Hacker News new | ask | show | jobs
by eru 3912 days ago
Nobody needs to trust the device, actually.

Assume Amazon only loads it up with encrypted data over network untrusted, and the customer only takes off the encrypted data over untrusted network.

1 comments

Depends on your definition of trust.

But yes, if you assume this device is treated as malicious at both ends - just like an unfiltered internet connection, but 10x worse - and that the client software that is doing the load/verification, or unload/verification is doing decent input validation, and your assumption that the user is doing their own encryption prior to transfering it to the device, I agree.