Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Yet another #BitLocker "exploit" circulating.

Yet another #BitLocker "exploit" circulating.

Scheduled Pinned Locked Moved Uncategorized
bitlockerinfoseccybersecurity
3 Posts 2 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • harrysintonen@infosec.exchangeH This user is from outside of this forum
    harrysintonen@infosec.exchangeH This user is from outside of this forum
    harrysintonen@infosec.exchange
    wrote last edited by
    #1

    Yet another #BitLocker "exploit" circulating.

    This is a friendly reminder that if you set your system to just unlock with TPM alone, the system is not protected against determined attacker. BitLocker with TPM cannot protect your system unless if you configure the system to request PIN as well.

    See: https://learn.microsoft.com/en-us/windows/security/operating-system-security/data-protection/bitlocker/countermeasures

    #infosec #cybersecurity

    gabrielesvelto@mas.toG 1 Reply Last reply
    0
    • harrysintonen@infosec.exchangeH harrysintonen@infosec.exchange

      Yet another #BitLocker "exploit" circulating.

      This is a friendly reminder that if you set your system to just unlock with TPM alone, the system is not protected against determined attacker. BitLocker with TPM cannot protect your system unless if you configure the system to request PIN as well.

      See: https://learn.microsoft.com/en-us/windows/security/operating-system-security/data-protection/bitlocker/countermeasures

      #infosec #cybersecurity

      gabrielesvelto@mas.toG This user is from outside of this forum
      gabrielesvelto@mas.toG This user is from outside of this forum
      gabrielesvelto@mas.to
      wrote last edited by
      #2

      @harrysintonen if you need a pre-boot PIN to make BitLocker work, wouldn't using hardware full disk encryption just be a better option? If I have to input a password or PIN at boot I'd rather use what the hardware already provides rather than Microsoft's implementation.

      harrysintonen@infosec.exchangeH 1 Reply Last reply
      0
      • gabrielesvelto@mas.toG gabrielesvelto@mas.to

        @harrysintonen if you need a pre-boot PIN to make BitLocker work, wouldn't using hardware full disk encryption just be a better option? If I have to input a password or PIN at boot I'd rather use what the hardware already provides rather than Microsoft's implementation.

        harrysintonen@infosec.exchangeH This user is from outside of this forum
        harrysintonen@infosec.exchangeH This user is from outside of this forum
        harrysintonen@infosec.exchange
        wrote last edited by
        #3

        @gabrielesvelto Any solution that unlocks the encryption automatically without user having to provide "something you know" (*) is vulnerable to attacks by definition.

        *) "something you have" may be good enough, for example some token or USB key. In this case you need to accept the risk of the attacker gaining access to the token, however.

        1 Reply Last reply
        1
        0
        • R relay@relay.infosec.exchange shared this topic
        Reply
        • Reply as topic
        Log in to reply
        • Oldest to Newest
        • Newest to Oldest
        • Most Votes


        • Login

        • Login or register to search.
        • First post
          Last post
        0
        • Categories
        • Recent
        • Tags
        • Popular
        • World
        • Users
        • Groups