Freezing a Smartphone for Hour to Circumvent the Encryption System?

By

Its sounds like a scene out of James Bond movie, but someone can actually circumvent a smartphones’ complex encryption system and retrieve its confidential information by putting it in a freezer.

The discovery was recently released by German researchers at Erlangen's Friedrich-Alexander University (FAU). They froze a smartphone for an hour. The researchers – Tilo Muller, Michael Spreitzenbarth and Felix Freiling – were able to get the device’s temperature down to -10C. Data was later analyzed on a separate computer.

They were able to see contact lists, websites visited and photos, the BBC reported. These could all reveal important details on suspected criminals or terrorists.

“We show that cold boot attacks are more generic and allow to retrieve sensitive information, such as contact lists, visited web sites, and photos, directly from RAM, even though the bootloader is locked,” the researchers said in the study.

It was also found that the quick “connecting and disconnecting” of the battery “of a frozen phone forced the handset into a vulnerable mode,” the BBC said. “This loophole let them start it up with some custom-built software rather than its onboard Android operating system. The researchers dubbed their custom code Frost - Forensic Recovery of Scrambled Telephones.” The researchers used a Samsung Galaxy Nexus smartphone in their study, according to a news report.

Data scrambling was introduced by Google with the Android version commonly known as the “Ice Cream Sandwich.” But the scrambling system was a "nightmare" for police as they investigated crimes, the researchers said in a blog post. So the discovery could be a welcome find for law enforcement officials.

It was also found that data “fades from memory much more slowly when chips are cold which allowed them to grab the encryption keys and speed up unscrambling the contents of a phone,” the BBC adds.




Edited by Brooke Neuman
Get stories like this delivered straight to your inbox. [Free eNews Subscription]

TechZone360 Contributor

SHARE THIS ARTICLE
Related Articles

Your Post-Quantum Readiness Starts at Y2Q Summit

By: TMCnet News    5/27/2026

Y2Q Summit is an executive conference focused on helping enterprises prepare for the coming era of quantum computing disruption, cybersecurity transfo…

Read More

Why Award Marketing Should Be Part of Every B2B Tech Company's Growth Strategy

By: Erik Linask    5/20/2026

Award marketing matters for B2B tech companies because industry recognition can strengthen trust, support sales and partner relationships, improve con…

Read More

Why Email Is Still the Most Underrated Layer of Modern Software Infrastructure

By: Contributing Writer    5/15/2026

Take, for example, the following scenario. A user requests a password reset, waits a few seconds, refreshes their inbox and nothing arrives. They try …

Read More

Jitterbit's Visionary Status Signals a Shift in the iPaaS Market

By: Contributing Writer    4/7/2026

As enterprise ecosystems grow more complex, integration has become less of a backend IT function and more of a strategic driver of business performanc…

Read More

Cyber Extortion over hoax Breach: Lessons from a Fabricated story about IDMERIT

By: Contributing Writer    3/3/2026

Cybercriminals are increasingly staging fake data breaches to launch extortion attempts against KYC-AML companies. Recently, hackers devised a new met…

Read More