A software level analysis of TrustZone OS and Trustlets in Samsung Galaxy Phone
ID: e69bcfb6-99ad-584c-b45b-0c07f9a21164
STIX ID: report--e69bcfb6-99ad-584c-b45b-0c07f9a21164
Feed Name: SensePost Blog
**Executive summary:** This technical analysis examines the Mobicore TrustZone stack on Samsung Galaxy S3 devices, showing how Android applications interact with Mobicore via libMcClient, mcDriverDaemon and the Mobicore kernel driver; it intercepts and logs PlayReady trustlet sessions, performs fuzzing, and discloses a netlink-api weakness in the Mobicore kernel driver that permits unprivileged processes to send spoofed netlink messages and impersonate kernel callers under constrained conditions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
