4 ms·
That only strengthens the parent point. Switch to an OS where this requirement doesn't come into play if you're worried about any governments having a backdoor
by function_seven 8mo ago
That only strengthens the parent point. Switch to an OS where this requirement doesn't come into play if you're worried about any governments having a backdoor into your own machine.
- charcircuit 8mo agoIf you sync your Linux machines key in the cloud, police could subpoena it too. The solution is not to switch to Linux, but to stop storing it in plain text in the cloud.
- NewsaHackO 8mo agoDo you know what a private key means in this context?
- charcircuit 8mo agoNo, I don't. The bitlocker key is a symmetric key.
- NewsaHackO 8mo agoOk, do you at least know what private means?
- charcircuit 8mo agoNot public.
- aksss 8mo agoCheck behind your kid's stereo - what's that? Oh, it's a PGP key and gram of meth!
- Aurornis 8mo ago> Switch to an OS where this requirement doesn't come into play I use BitLocker on my Windows box without uploading the keys. I don't even have it connected to a Microsoft account. This isn't a requirement.
- knowitnone3 8mo agoexcept Microsoft probably as a master key
- zzrrt 8mo agoPeople know the system well enough to write FOSS implementations of it; I think they would have noticed and sounded the alarm if there were a possible master key.
- codedokode 8mo agoI don't think anybody is interested in reverse-engineering closed-source OS to check if it works as documented; it;s easier to just use Linux which has open-source code.
- deleted 8mo ago[deleted]
- bryan_w 8mo ago> I don't think Well at least you got that part correct. Do you just not know about security researchers? Or even bug bounty programs? Why are you even on this forum? Doesn't seem like you know much about technology
- Krssst 8mo agoConsidering Windows's history with user consent I would be worried about the keys eventually being uploaded without asking the user and without linking online accounts. Probably not now but not something unimaginable in some future. However, since Windows can still run on user-controlled hardware (non-secure boot or VMs), I guess this kind of behavior could be checked for by intercepting communications before TLS encryption.