← Back to context

Comment by drdaeman

2 years ago

The problem is that "less secure" is not exactly meaningful without a lot of clarifications.

I'm no security expert, but I know that security is certainly not a linear, at the very least it's some multi-dimensional thing that's exceptionally hard to generalize.

One system can be more or less secure than another for some party or parties, for some particular threat models if you can or cannot install certain apps, etc etc. Skipping all those bits makes the statement vague, increasing the risk of misunderstanding of the implied conditions.

Just a quick example. Installing an app could paradoxically make the device simultaneously more and less secure for the owner. Let's say it's an advanced firewall app. On the one hand it improves the network hygiene, improving the device security against its network peers. On the other hand, it may help in compromising the device, if someone gains access to its control interface and exploits it for nefarious purposes.