Visitors Now: | |
Total Visits: | |
Total Stories: |
Researchers have discovered a novel way through which encrypted data of an Android smartphone can be read by accessing the cryptographic key stored in the phone’s memory by freezing the phone.
Two researchers, Tilo Müller and Michael Spreitzenbarth, over at the University of Erlangen in Germany cooled down a Galaxy Nexus phone, loaded with Android 4.0 and with encryption enabled, below 10 degrees by putting it in a freezer. This cooling ensures that the data within the volatile memory is retained for a short period of time without any power supply.
Rebooting the phone in ‘fastboot’ mode, they flashed the FROST recovery image onto the Galaxy Nexus. Connecting the device to a Linux system that had FROST utilities pre-installed the duo went onto read the cryptographic key from the phone’s memory using cold boot attack.