GrapheneOS on Nostr: nprofile1q…rvu4t Most Linux distributions don't enable security features already ...
nprofile1qy2hwumn8ghj7un9d3shjtnddaehgu3wwp6kyqpq5tc9wx7xhz76hyeyfsv99pxnhnln9ya4cxksfrzhn77hkfjpm77qarvu4t (nprofile…vu4t) Most Linux distributions don't enable security features already present upstream such as type-based Control Flow Integrity. It doesn't really do much good for them to land a bunch of features upstream which they aren't going to use anyway, especially features which require integration into userspace. They also often do the bare minimum of deploying something without really getting much of the expected value out of it such as how they use SELinux. We can't solve their problems for them.