logoalt Hacker News

nottorplast Thursday at 8:07 AM0 repliesview on HN

> An attacker with local root can just extract the wireguard keys from process memory, or use the TPM to decrypt the state file like Tailscale would.

That was my point :)