#HITB2024BKK

  Рет қаралды 123

Hack In The Box Security Conference

Hack In The Box Security Conference

Күн бұрын

TPMs have been present in modern laptops and servers for some time now, but their adoption is quite low. While operating systems do provide some security features based on TPMs (think of BitLocker on Windows or dm-verity on Linux) third party applications or libraries usually do not have TPM integrations.
One of the main reasons of low TPM adoption is that interfacing with TPMs is quite hard: there are competing TPM software stacks (Intel vs IBM), lack of key format standardization (currently being worked on) and many operating systems are not set up from the start to make TPM easily available (TPM device file is owned by root or requires privileged group for access). Even with a proper software stack the application may have to deal with low-level TPM communication protocols, which are hard to get right.
In this presentation we will explore a better integration of TPMs with some Linux Kernel subsystems, in particular: kernel keystore and cryptographic API. We will see how it allows the Linux Kernel to expose hardware-based security to third party applications in an easy to use manner by encapsulating the TPM communication complexities as well as providing higher-level use-case based security primitives.
===
Ignat is a systems engineer at Cloudflare working mostly on Linux, platform and hardware security. Ignat’s interests are cryptography, hacking, and low-level programming. Before Cloudflare, Ignat worked as a senior security engineer for Samsung Electronics’ Mobile Communications Division. His solutions may be found in many older Samsung smart phones and tablets. Ignat started his career as a security researcher in the Ukrainian government’s communications services.

Пікірлер
#HITB2024BKK #COMMSEC D2: Exploring Vulnerabilities in Flutter Mobile Apps
22:07
Hack In The Box Security Conference
Рет қаралды 317
The kernel report
46:13
linux.conf.au
Рет қаралды 71 М.
ССЫЛКА НА ИГРУ В КОММЕНТАХ #shorts
0:36
Паша Осадчий
Рет қаралды 8 МЛН
UFC 287 : Перейра VS Адесанья 2
6:02
Setanta Sports UFC
Рет қаралды 486 М.
Sigma girl VS Sigma Error girl 2  #shorts #sigma
0:27
Jin and Hattie
Рет қаралды 124 МЛН
#HITB2024BKK #COMMSEC D2: Detecting Botnets via DNS Traffic Analysis Using Machine Learning
34:15
FA2024 Week 14: Networking Security (2024-12-05)
42:24
SIGPwny
Рет қаралды 230
#HITB2024BKK #COMMSEC D1: CoralRaider Targets Victims Data and Social Media Accounts
30:20
Hack In The Box Security Conference
Рет қаралды 177
Debugging the Linux Kernel
39:11
Write your own Operating System
Рет қаралды 2,6 М.
#HITB2024BKK D2 - Exposing Critical Threats in Millions of Connected Devices
52:33
Hack In The Box Security Conference
Рет қаралды 186
#HITB2024BKK #COMMSEC D1: How a Combination of Bugs in KakaoTalk Compromises User Privacy
36:42
Hack In The Box Security Conference
Рет қаралды 244
38c3 Demystifying Common Microcontroller Debug Protocols
44:08
Atomic Central
Рет қаралды 513
Why Compile a Linux Kernel from Source?
13:38
DJ Ware
Рет қаралды 32 М.
ССЫЛКА НА ИГРУ В КОММЕНТАХ #shorts
0:36
Паша Осадчий
Рет қаралды 8 МЛН