I agree with most of this, but one nit pick: > Originally, secure computing relied on a second processor - a "Technical Protection Module" or TPM - to monitor the parts of your computer you directly interact with. TPM stands for Trusted Platform Module, not Technical Protection Module
Your computer should say what you tell it to say
31–40 of 263 posts
Re: Your computer should say what you tell it to say
#32I agree with most of this, but one nit pick: > Originally, secure computing relied on a second processor - a "Technical Protection Module" or TPM - to monitor the parts of your computer you directly interact with. TPM stands for Trusted Platform Module, not Technical Protection Module
That's wild. It seems these blog posts are outsourced. Edit: I'm wrong about this one. It's an actual article, and a pretty good one at that. But it is either a mistake or they are introducing an alternate expansion for TPM (other acronyms have been given different sets of words).
People make mistakes sometimes. And this one is not a huge one -- the meaning is conveyed fine.
Re: Your computer should say what you tell it to say
#33Remember: upvoting the EFF's articles is good, but you (yes, you!) can also donate to them to help with these campaigns!
I had donated to the EFF in the past, but their stance[1] that CDNs/hosted services shouldn't be allowed to choose the customers they are willing work with is not only wrong, it's causes harm[2]. [1] https://www.eff.org/press/releases/international-coalition-r... [2] https://blog.cloudflare.com/kiwifarms-blocked/
Re: Your computer should say what you tell it to say
#34I agree with most of this, but one nit pick: > Originally, secure computing relied on a second processor - a "Technical Protection Module" or TPM - to monitor the parts of your computer you directly interact with. TPM stands for Trusted Platform Module, not Technical Protection Module
That's wild. It seems these blog posts are outsourced. Edit: I'm wrong about this one. It's an actual article, and a pretty good one at that. But it is either a mistake or they are introducing an alternate expansion for TPM (other acronyms have been given different sets of words).
Re: Your computer should say what you tell it to say
#35Re: Your computer should say what you tell it to say
#36I mean, devil's advocate here, this tech already exists and the question is do we do client attestation in a browser or pretend remote attestation doesn't exist. If this gets rejected, would that mean that services that need a "trusted client" simply deprecate their web apps and rely on a iOS/Android app? I'm not trying to argue in favor of WEI, I just think this doesn't magically disappear if Google doesn't implemen…
Should be outlawed, with the exception of dedicated hardware. Stop invading my devices.
Re: Your computer should say what you tell it to say
#37Re: Your computer should say what you tell it to say
#38I mean, devil's advocate here, this tech already exists and the question is do we do client attestation in a browser or pretend remote attestation doesn't exist. If this gets rejected, would that mean that services that need a "trusted client" simply deprecate their web apps and rely on a iOS/Android app? I'm not trying to argue in favor of WEI, I just think this doesn't magically disappear if Google doesn't implemen…
Yes, and this has already been happening. For example, Venmo used to have a fully-functional web app, but now you can't send/receive money on it. Many Chase features are also phone-only.
Edit: And a lot of these apps block jailbroken iPhones or rooted Androids if they can detect that.
Re: Your computer should say what you tell it to say
#39Re: Your computer should say what you tell it to say
#40What is to stop me from virtualizing a TPM?