I use an iPhone because it’s the most secure hardware and software combination you can get and you are guaranteed to receive support for 5> years.
I don’t want to have to compile my own kernels, set up my own chain of trust or deploy my own patches. It’s too cumbersome which would lead to procrastination that is if you don’t screw up something in the process to being with.
Also as far as the hardware goes I have currently more faith in Apple being able to get and secure its supply chain than a small company which completely relies on Chinese OEMs for its design.
The baseband will not be open source, it will have to use blobs as such other than running a more vanilla flavor of Linux I don’t see it being any different than any phone that can run AOSP.
They will be good guys until they decide they will not be good guys for arbitrary reasons or if they are forced to comply with a Government decree.
I'd much rather put my trust in a good-enough hardware platform that I _know_ I can control when required.
I believe that it is at least an equally secure phone stack vs most Android (granted, with the root of trust in the user rather than manufacturer, which I think is a good thing), and only might lose against Apple and Google flagships thanks to hardware features.
This isn't to say that it's impossible to build a device that is more secure than an iPhone! It isn't. Librem simply isn't doing it; they have other priorities, including feature parity with modern smartphones. They're not willing to make the serious tradeoffs needed to get security given their circumstances.
You also have successful key recovery/bypass attacks against most non-hardware backed crypto Android devices as well.
Like Thomas said it's not impossible to build a secure device, it's not even impossible to build a secure open mobile device but it doesn't seem that they are doing it.
Their focus is on having feature parity, using commodity hardware and just having an FSF approved stack. Having an FSF approved stack doesn't make you more secure by default.
And usability has a great impact on security, I remember the early android days where getting a file off the device was PITA so myself and many others were running an FTP server on the phone, and since most of our phones were rooted im pretty sure it was running as root.
The other side is things like permissions while mobile operating systems aren't that great still they've began taking application permissions really seriously going through the Librem documentation I don't see anything that is even remotely close to the level of granularity that Android and iOS offer today.
Sure they might add that in the future but the point being is still that there is little chance that the first phone they launch would be more secure than an android phone yet alone a modern iPhone in fact I would bet at least one paycheck that they would be considerably less secure at least initially, and then it's the question of how they would be able to maintain and support their platform given their size to begin with.
I don't doubt the intentions of the developers I just highly doubt that anything they set is even remotely achievable.
I think that's a given except for the zero interaction. Even my android phone alerts me of updates. Anyways, you make it sound like it's nearly an impossible task, but nearly every day my ubuntu laptop alerts me of updates and then updates in the background far more seamlessly than my windows workstation. Plus the distro has over 4 years of support. This is something linux distros figured out years ago.
There are many good reasons not to trust Apple or any proprietor. You claim an iPhone is "the most secure hardware and software combination you can get" but you offer no evidence to let us understand how you arrive at that conclusion. Proprietary software (such as iPhone's default OS, iOS) is untrustworthy by default because nobody but the proprietor has permission to inspect the software's source code, alter the software to fix problems or improve the software, or help the community by distributing improved software. You don't have the freedoms of free software (running, modifying, sharing published computer software including commercially). So in order to estimate Apple's trustworthiness we can't examine the thing itself in the most reasonable and thorough way. We have to fall back on something else such as Apple's reputation and consider how they treat their users. Apple left years-old remotely-exploitable security bugs in programs thus leaving users vulnerable (see http://www.telegraph.co.uk/technology/apple/8912714/Apple-iT... or https://truesecdev.wordpress.com/2015/04/09/hidden-backdoor-... for details). When it comes to iOS issues things are no better: iOS is the prototype of a software jail (hence the term "jailbreaking" to liberate one's device, and thus the user, from such control). Apple can and regularly does extract data from iPhones to give to the state (per http://arstechnica.com/apple/2014/05/new-guidelines-outline-...) and Apple's claimed security improvements rely on software users can't vet, improve, or share. https://www.gnu.org/proprietary/malware-apple.html has lots of examples of various kinds of Apple proprietary malware many examples include software iPhone users run. Apple also works against letting users get fixes without going through Apple, slows down iPhones users won't "upgrade", and disallows using older versions of iOS or non-iOS operating systems (because why let users control their computers).
This is all par for the course with proprietors; proprietary software (nonfree software, software that doesn't respect a user's freedom and community) is often malware (software designed to mistreat its users). The worst part is that because these programs are proprietary, motivated and knowledgeable users are not permitted to vet, improve, or distribute software that could benefit themselves and the entire community.
Regardless, the "interesting" work on the Librem 5 sits with none of these levels, but further down the stack, with mainlining the kernel work needed for the device. After that, the userland work provided by Gnome/Plasma Mobile/Ubuntu Touch/Mer all become interchangeable.
I feel like if it were going all out at all times for no reason it would still last a few hours.
Also pretty sure this thing runs gtk apps NOT gnome which renders your analysis flawed.
Re: the first two points, I really don't think so. I have a Nexus 5x that would kill the battery in around an hour if video chatting (to your point, it did get very very hot). There is also a recently revealed 'bug' in the NXP SoC being used by Librem themselves, who claimed it was killing the battery in an hour. I figure anything under 2 hours is fair game to be 'measured in minutes.'
I'm willing to put up 100CAD that it won't ship this year.
There's plenty of linux desktops out there. There is certainly a ways to go, I'm not trying to deny that, I'm just wondering what constitutes a successful linux desktop. User-friendliness? Where are the goalposts exactly?
To bend Obama's words a bit: If you’ve got a computer business, you didn’t build that. Somebody else made that happen.