5 ms·
So this lets you grab the key on your own device which is used to encrypt the storage but not the OEM key used to sign the firmware image?
by baroffoos 7y ago
So this lets you grab the key on your own device which is used to encrypt the storage but not the OEM key used to sign the firmware image?
- dlgeek 7y agoAlmost. s/encrypt the storage/sign the remote attestation document/. Storage would be encrypted with a symmetric AES key, this only leaks asymmetric ECDSA signing keys