de0u thank you
GrapheneOS GrapheneOS provides all of the firmware images as part of flashing the OS and provides the updates to them. Not doing that would be completely broken and insecure.
so if i dont missunderstand, that means that it atleast should not be possible to get weird firmware in a supply chain attack?
and furthermore, considering the firmware would have to be the correct one, this should also make it harder to modify the hardware, wouldnt it