Live data from Hacker News

faulTPM: Exposing AMD fTPMs' Deepest Secrets

arxiv.org

81–90 of 273 posts

Re: faulTPM: Exposing AMD fTPMs' Deepest Secrets

#82
post #78

shows that people shouldn't trust closed HW crypto (HW SSD passwords - same) trust only open-source software crypto

Yes, it's an idiot proof method that's vetted by millions of reviewers because it's developed in the open. The ability to self validate is also invaluable, hard to have major widespread bugs with that, especially if it's widely adopted by trillion $ companies. OpenSSL is a great example of this.

Re: faulTPM: Exposing AMD fTPMs' Deepest Secrets

#83
post #70
post #5

Honestly TPM is probably creating more bad than good at this point. Every time I think about the millions of computers that will be declared worthless this year, it makes me a little bit more angrier.

Debian Stable welcomes refugees: https://cdimage.debian.org/debian-cd/current/amd64/iso-dvd/ (Or, for laptops with closed WiFi and no Ethernet, use this installer: https://cdimage.debian.org/cdimage/unofficial/non-free/cd-in... )

[flagged]

Re: faulTPM: Exposing AMD fTPMs' Deepest Secrets

#85

Earlier quoted context omitted.

I wish there was a linux distro made by people who love windows, not linux.

There have been several, but what makes Windows Windows is the ecosystem, and no distro can replicate that.

What is that ecosystem now? What do households with windows use that isn't on the cloud?

Re: faulTPM: Exposing AMD fTPMs' Deepest Secrets

#86
post #70

Earlier quoted context omitted.

Debian Stable welcomes refugees: https://cdimage.debian.org/debian-cd/current/amd64/iso-dvd/ (Or, for laptops with closed WiFi and no Ethernet, use this installer: https://cdimage.debian.org/cdimage/unofficial/non-free/cd-in... )

[flagged]

I'm a windows user since 3.1 and don't know much about linux except the few trials and my pihole.

What's the impact of having systemd (or not) for the everyday layman like me that just uses Visual Studio Code to build flutter apps ?

Re: faulTPM: Exposing AMD fTPMs' Deepest Secrets

#87
post #70

Earlier quoted context omitted.

Debian Stable welcomes refugees: https://cdimage.debian.org/debian-cd/current/amd64/iso-dvd/ (Or, for laptops with closed WiFi and no Ethernet, use this installer: https://cdimage.debian.org/cdimage/unofficial/non-free/cd-in... )

[flagged]

[deleted]

Re: faulTPM: Exposing AMD fTPMs' Deepest Secrets

#88
post #66

Earlier quoted context omitted.

Microsoft is edging closer and closer to dropping support for Windows 10(even a computer I built in 2017 that's still running perfectly fine can't upgrade). But for many users, changing to another OS besides Windows is tantamount to not functioning, so planned obsolescence continues apace.

Microsoft said they were ending support in 2025, which is what 8 year life for the OS? I don't even think Apple hits 8 for OSX updates. They obsolete the laptops more quickly than that, even if they do hit 6-7 years regularly.

Windows 10 was released in 2015, so they will have offered 10 years of support, which was the standard policy in place ever since Windows Vista (Windows Vista, 7, 8/8.1, 10).

Apple does not support any macOS version for that long, and is unlikely to support a current version of macOS on any given device for that long.

Re: faulTPM: Exposing AMD fTPMs' Deepest Secrets

#89
post #70

Earlier quoted context omitted.

Debian Stable welcomes refugees: https://cdimage.debian.org/debian-cd/current/amd64/iso-dvd/ (Or, for laptops with closed WiFi and no Ethernet, use this installer: https://cdimage.debian.org/cdimage/unofficial/non-free/cd-in... )

[flagged]

The one which set your root password to "" if you used the live-cd installer and selected the sudo option?

Re: faulTPM: Exposing AMD fTPMs' Deepest Secrets

#90

Why not simply abandon TPM and focus on making simple, trustable, massively parallel general-purpose hardware without backdoors for spy agencies and corporations? Whose computer is this, anyway?

Without a TPM servers can't verify that their genuine app is being used. https://developer.apple.com/documentation/devicecheck/valida...
Post reply on HN