I know people have mixed opinions on Braxman but I don't see any huge leaps in logic here tbh... Thoughts?

all 24 comments

sorted by: hot top controversial new old
[–] 17 points 2 years ago (2 children)

3 letter agencies, governments in general and data hungry companies will continue searching for a way to bypass encryption. And just a reminder: direct access to the system (remote or physical) bypasses all kinds of encryption unless it's protected separately. Backdoors and kernel level anti-cheats ftw

  • source
  • hideshow 4 child comments
  • [–] 5 points 2 years ago (3 children)
  • [–] [S] 3 points 2 years ago (1 child)

    Physical access like an NPU chip fixed onto your motherboard?

  • source
  • parent
  • hideshow 2 child comments
  • [–] 2 points 2 years ago (1 child)

    Sure, anything with direct bus access to unencrypted data.... that'll do it

  • source
  • parent
  • hideshow 2 child comments
  • [–] 3 points 2 years ago (1 child)

    I didn't mean that. I meant if the hacker has access to the administrator (or just user in case with E2EE messengers) account, they can see and download anything, no matter how encrypted it is. The chips can do stuff as well but idk any proof of that tbh

  • source
  • parent
  • hideshow 2 child comments
  • [–] 1 point 2 years ago* (1 child)

    Sure, side channel leakage if you can run locally.

    Honestly, most machines have enough cores, that you could pin a process to a specific core giving it independent cache, and work around a lot of these side channel attacks. So you're encrypted end to end messenger would get an exclusive core. Kind of like how we do VM pinning nowadays

  • source
  • parent
  • hideshow 2 child comments
  • [–] 3 points 2 years ago*

    Eh, kind of. Remote Desktop with an admin account would be more useful than physical access to a locked computer. Because if Bitlocker is enabled, then all that matters is that you can sign into the computer. Use strong passwords, don’t open RDP to the WAN, lock your workstations when walking away, etc…

    Even cloning the drive to crack later (historically, this was a popular choice if you had physical access) is pretty useless if you don’t have a user’s password.

  • source
  • parent
  • [–] 10 points 2 years ago (1 child)

    Death of encryption?

    They are rolling out forced turned-on-by-default BitLocker hard drive encryption for everyone using Windows 11. Including all those people who dont understand how it works and won't save their backup keys.

    Microsoft is dumb but pretending they are trying to kill encryption is also dumb.

  • source
  • hideshow 2 child comments
  • [–] [S] 1 point 2 years ago

    I suppose I meant to say "end to end encryption". It's no secret that it's been under attack from the top down for a long time but from my understanding the legislation keeps getting shot down. This seems like a perfect workaround unless I'm missing something.

  • source
  • parent
  • [–] [B] 2 points 2 years ago

    Here is an alternative Piped link(s):

    https://piped.video/PnG66fHKRw0

    Piped is a privacy-respecting open-source alternative frontend to YouTube.

    I'm open-source; check me out at GitHub.

  • source
  • [+] -3 points 2 years ago* (last edited 2 years ago) (1 child)
  • [+] 5 points 2 years ago* (1 child)
  • [+] -6 points 2 years ago* (last edited 2 years ago) (2 children)
  • [–] 5 points 2 years ago* (2 children)

    Sometimes I think you're strcat because you behave the same in a lot of ways but seem to have the complete opposite opinions

  • source
  • parent
  • hideshow 4 child comments