Microsoft’s Bitlocker & TPM encryption combo defeated with a $10 Raspberry Pi::The point of Microsoft’s Bitlocker security feature is to protect personal data stored locally on devices and particularly when those devices are lost or otherwise physically compromised. With Bi

  • kadu@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    ·
    9 months ago

    I don’t think a Veracrypt setup could use a hardware pairing for the decryption key, and also boot from an encrypted drive, though.

    • ryannathans@aussie.zone
      link
      fedilink
      English
      arrow-up
      0
      ·
      9 months ago

      Yeah, it’s safe because of no TPM usage. You can boot from an encrypted drive, it’ll prompt for the key instead of auto loading from vulnerable hardware

      • Natanael@slrpnk.net
        link
        fedilink
        English
        arrow-up
        0
        ·
        9 months ago

        Bitlocker supports the same usecase, but everybody wants that automatic boot feature so…

        It also lets you store a secondary key on a server and require the computer to be on trusted networks to be able to retrieve it to boot, but I’ve never ever heard of anybody using that