Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I would be weary of using this, I have been using Windows since Windows 95 and seen enough things go wrong that I wouldn't want to be locked out of my online accounts. For example one thing I noticed is that by simply updating my BIOS in Windows 11 causes havoc and everything gets signed out. A cross-platform hardware token sounds more appealing to me. I could see Hello being something to secure corporate laptops/accounts in an enterprise environment though.


>For example one thing I noticed is that by simply updating my BIOS in Windows 11 causes havoc and everything gets signed out.

That's surprising. As in, the fact that that happens is to be expected from the firmware's point of view - updating the firmware changes the measurements made to the TPM so any secrets can no longer be unlocked. But I would've expected Windows to update the expected measurements before applying the update to prevent that from happening.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: