Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Except that would mean a password reset would involve losing access to all your data (unless you can remember the original).


You can have an HSM that encrypts the data with its own key, and merely verifies that the apple id & password match before decrypting anything, and you can destroy the private keys necessary to reprogram the HSM, so that way you can't be compelled to change it. The HSM would similarly do whatever verification is necessary when resetting the password to ensure that the rules are met.

That said, I don't know what Apple actually does. I know they use HSMs, but most of the info about how that works is about Keychain syncing, which is done a bit differently than other iCloud data syncing.


Yeah, unless you have another iCloud device I believe you lose your data.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: