Nice to see some benefit to updated vanilla AOSP, Graphene, and other options.
It goes without saying but it seems like a deeply fucked business model to horde zero-days that could cause billions in damage or safety issues if they fall into the wrong hands, in order to keep your mercenary surveillance product working.
The most secure endpoint is one that is completely inaccessible because the underlying service isn’t running.