Final

Final

Operations staff @ GrapheneOS Foundation. Posts my own and not endorsed by my employer. AI slop and Nostr DMs ignored. Email: [email protected] Matrix: f1nal:grapheneos.org

npub

npub1hxx76n82ags8jrduk0p3gqrfyqyaxnrlnynu9p5rt2vmwjq6ts3q4sg75y

pubkey (hex)

b98ded4ceaea20790dbcb3c31400692009d34c7f9927c286835a99b7481a5c22

nprofile

nprofile1qqstnr0dfn4w5grepk7t8sc5qp5jqzwnf3lejf7zs6p44xdhfqd9cgsprf58garswvaz7tmjv4kxz7fwva6kcat8w4k82tnddajseflfpf

Activity (17)

We've been testing performance of MTE on the Pixel 11 using the Android 17 QPR2 Beta 4 release adding back firmware support for it. MTE in asymmetric ...

We've been testing performance of MTE on the Pixel 11 using the Android 17 QPR2 Beta 4 release adding back firmware support for it. MTE in asymmetric mode only has around 5% overhead in the standard benchmarks and other tests we've done. That's more than good enough but we've done limited tests. Android 17 QPR2 Beta 4 on the Pixel 11 force disables MTE for the OS from the firmware. Using it requires ignoring the arm64.nomte parameter being passed to the kernel. It still isn't clear why they're making the feature unavailable. SVE was also force disabled in Android 17 but not in QPR2 Beta 4. Our initial testing indicates performance isn't substantially worse. The overhead may be higher but there was an incremental CPU performance with the Pixel 11 which should more than make up for it. However, MTE is unavailable with stable firmware and we're bypassing firmware disabling it for QPR2. Multiple Google engineers we've contacted have said they aren't able to give us any information about this so we're left doing reverse engineering and relying on leaks. The leaks do not seem reliable and do not match what we see. Our concern is that MTE may actually be broken due to CPU errata. nostr:nevent1qqsqqqqtcwkmalemepulxhurep8ptunmsvyzwyurggpy39prghwwhzcpzamhxue69uhhyetvv9ujuurjd9kkzmpwdejhgtczyzucmm2vat4zq7gdhjeux9qqdysqn56v07vj0s5xsddfnd6grfwzyqcyqqqqqqgdgz630

Kind-1 (TextNote)

2026-09-02T04:41:12Z

Searching 'MTE' on Twitter to see countless established security researchers shocked at the Pixel 11. Clear example on how to alienate a community.

Kind-1 (TextNote)

2026-08-30T21:57:47Z

↳ Reply Event not found

f1875dd7a44e70242bfb87113a66c0c06484282411838d34d4715aa1e39ffcf6

2027. We will make announcements on our progress with Motorola when appropriate.

Kind-1 (TextNote)

2026-08-30T20:41:22Z

↳ Reply Event not found

97356451857cff955c89421c42f3fc938e70d71f0220118a44a7385aedad28ad

They can connect to GrapheneOS services again without one, providing they don't choose to block GrapheneOS directly.

Kind-1 (TextNote)

2026-08-30T20:39:50Z

↳ Reply Event not found

be02c439d467ee041e82020a516c80a9ee67f7be408ad1dfc69e4969b18cda36

There will be support for Motorola devices in the future as per our partnership announcement. With MTE coming into Snapdragon processors more they cou...

There will be support for Motorola devices in the future as per our partnership announcement. With MTE coming into Snapdragon processors more they could open up the walls for other devices even without our initial involvement.

Kind-1 (TextNote)

2026-08-30T20:27:22Z

↳ Reply Event not found

8deed4cfa78429025850ea62b2d91da9c7ad8c70a633ebe85b47454972b4cd66

I use Bitrefill and get no crashes, although I see I enabled JIT in the past. Would need to use it more. Will see if others can reproduce.

Kind-1 (TextNote)

2026-08-30T20:23:06Z

We are advising people to NOT buy the 11th Generation Pixels due to removal of hardware memory tagging (MTE), a crucial security feature used in Graph...

We are advising people to NOT buy the 11th Generation Pixels due to removal of hardware memory tagging (MTE), a crucial security feature used in GrapheneOS since their introduction on the Pixel 8. Either use a previous generation or wait for the first Motorola devices with GrapheneOS. We have not determined what to do about this. nostr:nevent1qqsyn3f8pfatuu76q5rg4vnzsrnmn83yrg02y3tvvy3jp3dalvdm8nspr9mhxue69uhhyetvv9ujumt0d4hhxarj9ecxjmnt9upzpva683gyt7a0nxlfedx648ca0whwm2aql3dezkt9z830k7nsm4leqvzqqqqqqy8uc5hy

Kind-1 (TextNote)

2026-08-29T18:56:31Z

↳ Reply Event not found

d01dd8a3a74f32a8da982063ec028fef43bdb11227c4f018e6eb7b28eb2e54f3

The Secure in this instance means a place that is difficult to get out of or escape from, rather than the digital security itself. The purpose is to s...

The Secure in this instance means a place that is difficult to get out of or escape from, rather than the digital security itself. The purpose is to store sensitive data away from the OS so it is not compromised if the OS is. There are many secure elements that have poor security, like your standard dedicated desktop 'TPM'.

