15 ms·
No you'd still need the crypt key to decode the data. Why do you assume this is stored on the device?
by sparaker 12y ago
No you'd still need the crypt key to decode the data. Why do you assume this is stored on the device?
- jahewson 12y agoWhere else would the key be?
- Someone 12y agoOK. Let's assume that key lives on Google's servers. Then, Google must send it back to the Android device that it cannot trust unencrypted (possibly in a httpd session, but that is irrelevant for this discussion. The pipe may be secure, but you poor the data in a pool that isn't secure)