Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
_1tem
1y ago
0 comments
Save
Share
But I believe there is a spoof-proof way to accept hardware keys only? Limit yourself to known good hardware manufacturers and you should be good.
0 comments
1 comments · 1 top-level
top
newest
oldest
jeroenhd
1y ago
That'll just exclude most of your visitors. The visitors you're not refusing are using TPMs or secure elements you can't trust anyway because of a long history of side channel attacks for "known-good" hardware manufacturers.
j
/
k
navigate · click thread line to collapse