3 ms·
I'm not saying that this is what happened and I don't know the background of this story, but it would have been easy (technically speaking) to just push an upda
by grumdan 8y ago
I'm not saying that this is what happened and I don't know the background of this story, but it would have been easy (technically speaking) to just push an update to Chinese users that will extract their private key and send it back to Apple without any significant changes.
- majewsky 8y agoAFAIK the Secure Enclave chip is specifically designed to make this impossible. There is no planned method to extract the private key from it. ("Planned method" meaning anything that's not an exploit or an electron microscope.)
- zarex 8y agoMaybe generate the key in the normal processor, send it to apple for escrow, and then push the key to the secure enclave? I have no idea whether the secure enclave supports loading existing keys, but generally this is how it's done.