Join 5,000+ subscribers getting weekly tips on web development, mobile apps, and AI solutions.
A separate tamper-resistant secure chip in some Android phones that can store keys and perform cryptography apart from the main processor.
StrongBox is stronger than the trusted execution environment on the main chip because it has its own processor, storage and protections against physical attack. Not every phone has it. Apps request StrongBox when creating a Keystore key and fall back to the regular hardware-backed Keystore if it is not available. HostSpica apps do exactly that.
Evidence provided at registration about the authenticator that created a key, such as a certificate chain showing the key lives in secure hardware.
The Android system service that creates cryptographic keys and uses them on an app's behalf without ever giving the app the raw key.
Our expert team can help you leverage StrongBox in your project.
Get Free Consultation