4 ms·
> It sounds like they could have made a device that even a firmware update couldn't break, but they didn't. I really don't see how they can refuse. Your analogy
by bdhe 11y ago
> It sounds like they could have made a device that even a firmware update couldn't break, but they didn't. I really don't see how they can refuse. Your analogy is good.
This is nearly impossible because the development lifecycle and end-user usability almost necessitates there be software or firmware updates that would be authenticated (to either fix dev bugs or help users).
- mindslight 11y agoThe solution is to only allow firmware updates when the device is already unlocked. To avoid bricks, a full device reset puts the security chip into an unlocked state after erasing the encryption keys.