July 28, 2026 ChainGPT

Atlanta Man Indicted After GrapheneOS 'Duress PIN' Phone Wipe at Border

Atlanta Man Indicted After GrapheneOS 'Duress PIN' Phone Wipe at Border
A privacy feature meant to protect users from coercion has landed an Atlanta man in federal court. What happened - On January 24, 2025, Customs and Border Protection (CBP) agents stopped Samuel Tunick at Hartsfield-Jackson Atlanta International Airport during a secondary inspection after he returned from the Dominican Republic. According to court filings, agents—invoking the border search exception—demanded access to his phone without a warrant. Tunick’s attorneys say he was denied a lawyer and was not read Miranda warnings. - Tunick provided a passcode. Instead of unlocking the device, the code activated a “duress” PIN: the phone’s screen went blank, flashed, and appeared to restart as the device erased itself. Agents seized the phone and released Tunick shortly after. The charge - Tunick was indicted under a rarely used federal statute, 18 U.S.C. § 2232, which criminalizes knowingly destroying property to prevent its seizure by law enforcement. The indictment alleges he provided “a passcode to border agents that caused the phone to delete the digital contents.” Tunick has pleaded not guilty. A federal judge is expected to rule on his motion to suppress evidence no earlier than the end of October. What the duress PIN does - The feature is part of GrapheneOS, a privacy-hardened Android distro for Google Pixel phones favored by journalists, activists, security researchers, and privacy-conscious users in crypto and elsewhere. A duress PIN is a secondary unlock code: entering your normal PIN opens the phone; entering the duress PIN triggers an immediate, irreversible wipe by deleting the device’s encryption keys—rendering stored data unreadable and effectively restoring the phone to factory-fresh state. - GrapheneOS added the duress PIN in June 2024 specifically to address forced-access scenarios. Edward Snowden and privacy advocates have publicly endorsed GrapheneOS. The OS—and other privacy-focused systems—has previously complicated court-ordered surveillance and device-access attempts. Why this matters to crypto and privacy communities - This is reportedly the first known U.S. prosecution tied specifically to a duress-password-triggered wipe. The case tests the line between tools designed to protect personal data and laws that prohibit destroying property to frustrate investigations. - The broader context includes the long-standing debate over the border search exception, traveler device rights, and growing public resources—like the Electronic Frontier Foundation’s border-device guide—urging travelers to adopt privacy-first tools. What’s next - Tunick’s not-guilty plea stands while his lawyers push to suppress evidence. The outcome could set an important precedent for users who rely on device-level privacy features to protect sensitive information when crossing borders. Read more AI-generated news on: undefined/news