Bitlocker: TPM + Pre-Boot Pin
#1
Hello,
is there any possible way to attack a device with (Bitlocker) TPM+Preboot-Pin encryption ?

I took a physical image, but bitlocker2john doesnt give me a hash, and Passware also wouldn’t give me the option for a wordlist attack (only with memory dump, but i dont habe a dump or decrypted hiberfile.sys)

Thank Wink

Best regrads
Sondero
Reply
#2
There's no human entered password-hash to attack as the encryption keys are stored in the TPM and are released with the PIN.
Reply
#3
You probably need a hardware attack like described on https://dolosgroup.io/blog/2021/7/9/from...ny-network
Reply
#4
If i understand it correct, this attack only works if there is no pre-autentification needed Undecided
Reply
#5
Ah I see, you are right, the PIN requirement prevents this attack.
Reply