• prettybunnys@piefed.social
    link
    fedilink
    English
    arrow-up
    13
    arrow-down
    19
    ·
    edit-2
    1 day ago

    I spent quite some time in mobile security and I won’t use an Android device knowing what I know.

    I’d like to caveat that this is not an endorsement of Apple security but rather a “OH MY GOD NO” about Android “security”

    These downvotes brought to you by tech tribalism, read the thread

    People hate that iPhones have locked boot loaders and you can’t boot a custom rom. Defensive security experts love that at least for now a critical threat vector is nearly non-existent.

    • Eheran@lemmy.world
      link
      fedilink
      English
      arrow-up
      4
      arrow-down
      1
      ·
      19 hours ago

      I don’t downvote you because I like one side or the other, I do it because of what you write: Hefty claims with zero substance behind.

    • givesomefucks@lemmy.world
      link
      fedilink
      English
      arrow-up
      15
      arrow-down
      3
      ·
      1 day ago

      Literally the opposite…

      https://www.timesofisrael.com/israeli-tech-company-says-it-can-break-into-all-iphones-ever-made-some-androids/

      Israel doesn’t want the IDF able to hide/leak anything about the ongoing genocide, so they’re making everyone use the phone that they can spy on.

      Like, Israel says it’s for safety but they’ve been committing an open genocide for two years now, why they fuck is anyone taking their word?

      • favoredponcho@lemmy.zip
        link
        fedilink
        English
        arrow-up
        4
        arrow-down
        3
        ·
        edit-2
        23 hours ago

        Do you have any credentials at all here or are you just gonna keep reposting a six year old article about Cellebrite and a long since patched vulnerability. If you knew anything about this space, you’d at least try to post the latest info on which phones Cellebrite can hack. As for iOS, here is what I can find…they cannot hack phones running the latest version: iPhone Cellebrite Hack.

        For Android phones, Pixels can be easily hacked, unless you’re running GrapheneOS: Pixel Vulnerabilities to Cellebrite Hacks. Non-Pixel Android phones are likely even more vulnerable given that few manufacturers even try as hard as Google to secure their phones and do as much to keep their phones on the latest Android version.

        As someone with a career in tech, I concur with the original commenter. On the whole, Android is not a secure OS unless you run Graphene OS. If you care about security, I would choose Graphene OS, iOS, and then everything else.

    • TrickDacy@lemmy.world
      link
      fedilink
      English
      arrow-up
      15
      arrow-down
      6
      ·
      edit-2
      1 day ago

      I spent some time knowing about business practices and user-hostile design and I’ll never use an apple device. And I’ll definitely never give apple another penny, fucking fake assholes.

      I’d like to caveat that this is not a denial that google is horrible, their os is just the only reliable alternative to a Linux phone atm

      Edit: this dude seems really invested in apple. He went back through the thread and edited in weird stuff in several of his comments. I think their appeal to authority fallacy is pretty glaringly on display. Fair to bring up that you know what you’re saying and why, but beating someone over the head with it just makes you sound wrong and like you’re giving a flimsy excuse as to why you don’t have to prove anything.

      • prettybunnys@piefed.social
        link
        fedilink
        English
        arrow-up
        9
        arrow-down
        18
        ·
        edit-2
        1 day ago

        I think you’re doing the tech tribalism thing here whereas I’m talking about actual device security.

        I get it’s popular to hate Apple. Cool. You’re cool for hating Apple.

        Anyone who is genuinely interested in mobile security ought to read some of the white papers or device analysis’ which are available to the public. Security conferences are your best avenue for finding information available to the public.

        Anyways, cool, hate Apple but for some reason give Google a pass.

        • TrickDacy@lemmy.world
          link
          fedilink
          English
          arrow-up
          10
          arrow-down
          4
          ·
          edit-2
          1 day ago

          On the contrary. Someone posted evidence showing apple bullshit is not secure and yet here you are saying it’s a fact and that any denial of that would undoubtedly be rooted in some baseless fanboy shit. K.

