Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Good. I hope this allows me to extract the fTPM keys from the hardware I own.


What benefit would you get from having the fTPM keys? I don't own any PCs with TPM or fTPM as far as I know, so am not very familiar with what having it does as far as user experience is concerned and what having the keys would do to improve that.


It would allow me to fake any measured boot attestation. Right now this infrastructure is only provided to companies looking to secure their network[0] but if you look at Android's SafetyNet and the trends in IT, companies may force you to only use software they approve of to use their services.

On android it's already a choice between banking apps or a device you fully control. I fear that this will include all internet connected devices in the future.

[0] https://docs.microsoft.com/en-us/windows-server/security/dev...


Oh god yes. I don't want a device where I have to choose between full services and full control (for myself). The introduction of SafetyNet really annoyed me for those reasons.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: