this post was submitted on 28 Jul 2026
381 points (100.0% liked)

Privacy

5921 readers
286 users here now

Welcome! This is a community for all those who are interested in protecting their privacy.

Rules

PS: Don't be a smartass and try to game the system, we'll know if you're breaking the rules when we see it!

  1. Be civil and no prejudice
  2. Don't promote big-tech software
  3. No apathy and defeatism for privacy (i.e. "They already have my data, why bother?")
  4. No reposting of news that was already posted
  5. No crypto, blockchain, NFTs
  6. No Xitter links (if absolutely necessary, use xcancel)

Related communities:

Some of these are only vaguely related, but great communities.

founded 2 years ago
MODERATORS
 

The foundation behind the ultra-secure Android-based OS is speaking out after an activist was indicted for using a 'duress password' to prevent federal agents from searching his phone.

you are viewing a single comment's thread
view the rest of the comments
[–] usrtrv@sh.itjust.works 16 points 1 day ago (2 children)

Android supports multiple user profiles. They could have a duress code login to a more sanitary profile while data get wiped in the background. This has been discussed on the forums I believe.

[–] LytiaNP@lemmy.today 4 points 1 day ago (1 children)

The wiping in the background is very fast, and would in turn take out the profile. The only thing a decoy profile would achieve in that case would be a slight splash of color before the phone shuts down.

[–] usrtrv@sh.itjust.works 1 points 15 hours ago (1 children)

Yes, how it currently works. But you could do a targeted wipe of the profile and leave the rest of the phone untouched with a secondary profile. Here's one such discussion from a year ago warning of basically exactly this happening: https://discuss.grapheneos.org/d/21122-setting-up-a-secondary-passcode-that-opens-a-dummy-profile

[–] LytiaNP@lemmy.today 0 points 13 hours ago (1 children)

That would reduce the security of the duress pin significantly, and would require rewritting how the feature works in the first place.

The duress pin shreds the decryption keys to the entire OS, which is much much faster than erasing the data itself, and arguably more secure. If you're worried about getting caught wiping the device, just don't wipe it. There is no known way to get into a phone running an up to date GrapheneOS install (or anything post Q3 2022) unless you have significantly reduced the security of the phone.

[–] usrtrv@sh.itjust.works 1 points 2 hours ago

Android supports per profile encryption. You can just erase the encryption keys for the other profile.

[–] LibertyLizard@slrpnk.net 2 points 1 day ago

Gotcha yeah sounds like it could be improved then.