← Back to context

Comment by hulitu

1 month ago

> This could enable Debian Linux in a VM,

This is like making sex in public. It is doable, but dangerous.

News for hackers: Google Pixel Developer Terminal VM on Android and GrapheneOS provides 50K+ open-source software packages signed by the Debian package maintainers who are trusted as the upstream "root distro" for Ubuntu, Devuan and other Linux distributions. Use of individual Debian Linux software packages on Android phones does not depend on App Store identity registration, financial payment or Google Play Services telemetry.

Thanks to SoC CPU/memory virtualization at the VM boundary, there is stronger isolation between Debian software packages and the rest of the device, than between any two Android software packages distributed by App Store, which are executing within a single VM context. This protects the device from side effects of Debian Linux software in the Developer Terminal VM.

This is more safe and more secure than status quo.

> doable, but dangerous

Incorrect. It is more isolated, less dangerous, more secure, more flexible for developers and increases functionality to users.