Hacker News new | ask | show | jobs
by the-anarchist 1313 days ago
Glancing over to https://news.ycombinator.com/item?id=33550824 I'm wondering... does this GrapheneOS have plausible deniability?
1 comments

It doesn't. I requested a feature to software-wipe the phone after X incorrect password attempts, but was rejected on the basis that this would be security theatre if implemented in software not hardware. I would like to implement a set of features to this end, but have not found the time. I would like:

- wipe after X incorrect attempts

- configure a "kill" passcode instantly wipes phone

- configure arbitrary passcodes that are mapped to actions when entered

- there's a feature to make phone reboot every X hours, if not unlocked, add a parallel feature to wipe phone if not unlocked in X hours.

- something where the passcodes are use once, and using an already used passcode wipes the phone. So you can bait LE and say "last time I unlocked it with X" and if they're stupid enough to not question you further, and just try X, it'll wipe, and it'll be their fault

- something to set a chance of wipe on the correct passcode, so you can say "any passcode might wipe the device"

I'm interested in hearing more ideas here.