I just hope they won't blunder in one of these incredibly embarrassing ways:

https://pulsesecurity.co.nz/advisories/tpm-luks-bypass
...