Show HN: An eBPF kernel guard for vTPM access https://ift.tt/c4C2Ys3

Show HN: An eBPF kernel guard for vTPM access A kernel guard I prototyped after eBPF and vTPM work for a customer, where we use the TPM to protect the private keys for mTLS. Any process running as root can open the TPM devices, and so can any process in the `tss` group, through `/dev/tpmrm0`. That means they can use those keys too. This is a prototype and some research into protecting this path. https://ift.tt/A0q7sTG October 5, 2026 at 12:34AM

Post a Comment

0 Comments