AMD presents flash memory with security functions
Summary
In January 2003 AMD presented the Am29PDL640G flash memory with 64 megabits and multi-level security functions, including 64-bit password protection. It was intended for mobile phones and set-top boxes and was meant to prevent hackers from making calls at other people’s expense or pirating pay TV. The chip was also supposed to extend battery life.
Ideas
- Security functions move into the memory chip itself.
- Password protection at chip level is meant to keep protected areas from being read out.
- Manufacturers use it above all to protect their own business model.
Insights
- Hardware security often serves to protect providers from users, not the other way round.
- Built-in protection mechanisms are only as strong as their weakest implementation.
Facts
- The chip had a capacity of 64 megabits.
- Among other things, it contained 64-bit password protection.
- In quantities of 10,000 the chip cost 9.75 US dollars.
References
Critique
- The report only reproduces manufacturer quotes without checking how effective the protection is.
Remarks
- In 2003 AMD merged its flash business with Fujitsu’s into a joint venture that later traded as Spansion.
Recommendations
- Judge hardware security functions by whom they protect and who holds the keys.
- Do not rely on chip passwords alone; encrypt sensitive data as well.
Links to the original source and the Web Archive open in a new tab.