DPAPI Machine Key Security on Windows Mobile

P

percussionplayer

Hi,

I am wondering if anyone knows how the DPAPI key management on Windows
Mobile works with the CRYPTPROTECT_LOCAL_MACHINE flag. How is the key
material is generated and stored?

The problem I'm trying to solve requires that I encrypt some data in a
file on a Windows Mobile 5 device, but the device may or may not be
password protected, so I'd like to use CryptProtectData with the
CRYPTPROTECT_LOCAL_MACHINE flag, but I can't find out anything about
how the machine key is derived, stored, etc.

It's OK if other processes running on the device are able to see and
decrypt the data, but we'd like to protect against forensic attacks.
For example, if a device were to be lost or stolen, would it be
possible for a hacker to remove the flash drive and retrieve enough
information from the physical device to decrypt the file?

Thanks,
Frank
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Members online

No members online now.

Forum statistics

Threads
473,755
Messages
2,569,536
Members
45,009
Latest member
GidgetGamb

Latest Threads

Top