This immediately smells of marketing bullshit: > Decrypting messages and attachments sent with Signal has been all but impossible…until now. > We found that acquiring the key requires reading a value from the shared preferences file and decrypting it using a key called “AndroidSecretKey”, which is saved by an android feature called “Keystore”. Yeah, if you have all the keys you can decrypt stuff.. This is dumb, pleas…
Decrypting the Signal App
21–24 of 24 posts
Re: Decrypting the Signal App
#22Earlier quoted context omitted.
> Just perhaps not on a $50 Cricket phone with no HSM. On some more expensive devices keys can be obtained from RAM[1]. [1] https://www.cellebrite.com/en/blog/decrypting-databases-usin...
If the keys are in RAM then they aren't in an HSM- they're in RAM (as well as the HSM, but that's irrelevant). More importantly, the app is already unlocked anyway if the keys are in RAM. So that just lets you keep it unlocked. It doesn't help you unlock an app that was locked when you got access to the device.
[1] https://www.msab.com/2018/12/11/msab-introduces-access-servi... [2] https://www.cellebrite.com/en/advanced-services/
Re: Decrypting the Signal App
#23This immediately smells of marketing bullshit: > Decrypting messages and attachments sent with Signal has been all but impossible…until now. > We found that acquiring the key requires reading a value from the shared preferences file and decrypting it using a key called “AndroidSecretKey”, which is saved by an android feature called “Keystore”. Yeah, if you have all the keys you can decrypt stuff.. This is dumb, pleas…
Re: Decrypting the Signal App
#24This immediately smells of marketing bullshit: > Decrypting messages and attachments sent with Signal has been all but impossible…until now. > We found that acquiring the key requires reading a value from the shared preferences file and decrypting it using a key called “AndroidSecretKey”, which is saved by an android feature called “Keystore”. Yeah, if you have all the keys you can decrypt stuff.. This is dumb, pleas…
> Yeah, if you have all the keys you can decrypt stuff.. I expect the intended audience for this article is digital forensics examiners, who might be employed by say law enforcement or corporate investigators. Not the average Hacker News crowd.
Post-physical unlocked HD access to the device, aka digital forensics.