Conversation

In the past, when GrapheneOS was in a better state, the latest kernel.org LTS branches were promptly merged along with additional fixes not included in the upstream branches. The fix for the bug now assigned CVE-2019-2215 was already applied for the Pixel 1 and 2.
5
13
Replying to
All data on persistent storage is encrypted. Data in user profiles is encrypted with a key derived from the unlock method for that profile. There's also hardware support for encryption reinforcing this. Of course, when you unlock and make data accessible, keys are in-memory.
1
2