My thoughts on how to configure your systems to protect against the Dolos Group's excellent demonstration of sniffing TPM protected disk encryption keys:

@th heh locking the door and putting the key under the door mat... also bitlocker with TPM actively prevents you from restoring your files when your mobo breaks.

@th I guess a few grams of non-transparent epoxy resin poured on and around the TPM chip would at least make wire-tapping harder.

