|
|
Subscribe / Log in / New account

Cannot Guarantee Zero Information on Physical Acquisition

Cannot Guarantee Zero Information on Physical Acquisition

Posted Mar 12, 2009 3:25 UTC (Thu) by quozl (guest, #18798)
Parent article: Tin Hat 20090309 released

RAM can be read some time after power is removed, or after a reset. We learned that with respect to laptops on suspend being insecure.

I don't see how running only from RAM makes this type of attack any harder ... in fact I think it would make it easier, because there is only one place something can be instead of two or more.

Now if the BIOS would scrub RAM effectively after powering up, that's one less vector to worry about. It means an attacker would have to also subvert the BIOS.


to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds