𝕽𝖚𝖆𝖎𝖉𝖍𝖗𝖎𝖌𝖍

       🅸 🅰🅼 🆃🅷🅴 🅻🅰🆆. 
 𝕽𝖚𝖆𝖎𝖉𝖍𝖗𝖎𝖌𝖍 𝖋𝖊𝖆𝖙𝖍𝖊𝖗𝖘𝖙𝖔𝖓𝖊𝖍𝖆𝖚𝖌𝖍 

Ceterum Lemmi necessitates reactiones

  • 0 Posts
  • 39 Comments
Joined 3 years ago
cake
Cake day: August 26th, 2022

help-circle




  • Is it possible to configure the kernel to allow access to decrypted contend only through the user session?

    Theoretically, kernel keys can be set to be readable only by the user session, and in an uncompromised root is not able to read those keys. I can imagine a filesystem encryption design that uses a user session key to en/decrypt data on the fly using a user session key, such that not even root or a process in another user session could read the mounted filesystem.

    Does such a system exist? As I understand, this is not the way dm-crypt or LUKS work. FDE and TPM are still vulnerable to hacking while everything is running, unlocked, and mounted.







  • Yeah. Back when sugar-Coke was a thing (it was going around in popular media about “better” Coke being available around Passover) we searched around and found some and tried it. I couldn’t tell a difference, but that’s probably because I don’t like Coke to begin with and hadn’t tasted the corn-syrup version in decades so had nothing to compare it with. It was putting lipstick on a pig.

    You’re right that Coke-Cola’s just going to fine ways to cut corners. My guess is that they’d start with sugar, but slowly start adding corn syrup back in in increasing amounts until it’s back to mostly corn syrup and some token sugar.