TPM-Sniffing LUKS Keys on an Embedded Linux Device [CVE-2026-0714]

Tiberium 19 points 8 comments March 01, 2026
www.cyloq.se · View on Hacker News

Discussion Highlights (2 comments)

Tiberium

Relevant: https://lkml.org/lkml/2025/8/14/1583 , https://lore.kernel.org/linux-integrity/20250825203223.62951... (Disables TCG_TPM2_HMAC by default)

eqvinox

Not exactly surprising; unless you establish some type of shared secret between the TPM and CPU (e.g. by burning it into fuses in both devices, or through some signature scheme), the bus connecting the two will always be a problem…

Semantic search powered by Rivestack pgvector
3,471 stories · 32,344 chunks indexed