Android Full Disk Encryption Cold Boot Attack (2012)
www1.informatik.uni-erlangen.de
Android Full Disk Encryption Cold Boot Attack (2012)
1–10 of 53 posts
Re: Android Full Disk Encryption Cold Boot Attack (2012)
#2I'd assume, encrypted or not, physical access to a phone with an unlocked bootloader means it's owned.
Re: Android Full Disk Encryption Cold Boot Attack (2012)
#3I did a search on the Internet Archive and see caches of this page going back at least as far as 2013:
https://web.archive.org/web/20130115000000*/https://www1.inf...
You may want to update the submission with a year.
Re: Android Full Disk Encryption Cold Boot Attack (2012)
#4I'd be much more interested in this attack if they could get the keys from a phone with a locked bootloader. I'd assume, encrypted or not, physical access to a phone with an unlocked bootloader means it's owned.
Re: Android Full Disk Encryption Cold Boot Attack (2012)
#5I'd be much more interested in this attack if they could get the keys from a phone with a locked bootloader. I'd assume, encrypted or not, physical access to a phone with an unlocked bootloader means it's owned.
Re: Android Full Disk Encryption Cold Boot Attack (2012)
#6The paper is really nice and readable. TL;DR: Freezing the phone makes the RAM static and not clear on reboot, giving you time to sideload their custom recovery image that iterates the ram and looks for AES encryption key patterns.
Re: Android Full Disk Encryption Cold Boot Attack (2012)
#7I'd be much more interested in this attack if they could get the keys from a phone with a locked bootloader. I'd assume, encrypted or not, physical access to a phone with an unlocked bootloader means it's owned.
Does android by default lock the bootloader when encryption is enabled?
Re: Android Full Disk Encryption Cold Boot Attack (2012)
#8I'd be much more interested in this attack if they could get the keys from a phone with a locked bootloader. I'd assume, encrypted or not, physical access to a phone with an unlocked bootloader means it's owned.
Locked bootloader should not have anything to do with encrypted user data being accessible or not... With a locked bootloader on Android devices, it can be difficult to flash a Custom ROM but your password won't help in that case... your password/pin should be used to decrypt your data.
Re: Android Full Disk Encryption Cold Boot Attack (2012)
#9I'd be much more interested in this attack if they could get the keys from a phone with a locked bootloader. I'd assume, encrypted or not, physical access to a phone with an unlocked bootloader means it's owned.
Does android by default lock the bootloader when encryption is enabled?
In practical terms, the only people who would ever unlock their bootloaders are those who wish to perform modifications (ie. rooting and customs ROMs), and they typically accept a somewhat lessened amount of security anyway.