Elektrine lite

← Feed

@girlpocalypse@infosec.exchange

Post #2535536

2025-10-05 05:21 UTC

If you're a GrapheneOS user make sure you go into the system updater and enable security prereleases if you don't want to be a month+ behind on updates. This installs security updates for which source cannot yet be released due to Google embargo.

Replies (3)

  • They're not pre-releases in the testing sense, they're just not FLOSS until the 1 month source embargo ends.

    Open ##2842841

  • @girlpocalypse@infosec.exchange oh that sucks, but noted and tysm

    Open ##2842843

  • @LukefromDC@kolektiva.social 2025-10-05 18:50

    @girlpocalypse@infosec.exchange What are the odds of any security update for which source code is under embargo turning out to be malicious? Google may come under a lot of pressure to release code capable of backdooring Graphene but this won't work when the source has to be available. Conversely what are the odds of one of the security patches closing a hole that still works in Graphene (not all of them do due to kernel hardening etc) and that exploit being in use by enemies such as the Pegasus devs? I speak as one whose security model is that state level attackers are the main threat

    Open ##2842845