Tails in proxmox in tails running on pure ramdrive system with no longterm storage, cpu, bios, mac serials overwritten with FFFFFFF, TPM chip desoldered or lasered off CPU, connected to TOR viato mullvad paid with crypto, through VPN running left behind sanitized device hidden in a library, through second sanitized vpn device connected to private insecure wifi in poor residential area with no cameras, after abolishing the state
Read my instructions to the end, always abolish the state before you start. This makes social security numbers powerless, look, 663 342 934. Nothing happened.
Pretty much any distro that isn't Ubuntu. Are you asking for privacy or security? Those are very different.
For security, I'd stick to more complete distros like Fedora instead of more diy distros like NixOS or Arch. They're great to learn and tinker with, but distros like Fedora have security experts adding mitigations and security stuff in the distro by default, whereas most users of Arch or something would have to manually look up those things and keep up to date on the latest security. So basically, none of them lol.
Using more hardcore security distros like QubesOS is not very realistic as a daily driver. You'll see Linux nerds name drop it and claim they know what they're talking about, but none of them will actually dailt drive it because it's a very painful experience. Just stick with flatpaks as much as you can for pretty solid security.
Ubuntu is bad privacy-wise because it has opt-out telemetry. The telemetry is not very invasive though and I wouldn't really call it a privacy risk.
There are other reasons to prefer other distros over Ubuntu though
Depends on what you mean for security/privacy. You can use Tails or whatever and have everything encrypted and then just be logging into your Facebook account on Chrome without an ad blocker.
Most Linux distros are secure enough for the average person who isn’t being targeted by some crazy state level actor. If you’re particularly concerned stick with a distro that has a security team like Debian. As for privacy that has more to do with the sites you browse and have accounts with but obviously avoid Google (I just use Firefox instead of Chrome) use an adblocker like ublock origin, along with maybe something like decentraleyes.
Chrome phones home a lot. It's not a good idea to use it if you care about privacy. Firefox even has metrics enabled by default, although you can turn them off.
If you look through this thread, you may notice that almost everything is biased towards personal preference(s). I recommend you research for those aspects of security AND privacy that interest you and select the tools, distros that you prefer. The beauty of Linux lies in its variety. Use what pleases you and serves your needs.
Nix OS, Guix or Vanilla OS for sandboxing I guess. But basically everything but Ubuntu is pretty good for privacy, it’s a big part of free software philosophy.
I mean, neither Microsoft nor Apple were stupid enough to sell user data to Amazon. I'd love to see how the Linux community would've responded to that, because I doubt they'd have the same "oh but it's opt in now, so it's ok" reaction.
my impression is that grapheneos is only private and secure compared to regular android. likewise, any linux distro is going to be secure and private when compared to windows.
Sure, but graphene OS just has some really thoughtful privacy focused features, and I'm looking for a Linux distro that would have similar features if there is such a thing.
One thing I love about graphene is by default, the MAC address is randomized for every single connection. Also, the Bluetooth can be set to time out and turn off after a certain period of not being used.
Everyone is recommending Tails but I feel like that's a lot more intense security and privacy wise than GrapheneOS, since Tails runs in a live environment only.