ROCA: Infineon TPM and Secure Element RSA Vulnerability Guidance

The NCSC is investigating the impact of the vulnerability recently reported in Trusted Platform Modules (TPMs) and Secure Elements (SEs) produced by Infineon Technologies AG.

The existence of the vulnerability, known as ROCA (Return of Coppersmith’s Attack), and its effect on Windows was first reported publicly by Microsoft on 10 October. The researchers who discovered the vulnerability first published initial details of their findings on 16…

