Addressing Criticisms of Qubes OS from a Penetration Tester's Perspective

Hi!

Recently, I recommended Qubes OS to a remote team I’m acquainted with for their online activities. I provided them with a basic introduction and encouraged them to explore further on their own.

However, they came back to me with this document:

Demystifying QubesOS Security

While I can counter many of the claims made in this document, there are a few that I find challenging to address, particularly the claims about tampering with qvm-copy.

I’d appreciate any insights or counterarguments from the community to address these claims.

Thanks in advance!

2 Likes

The paper is over three years old:

6 Likes

It was discussed here in the Forum and on qubes-devel

I never presume to speak for the Qubes team. When I comment in the Forum I speak for myself.
6 Likes

Thanks alot!

2 Likes