this post was submitted on 24 Feb 2026
48 points (80.8% liked)
Free and Open Source Software
21994 readers
25 users here now
If it's free and open source and it's also software, it can be discussed here. Subcommunity of Technology.
This community's icon was made by Aaron Schneider, under the CC-BY-NC-SA 4.0 license.
founded 3 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments

/e/OS is terrible for security. They are often 1-2+ monthly behind on monthly Android security patches, leaving their users vulnerable to dozens (i am not exaggerating, often more) of critical and high severity vulnerabilities which are widely exploited. Stay away from that shit.
Well, pretty much all OEMs are months behind security patches as well. Google actually withholds the patches/exploit source code for months because of it. Graphene OS has a separate channel for builds with these patches that don't have source code released.
The embargo on security patches isnt what i am talking about. Once security patches are released, /e/OS takes 1-2 months to patch these vulnerabilities. This isnt because of the embargo but in addition to it! They are by far the worst about this out of any of the alt Android ROMs (2nd worst is iode, at around ~1 month). /e/OS has been terrible about security for years even before all this "Google security patch" nonsense.
Since Google now has moved to quarterly updates for older devices, this seems to obliterate that good ol' scare tactic used by some
Was good marketing though... for those who got caught up in it
Being 2 months late to a quarterly patch is still very bad. /e/OS should be avoided.