Earlier quoted context omitted.
Why does this matter when a google device sends all information home and can be requested by the FBI with a sweeping gag order warrant? Seems like more security theater to me.
Even if assume Google sends stuff to the FBI. You still want secure hardware so that nobody else can get at your stuff.
Building a Titan: Better security through a tiny chip
51–55 of 55 posts
Re: Building a Titan: Better security through a tiny chip
#52...that's made in China. https://motherboard.vice.com/en_us/article/mb4zy3/transparen...
Re: Building a Titan: Better security through a tiny chip
#53Earlier quoted context omitted.
Even if assume Google sends stuff to the FBI. You still want secure hardware so that nobody else can get at your stuff.
If your threat model is "being attacked by a surveillance actor", the fact that "nobody else can get at your stuff" (which is something that you are in a position to at least theoretically defend) is not very reassuring ...
Re: Building a Titan: Better security through a tiny chip
#54Earlier quoted context omitted.
I'm pretty sure the Pixel 2 had hardware keystore security on par with an iPhone 6/7, which is what that suggests.
GP didn’t ask “hardware keystore” and either way, it’s a false assumption you made. The Titan M is the first comparable chip, based on marketing speak, to Apple’s equivalent. Give it time to see if the marketing speak lives up to technical reality, but my guess at this point is that they’ll be roughly comparable now .
Re: Building a Titan: Better security through a tiny chip
#55Can someone throw some light on why Google is not using ARM Trustzone technology? Many current Android OEMs are using it, particularly Samsung KNOX is security mechanism all built around trustzone technology. What advantages does these Titan chips offer over the existing trustzone technology.
Plus, they want a full, open source, verifiable system which isn't possible with ARM IP.