• 8 Posts
  • 74 Comments
Joined 1 year ago
cake
Cake day: June 4th, 2023

help-circle


  • Many years ago, folks figured out how to crack firmware and find embedded keys. Since then, there have been many technological advances, like secure enclaves, private/public key workflows, attestation systems, etc. to avoid this exact thing.

    Hopefully, the Rabbit folks spec’d a hardware TPM or secure-enclave as part of their design, otherwise no amount of firmware updating or key rotation will help.

    There’s a well-established industry of Android crackers and this sort of beating will keep happening until morale improves.









  • On the Mac, I can run MacOS, BSD Unix, and via VMware, Windows and Ubuntu.

    On phone/tablet, I can build an app that works on every mobile device of that class shipped in the last 6 years.

    On Windows and Android, I have to test apps across a massive combination of features, and even then, there are some with strange configurations that will break the app.