Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Dissecting the Modern Android Data Encryption Scheme

Recon Conference via YouTube

Overview

Explore the intricacies of Android's user data encryption in this conference talk from Recon 2023. Delve into the logic behind key generation and storage for File-Based Encryption, following the implementation steps in the Android Open Source Project (AOSP). Discover how elements from the file system, Trusted Execution Environment (TEE), and Secure Element combine with user credentials to create final encryption keys. Examine two attack scenarios targeting Gatekeeper and Weaver mechanisms, utilizing known software vulnerabilities on Samsung A22 and Pixel 3a devices. Gain comprehensive insights into user data encryption and authentication, covering design principles, implementation details, and attacker strategies. Learn from security researchers Maxime Rossi Bellom and Damiano Melotti as they present their findings on modern Android data encryption schemes, providing an up-to-date reference for fellow researchers reviewing these mechanisms and their internals.

Syllabus

Recon 2023 - Maxime Rossi and Damiano Melotti - Dissecting the Modern Android Data Encryption Scheme

Taught by

Recon Conference

Reviews

Start your review of Dissecting the Modern Android Data Encryption Scheme

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.