Yet another excuse to keep checking our phones.

  • IllNess@infosec.pub
    link
    fedilink
    English
    arrow-up
    42
    ·
    2 days ago

    These changes are a good thing.

    Requiring a pin means no one can use your fingerprint or your face to unlock your device.

    An NSA agent recommended restarting your phone every week. This can potentially clear out malware that doesn’t have permissions to start after a reboot.

    • Ulrich@feddit.org
      link
      fedilink
      English
      arrow-up
      15
      ·
      edit-2
      2 days ago

      It’s more than that. After restart your phone goes into a more-secure Before First Unlock (BFU) state so it’s much harder to penetrate.

      Apple started doing this a few months ago and I guess Google is just catching up.

  • Album@lemmy.ca
    link
    fedilink
    English
    arrow-up
    23
    ·
    2 days ago

    Yet another excuse to keep checking our phones.

    What? You think Google cares to wait 3 days to make you check your phone? No if that was their objective you’d be checking earlier.

    The point here is to keep encryption keys out of memory on a device you haven’t used so that someone with physical access to your phone can’t pull the keys.

  • clonedhuman@lemmy.world
    link
    fedilink
    English
    arrow-up
    4
    arrow-down
    31
    ·
    2 days ago

    Fuck Android.

    I hope a consistent, user-friendly alternative that works on all Android phones arrives soon. I’ve tried so many with an old phone and they’re always a pain to install and then don’t work quite right. I also don’t want to spend $500USD for a phone designed specifically to sidestep Android.

    It would help if Android/Google didn’t consistently try to block every single thing that would allow you to get rid of Android, but they’re never going to allow that.

    I hope that something user-friendly and consistent arrives soon. I will ditch Android in a second when that happens.

    • unalivejoy@lemm.ee
      link
      fedilink
      English
      arrow-up
      29
      ·
      edit-2
      2 days ago

      While I agree with most of the things you said, automatic reboots is a good security feature. And it isn’t android that’s the problem. It’s Google Play Services.

    • solrize@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      1 day ago

      I don’t think that Pixels (made by Google) are designed to sidestep Android ;). Unfortunately, what you’re asking can’t really be done because of the vast hardware incompatibilities between brands of Android phones and between generations of them.

      The best privacy option ironically seems to be GrapheneOS, which runs on Pixels, as alluded to above. You can get older Pixels pretty cheap. They aren’t my favorite phones but I sometimes consider doing that.

    • Ulrich@feddit.org
      link
      fedilink
      English
      arrow-up
      4
      ·
      2 days ago

      It would help if Android/Google didn’t consistently try to block every single thing that would allow you to get rid of Android

      If you’re referring to bootloader unlock, that’s not really anything to do with Android, that’s to do with carriers and manufacturers. The first-party devices don’t have that.