LightBlog

mardi 31 mai 2016

Qualcomm KeyMaster keys extracted

First off, relevant Twitter post: https://twitter.com/laginimaineb/sta...51964857561093

posted by /u/sephr on reddit.com/r/android:
So basically, Full Disk Encryption is now much easier to bypass on many devices until this gets fixed. There are a few other things that rely on this, but FDE is the most important.

This is where your encryption key is stored. Your encryption key is itself encrypted by the password you enter to decrypt your device (your password decrypts a bigger more reliable password essentially), so if you don't have a very long and secure password, it is now easy to break FDE, as an attacker won't be limited by a limited number of password attempts.
Attackers can extract your key and brute force your password using it.


from xda-developers http://ift.tt/1Vt5JfD
via IFTTT

Aucun commentaire:

Enregistrer un commentaire