• MishaalRahman@lemdro.idOP
    link
    fedilink
    English
    arrow-up
    6
    ·
    1 year ago

    Android hasn’t used FDE for a couple of years now. File Based Encryption (FBE) has been required instead since Android 10. With FBE, each user has their own credential encrypted storage location for apps, which are encrypted with the credential from that particular user. (I verified this while testing. When you boot and unlock the primary user, other users data at /data/user/{id} is still encrypted until you unlock them.)

    • winterpeacock
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      1
      ·
      1 year ago

      Maybe there are other system files required that are encrypted with the primary user credentials

      • MishaalRahman@lemdro.idOP
        link
        fedilink
        English
        arrow-up
        2
        ·
        1 year ago

        There might be, though I couldn’t find any. I poked around /data on a rooted Pixel that had just booted but hadn’t had its primary user unlocked yet, and I was able to access most files in /data/system still.