2 days ago

    Is there currently any way on android of getting a local backup and restoring it after a factory reset? It seems access to application data is so limited, you’re stuck with whatever backup functionality the specific devs chose for their app.

    • frongt@lemmy.zip
      link
      fedilink
      English
      arrow-up
      5
      ·
      2 days ago

      Whatever your device supports. Every Android variant (Samsung, Lineage, Graphene) supports something different. I don’t think AOSP has any native tools.

      Unless you root and use whatever you want.

      • LeapSecond@lemmy.zip
        link
        fedilink
        English
        arrow-up
        4
        ·
        2 days ago

        It seems my phone supports backing up through the Google account. So no local backups and only some apps appear in the list. If it’s the same as when changing to a new phone that’s pretty inadequate.

    • Hueristic_Autistic@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      2 days ago

      Could get a burner and then back it all up to a zip file send it to yourself in an email and then recover it later on. Factory reset your phone before you leave the country and don’t log in to Google, give the phone to a homeless when you come back to the US after clearing security. Lmfao

      • LeapSecond@lemmy.zip
        link
        fedilink
        English
        arrow-up
        2
        ·
        2 days ago

        The question is what to put in the zip. Do you have to use each app’s backup mechanism (if it exists) and gather the files yourself? This works I guess but it’s very time consuming.

        • Rai@lemmy.dbzer0.com
          link
          fedilink
          English
          arrow-up
          4
          ·
          2 days ago

          People hate on iPhones a lot but damn do they make this easy. Plug into computer, click “make encrypted image backup.” Wipe phone and set up as new.

          Go to other place and use phone as normal. Take all data that’s needed once you’re back at home and upload to encrypted online storage. Wipe phone before traveling back.

          Plug phone into computer at home. Click on “make phone the same as it was before I left.” Phone is now the same as it was before you wiped it the first time.

          • LeapSecond@lemmy.zip
            link
            fedilink
            English
            arrow-up
            5
            ·
            2 days ago

            Huh and it seems you can even do it locally and without a Mac. That’s a nice feature.

            • Rai@lemmy.dbzer0.com
              link
              fedilink
              English
              arrow-up
              3
              ·
              2 days ago

              Yus, I don’t use cloud backups for any phone stuff. I hate iTunes but it does work on windows for a local, encrypted, incremental backup, so that’s all I use it for. You can definitely do the same with Android devices, but iPhones do make it incredibly simple. If you get another iPhone, any type of iPhone, even eight years old (maybe older?), you can plug it into your computer and enter your encryption password to make your new (or old, used, wiped phone) exactly the same as the one you replaced.

              • HubertManne@piefed.social
                link
                fedilink
                English
                arrow-up
                1
                ·
                2 days ago

                we kinda had the opposite issue. apple accounts became impossible without an ios device. its one of the reasons we moved away from osx.

    • Highlow@piefed.social
      link
      fedilink
      English
      arrow-up
      11
      arrow-down
      2
      ·
      2 days ago

      Laughs when you are in jail for giving the incorrect password. /s

      Not really laughing but there was a recent incident on this.

    • OakTree@lemmy.zip
      link
      fedilink
      English
      arrow-up
      7
      arrow-down
      4
      ·
      2 days ago

      Graphene does zip zero zilch to address a single word of snowdens leaks. That shit was the radio firmware and we all said sure ok guess that stays a black box. Your privacy os protects you from advertising companies, not the government.

      • gankouskhan@piefed.zip
        link
        fedilink
        English
        arrow-up
        3
        ·
        2 days ago

        If we are going to name something and say it’s a problem like there is something that exists elsewhere, but not giving information about what that solution entails is not constructive nor useful. Did graphene make the claim they have resolved the issue? Has anything else? If not why single it out? If it’s one of the better options out there at least fighting towards the goal of being more secure and it does exactly that then why the hate?

        For as many people there are blindly slobbing all over grapheneos knob there are an equal amount of more blind haters.

        While there is no currently not a complete solution officially released and on by default from grapheneos it does however, include:

        • strict IOMMU isolation on the hardware level which restricts various radio firmwares into restricted memory spaces which prevents a rogue radio from reading and writing memory.
        • firmware sandboxing and hardening which is additional firmware and other memory safe mitigations to prevent buffer overflow attacks and some other attack vectors
        • per-app and system level toggles for radios
        • baseband isolation verification making use of the hardware attestation tooling that verifies device firmware so that you can’t rest easy that it’s not been tampered with or modified with including at boot.

        The issue is right now isn’t graphene or any other competitor but a radio hardware issue to resolve further, which means no one has much better if at all. So while not complete or perfect it is however as far as I know one of the best attempts out there. For the US at least the FCC must explicitly approve whatever new hardware design they come up with using whatever hardware partner such as Motorola for radio fabrication. Currently Motorola Mobile (and not their evil sister company they split from who more likely does have patents) to my understanding does not have patents in this space which brings up another ma to or hurdle as the big dogs who design radios have anyone’s balls in a vice grip that tries to enter it with lawsuit after lawsuit. Then we have the carriers own testing. Not saying this is impossible, but from the standpoint of graphene or any other security minded OS this is out of scope and just not realistic to ask of them. At least that was the case in the past. There is possible opportunity with the Motorola Mobile partnership, but I would not expect this in the first release.

      • eleitl@lemmy.zip
        link
        fedilink
        English
        arrow-up
        3
        ·
        2 days ago

        GOS has good broadband isolation, and can actually switch the cellular radio off.

  • rando@lemmy.ml
    link
    fedilink
    English
    arrow-up
    1
    ·
    2 days ago

    Is this limited to phones or any device? (Laptop / gaming handheld)

    • ahmedezat_katteb@lemmy.world
      link
      fedilink
      English
      arrow-up
      4
      ·
      1 day ago

      In the US it’s any electronic device, not just phones. CBP’s own rules (Directive 3340-049A, from 2018) define it broadly: laptops, tablets, cameras, hard drives, game consoles, anything that stores data.

      The directive splits searches into two kinds:

      • Basic search: an officer manually looks through the device. No suspicion needed.
      • Advanced search: they connect external equipment to copy or analyze the contents. That officially requires reasonable suspicion or a national security concern, plus supervisor approval.

      One detail that’s useful for planning: the directive says officers are only supposed to search what’s stored on the device itself, not data that lives only in the cloud, and they’re meant to ask you to disable network connectivity first. So something that just syncs from a server once you’re home (and isn’t cached locally) is in a different position from files on the disk. Courts in different circuits have also ruled differently on how much suspicion is needed, so it’s not entirely settled.