• WormFood@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    5 days ago

    Trusted computing was never about security, it’s a way to take ownership of computers away from users and give it to computer manufacturers and Microsoft. It’s also not a good security model.

    • Laser@feddit.org
      link
      fedilink
      English
      arrow-up
      2
      ·
      4 days ago
      1. The spec allows changing keys by the user as far as I know
      2. I’m unaware of a proposal of a better concept that stops attacks at this layer
  • Cocodapuf@lemmy.world
    link
    fedilink
    English
    arrow-up
    1
    ·
    4 days ago

    Yeah, this has actually been a known thing for a while. The government has been sneakily getting their hand into NIST standards and trying to ensure they have back doors in the commonly used “best practices”.

    So as a result for instance, encryption based on pseudo random numbers generated with hashing algorithms are actually safer that these theoretically “actually random” numbers generated in dedicated security modules in hardware.