My setup on GrapheneOS with all the exploit protections on except some off for apps with compatibility issues. Thoughts?

    • ZinQ@lemmy.mlOP
      link
      fedilink
      arrow-up
      4
      ·
      23 days ago

      Firefox is not secure on mobile, Vanadium is a great browser made by the GrapheneOS devs

        • ZinQ@lemmy.mlOP
          link
          fedilink
          arrow-up
          1
          ·
          22 days ago

          People in the comments already have “Avoid Gecko-based browsers like Firefox as they’re currently much more vulnerable to exploitation and inherently add a huge amount of attack surface. Gecko doesn’t have a WebView implementation (GeckoView is not a WebView implementation), so it has to be used alongside the Chromium-based WebView rather than instead of Chromium, which means having the remote attack surface of two separate browser engines instead of only one. Firefox / Gecko also bypass or cripple a fair bit of the upstream and GrapheneOS hardening work for apps. Worst of all, Firefox does not have internal sandboxing on Android.”

        • ZinQ@lemmy.mlOP
          link
          fedilink
          arrow-up
          1
          ·
          edit-2
          22 days ago

          I mean Gecko based browsers are actively recommended against on mobile. Chromium based browsers are recommended. Also I use mullvadVPN DNS based ad blocking, and I also have Brave that has built in ad blocking. Do yourself a favor and ditch adblock in favor of Ublock origin

  • ZinQ@lemmy.mlOP
    link
    fedilink
    arrow-up
    2
    arrow-down
    1
    ·
    edit-2
    23 days ago

    If anyone Is wondering, this setup was based mainly on PrivacyGuides

    • ZinQ@lemmy.mlOP
      link
      fedilink
      arrow-up
      2
      ·
      23 days ago

      Cromite, but I have switched to brave since, it has better fingerprinting protection, more updates, better security and better sandboxing and isolation. At least that’s what Deepseek R1 with websearch has to say

    • ZinQ@lemmy.mlOP
      link
      fedilink
      arrow-up
      1
      ·
      23 days ago

      I’m thinking if I need to use WhatsApp again I’ll try to download it, connect to WhatsApp web on my laptop and then delete it from my phone. Idk if it’ll work but it’s worth a shot

        • ZinQ@lemmy.mlOP
          link
          fedilink
          arrow-up
          1
          ·
          edit-2
          23 days ago

          I am, it’s just that for some of my PWAs, they are unusable/buggy/slow on Vanadium. And lol I’m going around in circles. Do I reinstall Cromite now haha?

    • Kiuyn@lemmy.ml
      link
      fedilink
      arrow-up
      1
      ·
      23 days ago

      If you don’t mind hardening firefox on android. You can try Firefox with uBlock. It give some small advantage compared to Brave like more filters list from uBlock, the element picker thing, and no brave, etc. The performance can be questionable though.

        • Kiuyn@lemmy.ml
          link
          fedilink
          arrow-up
          1
          ·
          edit-2
          23 days ago

          Yes it is true. It have insecure sandbox but in your case it seem like you still use vanadium, if you only use Firefox for known website for the webapp. The insecure sandbox is not that big of a deal anymore. Still from a pure security point, Firefox is not great.

          • ZinQ@lemmy.mlOP
            link
            fedilink
            arrow-up
            2
            ·
            23 days ago

            I think overall I have an edge with Brave, since I use it for NanoGPT webapp which I need to be fast or I’ll kys because it was already slow AF on Vanadium so I assume on FF it will be a lot worse

    • monovergent@lemmy.ml
      link
      fedilink
      arrow-up
      6
      arrow-down
      1
      ·
      24 days ago

      It would have been helpful to explain why, whether that’s privacy, ethical, or political concerns.

      But maybe the use of “🤣” says it all

            • Kami@lemmy.dbzer0.com
              link
              fedilink
              English
              arrow-up
              1
              arrow-down
              2
              ·
              23 days ago

              “Childish behavior” is calling out a “privacy” company that does questionable stuff.

              Noted.

                • ZinQ@lemmy.mlOP
                  link
                  fedilink
                  arrow-up
                  1
                  arrow-down
                  1
                  ·
                  23 days ago

                  Like I already said this isn’t about any company but rather encouraging griefing

                • Kami@lemmy.dbzer0.com
                  link
                  fedilink
                  English
                  arrow-up
                  1
                  arrow-down
                  1
                  ·
                  23 days ago

                  AHAHAHAHAHAH

                  Don’t cry bro, I only told you to ditch an untrustable company which at first supported Trump and then was called out for silencing journalists.

                  I am 100% going to make it unpleasant for all who still use it, especially if they seem to care about privacy.

    • ZinQ@lemmy.mlOP
      link
      fedilink
      arrow-up
      1
      arrow-down
      1
      ·
      edit-2
      23 days ago

      I mean isn’t proton recommended on privacyguides? Do you think they need to update it?

        • ZinQ@lemmy.mlOP
          link
          fedilink
          arrow-up
          1
          ·
          edit-2
          23 days ago

          What’s wrong with brave? I didn’t like the crypto feature but I got the impression that it’s a good privacy browser for people that need syncing

          • Kami@lemmy.dbzer0.com
            link
            fedilink
            English
            arrow-up
            1
            ·
            23 days ago

            Do your own research, this is the most useful thing I can tell you and it applies to anything.

            • ZinQ@lemmy.mlOP
              link
              fedilink
              arrow-up
              1
              ·
              23 days ago

              Yes that is correct, I just wanted to hear what people on Lemmy have to say

              • Kami@lemmy.dbzer0.com
                link
                fedilink
                English
                arrow-up
                2
                ·
                edit-2
                23 days ago

                Brave, like Proton, has a lot of fanboys (assuming they aren’t bots) that blatantly ignore key informations about the companies of said products.

                In this kind of scenario resorting to your own independent search is the only thing you can do.