Hacker News new | ask | show | jobs
by xani_ 1366 days ago
The device is not checking app's hash tho, it has no way to verify that the usb frame containing that hash is really from app A
1 comments

The app runs on the USB device. The code is loaded from the host, and if it hashes to the correct value, it will be able to access the secrets on the Tillitis.