Hi. I’m using unofficial rom of the newest LineageOS for my Xiaomi Redmi Note 12S. I know it’s not that secure to use unofficial rom as using official one because it might have malware but I think that I trust guy behind a rom and I even donated him for his hard work. Official firmware for Xiaomi is terrible and had a lot of spyware, I couldn’t sleep with awareness of this.

For right now I’m planning to make my phone more private and secure. I heard that SIM Card is really big privacy issue and it can take control over device. I’m planning to don’t using SIM Card on my main device and instead put in my old IPhone 7, then I will share internet from it or make calls if I will have to. I don’t trust Apple too much but I think that their system is much better hardened than android when it comes to stuff like that. I don’t planning to put any important stuff on IPhone, expect for proprietary software like banking apps etc. I think that ICloud account is huge privacy issue but I think that solution is better than what I have right now. So I’ll have FOSS software only on my main Xiaomi Phone.

Then maybe I should root my LineageOS to harden it? It will give more control over my device and I could control it network traffic by firewall, add additional encryption if it’s possible etc. What solutions can you recommend? Also I heard that opened bootloader is security issue but to be honest if I was able to do this by exploit avoiding doing this by manufacturer way I think that cops or hackers can do the same if they I will get my phone.

What can I do also for more privacy and security? I think that I should use work profile and private space which are great solutions. Also I can make some faraday cage which will also dull a sounds from environment, avoid holding sensitive data on my phone and have different accounts for messengers.

What do you think about this? How are you using your phone and what can you recommend for privacy?

monovergent
link
fedilink
420h

In my opinion, the reward for rooting LineageOS is pretty limited for having to risk one of the more important aspects of the Android security model, since the base system is already decently clean. If you want to go the extra mile, you could try installing the LeOS GSI, which strips out the remaining pings to Google servers (see LineageOS column of the table).

Definitely double check if the build you use has anything weird configured, but modern LineageOS (and Android in general) should already have good encryption by default. Not sure if LineageOS already has a way to toggle per-app network access, but if not, take a look at RethinkDNS, does a fine job without root.

Not much you can do about the unlocked bootloader, but as long as you aren’t being targeted by some agency, sticking to trusted sources like F-Droid for apps will go a long way. I have a similar approach with two phones and minimal personal data stored on each, so I’d personally approve of those elements.

Faraday cage might be of interest with regard to the iPhone since those can still function as their own AirTags even when powered off. But modern phones are surprisingly sensitive to signals so the slightest imperfection, especially in cheap Faraday bags, could give you away. While you’re at it, make a threat model to see if Faraday cages are necessary for your needs.

Create a post

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

  • Posting a link to a website containing tracking isn’t great, if contents of the website are behind a paywall maybe copy them into the post
  • Don’t promote proprietary software
  • Try to keep things on topic
  • If you have a question, please try searching for previous discussions, maybe it has already been answered
  • Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
  • Be nice :)

Related communities

much thanks to @gary_host_laptop for the logo design :)

  • 0 users online
  • 108 users / day
  • 435 users / week
  • 1.32K users / month
  • 4.54K users / 6 months
  • 1 subscriber
  • 4.56K Posts
  • 115K Comments
  • Modlog