- security News Forums
- > Attack on Windows BitLocker
- > Re: TPM + PIN + USB
Anony Mous, Anony Mous
(2 postings since 06 Dec 2009)
Re: TPM + PIN + USB 06 December 2009 02:45
Just to reply to my own post:
Another way to mitigate this type of attack would be to allow
BitLocker to store something like a “Memorable Phrase”.
This phase could then be presented on the BitLocker PIN entry screen.
If the phase was different (or absent) then the user knows that the
boot files may have been tampered with.
Obviously the user would need to be careful to make sure that no-one
learned the phrase.
BitLocker currently presents the key name on screen when a user
enters the PIN, but who remembers that long GUID key name? No-one
does.
- Threaded View
- Flat View