June 8, 2022, 10:52 p.m. | /u/Gieted__yupi

Privacy & Freedom in the Information Age www.reddit.com

A one thing I don't understand about the TPM's workings is how the hell it's possible that it can securely store a key while being protected by just a few digit PIN, that in the normal situation could be brute forced in seconds. It has some lockdown mechanism, but if someone have physical access to the device, why can't he just take the TPM apart and extract the encrypted key from it and then just brute force it?

brute forcing pin privacy tpm

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Network Security Engineer

@ Meta | Menlo Park, CA | Remote, US

Security Engineer, Investigations - i3

@ Meta | Washington, DC

Threat Investigator- Security Analyst

@ Meta | Menlo Park, CA | Seattle, WA | Washington, DC

Security Operations Engineer II

@ Microsoft | Redmond, Washington, United States

Engineering -- Tech Risk -- Global Cyber Defense & Intelligence -- Bug Bounty -- Associate -- Dallas

@ Goldman Sachs | Dallas, Texas, United States