Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> So if someone steals you machine with an encrypted hard drive they need to...just turn it on? That can't be right, but at the same time I have no idea how this particular attack is defeated.

Yes, but the idea is that from the login screen (winlogon) you really can't do much unless you actually have account credentials on the computer - or are bio-metrically enrolled into the computer* - and if you attempt to reboot to safe mode, or reboot to a different OS (or firmware update utility, etc) you do need to enter the Bitlocker recovery key.

* I'm not sure how it works in terms of "hacking" fingerprint sensors or face recognition webcams.



You also can't look at the encrypted drive's contents if you connect it to a different machine.


No, I expect the encryption key is probably stored in an efivar.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: