RSSAmplifier

Digital Preludes · Aug 27, 2025

Java Card++ ?

0
Sign in to vote or save

This page cannot be shown here. You can still read it on the original site — the toolbar below keeps your place in the directory.

In March 2025, Adam Gowdiak disclosed the first public eSIM compromise. His lab extracted private keys from a chip using malware in an eSIM profile – abusing a vulnerability in the Java Card platform. Longtime contributor Eric Vétillard reflects on an architectural root cause: The real surprise is not that this has happened. It is that it took over 25 years for it to happen. The lack of on-card…

Read on /2025/bytecode-verification/

Comments

Nothing yet. Say the first thing.

    Sign in to join the conversation.