this post was submitted on 15 Apr 2026
386 points (98.0% liked)

Privacy

48129 readers
569 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 6 years ago
MODERATORS
 
you are viewing a single comment's thread
view the rest of the comments
[–] FauxLiving@lemmy.world 4 points 6 days ago

The problem isn't the software, there is already software that provides identity services.

The problem is that you will not have the cryptographic signatures that authenticate your app as a trusted identity provider. Nor would your app be able to fool the hardware attestation, which is built on unique signed cryptographic certificates that are signed by the manufacturer's Certificate Authority and physically burned into the TPM on your device.

In order to pass attestation, your system must boot into a trusted OS image and then it has to prove that by submitting a signed quote, generated by information stored in your TPM along with keys signed by the manufacturer's CA.

This isn't something that you can hack around, it's built on cryptographic verification of your entire boot sequence.