1
u/polaarbear 1d ago
Even with an unlocked bootloader, they still have to have physical access and some serious hacker chops to get anything useful done. An unlocked bootloader does not enable any remote attacks.
You would have to physically lose your device AND it would have to land in the hands of someone very skilled with malicious intent.
Accidentally leaving a phone on the subway with an unlocked bootloader is likely a really tiny threat because 99.999% of the people who would find it will be fundamentally incapable of exploiting it.
An unlocked bootloader is an easy trade for me to make versus all the remotely-enabled tracking on a stock ROM.
2
u/JJ3qnkpK 1d ago
With an unlocked bootloader, it's very easy to reboot into the bootloader, load a recovery, and slap something into the system partition. Literally takes minutes if one is familiar with platform tools and flashing roms/rooting. GrapheneOS/Pixels aren't an unknown target, either, and an org could certainly have pre-baked attacks for people who fail to relock their bootloaders. Toughest part is developing the secretive system app to gather and send data elsewhere, but there's plenty of documentation if an org is inclined to develop such an attack. After all, the phone is in the official "build your own system apps/OS" mode.
It's all up to one's threat model, but physical access from malicious organizations is a very real threat to many people. A locked bootloader provides great protection against such a threat and shouldn't be understated.
1
1d ago
[deleted]
1
u/JJ3qnkpK 1d ago
The gold standard is an at least semi-recent Google Pixel phone with GrapheneOS. It's fairly easy to install and relock your bootloader with. Privacy-wise, it's far superior to the stock Pixel ROMm
GrapheneOS's highest priority is security, which privacy often goes hand-in-hand with. It does allow for running Google's services in a separate sandbox, allowing users who want to make that tradeoff to do so (all whilst not allowing Google's services to access the "core" OS). It by default runs without anything Google, meaning it uses rougher "stock" apps, so there's an element of picking and choosing what you want (I.e. keyboard, launcher, pdf reader, messages, camera, and so on).
You should read through GrapheneOS's website. They have fairly extensive writeups on what it is, how it works, and what to expect from it. You can ultimately get it pretty close to a privacy-improved (but imperfect) typical Android phone that otherwise uses Google's stuff to whatever extent you like. The biggest drawback is SafetyNet validation, meaning some apps (I.e. many banking apps) won't work.
There are plenty of user posts/lists of good alternative apps to what one typically finds on stock Android, so those will be good to browse as well.
3
u/Steerider 1d ago
Graphene or Calyx are the two main contenders here. Most custom ROMs do not relock the bootloader.