Elektrine lite

← Feed

@elly@donotsta.re

Post #1179327

2026-04-16 01:06 UTC

@nicolas17 @yama @codemonkeymike @paulywill this, most modern machines use NVRAM for variable store. You can't reset it by just yoinking the power. Not sure how it's done on T2-based x86 (assuming T2 acts as ROT), x86 itself isn't fused so firmware isn't tamper-protected but it could be done by T2 (from what I remember, T2 emulates SPI to the x86 host and actual x86 UEFI lives in dedicated portion of an "SSD". T2 should be vulnerable to checkra1n though, so it should be possible to fool the ROT and at least modify NVRAM variables to change security policy but it would require some research.

Replies (3)

  • @elly@donotsta.re @codemonkeymike@fosstodon.org @paulywill@mstdn.ca @nicolas17@social.treehouse.systems @yama@tech.lgbt I strongly think there is some workarround to get NVRAM reset and fuck with the UEFI to work arround T2 this but I can't say more on this.

    Open ##1187351

  • @kkarhan@jorts.horse 2026-04-16 01:14

    @elly @codemonkeymike @paulywill @nicolas17 @yama case in point, it's #AntiRepairDesign and there is no legitimate reason whatsoever!…

    Open ##1191853

  • @yama@tech.lgbt 2026-04-16 06:18

    @elly @codemonkeymike @paulywill Apparently "google is not your friend" as i cant seem to find anything that concretely tells me how nvram stores data "without power". The web truly is dogcrap theese days...

    Open ##1191855