Hacker News new | past | comments | ask | show | jobs | submit | umbra07's comments login

Er, no, that would be locked-down GrapheneOS, on a Pixel.

There's a multitude of reasons - but here's the biggest one: Apple's Lockdown mode is all or nothing. You can't selectively enable certain features that you may truly depend upon. On the other hand, GrapheneOS allows you to selectively disable individual security features that may be too overbearing. It would be far easier to daily drive a GrapheneOS Pixel than an iPhone in Lockdown, for that reason alone.


My threat model includes a few things, but one of them is that I don't want my data available to advertisers.

GrapheneOS sort of supports that, but I found that it's nearly useless as a daily driver when set up that way. Even with Google Play Services installed in a sandbox, GPS stuff breaks, the camera is flaky, and third party apps don't work reliably. Also, the remaining built-in apps have huge gaps (no backup, no synchronized notes, etc).

Worse, I'm not convinced that sandboxing it helps privacy that much. Without it installed, the phone had multi-day battery life. With it, it dropped to whatever Google was advertising (30 hours?).

Anyway, iOS without lockdown seems to be much more secure (by my criteria) than my GrapheneOS Pixel phone was in practice. Also, I can use all the apps that are essentially mandatory around here.


I'm not sure, all of the recent Pixels were on the Cellebrite leak list as accessible without brute-force even while cold. Of course, the recent iPhones were too. Maybe there is no solution, or maybe Cellebrite is lying a little bit with their ads.

I'm genuinely curious - what issues have you run into with Lockdown? I've been using it enabled for the times I have been carrying an iOS device (vs my preferred flip phone), and I've yet to run into anything I consider a deal breaker.

I can't get animated gifs in MMS/texting threads. Oh darn. Doesn't bother me, they're usually content free fluff anyway.

WebGL being disabled means I can't use that one guy's awesome website on my phone - except, if I want to, I can disable Lockdown on a per-site basis for trusted sites (which then allows those things to work again).

... I can't get Facetime calls from random numbers? That's never been a problem for me one way or another, and, good.

I do occasionally run into websites that use some image format that doesn't render, and if I really care, I can disable Lockdown on the per-site basis there too, but I usually don't bother.

I'm just curious as to what the actual issues you've found with it are. I turned it on in a beta and haven't found any reason to turn it off since then.


The reason I use an iPhone instead of a Graphene device is that Graphene does not support sufficient device attestation to run Microsoft MDM, which means I can't get to my work calendar.

From what I remember, there are noticeable efficiency gains when using uBOL on mobile browsers.

What is this based off of? Most young people (who have a car) have an old car, without backup cameras.

Backup cameras were mandated in the US in 2018 and were already getting to be pretty popular on even midrange trim vehicles by that time. Every six year old car has a backup camera, and a large percentage of 7–10-year-old cars do as well.

this isn't an 'mc' replacement, this is an 'ls' replacement for traditional-style terminal use.

can you share some of these heuristics you referred to?

the turing test

I can buy a 16TB refurbished enterprise drive with warranty for less than a hundred.

Right, but that's not the point. A 10th-gen i9 is still a very capable processor (ignoring the thermal issues).

does anyone know of a solution for websites that hijack your ctrl-LMB (which is supposed to open the link you just clicked in a new tab)?

I highly recommend trying out sioyek (as a zathura replacement). it has a bunch of features that make it even more suitable for consuming technical papers/textbooks - such as a significantly faster search & index, an auto generated table of contents, highlights, and portals.

sioyek. its featureset is specifically focused on digesting textbook/academic articles/technical papers.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: