this post was submitted on 26 May 2024
218 points (97.4% liked)

Technology

59627 readers
2911 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] AMillionMonkeys@lemmy.world 33 points 6 months ago (13 children)

Rats. Leaving TPM off in the BIOS is how I've been avoiding it nagging me to upgrade from 10.

[–] catloaf@lemm.ee 2 points 6 months ago (5 children)

I've been curious about people who have been disabling the TPM. Where are you storing your disk encryption keys?

[–] lud@lemm.ee 1 points 6 months ago (1 children)

You can run bitlocker without TPM using a usb flash drive instead. I think you can also store the key in your mind as a password.

[–] catloaf@lemm.ee 2 points 6 months ago

Yes, but when they're on USB the keys are much more accessible. You can just plug it in and dump them.

If you're only using a password, the keys are stored in an unencrypted part of the drive, which can again easily be dumped.

Once you've dumped the keys, you can brute-force the passphrase offline.

load more comments (3 replies)
load more comments (10 replies)