Lee Duna@lemmy.nz to Technology@lemmy.worldEnglish · 10 months agoBitLocker encryption broken in less than 43 seconds with sub-$10 Raspberry Pi Pico — key can be sniffed when using an external TPMwww.tomshardware.comexternal-linkmessage-square71fedilinkarrow-up1737arrow-down116cross-posted to: hackernews@lemmy.smeargle.fans
arrow-up1721arrow-down1external-linkBitLocker encryption broken in less than 43 seconds with sub-$10 Raspberry Pi Pico — key can be sniffed when using an external TPMwww.tomshardware.comLee Duna@lemmy.nz to Technology@lemmy.worldEnglish · 10 months agomessage-square71fedilinkcross-posted to: hackernews@lemmy.smeargle.fans
minus-squareEufalconimorph@discuss.tchncs.delinkfedilinkEnglisharrow-up7·10 months agoCPU doesn’t have any secure storage, so it can’t encrypt or authenticate comms to the TPM. The on-CPU fTPMs are the solution, the CPU then has the secure storage.
minus-squarebaseless_discourse@mander.xyzlinkfedilinkEnglisharrow-up2·10 months agoThat make sense, CPU has no place to store private keys, since that is the functionality of TPM… Unless there is a firmware solution, which defeats the purpose of a standalone tpm.
CPU doesn’t have any secure storage, so it can’t encrypt or authenticate comms to the TPM. The on-CPU fTPMs are the solution, the CPU then has the secure storage.
That make sense, CPU has no place to store private keys, since that is the functionality of TPM…
Unless there is a firmware solution, which defeats the purpose of a standalone tpm.