Am Sonntag, 22. November 2009 17:38:02 schrieb [email protected]:
> It doesn't really make sense because you're not protecting against a
> "casual" attacker at this point anyway.  All FDE protects against is
> powered-down physical compromise (typically theft or loss).  The moment
> your threat model includes a malicious attacker returning ownership to
> you, you've gone way beyond the "by-chance-hacker" assessment and deeply
> into espionage territory.  At that point, if the attacker has had
> manipulative access to your boot media, nothing short of hardware-level
> measurements is really going to "guarantee" the safety of your data.  I
> also refer you to http://xkcd.com/538/.

Hehe, this comic is very true. Even though I didn't try to hide from 
government or highly criminal guys, I guess you are right that the "by-chance-
hackers" won't be able to do anything which will get prevented by this way of 
doing it.



> There's nothing stopping you from this pursuit, it simply isn't going to
> protect against what you may think it does.  It adds unnecessary
> complexity for that purpose, and complexity just adds more opportunities
> for failure and subversion.  If you find it convenient, that's just up
> to you.

Well, I guess I'll let it be for the time beeing.

Thank you for the discussion!

Reply via email to