<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Disk encryption broken due cooled memory</title>
	<atom:link href="http://robert.penz.name/38/disk-encryption-broken-due-cooled-memory/feed/" rel="self" type="application/rss+xml" />
	<link>http://robert.penz.name/38/disk-encryption-broken-due-cooled-memory/</link>
	<description>About Linux, IT security,tips and tricks and otherstuff that comes into my mind</description>
	<lastBuildDate>Thu, 02 Feb 2012 19:57:21 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<item>
		<title>By: admin</title>
		<link>http://robert.penz.name/38/disk-encryption-broken-due-cooled-memory/comment-page-1/#comment-27</link>
		<dc:creator>admin</dc:creator>
		<pubDate>Sat, 23 Feb 2008 00:44:45 +0000</pubDate>
		<guid isPermaLink="false">http://robert.penz.name/38/disk-encryption-broken-due-cooled-memory/#comment-27</guid>
		<description>The question is, if TPM could help with a secure password storage.</description>
		<content:encoded><![CDATA[<p>The question is, if TPM could help with a secure password storage.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Markus</title>
		<link>http://robert.penz.name/38/disk-encryption-broken-due-cooled-memory/comment-page-1/#comment-26</link>
		<dc:creator>Markus</dc:creator>
		<pubDate>Sat, 23 Feb 2008 00:28:01 +0000</pubDate>
		<guid isPermaLink="false">http://robert.penz.name/38/disk-encryption-broken-due-cooled-memory/#comment-26</guid>
		<description>A quite easy security improvement would be to overwrite the stored password when the computer is shut down, such that existing systems could at least limit the attack scenarios. 

But still this doesn&#039;t add any security enhancement for the online version. 
The only solution for the online case I can think of at the moment is the one you already mentioned. It could be integrated as a fixed device, such that removing it from the circuit would require more work and therefore soon become impractical.</description>
		<content:encoded><![CDATA[<p>A quite easy security improvement would be to overwrite the stored password when the computer is shut down, such that existing systems could at least limit the attack scenarios. </p>
<p>But still this doesn&#8217;t add any security enhancement for the online version.<br />
The only solution for the online case I can think of at the moment is the one you already mentioned. It could be integrated as a fixed device, such that removing it from the circuit would require more work and therefore soon become impractical.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

