| ▲ | Valodim 9 hours ago |
| Not an expert, but I recently heard that apparently not everything is perfect in fairphone land: https://discuss.grapheneos.org/d/24134-devices-lacking-stand... |
|
| ▲ | teekert 7 minutes ago | parent | next [-] |
| The GOS people really spend a lot of time of energy showing the worst sides of FairPhone to the world. I think it is because the conscientious technology user is really interested in the combination of ethically sourced, repairable hardware and a security and privacy (from big tech) focussed OS. Tbh I also like that sliders to switch to a simple mode. A well, we can’t have it all. I do prefer de-googled + freedom to do what I want over security (to a degree). So… I’m on the fence. As many vocal people are. A second hand pixel 10 is also a “green” choice. I do have the feeling that many non-nerds can express the difference between all mentioned attributes, many just like FairPhone as an ethical phone. It’s not that simple, I agree. |
|
| ▲ | ValdikSS 8 hours ago | parent | prev | next [-] |
| GrapheneOS is like a veteran and war zone expert: for them, not only the external environment is considered extremely hostile that you should leave your house only wearing an armor and with bodyguards, but also the internal environment is hostile: your bodyguards could be bribed and work against you, that's why you need to somehow be protected against that as well. Just as physical security, digital security most of the time not as radical, and tradeoffs are usually accepted, especially when they are "invisible": hardware and software security features are usually not mentioned in the specs and the regular and even power user just don't know most of them and what do they do. When GrapheneOS says "private" and "secure", they mean top-of-the-line security features, updates as soon as possible, all available mitigations against zero-days and insecure code which will limit the impact before the patch, etc. Security as in a killdozer. When other say "private" and "secure", most of the time it means: "we've followed all the recommendations applicable to our development budget, device price point, and support life time". Graphene does not like that definition of these words. For smartphone, chip manufacturer goal is not to protect the user at all costs, but to provide reasonable security features for the price. BUT the goal of chip manufacturer to protect the device at all costs is for… game consoles! That's why Xbox, PlayStation, Switch all run on a custom silicon and not an ordinary chips! |
| |
| ▲ | SahAssar 7 hours ago | parent | next [-] | | > That's why Xbox, PlayStation, Switch all run on a custom silicon and not an ordinary chips! Not really. Xbox and PlayStation both run on pretty standard AMD Zen 2 chips. Somewhat customized, but standard enough that people by binned playstation 5 motherboards to use as computers with normal OS'es (lookup BC-250). The last gen with more customized chips was the PS3/Xbox360 era, when both went with a variant of PowerPC, same as Gamecube/Wii/WiiU. Switch runs on basically the same Nvidia Tegra CPU/GPU as multiple android tablets. | | |
| ▲ | ValdikSS 7 hours ago | parent | next [-] | | >but standard enough that people by binned playstation 5 motherboards to use as computers That doesn't mean that all the features are enabled right from the factory, or that the compatibility with already existing features is lost. Modern chip's security features are pretty complicated and include hardware patches, hardware debug authentication, multiple provisioning states (and multi-key hierarchy for that), RMA states to clear all the private information, etc. >Switch runs on basically the same Nvidia Tegra CPU/GPU as multiple android tablets. Yes, and the one which got cracked with a bootrom vulnerability ;) That's a pretty working motivation for a chip company to improve their chip security when the company as beefy as Nintendo tells them that their chip is vulnerable they're losing money because the customers can play for free ;). I'm pretty sure patchable bootroms started to be common only after Switch hack. | |
| ▲ | izacus 6 hours ago | parent | prev [-] | | I think you should listen to bringup of Linux on Playstation talk from CCC to understand that those platforms are much more than just "somewhat customized". There are whole sections of peripheral chips missing and they behave quite a bit differently with how they bootstrap and where things are mapped in memory. | | |
