rene_mobile’s avatarrene_mobile’s Twitter Archive—№ 4,076

  1. Insider attack resistance (as an explicit threat model) means that even Google or the respective device OEM - with full access to firmware singing keys - will be unable to create firmware that can exfiltrate keys without user consent. See @shawnwillden blog post for details. @AndroidDev/1002236013387886592