Skip to content

WindowsTechs.com

Collaborate Disseminate

Menu

Primary menu

  • Home

Author Archives: Melab

How do nonce hashes prevent replay attacks on Apple Silicon?

Posted on October 16, 2023 by Melab

Apple Silicon-based Macs have a LocalPolicy file that controls the secure boot process. To prevent replay attacks of the LocalPolicy, hashes of nonces are used. From here:

The lpnh is used for anti-replay of the LocalPolicy. This is an SH… Continue reading How do nonce hashes prevent replay attacks on Apple Silicon?→

Posted in apple, Secure Boot

When can TPM_Start(ST_Clear) be issued to a TPM?

Posted on May 9, 2023 by Melab

TPM 1.2 has an NVRAM permission attribute called TPM_NV_PER_WRITE_STCLEAR. The TPM 1.2 specification describes it as

The value is writable until a write to the specified index with a datasize of 0 is successful. The lock of this attribute… Continue reading When can TPM_Start(ST_Clear) be issued to a TPM?→

Posted in TPM

UEFI secure boot anti-rollback

Posted on June 18, 2020 by Melab

I haven’t seen any seen mechanism by which UEFI can detect the most recent update to a binary from being swapped out for an older binary that was signed with the same key as the up-to-date binary. Google’s vboot is the only PC firmware I k… Continue reading UEFI secure boot anti-rollback→

Posted in replay-detection, uefi

Creating a simple self-signed crlertificate with openssl x509/ca/req

Posted on August 9, 2018 by Melab

All I want to do is create a self-signed certificate that is like this:

It has the serial number of 0.
It lacks both a start date and end date.

If this cannot be done using OpenSSL, then I’d like to have the start date be… Continue reading Creating a simple self-signed crlertificate with openssl x509/ca/req→

Posted in OpenSSL

How are relay attacks thwarted?

Posted on September 13, 2017 by Melab

I just now learned that what I now know to be a relay attack is actually a security problem. This is meant to be a very broad question. How are relay attacks thwarted?

Continue reading How are relay attacks thwarted?→

Posted in authentication, Exploit, Identity, man-in-the-middle

Preventing new NVRAM areas from being defined in a TPM

Posted on June 26, 2017 by Melab

Is there anyway to prevent new NVRAM areas from being defined on a TPM until the next reboot (similar to power-cycle types of protection)? The reason I ask is because firmware could check for NVRAM areas at certain hard-coded… Continue reading Preventing new NVRAM areas from being defined in a TPM→

Posted in TPM

TPM nvLocked flag

Posted on June 19, 2017 by Melab

What does nvLocked control in a TPM? I’ve read it makes makes NVRAM access permissions be enforced, but I’d like examples. It is also referred to as permanent, but the documentation is ambiguous. Locked “permanently” until th… Continue reading TPM nvLocked flag→

Posted in TPM

How are TPMs used to detect tampering?

Posted on June 30, 2016 by Melab

I’ve known some stuff about trusted platform modules for over six or seven years. I understand their usage in (un)wrapping keys and storing information in NVRAM which may then be locked permanently or until the next power cycle. And though… Continue reading How are TPMs used to detect tampering?→

Posted in TPM, trusted-computing

Post navigation

Newer posts →

Primary Sidebar Widget Area

Infocon Status

Internet Storm Center Infocon Status

Recent Posts

  • Nvidia Could Sell Twice as Many Chips Next Year — If Suppliers Can Keep Up September 21, 2026
  • RatHat Android Trojan Uses AI for Automation September 21, 2026
  • Fastly gives enterprises real-time control over AI models and agents September 21, 2026
  • North Korea’s job interview scam runs both ways September 21, 2026
  • Google hit with €403 million GDPR fine over location tracking September 21, 2026

Tag Cloud

Agriculture Alzheimer's Disease Art Audio Automation Bluetooth Building and Construction Campervan Camping Cancer Coronavirus (COVID-19) Cycling Dementia Diabetes DNA Electric Vehicles Food Home House Huawei Indiegogo MIT Mobility Moon New Atlas Audio NVIDIA Off-grid Off-road Pedal-assisted Photography Physics Radio Repair RV Samsung Satellite Sony SpaceX spoofing sustainable design The Immune System Tiny Footprint Training Water Zoom

Archives

  • Facebook
  • Twitter
  • Linkedin
  • Email
Copyright © 2026 WindowsTechs.com. All Rights Reserved.
Theme: Catch Box by Catch Themes
Scroll Up