

Are there any infos about what an attacker can do with this? The article didn’t say this. Remote Code execution? With the privileges of the app? Reading all files? Or only some? The impact information seems important here.


Are there any infos about what an attacker can do with this? The article didn’t say this. Remote Code execution? With the privileges of the app? Reading all files? Or only some? The impact information seems important here.
On big flash memory you typically have more memory on the chips, than ia presented to the OS. Flash has significantly less write cycles, before the block breaks, so the controller monitors the health and won’t use it anymore when it will soon fail. Instead it uses a block from its unused extra space. (Details might be different, I’m not sure about that). This way the lifetime of the SSD is significantly improved. SD cards do the same, I think.
So the data in the retired blocks will remain and cannot be overwritten by the OS. If they are encrypted and the keys deleted, that won’t matter
Omg, I simply cannot! Thanks for brightening my day with this paper XD