• 0 Posts
  • 5 Comments
Joined 2 years ago
cake
Cake day: December 28th, 2023

help-circle



  • That actually is correct, because if you power your system down ahead of time, this attack is meaningless since there is only a VERY short window where this attack works. From your link:

    Attackers execute cold boot attacks by forcefully and abruptly rebooting a target machine and then booting a pre-installed operating system from a USB flash drive, CD-ROM or over the network.

    If your attacker only has your cold machine that’s been off since well before you hit the checkpoint, they can’t do shit with that attack. At best they can boot the system up to verify your system operates as intended, but you don’t have to provide any of the credentials to finish booting or unlock the TPM to load the key material into memory.