# Article: Leaked Documents Show What Phones Secretive Tech ‘Graykey’ Can Unlock

**URL:** https://discuss.privacyguides.net/t/article-leaked-documents-show-what-phones-secretive-tech-graykey-can-unlock/22563
**Category:** General
**Tags:** article
**Created:** 2024-11-19T15:29:48Z
**Posts:** 13

## Post 1 by @anon29374801 — 2024-11-19T15:29:48Z

> **[Leaked Documents Show What Phones Secretive Tech ‘Graykey’ Can Unlock](https://www.404media.co/leaked-documents-show-what-phones-secretive-tech-graykey-can-unlock-2/)**
>
> The documents provide never-been-seen insight into the current cat-and-mouse game between forensics companies and phone manufacturers Apple and Google.

 ![image](//forum-uploads.privacyguidesusercontent.com/original/2X/0/0c16d8b76b98d8b7c9e0bf22c0ea27fb8eea21a7.png)

---

## Post 2 by @jerm — 2024-11-19T15:44:52Z

No paywall: [https://archive.is/tkS2g](https://archive.is/tkS2g)

---

## Post 3 by @anon29374801 — 2024-11-19T15:48:32Z

Odd - I was able to read the full article before the paywall stuff showed up. Thanks for posting the archive link.

---

## Post 4 by @hbxc0re — 2024-11-19T15:49:37Z

It would be nice that Samsung put some effort in combating these forensic tools…their Autoblocker doesn’t seem to be enough.

---

## Post 5 by @ihateKYC — 2024-11-19T15:54:37Z

Full docs:

iPhone: [Graykey-iPhone.xlsx - Google Sheets](https://docs.google.com/spreadsheets/d/1qZESd9Zj5HkMZnIjLStSNWEyKvs8Drk5/edit)

Iphone (Backup): [https://files.catbox.moe/pal7dn.xlsx](https://files.catbox.moe/pal7dn.xlsx)

Android: [Graykey-Android.xlsx - Google Sheets](https://docs.google.com/spreadsheets/d/1gf1F8U7VFweBmOc9u10dfvkAWl3KKxZv/edit)

Android (Backup): [https://files.catbox.moe/fsinh5.xlsx](https://files.catbox.moe/fsinh5.xlsx)

---

## Post 6 by @anon80779245 — 2024-11-20T12:50:42Z

I guess this is without Graphene OS ?

---

## Post 7 by @phnx — 2024-11-20T12:57:21Z

The GrapheneOS team seems to have a pretty good idea of what vulnerabilities GrayKey was using and why their capabilities were significantly degraded in April 2024. They have a good thread on it [here](https://xcancel.com/GrapheneOS/status/1858911428062621856#m).

---

## Post 8 by @anon80779245 — 2024-11-20T17:40:34Z

Thank you. Interesting they are still planning more feature against physical attacks.

---

## Post 9 by @phnx — 2024-11-20T18:01:21Z

It’s important they keep moving the bar while they are ahead, especially given they are such a small team. Truly impressive work!

---

## Post 10 by @anonfox — 2024-11-20T20:32:02Z

[https://nitter.poast.org/GrapheneOS/status/1858906957647630424#m](https://nitter.poast.org/GrapheneOS/status/1858906957647630424#m)

It seems GrapheneOS is affected, unless I misunderstood the tweet

---

## Post 11 by @anon29374801 — 2024-11-20T21:31:32Z

Feels like a bit of a mixed bag…

> The change in April 2024 indicates our reset attack mitigation proposal didn’t only block XRY but also Graykey too

> GrapheneOS is much different from the stock Pixel OS due to the additional exploit protections such as the hardware-level USB-C port control and hardware memory tagging so it doesn’t really mean much without them having a specific section on GrapheneOS as Cellebrite docs do.

---

## Post 12 by @anon47447111 — 2024-11-20T21:46:02Z

Does using the “charging-only” option mitigate these threats on GOS?

---

## Post 13 by @phnx — 2024-11-20T22:35:40Z

> [@anonfox](#):
>
> It seems GrapheneOS is affected, unless I misunderstood the tweet

From [this thread](https://xcancel.com/GrapheneOS/status/1775305179581018286#m) at the time of the vulnerabilities’ discovery by the GrapheneOS team, they wrote:

> [@GrapheneOS](#):
>
> GrapheneOS already implemented defenses against this attack before we became aware of it. After becoming aware of this attack against Pixels running the stock OS, we improved our existing defenses and added new ones alongside reporting the firmware weaknesses to get those fixed.

So at least when these vulnerabilities were being exploited and GrayKey had ‘full’ extraction capabilities, GrapheneOS is implied to have been unaffected.

In the best-case scenario (for GrayKey), their capabilities on GrapheneOS are the same as on stock. It’s likely GrapheneOS fares better, but such a claim would be pure speculation on my part.

> [@anon47447111](#):
>
> Does using the “charging-only” option mitigate these threats on GOS?

I don’t think those protections really apply in this situation. As far as I understand, USB is always enabled when in fastboot mode. The solution to the original vulnerability here was to zero memory before enabling USB in fastboot mode. As for how they are currently achieving Partial AFU on stock Pixel devices, we really have no idea.

All that being said, it’s obviously well understood that GrapheneOS is far and away the best OS for mobile security and privacy, and they do extensive hardening and attack surface reduction, which is documented [here](https://grapheneos.org/features).
