#tpm

fla@diaspora-fr.org

https://twitter.com/XMPPwocky/status/1420527243172868097

Security is a never ending story...

https://dolosgroup.io/blog/2021/7/9/from-stolen-laptop-to-inside-the-company-network

#tpm #vpn #physicalAccessMeansYouArePowned

anonymiss@despora.de

#TPM secured #BitLocker is easy to hack from a stolen Laptop...

Source: https://dolosgroup.io/blog/2021/7/9/from-stolen-laptop-to-inside-the-company-network

After days of troubleshooting, comparing captures, and pulling hair, we finally figured out it was a combination of different bit masks for the TPM command packets as well as a different regex for finding the key. We made a pull request for the fix and now the bitlocker-spi-toolkit can parse these types of requests as well. Once we had that, lo and behold, the key popped out.

Perfect, now that we have the decryption key, let’s decrypt the SSD and see what we have.

#hardware #hack #security #encryption #news