> They would have to store that key in plain-text somewhere.
Is this really true? Could not the device manufacturer store embed the key in silicon somehow, perhaps in EEPROM or similar?
Is this really true? Could not the device manufacturer store embed the key in silicon somehow, perhaps in EEPROM or similar?
We had built some devices that did encrypt they local stores and used keys burned into separate silicon (really, keys derived from multistep mutual authentication with that silicon), but the attack model was that attacker would not possess both parts of device at once (as the key-containing part was able to be located in different part of the building from rest of the device, was reasonably tamper-proof and detected movement).