this post was submitted on 15 Apr 2025
135 points (97.9% liked)

Technology

69156 readers
3106 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] Darkassassin07@lemmy.ca 24 points 1 week ago (2 children)

Much of the data on your phone, including critical information that's required to run the operating system and make the device function, is fully encrypted when the device is off/rebooted.

While in this locked down state, nothing can run. You don't receive notifications, applications can't run in the background, even just accessing the device yourself is slow as you have to wait for the whole system to decrypt and start up.

When you unlock the device for the first time; much of that data is decrypted so that it can be used, and the keys required to unlock the rest of the data get stored in memory where they can be quickly accessed and used. This also makes the device more vulnerable to attacks.

There's always a trade off between convenience and security. The more secure a system, the less convenient it is to use.

[–] WhyJiffie@sh.itjust.works 1 points 6 days ago

even just accessing the device yourself is slow as you have to wait for the whole system to decrypt and start up.

that's not true. the system does not decrypt itself in one go. it'll just wait with part of the bottup process until you unlock your device, and then keeps the encryption keys in memory so that it can encrypt and decrypt anything when needed.

and the purpose of the reboot is just to make sure that both the encryption key, and any data crumbs left in the memory get lost from there

While in this locked down state, nothing can run.

that's not true either. for instance the system definetly runs with a couple of its components. but apps too can request to be able to work before unlock, like your alarm clock. but of course, apps that store data in the compartment accessible before unlock is not secure, however they can selectively store there only the most essential things needed to work (alarm time database and maybe used ringtones)