|
|
|
|
|
by 177tcca
1937 days ago
|
|
There's no upstream firmware being patched by Google. The phone is effectively unpatched once the hardware manufacturer gives up on maintaining its security. This is a fundamental misunderstanding for, I'd guess, well over half of the custom ROM/custom phone OS community. ie: Lineage is customizable, and helps certain activity be more private - but it shatters security. |
|
Which is very much why it's exciting to see Pine64 working on getting Linux running on the PinePhone modem[1]. Because this shit is bogus, 100% bogus full of shit crap. The firmware is all for the most part software, rebadged as firmware because none of us get the privilege of working with it or seeing it.
I still would like some evidence that any firmware on the Pixel or Pixel 2 is actually problematic. That the computer itself is at risk. Perhaps there are some DMA engines onboard that can not be locked down, that peripherals unfortunately just had too much unmediated access. I'd like to see some shred of evidence that insecure peripherals are a real threat to the general main computer though, before I agree that we can just start throwing these devices out.
[1] https://twitter.com/thepine64/status/1346582145557524488