Skip to content

PCPTool relying on event digests instead of data #205

@oSumAtrIX

Description

@oSumAtrIX

PCPTool depends on the event digest rather than the actual data. This means that to calculate the Platform Configuration Registers, it replays the digests. While the data is useful for remote attestation, an attacker could easily modify it. Because PCPTool relies solely on the digest and does not verify that the digest matches the data, the same PCRs will be calculated regardless of any alterations to the data.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions