Forgot your password?
typodupeerror

Comment Re:TPM Suspicion Intensifies (Score 1) 85

Because unlike software-based solutions, it can successfully hide the information from the user (barring any hardware vulnerabilities). The problem isn't just that hidden information can exist on the system, the problem is that the root user can't access the information.

No the problem is that *you* don't know how to access the information. Windows provides 3 distinct ways to clear all TPM data. Your UEFI provides ways to clear TPM data. It is under *YOUR* control. The idea of each app only having access to its own information is foundational to hardware security. The fact that a root user can't access information al-a-carte is foundational to the feature, and not DRM. You still have the ability to clear it.

Do you write your password on a post-it note and stick it under the desk? Because that sounds like the type of approach you take to understanding security.

Comment Re:kids these days ... (Score 1) 85

Yeah, all this stuff is totally for the end-user's benefit. That's why it's being forced on everyone.

Yes. Sorry was there a question there? Or do you think the requirement to use a password for Slashdot when you sign up is some secret Slashdot corporate agenda that is being forced on you for some reasons? TPM and Secure Boot are forced on users just like every security measure in the history of the PC was, mainly because users are fucking dumb if left to secure their own systems. Hell I still remember the good ol' days of being able to turn computers on and ending up on a Windows desktop, even though Microsoft gave users a *choice* of whether to put a password on their windows account. Users are too dumb to be presented with choices.

We live in odd times when people think games need to have low-level access to the OS and read hardware serial numbers, even if you want to play exclusively offline.

That I agree with, but again, it has zero to do with TPM or Secure Boot, neither of which are required for blacklisting. That said precisely zero people here are talking about something offline. Valorant cannot be played offline, it's an online-only game. And unfortunately dumb fucking users shat the bed there too. Online only games without anti-cheat are a cesspool. I don't like the idea of a game being able to ban me based on my hardware, but I do like the idea of it being applied to others. Unfortunately that position is unreconcilable.

Comment Re:it's all about trust (Score 1) 85

oh, that ... i just don't trust the trusted platform, and as long as i can avoid it i won't contribute to propagate corporate moves wanting to decide for me what is or isn't allowed to boot or run on my systems.

Why are you trusting anything? It sounds like you don't know what TPM / Secure boot is or how it works. You are in full control over both. You get to decide what is in the TPM (and there are many ways to clear the TPM, Windows provides 3, your UEFI provides some too). TPM is nothing more than a place to store stuff. In the absence of TPM that stuff is still stored on your computer, just typically not in a secure place, i.e. as a file somewhere on your drive.

Secure boot? That's entirely in your control as well. UEFI gives you control over which keys are allowed to boot, you can delete Microsoft's default key, you can generate new keys for your Windows installation, just as you can for your Linux boot process. The fact you don't is your own fault and akin to leaving your house key under the door mat because that's where the previous owner kept it.

i'm aware this is in all likelihood a lost case in the long run, but here we are!

The lost case is the complete misinformation that is preventing people from using these things they themselves control properly. To play with your words: It is your choice but you're not being responsible with it at the moment.

Comment Re:kids these days ... (Score 1) 85

TPM 2.0 could already be brute-forced within 45 minutes with hardware from 10+ years ago.

TPM 2.0 can *in theory* be brute forced in 45 minutes. For that you need access to the hardware directly without any intermediate software doing something as simple as rate limiting queries. I'm happy for you that you recognise that they broke this 10+ years ago, but quite disappointed that you don't realise this security gap was effectively closed shortly after for anything that doesn't involve taking your computer to a specialised lab to attack your credentials.
*Hint: It's not sophisticated nation states most people are protecting against.

However, it is in full control by Microsoft.

Absolutely false. It is in full control by YOU. YOU get to decide what keys are loaded in BIOS. YOU get to decide which keys are permitted to boot. YOU get to even generate custom keys for your Windows instance. The fact that YOU left secure boot settings at default with the MS provided key preloaded in your BIOS is YOUR failing.

