Hacker News new | ask | show | jobs
by IlikeKitties 302 days ago
And that Software TPM has whos vendor endorsement keys exactly? Ah yes, ones that google won't consider valid.
1 comments

Well, it's a good thing Device Bound Session Credentials (DBSC) as proposed here has no way to actually send said endorsement key anywhere; rending the objection irrelevant. The TPM is only for secure storage as verified by the browser itself, not the website being visited.