Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Vista Security > Re: Bypassing BitLocker in TPM-only (basic) mode...?

Reply
Thread Tools Display Modes

Re: Bypassing BitLocker in TPM-only (basic) mode...?

 
 
Richard G. Harper
Guest
Posts: n/a

 
      04-11-2009
You can boot with a CD/DVD/bootable device - but since the contents of the
hard drive are encrypted (all but a small startup stub) it doesn't do you
any good anyway.

"groffg" <> wrote in message
news:...
>
> Anyone had any experience bypassing BitLocker (basic mode) using the
> recovery console (i.e., booting to the Windows DVD or rescue CD)? Based
> on the documentation, seems like it would work (provided BIOS is
> configured to boot to CD/DVD drive before the HDD).
>
> Having said that, would M$ allow such an obvious attack vector? I don't
> have a machine w/ a TPM right now, so I can't test this myself. Anyone
> tried this out?



 
Reply With Quote
 
 
 
 
groffg
Guest
Posts: n/a

 
      04-15-2009

But I thought the Windows recovery CD/DVD was "bitlocker compatible,"
meaning that if you boot to the CD/DVD, and bitlocker is detected, then
it would allow you to authenticate first (which would happen
transparently in the event you were using basic mode/TPM).


Richard G. Harper;1221716 Wrote:
> You can boot with a CD/DVD/bootable device - but since the contents of
> the
> hard drive are encrypted (all but a small startup stub) it doesn't do
> you
> any good anyway.
>
> "groffg" <> wrote in message
> news:...
> >
> > Anyone had any experience bypassing BitLocker (basic mode) using the
> > recovery console (i.e., booting to the Windows DVD or rescue CD)?

> Based
> > on the documentation, seems like it would work (provided BIOS is
> > configured to boot to CD/DVD drive before the HDD).
> >
> > Having said that, would M$ allow such an obvious attack vector? I

> don't
> > have a machine w/ a TPM right now, so I can't test this myself.

> Anyone
> > tried this out?



--
groffg
Posted via http://www.vistaheads.com

 
Reply With Quote
 
Robert Kochem
Guest
Posts: n/a

 
      04-17-2009
groffg wrote:

> But I thought the Windows recovery CD/DVD was "bitlocker compatible,"
> meaning that if you boot to the CD/DVD, and bitlocker is detected, then
> it would allow you to authenticate first (which would happen
> transparently in the event you were using basic mode/TPM).


No, that doesn't work as you expect it. If not boot from your HDD the boot
code is different and therefore the TPM is blocked.
Bitlocker volumes can be access from the Vista installation environment
AFAIR only by entering the Bitlocker recovery key (the "numerical monster")
or by providing a saved key on an usb drive.

Robert
 
Reply With Quote
 
groffg
Guest
Posts: n/a

 
      04-17-2009

Ahh, makes sense. Thank you Robert.

Robert Kochem;1227468 Wrote:
> groffg wrote:
>
> > But I thought the Windows recovery CD/DVD was "bitlocker

> compatible,"
> > meaning that if you boot to the CD/DVD, and bitlocker is detected,

> then
> > it would allow you to authenticate first (which would happen
> > transparently in the event you were using basic mode/TPM).

>
> No, that doesn't work as you expect it. If not boot from your HDD the
> boot
> code is different and therefore the TPM is blocked.
> Bitlocker volumes can be access from the Vista installation
> environment
> AFAIR only by entering the Bitlocker recovery key (the "numerical
> monster")
> or by providing a saved key on an usb drive.
>
> Robert



--
groffg
Posted via http://www.vistaheads.com

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Toshiba Tecra M5 BIOS support for Bitlocker in TPM mode? matthewj9 Windows Vista Security 6 02-08-2008 11:23 AM
Protected Mode / Basic User Level Tapsa65 Windows Vista General Discussion 1 06-04-2007 10:34 AM
Vista auto switch to basic mode, way to disable? James Welch Windows Vista General Discussion 0 10-17-2006 09:06 PM
Aero Basic versus Classic mode Beck Windows Vista General Discussion 1 09-11-2006 05:51 PM
Basic theme mode to Standard Steve Windows Vista Mail 0 06-16-2006 01:21 PM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59