<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress.com" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>keyfind &amp;laquo; WordPress.com Tag Feed</title>
	<link>http://en.wordpress.com/tag/keyfind/</link>
	<description>Feed of posts on WordPress.com tagged "keyfind"</description>
	<pubDate>Sun, 19 May 2013 22:25:31 +0000</pubDate>

	<generator>http://en.wordpress.com/tags/</generator>
	<language>en</language>

<item>
<title><![CDATA[Firewire Attacks]]></title>
<link>http://cyberphob1a.wordpress.com/2008/03/05/firewire-attacks/</link>
<pubDate>Wed, 05 Mar 2008 20:05:30 +0000</pubDate>
<dc:creator>cyberphob1a</dc:creator>
<guid>http://cyberphob1a.wordpress.com/2008/03/05/firewire-attacks/</guid>
<description><![CDATA[Amazing new research: Attacks via Firewire. Firewire is a type of interface that allows DMA &#8211;]]></description>
<content:encoded><![CDATA[<p><a href="http://www.flickr.com/photos/millzero/705902956/" target="_blank"><img src="http://farm2.static.flickr.com/1158/705902956_f9c64c1fa1_m.jpg" align="left" height="240" hspace="7" width="217" /></a></p>
<p>Amazing new research: <a href="http://www.sec-consult.com/fileadmin/Whitepapers/Vista_Physical_Attacks.pdf" target="_blank">Attacks via Firewire</a>. Firewire is a type of interface that allows DMA &#8211; Direct Memory Access. In order to make access to devices attached via Firewire faster, DMA allows complete access to a computer&#8217;s memory.</p>
<p>A problem arises since firewire devices can be attached even though a computer is locked. By overwriting the right instructions in memory, it is possible <a href="http://storm.net.nz/projects/16" target="_blank">log in with an arbitrary password</a>.</p>
<p>However this is not the only way the issue can be exploited. Especially in connection with the recently published <a href="http://cyberphob1a.wordpress.com/2008/02/22/hard-disk-encryption-not-so-secure-as-you-might-think/" target="_blank">attacks on hard disk encryption</a> this is extremly critical. While those cold boot attacks require to reboot the system, DMA via Firewire allows an attacker to read a complete memory image while the system is running and locked. After a view minutes the image is copied and the attack cannot be detected at all. The tool &#8220;keyfind&#8221;, described in <a href="http://citp.princeton.edu/pub/coldboot.pdf" target="_blank">the paper</a> by Halderman et al. could be easily used to find discover the master keys in such an image. Problems with cold boot attacks like bit decay can be completely disregarded.</p>
<p>So everyone: disable your firewire ports! And while you&#8217;re at it: also disable PCMCIA slots and external SATA interfaces. All of those can be used for DMA attacks.</p>
<p><font color="#666666" size="-2">Picture of fire by <a href="http://www.flickr.com/photos/millzero/705902956/" target="_blank">Millzero Photography</a></font></p>
]]></content:encoded>
</item>

</channel>
</rss>
