Chris Marget
Chris Marget
@chrismarget.bsky.social
"or by hijacking another device that controls the TPM bus (e.g., a BMC)"

What does it mean to "control" the bus in this context? Something beyond read access?
January 4, 2026 at 3:10 PM
She got the job!

Next summer, Ellie will not be sitting with me at our local college summer league baseball games, because she'll be in the press box working as the official scorekeeper!

Very excited for her.
December 31, 2025 at 12:01 AM
Some MkIV VW owners found coolant in their brake lights.

Faulty/leaky coolant level sensors + capillary action.
December 25, 2025 at 8:48 PM
Control over turns is one of the things which got me wondering about it. Quite a variety of radii in there, so it's clearly more than just waypoints.

I guess each turn could be assigned a bank angle in advance.
December 22, 2025 at 9:17 PM
Yep, that tracks. I think I may also have gotten temperature data from passive copper DACs.

I guess I was thinking of the data path.
December 22, 2025 at 8:46 PM
Curious, did your teardowns reveal different twist rates between the pairs in a cable? I've read that it's a thing (orange twisted tighter than blue or whatever), but have never seen it myself.

Thanks!
December 22, 2025 at 2:50 PM
What are they hoping you'll find?

I've failed to track down the slides, but I think I learned in BRKDCT-2214 (Cisco Live presentation from over a decade ago) that passive DAC SFP+ cables are literally wires. Nothing else in there.
December 21, 2025 at 11:56 PM
Cool, thank you!

This lever was a critical one to my systems around this time, and I always kinda wondered why it was a switch, rather than a knob.

Bits of nostalgia are always an 0xF highlight for me.
December 19, 2025 at 1:27 AM
It's got me wondering about a polyglot style attack:

Can the visible ink and the magnetic components be decoupled so that a machine reads one value while a visible inspection reads another?
November 11, 2025 at 3:56 PM
Turns out she was correct! It's legitimately magnetizable ink, which is read by running it over something like the heads used for audio cassettes.
November 11, 2025 at 2:28 PM
Okay.

It's interesting to me. <shrug>
January 28, 2025 at 2:10 PM
Is "keystroke patterns or rhythms" not at least a bit interesting?

I don't know what the frontend for this thing is, but it suggests javascript (or a fat client?) would be profiling my touch-typing.

I'd not have suspected a text input box of doing biometric profiling. Seems interesting to me.
January 28, 2025 at 1:58 PM