Hacker News new | ask | show | jobs
by tyleroderkirk 5933 days ago
Most software-based security systems assume that the hardware hasn't been maliciously tampered with. cryp.sr is apparently no exception.

If you suspect such attacks, the only defense seems to be adding more hardware. For example, you could use the root of trust from a TPM module or the added physical security provided by a lockbox.