[Full-disclosure] TPM - will it work as pushed to the public?
toddtowles at brookshires.com
Thu Dec 15 18:47:10 GMT 2005
Is it me or is this totally not going to work for normal people?
"Of course you could always "fool" the system by starting your computer
with your unique PIN or fingerprint and then letting another person use
it, but that's a choice similar to giving someone else your credit
Umm you mean like a backdoor installed on the system, VNC injection..the
attacker can "use" your computer and your TPM chip from anywhere in the
world. This will protect huge corporations by stopping attackers from
using username/passwords on other computer systems, but how is this
going to protect grandma (aka people that don't patch and therefore get
infected anyways). MITM attack will still work, even with TPM
Of course, people will find a way to spoof the TPM by using another
computer infront of their own or someother trick. This seems to be just
another left jab in the ongoing boxing match...not a "cure".
-------------- next part --------------
An HTML attachment was scrubbed...
Full-Disclosure is hosted and sponsored by Secunia.