3 ms·
Nothing is safe. The platforms can atleast do a better job to provide feedback or display on the UI, whether the current environment is safe, for monetary txns
by crudbug 10y ago
Nothing is safe. The platforms can atleast do a better job to provide feedback or display on the UI, whether the current environment is safe, for monetary txns etc.
Secureboot [0] creates trust between hardware and software, but here you have to trust the hardware. An interesting question is how can software audit its hardware that is driving it ?
ARM TrustZone [1] is another way to offload all the sensitive computation onto another embedded SoC. But, its hard to know what the application is using. You sort of have to trust the banks to do the best job.
[0] https://source.android.com/security/verifiedboot/ https://source.android.com/security/verifiedboot/
[1] https://www.arm.com/products/security-on-arm/trustzone https://www.arm.com/products/security-on-arm/trustzone