Android Full Disk Encryption Broken - Extracting Qualcomm's KeyMaster Keys

gnu3ra gnu3ra at riseup.net
Sun Jul 3 21:53:37 PDT 2016


This doesn't seem to be too much of a worry as long as the user uses a
ridiculously long password. LUKS on linux does not use any hardware
backed storage and it still fares fine. The only beef I have is if the
key derivation function is weak (allowing for faster brute forcing).
This can still be fixed by using >64 characters and many many bits of
entropy.

On 07/03/2016 11:44 AM, Spencer wrote:
> Hi,
> 
>>
>> break Android's Full Disk Encryption
>>
> 
> But muh dick pics!
> 
> Wordlife,
> Spencer
> 
> 
> 
> 



More information about the cypherpunks mailing list