So this is super sucky and likely to spread. Alternate source. Key points, at roadside stops etc, people are required to give access to their phones using Cellebrite Israeli phone crackers, likely to download a complete image. No limits placed on data retention, no noted protection against Cellebrite having unfettered access.
Has it gotten to the point where we should be striving to keep only a minimum viable configuration on phones and have some sort of searchable backup on a home server, or even an out of country VPS? Anyone got any suggestions on how to achieve this?
Having GrapheneOS doesn’t help much when it’s a ten year felony to refuse access. AFAIK it’s still a warrant to get access to your home computer, for now.
This may get shot down in the courts, but that won’t help much if it happens to you in the meantime, this stuff is forever. The right to digital privacy has the price of eternal vigilence, but they just keep raising the bar on how onerous that vigilence is.



What if run android vm at home and stream to phone only, no data on there? Or every app launch through ssh with something like xpipe/waypipe/wprs? Basically put real phone at home and only carry thin client.
If no data to extract what they do?
Interesting, might be an option. Likely Cellebrite can pull your ssh key though, but OTP or something plus kill switch, maybe. Worth thinking about.
Two factor ssh (likely two hop, one key one password). And could take down server remotely before control and claim “my homeserver very unstable”.
Yeah, something like that. Damn shame we even have to consider it though.