|
|
|
|
|
by michaelmrose
2427 days ago
|
|
It's trivial to lock the USB stick in such a fashion as to be impossible to decrypt in a practical time frame. Furthermore it's practical to communicate in such a fashion that grabbing one party only grants you access to communication intended for this party. If really paranoid it might only grant you access to communication between compromise and his fellows realizing that he is burned. Maybe nothing at all if you can't successfully coerce and all devices are locked. |
|
That is definitely not true if your adversary has the ability to control the endpoint and might even reflash the firmware of your USB stick.
If you use OTPs in such a threat scenario it's safest to use old school easy-to-burn paper OTPs with manual encoding/decoding.