| ▲ | SahAssar 4 hours ago | parent [-] | | Peripheral chips, non-standard bootloaders, custom hypervisors and similar is not what people mean when they say "run on a custom silicon". | | |
| ▲ | ValdikSS 3 hours ago | parent | next [-] | | ? Even Steam Deck has a custom APU made specifically for it. Call it "customized" if you don't like "custom". | |
| ▲ | izacus an hour ago | parent | prev [-] | | No, they mean customized SoCs which what those chips are as well |
|
|
| |
| ▲ | Cider9986 7 hours ago | parent | prev [-] | | >GrapheneOS is like a veteran and war zone expert: for them, not only the external environment is considered extremely hostile that you should leave your house only wearing an armor and with bodyguards, but also the internal environment is hostile: your bodyguards could be bribed and work against you, that's why you need to somehow be protected against that as well. Yeah, iPhoens are made that way as well. It's just caring about the privacy of your users. > When GrapheneOS says "private" and "secure", they mean top-of-the-line security features, updates as soon as possible, all available mitigations against zero-days and insecure code which will limit the impact before the patch, etc. Security as in a killdozer. I think it's deceptive because people think they will get better privacy/security with a /e/ fairphone when it's actually much worse than an iPhone. | | |
| ▲ | ValdikSS 7 hours ago | parent | next [-] | | iPhone is top-of-the-line as well, because they control the whole software and the whole hardware (starting from basically all the chips). That's very rare in the industry. There are just a bunch of companies which afford to do the same. Maybe Xiaomi will be the next one. | |
| ▲ | fsflover 7 hours ago | parent | prev | next [-] | | > people think they will get better privacy/security with a /e/ fairphone when it's actually much worse than an iPhone Does /e/OS illegally collect users' data for ads and sends a lot of telemetry to their servers like Apple? https://news.ycombinator.com/item?id=34299433, https://news.ycombinator.com/item?id=26639261 | | | |
| ▲ | izacus 6 hours ago | parent | prev [-] | | > I think it's deceptive because people think they will get better privacy/security with a /e/ fairphone when it's actually much worse than an iPhone. That's just blatantly not true though - even iPhones collect way more telemetry and Ad data than /e/ OSes. |
|
|
|
| ▲ | mhitza 8 hours ago | parent | prev | next [-] |
| Fairphone makes their fair share of blunders. Software updates are a big issue, especially around the times that critical vulnerabilities need to be patched. With the hardware I'm not impressed, and on their own forum I've seen plenty of people reporting issues with overheating on the Gen 6. Hopefully kinks have been ironed out on their 6+. The current CEO also has a persona that would stir up any community (read a few of his AI-gened posts on their blog, if interested of context). Still holding on to my FP4, but they are not of consideration on my future phone purchase, unless there is some kind of reality check over there and improvements materialize beyond words. |
| |
| ▲ | Grombobulous 8 hours ago | parent | next [-] | | Ultimately, a lot of the “fairness”
of the Fairphone is offered by “just buy a really popular manufacturer.” Everyone and their dog can repair an iPhone because it’s the most popular phone on the planet. Are those repairs accessible to the consumer at home with amateur skills? No, not really. However, newer iPhone models are significantly easier to repair and come along with lower repair costs direct from the manufacturer compared to previous models. You want years of software updates? Yeah, an iPhone has you covered there, too. And of course, fairphone’s hardware and OS are nothing to write home about. For the freedom and security nerds they’re better off with GrapheneOS on Pixel or whatever upcoming Motorola phones will support it. Who is the Fairphone for exactly? Who is buying it and why? I think the fairbuds are their best product, but I also imagine AirPods Pro 3 are on a whole different level of sound quality, noise cancelation, voice quality/voice isolation, and firmware/software polish. And let’s be honest about repairability with tiny earbuds: being able to replace the battery is has such a tiny impact on their footprint. If I have to throw out my
