Et on est repartit pour DCA en publique :
🏊Pool initiale : 0.025 BTC & 10,000$ (~12,100$)
🟩max %age buy : 5%
🟥max %age sell : 10%
📊prix de décision : 96k5$
💰exposition initiale : 17.35%
⏳action dans le temps : 1 semaine (en we)
@0bsessed_gf@GrapheneOS@LeButineur_Off Si tu veux faire les choses bien, tu fais des sd de tails, prépare des veux pc de déchetterie, après chaque utilisation tu casse la sd, la ram, et dans le doute le pc
@0bsessed_gf@GrapheneOS@LeButineur_Off Ils parlent du serveur VPN, le deuxième a aussi fait le même check
"From further testing and network analysis with Wireshark, we've been able to determine that the traffic in this erroneous state leaves the phone, and a handshake is sent back from our VPN server to the phone"
@0bsessed_gf@GrapheneOS@LeButineur_Off De mon côté, tout ce que je dis est que le layer de s��curité qu'apporte graphene ne répond pas au threat model du téléphone d'un particulier ni d'un techos, et que ça ne vaut donc pas le cout de se faire pin par les ISP et par extension les gouv pour ça
@0bsessed_gf@GrapheneOS@LeButineur_Off Je ne l'ai pas mal lu, ça ne parle nul part de paquet qui passent en dehors tant que l'option est on. Le seul moment où ça parle d'un paquet hors VPN, c'est quand ils ont volontairement enlevé l'option pour tester si ça marchait quand même. Mais tkt c'est moi qui n'y connais rien
@0bsessed_gf@GrapheneOS@LeButineur_Off Ohh, ok i see what you mean. Still, easier to change the os for aosp on ur prefered hardware than verifying main flash + no hidden components on google hardware
@0bsessed_gf@GrapheneOS@LeButineur_Off Très littéralement lié au fait que le kill switch fonctionne tes deux report
Le vpn est update
Le bug fait que le vpn perd la co
L'utilisateur peut plus accéder à internet, vu que le vpn est dead et le killswitch on
@0bsessed_gf@GrapheneOS@LeButineur_Off The dev process is closed, not the source
And i feel you did not make much hardware hacking. I don't know exactly about pixel flash management, but to have tried with Canon camera, or on some flash that have not visible pins, and without debugging ports, it was something
@0bsessed_gf@JKhrushche10538@GrapheneOS@LeButineur_Off As I said on the first en answer, i cannot do the work they have done, at all, and it is not what I claim
My claim is that all threat on mobile is user oriented, not system. A bad user on android will be bad on graphene, and a good user on android do not need graphene to be safe
@0bsessed_gf@GrapheneOS@LeButineur_Off Je viens de check, elle n'a pas de faille, juste que les options étaient incomplète du point de vue de certains (pas possible de faire la kill switch + Split tunnel)
C'est un use case, mais on peut faire sans sans problèmes
@GrapheneOS@0bsessed_gf@LeButineur_Off Again, part of it is already in original android, and since users already do the error of giving too much to apps on it, the same user will do the same error on graphene. It's user-based vuln, not system-based vuln
@0bsessed_gf@LeButineur_Off@GrapheneOS Il est toujours moins privacy qu'un android vanilla bien utilisé
Et pareil, l'abus d'usage en vanilla, c'est aussi quand l'utilisateur donne les permissions
D'où le prix à payer d'attirer les regard presque autant que si tu utilises tor sans être stealthy, ça le vaut pas trop
@GrapheneOS@LeButineur_Off@0bsessed_gf If you were not a degooglisation product from the start, then indeed it is logic. Sorry, the one that presented me Graphene did as a way to part out of google, so you may imagine my face when in the end he said "you'll need a pixel"
@GrapheneOS@LeButineur_Off@0bsessed_gf The threat model for a mobile is : communication, sim swap, social engeenering, and more or less spoofing. On what you said, physical data extraction too. The rest is secondary. Even for crypto, they will target browser plugins, and avoid putting effort on mobile wallets
@GrapheneOS@LeButineur_Off@0bsessed_gf For the wifi, I wonder how I may deduce the 164th mobile that connects to the wifi of this 4-persons household is the same device as the 163rd... hummmmmm, difficult (and also deduce that if you do the reset here, youll do it on other places too, which is a big hint)
@GrapheneOS@LeButineur_Off@0bsessed_gf For toogles, we have it on vanilla android. Same, for vpn, allways on vpn is available, and almost all vpn has the dead man switch.