According to Google, the Titan M is a second-generation, low-power security module design which belongs to the Titan family and it includes several security sensitive functions, such as Android Verified Boot (chip itself being tied directly to the operating system’s), Weaver API ( which securely storing secrets and rate-limiting invalid attempts by retrieving them), it also provide backing for the Android Strongbox Keymaster module, including Trusted User Presence and Protected Confirmation. Titan M has direct electrical connections to the Pixel's side buttons, so that a remote attacker can't fake button presses and these features are available to third-party apps, such as FIDO U2F Authentication.
The Titan M further secure devices through Enforcing factory-reset policies, so that lost or stolen smartphones can only be restored to operation by the authorized owner and it even ensuring that Google can't unlock a smartphone or install firmware updates without the owner's cooperation with Insider Attack Resistance. The company also claims that the Titan M in Pixel 3 devices will reduces the attack surface, because it is a separate chip, and the physical isolation will lessen the entire classes of hardware-level. They further suggest that the Titan M's processor, caches, memory, and persistent storage are not shared with the rest of the smartphone's system, so that side channel attacks can be avoided. In addition to its physical isolation, the Titan M chip contains many defenses to protect against external attacks too.
Google also planning for a full-lifecycle security approach with Pixel devices since the Titan M is just a hardened security microcontroller. The company has also invested in the supply chain for Titan M by creating a custom provisioning process, which will provide transparency and control, starting from the earliest silicon stages. Now it seems Google is heavily focused on its Titan M security chip and it will likely become a central part of Google’s future Pixel devices.
Google also planning for a full-lifecycle security approach with Pixel devices since the Titan M is just a hardened security microcontroller. The company has also invested in the supply chain for Titan M by creating a custom provisioning process, which will provide transparency and control, starting from the earliest silicon stages. Now it seems Google is heavily focused on its Titan M security chip and it will likely become a central part of Google’s future Pixel devices.
