#fde — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #fde, aggregated by home.social.
-
@harld : het ligt wat ingewikkelder: het plaatje past niet bij de nu vrijgegeven hacktool.
Je kunt Bitlocker zó configureren dat er bij opstarten géén wachtwoord of pincode wordt gevraagd: als ik het goed begrijp werkt de huidige tool alleen in dat geval.
De maker claimt wel dat een bypass ook mogelijk is bij gebruik van een pin of wachtwoord, maar v.z.i.w. is dat nog niet gepubliceerd.
P.S. Niet dat ik fan ben van Bitlocker, want daar is al heel lang controverse over.
-
CW: reinstall your linux distro in-place with this one weird trick
the keyboard on my x86_64 tablet pc broke, so I decided to replace the arch install with postmarketOS because it has good touchscreen and FDE support (and I miss apk so badly)
normally you'd just liveusb boot and install to a new partition
but there's 2 issues with this
- there is a single USB-C port on this craplet. keyboard XOR thumbdrive, if I go the liveusb route then I can't type stuff because no external keyboard
- I can't make a new partition. I'm fine with nuking the arch rootfs, but I forgot to split out my /home and I don't have anywhere to back it up to, so I can't wipe the arch partition
so I had the extremely cursed idea to (ab)use btrfs subvolumes
the plan goes something like this:
- download pmOS image
- extract rootfs to new pmOS subvolume
- install kernel and initrd into EFI partition
- reboot
- realize you booted pmOS into the arch rootfs
- remember to set pmOS as default toplevel subvolume
- reboot
- [to be continued]
occasional hiccup, but I'm still quite happy! touchscreen FDE decryption is working after a quick
apk add unl0kr, just gotta get it booting into the right rootfs and I should have a fresh pmOS install on my hands :Dblog post coming soonTM (maybe) (if I feel like it)
#linux #postmarketOS #fde -
Xubuntu 26.04 LTS (beta) - Installation with FDE failed. The preconfigured encrypted setup option, failed with Python arguments errors. And manually configured and partitioned setup failed, because it did not detect device mapped root correctly -> not possible to install on it. Let’s hope the final version fixes these both annoying issues. I did update the installer with latest version just before running the install, so the image had even older installer, which I didn’t use. #Xubuntu #LTS #LUKS2 #FDE #fail #installation #Linux
-
Is the #FDE role becoming less desirable? https://blog.pragmaticengineer.com/is-the-fde-role-becoming-less-desirable/
-
@SpaceLifeForm : a spare motherbord won't help just like that.
The actual encryption key is stored in a TPM chip (the rescue code is used to allow the system to access to the actual encryption key).
So even if you have a spare mobo, you'll have to transplant the TPM chip from the old to the new mobo.
The best advice: have a backup, as recent as possible. My backups are on VeraCrypt encrypted external (USB) HDD's.
-
Как защитить ключи LUKS с помощью Рутокен ЭЦП 3.0 и алгоритмов ГОСТ Р 34.10-2012. Часть 2
Безопасная эксплуатация ноутбуков, или Защита мастер-ключа LUKS с помощью пользовательского ключа на USB-накопителе Как мы уже знаем из первой части , система LUKS подбирает параметры хеширования ключей таким образом, чтобы для проверки одной парольной фразы нужно было не менее секунды, в связи с чем для взлома пароля длиной 8 символов требуется более ста миллионов лет. Однако рост производительности CPU/GPU и развитие квантовых технологий может привести к тому, что лет через десять текущие оценки окажутся неактуальными, поэтому с учетом будущих угроз длину пароля можно увеличить, и LUKS позволяет использовать фразы длиной до 512 символов. Тем не менее, каждый дополнительный символ существенно усложняет пользовательский опыт и повышает шансы того, что пользователь просто забудет свой пароль и потеряет доступ к данным. Сегодня мы покажем, как можно защитить мастер-ключ LUKS с помощью случайного пользовательского ключа, который трудно подобрать, легко потерять и невозможно забыть.
https://habr.com/ru/companies/aktiv-company/articles/994018/
#linux #luks #полнодисковое_шифрование #full_disk_encryption #fde #рутокен #рутокен_эцп #рутокен_эцп_30 nf #plymouth
-
Как защитить ключи LUKS с помощью Рутокен ЭЦП 3.0 и алгоритмов ГОСТ Р 34.10-2012. Часть 1
В этом цикле статей мы подробно рассмотрим технологию LUKS с позиции системного администрирования и способы защиты мастер-ключа, в том числе и с использованием алгоритмов ГОСТ Р 34.10-2012 на Рутокен ЭЦП 3.0. Материал прошел обсуждение в фокус-группе нашего сообщества ALD Pro фессионалов и будет включен в содержание открытого курса по службе каталога ALD Pro . Возможности повысить квалификацию в объеме 16 академ. часов не обещаем, но вкусных буковок будет много.
https://habr.com/ru/companies/astralinux/articles/992778/
#linux #luks #полнодисковое_шифрование #full_disk_encryption #fde #рутокен #рутокен_эцп #рутокен_эцп_30 nf #plymouth
-
#Microsoft hands out your #Windows #Bitlocker disk #encryption recovery key if #USA agencies like the #FBI ask for it:
https://www.forbes.com/sites/thomasbrewster/2026/01/22/microsoft-gave-fbi-keys-to-unlock-bitlocker-encrypted-data/And yes, this has already happened at least twenty times a year for some keys.
According to other situations, I'd not particular bet that twenty is the correct number as US law usually prevents services from talking about it too openly.
-
- Boots into #ChimeraLinux Plasma live USB
- Ok, pretty standard Plasma, nice wallpaper, let's see...
- No Firefox? Konqueror? In 2025? That's what you're going with? OK, ok, not hatin'...!
