[Cryptography] A bulletproof vest with moth holes

Peter Gutmann pgut001 at cs.auckland.ac.nz
Sat Nov 21 08:01:11 EST 2020


Intel recently fixed a hardware-level vulnerability that allowed its Boot
Guard to be bypassed:

https://arstechnica.com/information-technology/2020/11/intel-patches-high-severity-bugs-protecting-lost-stolen-or-confiscated-pcs/

Unfortunately they've released no technical details on how they did this, but
what makes it interesting is that they appear to have modified the functioning
of the uber-secure can't-be-bypassed hardware-based security... with a
software patch.  Hmmm...

Peter.




More information about the cryptography mailing list