Anyway, if you rely on BitLocker in TPM mode (boot without PIN), you should know that anyone can steal your computer, sniff 32 bytes off of the LPC bus, stick them into libbde, and decrypt your disk. Yes, it's that easy. Solder 7 wires to $favorite_fpga_board, decrypt drive.
-
-
-
Or DH key exchange secured communication between your TPM and OS. AFAIK this is a TPM 2.0 feature
- Show replies
New conversation -
-
-
All the HSM things I found are overprices PCI cards that have enough horsepower to mine bitcoin, while all I'd want is a 1kB storage for a LUKS passphrase that auto-wipes on intrusion.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.
