• 5 Posts
  • 32 Comments
Joined 2 months ago
cake
Cake day: April 30th, 2025

help-circle












  • I mean with physical access.

    People living with you.

    Or when you want to travel (domestically).

    Someone who doesn’t need much experience can access the hard drive / SSD and replace the bootloader.

    I know it probably doesn’t happen often, but this is more of a personal fear thing, I have trust issues with people.

    Living alone is too expensive and thus I either have to stick with family, or split rent with random strangers as roommates, not to mention, some landlords can be creepy and do weird things. I don’t have trusted friends who can like live with me as a roomate and split the rent.

    So anyways, I’m with parents, and I want evil-maid protections for peace of mind, since I can’t afford to live alone. (I mean like they are not dangerous criminals or anything like that, they’re just fucking nosey and I don’t like to find out how much do they want to spy on my online activities).

    For phones, its already too locked-down and hard to modify so I’ll just trust the verified boot to do it’s job.

    For computers, its too easy to edit the bootloader on the disk. So I think putting the botloader on such an encrypted USB and put it in read-only mode would protect against tampering with the bootloader.

    I probably sound paranoid af right?

    Basically, my threat model prioritizes preventing weirdos fucking with my electronics more than anyone else.


  • I was thinking more of like a Tamper-Resistant Boot Drive with a computer being Full Disk Encrypted, And I basically phisically carve my signature into the Hardware-Encrypted drive and always check to make sure its mine and that it hasn’t been replaced, then I unlock it in Read-Only mode, then I plug into a computer to select the bootloader on the USB drive to turn on the computer.

    Basically its a Evil-Maid-Resistant setup.

    Of course, someone with actual NSA or FSB skills are gonna get in, but its just so the average script-kiddie can’t just download some tampered bootloader online and easily replace the bootloader.

    And also I can store like a Linux Distro and Windows installation media on there and know its its much more difficult to tamper with.

    Does this work against the threat?







  • What? Who?

    You prefer Google, a company that actively works with Israel for military purposes, against Palestinians, by offering them their cloud services, and then firing the employees that were protesting? It must feel good to purchase a Pixel from them, heh?

    1. I never said to buy a pixel, I merely refuted your claim of apple being “the good guys”

    2. How does Google being evil make Apple any better? Google, Apple, its both the same. Same genocide. You are being hypocritical by accusing others of being pro-genocide while you yourself are supporting genocide yourself. Get off your high horse, you are just a Pro-Apple Pro-Israel supporter that hate Palestinians, you literally cannot claim to have the “moral high ground”.