          Ps I used to like apple until I realized that everything they claim to be is a lie. That and their entire business model is to prevent you from using your device any way besides ways that make them more money.

          • prettybunnys@piefed.social
            link
            fedilink
            English
            arrow-up
            5
            arrow-down
            8
            ·
            edit-2
            1 day ago

            What evidence are you referring to?

            As far as I can tell my anecdote about my professional experience is the only context here besides the post.

            Your ps is irrelevant, I’m a security researcher and spent the last decade in this field, specifically mobile security. I’ll take my professional experience over the it’s cool to be a tech tribalist opinion.

            Disagree if you’d like, the device you use doesn’t matter to me at all.

            Edit popped the thread in a browser and saw the other comment. They were refuted there too. Fucking hell dude why are you beating this drum?

            • TrickDacy@lemmy.world
              link
              fedilink
              English
              arrow-up
              8
              arrow-down
              3
              ·
              edit-2
              1 day ago

              You can pretend they didn’t post a link showing that an Israeli software company can unlock any iPhone. Pretend is all you can do though. Kind of telling that I explicitly said fuck Google but you still insist I’m tRiBaLiSt.

              And you claiming to be an expert couldn’t possibly mean less. I have no way of confirming that and honestly even if I did it wouldn’t mean you know everything.

              Enjoy your unsecure, unusable phone in a literal fascist ecosystem.

              • favoredponcho@lemmy.zip
                link
                fedilink
                English
                arrow-up
                1
                arrow-down
                4
                ·
                23 hours ago

                The link is 6 years old and includes dated information about Cellebrite. You should at the very least post updated information about the latest mobile OS versions vulnerable to Cellebrite. Spoiler: Android is very vulnerable and I haven’t seen information that the latest iOS is.

              • prettybunnys@piefed.social
                link
                fedilink
                English
                arrow-up
                5
                arrow-down
                7
                ·
                edit-2
                1 day ago

                I legitimately don’t see the link you’re referring to, I’m not pretending about anything.

                Maybe it’s not federating on my end, could you link it?

                Cellebrite struggles with iPhones, and some newer Android devices. Is it another company?

                You’re getting awfully vitriolic about this discussion, I’m not sure if you’re unfamiliar with the concept of tech tribalism but this is it basically to a T.

                Again, use whatever device you want. My experience informs my anecdote which has you so upset.

        • favoredponcho@lemmy.zip
          link
          fedilink
          English
          arrow-up
          4
          arrow-down
          4
          ·
          edit-2
          22 hours ago

          Thanks for at least speaking the truth to these drones. I think there is a certain type of tech fanboy that doesn’t actually have any technical knowledge, but likes to spout off. They think because they are fans they know something about technology, but don’t know about the real details of security and how exploits work.

          They have difficulty accepting that actually iOS is more secure than almost every Android phone aside from GrapheneOS.

            • favoredponcho@lemmy.zip
              link
              fedilink
              English
              arrow-up
              2
              arrow-down
              3
              ·
              21 hours ago

              Talk about something of substance or don’t talk. If you aren’t citing security research or up to date details from Cellebrite’s technical documentation, then you’re not contributing anything. And, citing 6 year old articles as if it means something shows me I am more knowledgeable than you. I do have a degree in computer science and have studied security exploits. What about you? You’re an Android fan boy?

      • prettybunnys@piefed.social
        link
        fedilink
        English
        arrow-up
        5
        arrow-down
        7
        ·
        edit-2
        1 day ago

        Rather than speak from my expertise which will be refuted (the thread you’re commenting on has already gone this route), go look at what mobile research says.

        Graphene OS which is held up as the champion makes the same claims I do.

        Watch conference demos, look at cellebrited claims from 2026.

        I’m parroting what is known in the wider security community, it just doesn’t conform with what enthusiasts think.

        The reality of the situation is when it comes to a nation state level actor no device is safe. That’s baked into just about all the infrastructure your device uses.