The point is, fundamentally, because of where the TPM is situated in the system, it can't be used in a "DRM secure" manner, any keys would end up in the OS (or the GPU has to have weird amounts of knowledge hardcoded in it)
the TPM is not involved in DRM, because there's no benefit to the DRM to have the TPM involved.
as for how 4K stuff ends up on the internet, all it takes is the TEE on one of many android devices with L3 widevine implementations being compromised - like on any Tegra X1 device where you have arbitrary code execution in the bootrom.
Power management, mobile and firmware developer on Linux. Security developer at nvidia. Ex-biologist. Content here should not be interpreted as the opinion of my employer. Also on Mastodon and Bluesky.
no subject
Date: 2025-01-02 11:45 am (UTC)the TPM is not involved in DRM, because there's no benefit to the DRM to have the TPM involved.
as for how 4K stuff ends up on the internet, all it takes is the TEE on one of many android devices with L3 widevine implementations being compromised - like on any Tegra X1 device where you have arbitrary code execution in the bootrom.