218
Windows 11 IoT LTSC 2024 arrives making TPM and Secure Boot optional — lower storage requirements, too
(www.tomshardware.com)
This is a most excellent place for technology news and articles.
Rats. Leaving TPM off in the BIOS is how I've been avoiding it nagging me to upgrade from 10.
I've been curious about people who have been disabling the TPM. Where are you storing your disk encryption keys?
You can run bitlocker without TPM using a usb flash drive instead. I think you can also store the key in your mind as a password.
Yes, but when they're on USB the keys are much more accessible. You can just plug it in and dump them.
If you're only using a password, the keys are stored in an unencrypted part of the drive, which can again easily be dumped.
Once you've dumped the keys, you can brute-force the passphrase offline.