• kingthrillgore@kbin.social
    link
    fedilink
    arrow-up
    10
    ·
    1 year ago

    TPM actually provides some useful components to isolate encryption outside of Ring 0, which is a trust win. But any technology must be weighted against its power to oppress.

    • argv_minus_one@beehaw.org
      link
      fedilink
      arrow-up
      1
      arrow-down
      2
      ·
      edit-2
      1 year ago

      And its power to make the system less secure. Isolating things outside ring 0 means malware can isolate itself outside ring 0 as well, and then it’s impossible to detect or remove without throwing out the entire machine.

      Which is much, much scarier than anything an ordinary rootkit might do.