Does the TPM boost secure boot security?

This page summarizes the projects mentioned and recommended in the original post on /r/archlinux

InfluxDB - Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com
featured
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com
featured
  • tpm2-totp

    Attest the trustworthiness of a device against a human using time-based one-time passwords

  • You could also use TOTP for a kind of remote attestation (e.g., with your phone computing TOTP). In this setup, the CPU sends the timestamp to the TPM, and it returns the TOTP value. So instead of you looking at your phone to give the TOTP to a service provider to prove that you're in possession of your phone, the computer gives you a TOTP value to prove that it's in possession (inside the TPM, sealed to the boot chain hashes) of the TOTP secret, and you use your phone to verify this. A possible weakness (short of a full-blown TPM compromise) would be to send a bunch of forged timestamps to the TPM while your computer is running and store the resulting TOTP values, then tamper with Secure Boot and emit the precomputed TOTP corresponding to the current timestamp whenever you boot up your computer. But this would require running malicious code on your compute while you're logged in with the trusted boot chain.

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts

  • Show HN: Smart website search powered by open models

    1 project | news.ycombinator.com | 15 May 2024
  • Show HN: Mangl – An Enhanced Manpage Viewer

    1 project | news.ycombinator.com | 15 May 2024
  • RROS is a dual-kernel OS that need both real-time and general-purpose ability

    1 project | news.ycombinator.com | 15 May 2024
  • Breadboard OS

    1 project | news.ycombinator.com | 15 May 2024
  • Virtual Boy: the rise and quick fall of Nintendo's enigmatic red console

    1 project | news.ycombinator.com | 15 May 2024