94
submitted 5 months ago by aa1@lemm.ee to c/privacy@lemmy.world

GrapheneOS provides users with the ability to set a duress PIN/Password that will irreversibly wipe the device (along with any installed eSIMs) once entered anywhere where the device credentials are requested (on the lockscreen, along with any such prompt in the OS).

The wipe does not require a reboot and cannot be interrupted. It can be set up at Settings > Security > Duress Password in the owner profile. Both a duress PIN and password will need to be set to account for different profiles that may have different unlock methods.

Note that if the duress PIN/Password is the same as the actual unlock method, the actual unlock method always takes precedence, and therefore no wipe will occur.

Source: https://grapheneos.org/features#duress

top 15 comments
sorted by: hot top controversial new old
[-] jet@hackertalks.com 23 points 5 months ago* (last edited 5 months ago)

0118 999 881 999 119 725… 3.

This is great, I would like to also see a duress fingerprint option.

[-] CheapFrottage@lemmynsfw.com 10 points 5 months ago

The print of the middle finger, one might suggest

[-] jet@hackertalks.com 7 points 5 months ago* (last edited 5 months ago)

That's funny. But I was thinking the opposite. Use your middle finger to unlock your phone, but your index finger is your duress finger. Because most people use their index finger/thumb. So it wouldn't raise suspicion

[-] efstajas@lemmy.world 8 points 5 months ago

I would definitely accidentally wipe my phone haha

[-] CheapFrottage@lemmynsfw.com 2 points 5 months ago

I was kinda being facetious, more of an F U finger than a serious suggestion.

In all honesty, I can’t see how this would be useful - either you’d have to use a finger that wouldn’t look natural, and give the game away, or use a thumb or index finger and constantly have to re-load your phone due to accidentally wiping it!

[-] jet@hackertalks.com 2 points 5 months ago

If we get blessed with fingerprint readers on the back of the phone again, you could easily use inconspicuously any finger on your hand you want.

Perhaps for a fingerprint duress mode it simply shuts the phone completely off requiring the password. That would be reasonable middle ground. It'd be annoying when you get it wrong, but after a couple minutes you could get your phone back

[-] Bahnd@lemmy.world 6 points 5 months ago

Good reference, I would set it to something shorter like 12345 (same thing an idiot keeps on their luggage). Keep your pin yours, but if you set the duress code to a default PW like that (and dont have kids that would just try the it at random) if the phone gets taken there is a non-zero chance that they just guess it and nuke the device.

[-] vikingtons@lemmy.world 6 points 5 months ago* (last edited 5 months ago)

Unexpected IT crowd reference.

I think the android dialler has/had an Easter egg when you type this number in

E: the AOSP one still has it :)

[-] meliante@lemmy.world 5 points 5 months ago

Well, that's easy to remember!

[-] Hubi@lemmy.world 5 points 5 months ago

That's awesome, I've been missing this feature.

[-] SirSamuel@lemmy.world 3 points 5 months ago

Since you're all here and Graphene doesn't work on my ancient 3a, do you have any alternatives you'd recommend?

[-] jet@hackertalks.com 5 points 5 months ago

lineageos https://wiki.lineageos.org/devices/sargo/

calyxos https://calyxos.org/install/devices/sargo/windows/ [until August 2024, so not worth it]

divestos https://divestos.org/pages/devices

lineage will give you the most feature complete environment

DivestOS is fun to play with, but even coming from GOS its going to have a big learning curve.

There is always the option of just using the 3A with the stock OS, unsupported, especially if you want to regift the phone to a young relative.

[-] SirSamuel@lemmy.world 3 points 5 months ago

<3 tx

It's my old phone, i use it for gps now, but i want to learn how to do the things

Appreciate it

[-] aa1@lemm.ee 5 points 5 months ago

If i was you, i would buy a Google Pixel 8 (8a is cheaper than 8 and 8 pro). They all provide support for GrapheneOS, have 7 years of updates, MTE, and so on

For context: https://grapheneos.org/faq#device-support

[-] SirSamuel@lemmy.world 3 points 5 months ago

My daily driver is a 7a, my older 3a is the experiment and learn phone

this post was submitted on 03 Jun 2024
94 points (99.0% liked)

Privacy

4027 readers
30 users here now

A community for Lemmy users interested in privacy

Rules:

  1. Be civil
  2. No spam posting
  3. Keep posts on-topic
  4. No trolling

founded 1 year ago
MODERATORS