Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Cold Boot Attacks on Disk Encryption |
|---|---|
| Date: | Thu, 21 Feb 2008 18:16:12 -0800 |
This project has been in the works since the last CCC Camp in 2007. We're all pretty excited to release it and so I thought Bugtraq readers might have some thoughts on the matter. Ed Felten wrote about it on Freedom To Tinker this morning: http://www.freedom-to-tinker.com/?p=1257 "Today eight colleagues and I are releasing a significant new research result. We show that disk encryption, the standard approach to protecting sensitive data on laptops, can be defeated by relatively simple methods. We demonstrate our methods by using them to defeat three popular disk encryption products: BitLocker, which comes with Windows Vista; FileVault, which comes with MacOS X; and dm-crypt, which is used with Linux. The research team includes J. Alex Halderman, Seth D. Schoen, Nadia Heninger, William Clarkson, William Paul, Joseph A. Calandrino, Ariel J. Feldman, Jacob Appelbaum, and Edward W. Felten." "Our site has links to the paper, an explanatory video, and other materials." "The root of the problem lies in an unexpected property of today’s DRAM memories. DRAMs are the main memory chips used to store data while the system is running. Virtually everybody, including experts, will tell you that DRAM contents are lost when you turn off the power. But this isn’t so. Our research shows that data in DRAM actually fades out gradually over a period of seconds to minutes, enabling an attacker to read the full contents of memory by cutting power and then rebooting into a malicious operating system." Our full paper with videos and photos can be found on the Princeton website: http://citp.princeton.edu/memory/ Regards, Jacob Appelbaum
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: [Full-disclosure] Tool release: extract Windows credentials from registry hives, wac |
|---|---|
| Next by Date: | CanSecWest 2008 Mar 26-28, Dragos Ruiu |
| Previous by Thread: | Certification for Web Application Security Professionals, Anurag Agarwal |
| Next by Thread: | CanSecWest 2008 Mar 26-28, Dragos Ruiu |
| Indexes: | [Date] [Thread] [Top] [All Lists] |