Comment Secure Design (Score 2) 26
It's reasonable to assume that if you erase an app on a mobile OS that the system will delete the app's data.
That ought to include any data stored in OS databases that is tagged with the app. It's not at all unreasonable to expect this. I suspect it's an oversight though Apple got weird after their standoff with the FBI over the "San Jose bomber". The GPU backdoor to read arbitrary system memory that Kaspersky found is an example.
Apple should make the change and really secure-erase the flash blocks that were being used. This can be done in the background and collected into the free block map later.
The best some people can do is trust their vendor but having a secret-source platform to trust makes it harder.
And, yes, it would not be surprising to learn Qualcomm and Samsung have similar 'features'.