- Install icon? No?
- Application launcher, ok, i-n-s-t-a-l-l... uhh... nothing?
- Ok Konqueror, konquer this web search for me...
- Reads docs... ok! NO INSTALLER. Hmmm!
- Ok, I could totally lazy out by just installing the #Fedora #Sway spin, but honestly, the instructions aren't too bad, and they support #FDE, which is always a plus
- To be continued...
-
Jornada hacia la huelga
La Casa+Grande, sábado, 22 de noviembre, 11:30 CET
Desde el Frente de Estudiantes organizamos una jornada de aprendizaje y socialización de cara a la huelga universitaria de los días 26 y 27 de noviembre. En ella, compartiremos experiencias entre trabajadores y estudiantes de las universidades, disfrutaremos de una comida popular, y aprenderemos nociones básicas de seguridad militante. Además, contaremos con la intervención del UESARIO, quienes expondrán la situación de ocupación del Sáhara occidental y analizarán la realidad del imperialismo. La jornada finalizará con una cena y un espacio para el ocio.
-
@pitrh @SamuraiSakura @inlovewithpda
Great write-up!
Agreed, the install process on #OpenBSD is really quite painless, especially since they added #FDE setup to the installer.
The fact that it isn't a #TUI is really minor.
Also, #doas is BAE. I install it everywhere else, including all my Linux boxen. 😁
-
I got a "hankerin'" (as we say here) to try daily-driving #FreeBSD again, but I kind of want to wait until the desktop installer is ready.
@evgandr, how fast did you say you got FreeBSD to resume from S3, again?
I wouldn't mind trying #NetBSD again, but the instructions for #FDE (#FullDiskEncryption) looked quite daunting.
-
CW: Wie nennt man es, wenn man das full-disk-encryption Passwort Schulter-Surft?
AbLUKSen.
-
If you use #LUKS for #FDE and have fast disks, you should read my last blog post.
The default settings cut the performance 90% vs unencrypted in synthetic testing. Real world would probably not be as bad but still, with some quick settings we got it back up to 50%, which probably means 90% in real world.This was for a big RAID10 array with 10 really fast NVME disks, I have not looked at if this happens also on single disks. Defaults might also have changed since I did the testing early last year.
https://blog.nyman.re/2025/08/18/luks-on-nvme-from-gibs.html
It's a really long #blaugust2025 post to make up for the recent micro blogging :-)
-
Ubuntu 25.10 To Feature Experimental TPM-Backed Full Disk Encryption (FDE) #ubuntu25_10 #TPM #FDE #QuestingQuokka #Security #FullDiskEncryption #TrustedPlatformModule #Linux #Opensource
https://ostechnix.com/ubuntu-25-10-tpm-backed-full-disk-encryption-fde/ -
Ubuntu 25.10 To Feature Experimental TPM-Backed Full Disk Encryption (FDE) #ubuntu25_10 #TPM #FDE #QuestingQuokka #Security #FullDiskEncryption #TrustedPlatformModule #Linux #Opensource
https://ostechnix.com/ubuntu-25-10-tpm-backed-full-disk-encryption-fde/ -
Ubuntu 25.10 To Feature Experimental TPM-Backed Full Disk Encryption (FDE) #ubuntu25_10 #TPM #FDE #QuestingQuokka #Security #FullDiskEncryption #TrustedPlatformModule #Linux #Opensource
https://ostechnix.com/ubuntu-25-10-tpm-backed-full-disk-encryption-fde/ -
Ubuntu 25.10 To Feature Experimental TPM-Backed Full Disk Encryption (FDE) #ubuntu25_10 #TPM #FDE #QuestingQuokka #Security #FullDiskEncryption #TrustedPlatformModule #Linux #Opensource
https://ostechnix.com/ubuntu-25-10-tpm-backed-full-disk-encryption-fde/ -
Thinking of trying #postmarketOS on my #PinebookPro.
I didn't even know you could run it as a desktop OS.
Supposedly the installer supports #FullDiskEncryption, which is... "poggers," I think the kids say.
-
Building secure and privacy protecting mobile phones
https://fifthdimensionnews.substack.com/p/upwardly-mobile
#EFF #Rayhunter #IMSI #CitizenLab #Deibert
#mobile #mobian #Debian #KaliNetHunter #PostMarketOS #Jolla #SailfishOS #Finland #EU #Pine64 #OnionMobileDev #TOR #GuardianProject #press #Journalism #FDE #RFERL #GrapheneOS #Whonix #phone #encryption #CivilLiberties #FirstAmendment #FourthAmendment #USA #Development #FreedomOfThoughtandExpression -
Its been, I've lost count, 6 years? And still GRUB2 does not support #argon2 while #pbkdf2 absolutely gets stomped .
Effectively rendering #fde with encrypted boot insecure on Linux (X86). While with u-boot on ARM you can use argon2
I do not understand why this isn't like a high priority issues for GNU
-
OpenSUSE Aeon Desktop Enhances Security with Full Disk Encryption #Aeondesktop #Opensuse #FDE #FullDiskEncryption #Linux #Security
https://ostechnix.com/full-disk-encryption-in-aeon-desktop/ -
Passphrase timeout for disk decryption at boot added (potential battery lifesaver) https://www.undeadly.org/cgi?action=article;sid=20240426083308 #openbsd #fde #encryption #passphrase #efi #boot #timeout #batterysaver
-
Passphrase timeout for disk decryption at boot added (potential battery lifesaver) https://www.undeadly.org/cgi?action=article;sid=20240426083308 #openbsd #fde #encryption #passphrase #efi #boot #timeout #batterysaver
-
Very cool, FDE including the boot image. No more boot partitions for me :D
-
@Unperson Thank you. Full-disk encryption is mandatory for me.