4 ms·
How are they performing the check? Surely it's subvertable. If you have root - you can provide any information you like to the movie playing application? Or i
by jbert 15y ago
How are they performing the check?
Surely it's subvertable. If you have root - you can provide any information you like to the movie playing application?
Or is there a crypto chain of trust in android devices, analagous to the "trusted computing" on the PC platform?
- deleted 15y ago[deleted]
- SwellJoe 15y agoOr is there a crypto chain of trust in android devices, analagous to the "trusted computing" on the PC platform? There is. Everything on an Android device, including stuff in the OS image, is signed. I would assume that the movie player would converse with the movie service and it would easily be determined that the player is not running on a system image provided by a trusted signer. Subverting it would, I assume, require cracking the signing algorithm.
- rdl 15y agoThere are probably much easier ways; extracting keys from a local device (but this may only be a break of a single device, not a class break of all devices, hopefully), or exploiting bugs in any of the trusted binaries to load other code. The trusted/measured boot process on PCs (which is not actually used by anything widely deployed, as of 2011) is similar, but I think the Android device will have an easier time.
- evangineer 15y agoThe likes of HTC and Motorola are already shipping Android devices with signed bootloaders. It is increasingly likely that with tablet content deals for movies and tv shows in the works that there will be more use of signed bootloaders in combination with Android 3.1+ DRM frameworks.