Kind-1 (TextNote)

2026-08-22T16:34:38Z

↳ Reply AilliA (npub1ajlljavyzaj44k96zg7euzxkp4m8q3w6yfrjah5xel4gax3v697qc5d9u3)

Looks like Monero could soon have its own version of stacker.news but powered by Monero (and @DontTr...

Would check out. Appears to be invite-only.

Kind-1 (TextNote)

2026-08-20T22:47:03Z

↳ Reply Event not found

8ba5e6c6bc5e3f68f6a407218618245da9710c0c6108ec13f09ec32207ecf1cc

When building something I also do give it the same one quick check. If you build a threat model (architecture diagram and a list of threats and counte...

When building something I also do give it the same one quick check. If you build a threat model (architecture diagram and a list of threats and countermeasures you implemented against them) it can provide some excellent detail. Even if someone isn't security conscious, the more it knows about your software the better.

Kind-1 (TextNote)

2026-08-09T20:04:44Z

I think Bitcoin Design doesn't get enough attention, so I want to give it some, as I am using it for reference myself. https://bitcoin.design/

Kind-1 (TextNote)

2026-08-09T20:00:25Z

For those curious and for added context, we were able to get multiple accounts granted cyber verified access from Anthropic. In the future, it would b...

For those curious and for added context, we were able to get multiple accounts granted cyber verified access from Anthropic. In the future, it would be good to obtain sponsorships from companies to provide current or future security researchers with more tokens. nostr:nevent1qqs0ct89sgy4ygtqupttmu72jf3cwztqg39a40szwtyvk9pg7jymcrgpzamhxue69uhkummnw3ezuwpcd4cxstnvd9nx2tczyzucmm2vat4zq7gdhjeux9qqdysqn56v07vj0s5xsddfnd6grfwzyqcyqqqqqqgnwpn7e

Kind-1 (TextNote)

2026-08-06T20:19:32Z

↳ Reply Final (npub1hxx76n82ags8jrduk0p3gqrfyqyaxnrlnynu9p5rt2vmwjq6ts3q4sg75y)

This won't entirely replace human reviews yet. The high point of an AI agent's capabilities is only ...

With COLDCARD there's a ton of hype around how someone found the major vuln by scanning the codebase with an AI agent after the incident, but AI agent...

With COLDCARD there's a ton of hype around how someone found the major vuln by scanning the codebase with an AI agent after the incident, but AI agents have been publicly available for years and people did post they saw it before, just no one exploited it. Maybe they did not know how to. Also according to their statements Coinkite used frontier models and supposedly could not find it... all about the user.

Kind-1 (TextNote)

2026-08-06T20:05:17Z

↳ Reply Max (npub1klkk3vrzme455yh9rl2jshq7rc8dpegj3ndf82c3ks2sk40dxt7qulx3vt)

Anyone who relies on free software can now audit it: aim an agent at the repository that guards your...

This won't entirely replace human reviews yet. The high point of an AI agent's capabilities is only slightly over the capability of it's user. Actual ...

This won't entirely replace human reviews yet. The high point of an AI agent's capabilities is only slightly over the capability of it's user. Actual research orgs have vulnerability disclosures exponentially increase with AI while an average dev will mostly just close out simple security deficiencies. Creating a PoC for exploiting a vuln is also resourceful. Serious vulnerabilities held under embargo on Android have increased massively. You can see our changelog on the security preview patches per release and see how the list gets bigger even when some vulnerabilities get removed from the list as they become part of AOSP.

Kind-1 (TextNote)

2026-08-06T20:01:57Z

We are hiring Android app software engineers to develop and take ownership of maintaining new #GrapheneOS default applications. This is a fully remote...

We are hiring Android app software engineers to develop and take ownership of maintaining new #GrapheneOS default applications. This is a fully remote, worldwide position. If you have experience in Kotlin, Jetpack Compose and shipping production Android applications with commitment to security and privacy principles, come help fruit the next chapters of GrapheneOS. Apply: https://grapheneos.org/hiring#android-apps-software-engineer

Kind-1 (TextNote)

2026-03-25T19:38:40Z

↳ Reply Event not found

72a5f25b721753c3954c29af18c752de3b0f4a8c49e3cee88dd650e5044eae19

Because they are talking about pagers, I am assuming this is about Motorola Solutions (the US telecoms and security company) which is an entirely sepa...

Because they are talking about pagers, I am assuming this is about Motorola Solutions (the US telecoms and security company) which is an entirely separate company with different owners. We're working with the subsidiary of Lenovo called Motorola Mobility. Motorola Solutions has no involvement or connection to us or our partnership. They have a shared heritage and name since both were created out of the original Motorola company which were split apart over a decade ago. Think of it like an HMD/Nokia situation where another company is using a famous historic phone brand. We have not contacted anyone at Motorola Solutions. They don't produce smart phones so I don't think there would be much to discuss anyways.

Kind-1 (TextNote)

2026-03-02T15:09:25Z

This March we hope to officially announce our OEM partner whose future devices shall work to support GrapheneOS.

Kind-1 (TextNote)

2026-02-21T11:11:01Z