Hacker News new | past | comments | ask | show | jobs | submit login

You can export the key to something else (and it's worth doing) personally I've gone for passing it to Microsoft (I'm not sure I could find whatever USB key I've stored it on otherwise). The option is under "Manage bitlocker" "backup your recovery key".

I've had bitlocker fail to find the key after doing a BIOS update where the TPM has been messed up (although usually it's just been disabled and needs re-enabling). If Microsoft has the backup key you can login on another PC or phone and get the key again (from memory it's around 25 random characters).

My threat model is theft of a PC not Microsoft one drive being hacked. Just means whoever steals the PC now has to either:

a) Hack the TPM

b) Hack my Microsoft account

c) Give up and reformat the PC before resale

While a & b are not impossible they seem unlikely for a random thief, while option c seems like the most likely response to a PC stolen with bitlocker enabled.

Bitlocker makes me less likely to be a victim of identity theft after having my PC stolen.




Exactly this.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: