Replying to
@gsuberland@chaos.social @mkoek@mastodon.nl @GossiTheDog@cyberplace.social Unless Microsoft made another mistake this shouldn't be possible. Accessing disk encryption keys should always use what is called a "salted session", where the communication between TPM and application is encrypted, precisely to prevent passive attacks on the bus.