4 ms·
Someone can always hack the display driver - you have to display the messages to the user at some point, after all. Take a screenshot on whatever user event, en
by devindotcom 13y ago
Someone can always hack the display driver - you have to display the messages to the user at some point, after all. Take a screenshot on whatever user event, encryption bypassed.
I've been thinking about encryption all the way up to the display module, though, meaning interception would have to be very close to the display hardware itself.
- rfnslyr 13y agoThat's what I was thinking. We are going to ship two versions. One being a simple dongle where the application used to interface with it is the users phone. We're also selling a premium package, where the device is much bigger but includes a physical display and keyboard, with a transfer mechanism of the final encrypted message. We're marking up the higher end model so we can fund the lower end model, being 2 replacements of the dongle for 1 purchase, as the dongle will have a one time authentication and will be locked to the device. We're also trying to figure out how to have the device self destruct if not used by any approved devices, meaning whipe itself clean and POSSIBLY break the hardware that does the processing/houses any data.
- mafribe 13y agoMaybe you can do something useful with visual cryptography?
- rfnslyr 13y agoCan you expand?
- mafribe 13y agoPrint an overlay that acts as a visual password. You put it on the phone screen. So you can read what's written, but an attacker who captures only phone data sees only gibberish. There are various practical issues. Maybe they can be overcome. If the overlay was generated on demand on the dongle, rather than printed, that could improve usability. https://en.wikipedia.org/wiki/Visual_cryptography https://en.wikipedia.org/wiki/Visual_cryptography