AirPods Pro 3 every 5 years due to battery degradation, that’s such an insignificant quantity of material being wasted, so it’s probably worth it to get a better product. I could offset my environmental impact by eating a little less beef or riding my bike instead of driving a few times. You drive 30 miles and that’s an entire gallon of refined petroleum product, how much material and energy is used to make one pair of AirPods? I can’t imagine it’s a lot. I don’t say any of this to be a big corporate or Apple shill. I am rooting for the little guys. But the little guys need to be realistic. You look at products like the Framework 13 Pro and you can actually say, okay, here’s a product with really legitimate benefits over its incumbent competition. There is a reason to buy this product for a certain buyer. I just don’t see that with Fairphone. I can’t think of a customer profile where that person is getting a better ownership experience with Fairphone products. | | |
| ▲ | neobrain 8 hours ago | parent | next [-] | | I'm not big on this general line on argument, but one point in particular: > And of course, fairphone’s hardware and OS are nothing to write home about. For the freedom and security nerds they’re better off with GrapheneOS on Pixel or whatever upcoming Motorola phones will support it. For the "freedom nerds", FP is one of the only (if not the only?) vendor to have official support for microG-based operating systems, seamless OTA updates and everything included. The Murena e/OS offering in particular is simple enough that the non-nerds that (perhaps less outspokenly) care about freedom can just pick it up with little change in habits. | | |
| ▲ | Grombobulous 7 hours ago | parent [-] | | I guess that’s true, although we could possibly split that camp into two sides: the folks who believe that Play Store sandboxing is going to be more functional, and the folks who prefer microG are willing to accept the issues that come along with it. To be fair on either side of that debate, getting a phone that comes with /e/OS installed from the factory is going to be easier than flashing GrapheneOS on a Pixel or LineageOS with microG on another device. |
| |
| ▲ | yjftsjthsd-h 6 hours ago | parent | prev | next [-] | | > For the freedom and security nerds they’re better off with GrapheneOS on Pixel or whatever upcoming Motorola phones will support it. Not quite. The people who care about security first are better off with GOS, yes. However, GOS's threat model very specifically treats the user as a thing to defend against; the freedom-first crowd should avoid them. | |
| ▲ | luqtas 7 hours ago | parent | prev | next [-] | | isn't the main point of Fairphone to not use conflict minerals? by using FOSS only myself and hating monopolies like Apple etc., i still pretty much convinced that being "green" or "ethical" is more about participating/volunteering/doing-something towards a better world than off-loading your duty to other companies... one could easily make a point that Apple products despite locked down, are still green (Apple has a bunch of zero-emission and whatever policies) and much more if one uses their devices for a long while. i had a 2° hand iPhone SE 1° gen. till 2021? if stuff breaks despite your not being able to fix it's not like you can't hop into a specialized shop to change batteries or even pay the expensive service Apple offers... sure that allows exploitation and it's always nice to get rid of it, that's why somehow these emerging companies are important and/or policies like the right of repair will make them obsolete | |
| ▲ | awelxtr 7 hours ago | parent | prev [-] | | The new Sennheiser earbuds have replaceable batteries too so the fairbuds are no longer unique in that regard. I haven't read comparisons on sound quality though | | |
| ▲ | lentil_soup 6 hours ago | parent | next [-] | | According to FixIt Fairbuds are the best ones for repairability, not just battery: https://www.ifixit.com/Device/Fairphone_Fairbuds Do you know how the Sennheiser's compare? I'm looking for some for using at the gym, but wanted something I can easily fix if needed. The Fairbuds are also quite a bit cheaper | |
| ▲ | Grombobulous 7 hours ago | parent | prev [-] | | And of course, wired headphones still exist as an alternative for those who really don’t like the battery aspect, and it’s not even terribly inconvenient for phones without a headphone jack. I suspect that the venn diagram of the kind of person who takes issue with Bluetooth audio batteries and the kind of person willing to use wired headphones or prefers them outright has a lot of overlap. |
|
| |
| ▲ | Foobar8568 7 hours ago | parent | prev [-] | | I have an FP4, and when it'll die, I will just buy an iphone.
