Hacker News new | ask | show | jobs
Dasharo TrustRoot Ephemeral Key Incident (blog.3mdeb.com)
20 points by pietrushnic 181 days ago
1 comments

This report details a release engineering incident where a Dasharo firmware update successfully performed End-of-Manufacturing (EOM) fusing on NovaCustom laptops but utilized an ephemeral testing key instead of the persistent production key. We provide a technical analysis of the situation and outline impact for affected end users.
What is Dasharo and NovaCustom?
NovaCustom is the EU version of a https://puri.sm laptop. it's got an open boot loader and a TPM for supporting OS's that require it like Windows 11.
Dasharo is pre-installed coreboot