% Safe(r) Phones (draft) % Michael Stone % March 20, 2011 ## Difficulties I've been searching for a suitable cellphone for several years. Unfortunately, I'm having trouble finding a phone that will work for me. Here are the difficulties I see... ## Keeping Secrets I'm looking for a phone to which I can entrust secrets. My budget is $5k. Specific secrets that I imagine entrusting to my phone include: * passwords * SSH keys * credit card numbers and other PII * conversations * confidential documents and photos * my location In order to feel more comfortable entrusting these secrets to my phone, I'd like to see some specific hardware and software security features. ## Security Features I desire the following hardware features: * at least one spare processor and memory which can be hard-reset without interfering with the main phone operation, sufficient in capacity to run a browser * a physical jumper that makes the boot flash read only when present * flip-flops wired in series with all cameras, microphones, and radios which, once flipped, remain flipped until they are physically reset and which, when flipped, light LEDs. I desire the following software features: * boots with OpenFirmware, * the display is controlled via the main CPU ## tbd. Explain the browser isolation architecture...