Do #trustedcomputing guys use IPMI/KVM? How do you trust the peripheral buses aren't intercepted?
The TPM 2.0 reference implementation has a memory corruption issue that may allow for arbitrary code execution (on the TPM!).
#infosec #tpm #trustedcomputing
I always wondered why this isn't a thing. Hardware/software companies brought as the #trustedComputing crap with #TPM almost 15 years ago.
Apparently #Canon had something but it was proven vulnerable in 2010. And "#Sony Unlock[ed] In-Camera Forgery-Proof Technology" in 2022. "…for corporate users"?
https://www.sony.eu/presscentre/news/sony-unlocks-in-camera-forgery-proof-technology
#trustedcomputing #tpm #canon #sony
Oh no, #Fedora, why are you facilitating #Microsoft's #TrustedComputing vision? 😞
https://www.phoronix.com/news/Fedora-38-Unified-Kernel-Part-1
#UEFI #SecureBoot #DRM #Linux #Kernel
#fedora #microsoft #trustedcomputing #uefi #secureboot #drm #linux #kernel
Joanna Rutkowska: Towards (reasonably) trustworthy x86 laptops
https://www.youtube.com/watch?v=rcwngbUrZNg
#Infosec #TrustedComputing #Security #Hardware #CPU #OpenHardware #IntelME
#infosec #trustedcomputing #security #hardware #cpu #openhardware #intelme
I realized today that despite all the brilliant #infosec folks here in the #fedi, many of which i follow, there is a noticeable lack of either interest or knowledge being publicly shared on #TrustedComputing and what this involves on a #hardware level.
Non-infosec users often focus here on simple topics such as #2FA for user. Many speak to others about #Mastodon #privacy related issues such as #DM's not being #private. These are both important and need to be heavily boosted.
#infosec #fedi #trustedcomputing #hardware #2fa #mastodon #privacy #dm #private
Joanna Rutkowska: Towards (reasonably) trustworthy x86 laptops
https://www.youtube.com/watch?v=rcwngbUrZNg
#Infosec #TrustedComputing #Security #Hardware #CPU #OpenHardware #IntelME
#infosec #trustedcomputing #security #hardware #cpu #openhardware #intelme
I realized today that despite all the brilliant #infosec folks here in the #fedi, many of which i follow, there is a noticeable lack of either interest or knowledge being publicly shared on #TrustedComputing and what this involves on a #hardware level.
We often focus here on simple topics such as #2FA for users on the broadest scale. We then speak to others about #Mastodon #privacy related issues such as #DM's not being #private. These are both important and need to be heavily boosted.
#infosec #fedi #trustedcomputing #hardware #2fa #Mastodon #privacy #dm #private
https://fosdem.org/2022/schedule/event/tee_oniro/# #FOSDEM : Today Saturday at 13h50 CET (to 14h15): Don't miss #Oniro's second presentation about "#Secureboot, #TEEs, different #OS es and more"
it's part of " #HardwareAided #TrustedComputing devroom "
#os #trustedcomputing #tees #fosdem #Oniro #secureboot #HardwareAided
Open Source is Insufficient to Solve Trust Problems in Hardware
https://media.ccc.de/v/36c3-10690-open_source_is_insufficient_to_solve_trust_problems_in_hardware
The https://betrusted.io project brings together a curated set of verifiable components as an open source mobile communications platform - a combination open source hardware and software distribution.
#openhardware #trustedcomputing
@goofy et MS ne peut pas désinstaller d'autorité cette m... à distance sans demander aucune permission ? Ça leur va bien de jouer les fines bouches quand on sait comment ils se sont comportés avec les updates Windows 10... #ComputingFreedom #TrustedComputing #ethics #hypocrites @fsfe
#computingfreedom #trustedcomputing #ethics #hypocrites