# 通过硬件攻击来绕过大多数基于TPM芯片的Bitlocker加密

Source: https://www.zaihua.news/article/22731/

[返回新闻流](https://www.zaihua.news/)
2024年2月6日 · 09:27 · [在花新闻](https://www.zaihua.news/about/)

# 通过硬件攻击来绕过大多数基于TPM芯片的Bitlocker加密

安全研究人员 [stacksmashing](https://m.youtube.com/@stacksmashing) 发现可以通过硬件攻击来绕过大多数Microsoft Windows设备上使用的基于TPM芯片的Bitlocker加密。他表示CPU和外置TPM芯片之间的通信未被加密，当开机引导固件检测计算并发送硬件哈希值到TPM芯片，经TPM芯片检测通过后会将Bitlocker密钥以明文形式传输给CPU，此时只需要通过LPC总线信号访问TPM总线即可嗅探到Bitlocker密钥。

[微软官方建议为TPM芯片设置PIN来缓解此问题](https://learn.microsoft.com/zh-cn/windows/security/operating-system-security/data-protection/bitlocker/countermeasures) （此功能可以通过组策略和 [manage-bde命令](https://learn.microsoft.com/zh-cn/windows-server/administration/windows-commands/manage-bde) 启用）

[Github](https://github.com/stacksmashing/pico-tpmsniffer)
[YouTube](https://youtube.com/watch?v=wTl4vEednkQ)

投稿：[@TNSubmbot](https://t.me/TNSubmbot)
频道：[@TestFlightCN](https://t.me/TestFlightCN)

[上一条Yandex荷兰母公司宣布近52亿美元出售俄罗斯业务](https://www.zaihua.news/article/22730/)[下一条英国国王查理三世确诊癌症](https://www.zaihua.news/article/22732/)