The only person who gave Microsoft any control is you. I'm guessing your WiFi password is your router's MAC address as well? You probably also keep your house key under the door mat right? Because that sounds like the kind of security you seem to apply. Either that or you don't have a clue how TPM works. Take your pick.

In theory one could say that TPM and secure boot are security measurements.

At least you're half way there. When you figure out how they work, they'll be security measurements in practice too.

Comment Re:kids these days ... (Score 1) 85

So it sounds like you know specifically how they identified the user's CPU. What means was actually employed?

The flagging goes beyond CPU, it also flags the motherboard. Microsoft has been doing this to tie windows activation to components for decades now. A like for like CPU change would trigger a windows reactivation, and that was before you even learned to spell TPU.

Comment Re:Science denier, anyone? (Score 1) 73

The premier maker of EVs, the one who made EVs that people want to buy, is vilified by the political side that wants you to believe in climate change. A sect of that side wants to replace capitalism with communism, even though the resource utilization of that model is one third to one half of what we have today, and would slow down the innovation and advancement that might help us solve the issue.

WTF? How is us (especially me) being a Musk hater related to climate change? I still drive a non-nazi EV just fine. One that I bought with capitalistic money. That same capitalism massively reduced the energy consumption of my house, that same capitalism is the driving force for solar and decarbonisation.

I am sorry I thought you were a climate denier. I now realise you have severe mental health issues and it was not my intention to pick on someone challenged such as you. I apologise.

Comment Re:This shit needs to stop (Score 1) 12

Prussia invented modern schooling to indoctrinate kids, so it's weird to see people complaining about business getting in on the act.

The state needed compliant soldiers and factory workers, so it built schools to create them (and separate schools for turning smarter kids into middle-managers). And most of the West copied that system.

Comment Re:TPM Suspicion Intensifies (Score 1) 85

Anyone care to once again reassure me how TPM, a system for hiding information from a computer's user regardless of privilege level, can't be used for DRM again?

Are you seriously posting this on a story about fingerprinting of individual pieces of hardware? It's clear TPM isn't required for DRM. It's a device used for storage of secure keys, something that is entirely within your control. E.g. Microsoft has been tying Windows activation to hardware from back in the days before people even knew how to spell TPM.

Hell you're worried about someone "hiding information" in the TPM? Clear it. Windows gives you not one, not two, but three mechanisms to do so, either through the settings in security, or through the management console tpm.msc, or just opening PowerShell and running the command Clear-TPM and rebooting.

Why are you so afraid of something under your control?

Comment Re:kids these days ... (Score 4, Insightful) 85

and the anticheat in turn asked me to change some of my bios or uefi settings, can't remember

The requirement is for secure boot and TPM to be enabled. You seem very proud of not enabling security settings on your device that in general help you regardless of using Valorant or not.

The hilarious part here is that the general Slashdot "wisdom" is that TPM can be used to flag and black list your device for whatever reason, ... as if that was ever required for software to do that.

It just once again goes to show that people will put a lot of effort into working against their own self interest.

Comment Re:Groundwork for censorship (Score -1, Troll) 92

> There use to be news, with editors that would filter out the nonsense

You must be a Boomer. I've been involved in several news stories and most of them were somewhere between nonsense and outright lies.

What you and the people pushing this censorship want is a return those Good Old Days when people were only able to read Government-Approved Nonsense and not whatever nonsense other people posted online.

"OH NOES! PEOPLE AREN'T VOTING FOR THE CANDIDATES WE TELL THEM TO VOTE FOR! OUR DEMOCRACY IS IN DANGER!"

That's basically what this headline is really saying. Their democracy is where they tell us who to vote for and we vote for them... and that's failing hard in a world where people aren't limited to whatever "news" the Telescreen feeds them.

Slashdot Top Deals

Staff meeting in the conference room in 3 minutes.

Working...