Security updates are slow, and after the bullshit of the android upgrade, yeah but no. |
|
|
| ▲ | jampekka 8 hours ago | parent | prev | next [-] |
| Seems you have to compromise on HW openness and ethics vs paranoia. |
| |
| ▲ | Cider9986 8 hours ago | parent [-] | | It's paranoia to want ≥ security than an iPhone or stock Pixel? | | |
| ▲ | eloisant 7 hours ago | parent | next [-] | | It depends who you are. If you're Edward Snowden, or even a high ranking politician, it's a sane precaution. If you're just a rando like me yes, it's paranoia. | | |
| ▲ | MostlyStable 6 hours ago | parent | next [-] | | I think this has historically been true and is still approximately true now. But I think in the relatively near future (less than 5 years) there's a really good chance it won't be true anymore. Once open models catch up to the current frontier in vulnerability exploitation, the cost to target people will go way down. In the past, the cost to hack a random individual person was generally high enough that if there wasn't some special reason to hack you in particular, it wasn't worth it. That may no longer be the case in the near future. The floor of what is acceptable security for the General Public probably needs to rise quite a bit over the next few years. | | |
| ▲ | DaSHacka 6 hours ago | parent [-] | | Why would you assume Google, Apple, and defense-oriented agencies like CISA wouldn't also have access to those same models, but using them to fix issues? Its just raising the bar across the board, I don't see how only attackers would benefit. | | |
| ▲ | upboundspiral 5 hours ago | parent [-] | | Attackers only need to win once, defenders need to win every time. The game is skewed in favor of the attackers, and AI only exarcebates this. |
|
| |
| ▲ | OneDeuxTriSeiGo 6 hours ago | parent | prev [-] | | I think it heavily depends. If you are concerned cops or CBP are going to try to take your phone and search it then wanting a phone like GOS is a very reasonable precaution. Even if you haven't done anything "wrong", you may have engaged in speech or activities that the current US admin has deemed problematic and will try to punish you for if they can find any evidence. |
| |
| ▲ | tcfhgj 6 hours ago | parent | prev [-] | | those who give up freedom for security will end up losing both |
|
|
|
| ▲ | realusername 8 hours ago | parent | prev | next [-] |
| They generally don't like other projects, they also compare the security to the "Android Open Source Project" as if it's a real thing, AOSP doesn't run on a single phone on earth and as such isn't an option for anybody. And for the updates I could comment that > Fairphone 6 with stock OS has very lacking security due to delayed patches (1-2 months for partial backports, much longer for full Android patches) Is certainly much better than my Samsung flagship |
|
| ▲ | 7 hours ago | parent | prev | next [-] |
| [deleted] |
|
| ▲ | moffkalast 8 hours ago | parent | prev [-] |
| Another day, another instance of GrapheneOS bitching about Fairphone. It's not like any other device meets their ridiculous standards either, and now that Google is closing up Android and delaying patches, neither will their own Motorola whenever they get around to actually making it. |
| |
| ▲ | armadyl 8 hours ago | parent | next [-] | | > neither will their own Motorola whenever they get around to actually making it Source: You made it up A quick search would basically disprove everything after your first sentence. | | |
| ▲ | moffkalast 7 hours ago | parent | next [-] | | It's a reasonable extrapolation of the current state. They want up to date patches, Google is already winding down open support for that, and it'll release in what, a year or two? Basically guaranteed to have outdated security patches on launch or they'll have to start maintaining their own. Might happen, but it seems unlikely they can hack it, as it were. | |
| ▲ | fsflover 8 hours ago | parent | prev [-] | | > A quick search would basically disprove everything after your first sentence. If this is so simple, you surely can demonstrate it and present the links. Meanwhile there are still no phones acceptable for GrapheneOS except from Google, and it's a known fact that Google is restricting Android step by step: https://news.ycombinator.com/item?id=49364745 https://news.ycombinator.com/item?id=47091419 |
| |
| ▲ | subscribed 7 hours ago | parent | prev [-] | | There are devices meeting these basic standards right now, and the entire family of them, no less. GOS are vocal about safety and security of all the devices, not just seriously insecure Fairphones, and this article is about something different altogether, that's misinformation they've been hit with several times. Fair criticism is fair, but yours is fabrications. | | |
| ▲ | moffkalast 7 hours ago | parent [-] | | Criticizing others while only using Google Pixels is such intense hypocrisy that I cannot possibly take them seriously or fairly. Like if someone rolled up in a Ford Raptor rolling coal while selling solar panels or something. | | |
| ▲ | subscribed 7 minutes ago | parent [-] | | At the moment there is no other hardware manufacturer making similarly secure android phones. *NONE* There is no android hardware coming close. If there is, please name it. As far as I know it's only some unspecified, upcoming Motorola flagships. If you call the unwilling, pragmatic choice an "intense hypocrisy", it's pretty clear to me you're simply driven by emotions and tribalism, that the facts don't matter. Are you saying that using Google hardware equals using stock Google os? You must be a little more.... Coherent with your metaphors :) |
|
|
|