So, the problem with USB tokens that we basically have two choices: - Unauditable black boxes built on *supposedly* more secure ICs that require NDAs to develop for - Open and auditable, but definitely pwnable off the shelf microcontrollers. Which poison do you prefer?
-
Show this thread
-
This Tweet is unavailable.
-
Replying to @videah_
To an extent yes, but secure elements are supposed to have actual security features (security meshes, voltage/clock monitoring, etc) that typical micros do not.
2 replies 0 retweets 8 likes -
The biggest issue AFAIK is that all good hardware countermeasures are patented, even obvious ones. I am afraid one cannot build an open source secure element without infringing on a bunch of them.
1 reply 0 retweets 0 likes
Surely some of those have expired by now? It's 2020, SEs existed in the 90s.
4:39 PM - 12 Mar 2020
0 replies
0 retweets
0 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.