Microsoft’s Bitlocker & TPM encryption combo defeated with a $10 Raspberry Pi::The point of Microsoft’s Bitlocker security feature is to protect personal data stored locally on devices and particularly when those devices are lost or otherwise physically compromised. With Bi

-6 points

Requires physical access. A non-story outside of cybersec academia/research

permalink
report
reply
2 points

This is categorically false. Laptops are not a story but rather company property.

permalink
report
parent
reply
19 points

Bitlocker’s threat model is physical access, though. And it’s 50% of TPM’s threat model too.

permalink
report
parent
reply
0 points
*

Yeah which is why no one cares about either. The threat vector is usually not discussed and mostly ignored by non state-level actors in practice.

I do agree that it’s fascinating. My master’s degree thesis was on sourcing trust and eliminating various evil maid type attacks, including supply side targeted poisoned hardware aimed at state level.

permalink
report
parent
reply
91 points

Fake news. Nobody is getting a raspberry pi for $10 lol

permalink
report
reply
5 points
*
Deleted by creator
permalink
report
parent
reply
7 points

Yeah, is a Pico… $5

permalink
report
parent
reply
4 points

It’s a pico

permalink
report
parent
reply
3 points
*
Deleted by creator
permalink
report
parent
reply
35 points

I get your joke, but it’s even cheaper than a “Raspberry Pi”. Pi Pico, one RP2040 chip, that’s basically RPi’s new version of a Teensy. I just installed one in my GameCube to defeat its “BIOS” and boot from micro SD card :P

permalink
report
parent
reply
17 points

I just installed one in my GameCube to defeat its “BIOS” and boot from micro SD card :P

Coolest thing I heard all day. Didn’t know that was a thing.

permalink
report
parent
reply
4 points

With shipping it’s more than ten but on it’s own it’s 6,10 for the H model

permalink
report
parent
reply
3 points

Hey - hey member that time when Truecrypt was like, “Peace, we out. Use bitlocker. lol”

When’s the new Truecrypt coming out? Yeah yeah Veracrypt, I know. It’s cool, its just not. I dunno.

permalink
report
reply
8 points

Veracrypt does fine

permalink
report
parent
reply
1 point

I know, I know.

permalink
report
parent
reply
25 points

Pis are 10$ again? That’s the real story.

permalink
report
reply
1 point
Deleted by creator
permalink
report
parent
reply
19 points
*

It’s a Pi Pico (RP2040), which is an MCU, not CPU. Similar to an Arduino UNO (ATmega328p).

permalink
report
parent
reply
49 points
*
Deleted by creator
permalink
report
reply
27 points
*

There probably will someday be a push to prevent common normal people from having access to computer systems that offer the user root or superuser access. “ThE aVeRaGe PeRsOn DoEsNt NeEd AdMiN pErMiSsIoNs” or “think of the children”. Ipads and surface pros will be allowed but something like a socket 1155 motherboard won’t.

permalink
report
parent
reply
-1 points

No one wants LGA1155 anymore anyway so it’s Gucci, my i7-2600 was far past it’s life span 5 years ago

permalink
report
parent
reply
4 points

Speak for yourself, I’ll take anything that executes code and find a use for it

permalink
report
parent
reply
12 points

Someday? Canada is already trying to ban the Flipper Zero, we’re living in your nightmare.

permalink
report
parent
reply
11 points

We’re gonna have problems getting enough software engineers in the future. How is anyone supposed to learn when everything is locked away. It’s already happening in the repair industry and the trades.

permalink
report
parent
reply
6 points

This is already happening with smart phones.

permalink
report
parent
reply
3 points
*

When the government starts taking away unlocked bootloader phones, I will be switching to ham radio instead of getting a locked down phone. Fuck the system.

permalink
report
parent
reply

Technology

!technology@lemmy.world

Create post

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


Community stats

  • 17K

    Monthly active users

  • 12K

    Posts

  • 554K

    Comments