Comment by pkulak

19 days ago

Oh wow, just going into the "should I shutdown" menu also goes into pre-boot lock state? I didn't know that.

It doesn't reenter a BFU state, but it requires a passcode for the next unlock.

  • It's close enough, because (most of) the encryption keys are wiped from memory every time the device is locked, and this action makes the secure enclave require PIN authentication to release them again.

    • > It's close enough

      Not really, because tools like Cellbrite are more limited with BFU, hence the manual informing LEO to keep (locked) devices charged, amd the countermeasures being iOS forcefully rebooting devices that have been locked for too long.

      5 replies →