5 ms·
That's been covered by most of the articles on the topic, but not very clearly in this article. Removing the storage chips from the device would mean breaking
by paulannesley 11y ago
That's been covered by most of the articles on the topic, but not very clearly in this article.
Removing the storage chips from the device would mean breaking a very strong key, perhaps 128-bit AES, which is not a desirable offline brute-force attack.
That strong key is derived from the PIN combined with a unique device ID which cannot feasibly be extracted from the processor. So an offline attack needs to crack full AES, but an online attack by running modified OS code on the device itself means only the weak PIN needs to be attacked (just 10,000 distinct combinations, roughly equivalent to a 13 or 14 bit key).
- ysv2 11y agoThanks for the explanation.
- abalone 11y agoPerhaps the key could be extracted by physically analyzing the chip, e.g. grinding it down and using microscopic tools to detect state?
- Crito 11y agoPerhaps, but that is a destructive option that is very risky.
- akiselev 11y agoSecure chips that store private keys generally keep them on a part of the silicon die that can't be analyzed like the rest of the chip. Any attempt to open the chip package (take off the black plastic/epoxy covering the die) results in the destruction of the secure region and methods of reading state in semiconductors (using electron microscopy) require you to somehow expose the silicon holding the private key.
- abalone 11y agoInteresting, how does that work exactly? I would've thought with an accurate map of the chip package and a precise grinder you could shave off just what you wanted to expose. I mean it might take a lot of practice but if you have the time and money and chip samples to practice on...
- tedd4u 11y agoApparently this iPhone 5C pre-dates the "Secure Enclave." So the key is somewhere else. Possibly a place vulnerable to a physical readout, possibly not.
- muddi900 11y agoAccording to Apple's own whitepaper one the topic, the pin only used to hash the class key, not the encryption key itself.
- MCRed 11y ago10k distinct combinations-- if, and only iff, they used a 7 digit all numeric pin. The odds of this are not bad for most people, but in this case the person who had this phone has shown better than the average criminals level of OpSec. One thing is for sure- for phones with TouchID where you only need to enter the pin on reboot, it makes sense to make the pin something other than numeric and longer than 4 digits.
- nnx 11y agoiirc iOS 9 now requires 6 digits passcode on devices with TouchID.