• statelesz@slrpnk.net
    link
    fedilink
    English
    arrow-up
    1
    ·
    5 months ago

    Having read the comments I still see two major isssues with this:

    1. This looks like an almost-as-secure-as-GrapheneOS fork, therefore creating a (false) sense of security, because…
    2. GrapheneOS’s security is based on secure hardware (Pixel’s Titan chip) to verify the software. Only having software security without the underlying secure hardware is kind of pointless or at least well… a false sense of security.
      • Zangoose@lemmy.world
        link
        fedilink
        English
        arrow-up
        0
        ·
        edit-2
        5 months ago

        I think the reason GrapheneOS never did a GSI is because most of their security improvements rely on specific hardware calls that GSI abstractions don’t provide access to. This probably would still be an improvement over lineage though, just not as secure as base Graphene is.