6 ms·
Yes an attacker still could. BitLocker is handled within Microsoft binaries in the windows EFI partition. I believe it is specifically bootmgr.efi. You can sti
by helloooooooo 4y ago
Yes an attacker still could. BitLocker is handled within Microsoft binaries in the windows EFI partition. I believe it is specifically bootmgr.efi.
You can still chain load up windows on KVM at this point, however getting the Windows partition decrypted may be difficult and requires faking up a few TPM measurements.
- AshamedCaptain 4y agoYou cannot "fake a few TPM measurements", it is the TPM itself which decides whether to give up the key or not.