Subgraph (operating system) explained

Subgraph OS
Logo Size:186px
Family:Linux (Unix-like)
Discontinued:yes
Userland:GNU
Influenced By:Tails, Qubes OS
Ui:GNOME 3
License:GPLv3+
Source Model:Open source
Working State:Discontinued[1]
Latest Preview Version:2017.09.22[2]
Kernel Type:Monolithic (Linux)

Subgraph OS was a Debian-based project designed to be resistant to surveillance and interference by sophisticated adversaries over the Internet.[3] [4] [5] [6] [7] [8] It has been mentioned by Edward Snowden as showing future potential.[9]

Subgraph OS was designed to be locked down, with a reduced attack surface, to increase the difficulty to carry out certain classes of attack against it. This was accomplished through system hardening and a proactive, ongoing focus on security and attack resistance. Subgraph OS also placed emphasis on ensuring the integrity of installed software packages through deterministic compilation.

The last update of the project's blog was in September 2017,[10] and all of its GitHub repositories haven't seen activity as of 2021.[11]

Features

Some of Subgraph OS's notable features included:

Security

The security of Subgraph OS (which uses sandbox containers) has been questioned in comparison to Qubes (which uses virtualization), another security focused operating system. An attacker can trick a Subgraph user to run a malicious unsandboxed script via the OS's default Nautilus file manager or in the terminal. It is also possible to run malicious code containing .desktop files (which are used to launch applications). Malware can also bypass Subgraph OS's application firewall. Also, by design, Subgraph does not isolate the network stack like Qubes OS.[15]

See also

Notes and References

  1. Web site: DistroWatch.com: Subgraph OS . DistroWatch.com . 2023-01-30 . 2023-10-13.
  2. Web site: Subgraph OS September 2017 ISO Availability. subgraph.com. 22 September 2017. en.
  3. Web site: Subgraph: This Security-Focused Distro Is Malware’s Worst Nightmare . Linux.com . 2018-01-26 . 2023-10-13.
  4. Web site: DistroWatch.com: Put the fun back into computing. Use Linux, BSD. . DistroWatch.com . 2017-01-30 . 2023-10-13.
  5. Web site: Best Linux distro for privacy and security of 2023. Mayank SharmaContributions from Brian Turner last. updated. May 9, 2022. TechRadar.
  6. Web site: Subgraph announces security conscious OS. www.wired.co.uk.
  7. Web site: Secure Your Online Privacy With These Linux Distributions. February 22, 2017. It's FOSS.
  8. Web site: Subgraph OS, a new security-centric desktop distribution [LWN.net]]. lwn.net.
  9. Web site: Styles. Kirsty. Subgraph will be Snowden's OS of choice – but it's not quite ready for humans yet. 16 March 2016. The Next Web. 7 July 2016.
  10. Web site: Subgraph - Blog . 2023-08-03 . subgraph.com.
  11. Web site: Subgraph . 2023-08-03 . GitHub . en.
  12. Web site: Hardening . 2023-08-03 . subgraph.com.
  13. Web site: subgraph/oz: OZ: a sandboxing system targeting everyday workstation applications . GitHub . 2023-10-13.
  14. Web site: GitHub - OZ: a sandboxing system targeting everyday workstation applications. Subgraph. 6 October 2016.
  15. Web site: Breaking the Security Model of Subgraph OS Micah Lee's Blog. micahflee.com. en-US. 2017-04-25.