3 ms·
https://github.com/xmikos/cryptboot/blob/master/README.md https://github.com/xmikos/cryptboot/blob/master/README.md
by jimsi 5y ago
https://github.com/xmikos/cryptboot/blob/master/README.md https://github.com/xmikos/cryptboot/blob/master/README.md
- Foxboron 5y agoI don't think a 5 year old project linked without context is appropriate when talking about modern boot chain security. It doesn't even support stubs so it fails at the first threat scenario described in this post.
- selfhoster11 5y agoI disagree. UEFI boot security is not that recent, and it hasn't changed so much as to render earliest approaches less secure.
- Foxboron 5y agoIt is less secure. The initramfs is not signed, along with the microcode.