TPM provides zero practical security
There is a discussion on Hacker News, but feel free to comment here as well.
https://gist.github.com/osy/45e612345376a65c56d0678834535166Open linkView original on derp.fooSyndicated from the fediverse. Read and engage on the original instance.
View original on derp.fooThere is a discussion on Hacker News, but feel free to comment here as well.
https://gist.github.com/osy/45e612345376a65c56d0678834535166Open linkView original on derp.foo
1 reply
So the title is that it provides zero practical security, then the article goes on to talk mostly about 1 hypothetically less secure feature... Followed by several practical security use cases for TPM? Virtual smart cards, Window hello..... You know certificate private key protections where the user facing impact exists?
What a stupid sensationalist title.
How about something more accurate: TPM provides plenty of excellent security features that, when leveraged properly, provide great additional security, but still isn't foolproof.
Shakes head