Comment by zenoprax
2 hours ago
Yes, but not by automating the password process. You could probably do some sort of remote authentication with a custom iniramfs that will "phone home" for a key but that initramfs, even if signed and protected from tampering, is still exposing the authentication end point.
The attacker would just need to spoof the request to gain the key.
No comments yet
Contribute on Hacker News ↗