Avatar
GrapheneOS
5468bceeb74ce35cb4173dcc9974bddac9e894a74bf3d44f9ca8b7554605c9ed
Open source privacy and security focused mobile OS with Android app compatibility.

Vanadium version 125.0.6422.72.1 released:

https://github.com/GrapheneOS/Vanadium/releases/tag/125.0.6422.72.1

See the linked release notes for a summary of the improvements over the previous release and a link to the full changelog.

Forum discussion thread:

https://discuss.grapheneos.org/d/12961-vanadium-version-12506422721-released

#GrapheneOS #privacy #security #browser

Vanadium version 125.0.6422.72.0 released:

https://github.com/GrapheneOS/Vanadium/releases/tag/125.0.6422.72.0

See the linked release notes for a summary of the improvements over the previous release and a link to the full changelog.

Forum discussion thread:

https://discuss.grapheneos.org/d/12933-vanadium-version-12506422720-released

#GrapheneOS #privacy #security #browser

https://grapheneos.social/@GrapheneOS/112481434513090992

The latest release of GrapheneOS adds the first piece of our ongoing work on duress/panic features. It makes standard factory resets including by device admin APIs wipe the device near instantly before it reboots to recovery to wipe and format it.

Our latest OS release that's currently in the Beta channel implements a new feature for blocking DNS leaks by third party VPN service app implementations which were discovered by our community:

https://github.com/GrapheneOS/os-issue-tracker/issues/3442

The good news is this does successfully block these leaks.

We'll be blacklisting mailbox.org and websites using it for email hosting for registration on discuss.grapheneos.org and as an alert email for attestation.app. They're blocking emails from our mail server for a convoluted, nonsensical reason and won't stop.

nostr:npub1j44nuq6trwq6qjplta56jpc7066urap5y3sz3ff2e5yqjjpwp5xscjxp9h If you aren't using Alpha, it's not really relevant to you. It's why we have the Alpha channel. It also doesn't impact the vast majority of users in Alpha, only 3 reports so far.

We found another regression introduced by a recent f2fs change in the Linux 5.15 LTS branch so we'll have to make another release for Pixel 8 and Pixel 8 Pro before it can reach Beta. Only 2 users doing Alpha channel testing ran into this and one has confirmed reverting it works.

Reset attack mitigation for firmware-based boot modes such as fastboot mode has been added as one of our requirements for GrapheneOS support:

https://grapheneos.org/faq#future-devices

It shipped as part of this month's firmware updates for Pixels based on our proposal. Other OEMs should add it.

April release of the Pixel boot chain firmware includes fixes for 2 vulnerabilities reported by GrapheneOS which are being actively exploited in the wild by forensic companies:

https://source.android.com/docs/security/bulletin/pixel/2024-04-01

https://source.android.com/docs/security/overview/acknowledgements

These are assigned CVE-2024-29745 and CVE-2024-29748.

Vanadium version 123.0.6312.99.0 released:

https://github.com/GrapheneOS/Vanadium/releases/tag/123.0.6312.99.0

See the linked release notes for a summary of the improvements over the previous release and a link to the full changelog.

Forum discussion thread:

https://discuss.grapheneos.org/d/11856-vanadium-version-12306312990-released

#GrapheneOS #privacy #security #browser

Google is publicly working on a fix for the factory reset vulnerability we reported:

https://android-review.googlesource.com/c/platform/frameworks/base/+/3008138

Currently, apps using device admin API to wipe do not provide any security against a local attacker since you can interrupt them. Forensic companies are aware of this.

nostr:npub18sxgm6fg7ejgvz9pmvqn5eqhhcrcssl6pu6d6zzgl9460gutn3wqy4svu2 We still have extended support for the Pixel 5 and will for a while longer but that does not mean you should use it. Get a used Pixel 7a or 6a. Even a Pixel 6a still has more support remaining than the Pixel 5 did on the day it was launched since the Pixel 6 moved to 5 years of support from launch instead of only 3 years. Pixel 8 has moved to 7 years of support from launch. 7 years of support essentially solved this problem.

GrapheneOS is much different from CalyxOS and /e/OS. GrapheneOS is a hardened OS with substantial privacy/security improvements:

https://grapheneos.org/features

CalyxOS and /e/OS are not hardened operating systems. They greatly reduce security vs. AOSP via added attack surface, rolled back security and slow patches. We don't have much in common with them.

Vanadium version 122.0.6261.119.0 released:

https://github.com/GrapheneOS/Vanadium/releases/tag/122.0.6261.119.0

See the linked release notes for a summary of the improvements over the previous release and a link to the full changelog.

Forum discussion thread:

https://discuss.grapheneos.org/d/11457-vanadium-version-122062611190-released

#GrapheneOS #privacy #security #browser

nostr:npub16eeglmup84a3j73dqpx783wdsgw0uvtjrjdpeqcgfzuj9d64mz2qen2qax Google Maps works fine alongside sandboxed Google Play. They're regular sandboxed apps unable to do more than other regular user installed apps. Our compatibility layer makes this work.

GrapheneOS version 2024031100 released:

https://grapheneos.org/releases#2024031100

See the linked release notes for a summary of the improvements over the previous release.

Forum discussion thread:

https://discuss.grapheneos.org/d/11435-grapheneos-version-2024031100-released

#GrapheneOS #privacy #security

GrapheneOS version 2024030900 released:

https://grapheneos.org/releases#2024030900

See the linked release notes for a summary of the improvements over the previous release.

Forum discussion thread:

https://discuss.grapheneos.org/d/11397-grapheneos-version-2024030900-released

#GrapheneOS #privacy #security

GrapheneOS version 2024030800 released:

https://grapheneos.org/releases#2024030800

See the linked release notes for a summary of the improvements over the previous release.

Forum discussion thread:

https://discuss.grapheneos.org/d/11372-grapheneos-version-2024030800-released

#GrapheneOS #privacy #security

GrapheneOS version 2024030300 released:

https://grapheneos.org/releases#2024030300

See the linked release notes for a summary of the improvements over the previous release.

Forum discussion thread:

https://discuss.grapheneos.org/d/11274-grapheneos-version-2024030300-released

#GrapheneOS #privacy #security