Hacker News
new
past
comments
ask
show
jobs
points
by
fragmede
4 hours ago
|
comments
by
pastage
4 hours ago
|
next
[-]
Physical attestations are hard to solve, I think it would be nice if all TPMs in laptops had this. Then the problem becomes how do you automate stuff that needs to be done.
reply
by
lrvick
4 hours ago
|
prev
|
[-]
And then the moment you authenticate, the fake sudo still executes its payload.
Yubikeys do not fix this issue.
reply