Cold Boot Attacks on Disk Encryption

Cold Boot Attacks on Disk Encryption

NewsGroups | Search | Tools
 comp.dcom.telecom  Post an article  get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content  add this group's latest topics to your Google content  YahooMyWeb Yahoo!  Google Google  Windows Live Favorites Windows Live  del.icio.us del.icio.us  digg digg  Add to Netscape Netscape
Subject Author Date
Cold Boot Attacks on Disk Encryption Monty Solomon 02-23-2008
Posted by Monty Solomon on February 23, 2008, 5:24 pm
If you were  Registered and logged in, you could reply and use other advanced thread options

New Research Result: Cold Boot Attacks on Disk Encryption
February 21st, 2008 by Ed Felten

Today eight colleagues and I are releasing a significant new research
result. We show that disk encryption, the standard approach to
protecting sensitive data on laptops, can be defeated by relatively
simple methods. We demonstrate our methods by using them to defeat
three popular disk encryption products: BitLocker, which comes with
Windows Vista; FileVault, which comes with MacOS X; and dm-crypt,
which is used with Linux. The research team includes J. Alex
Halderman, Seth D. Schoen, Nadia Heninger, William Clarkson, William
Paul, Joseph A. Calandrino, Ariel J. Feldman, Jacob Appelbaum, and
Edward W. Felten.

Our site has links to the paper, an explanatory video, and other
materials.

The root of the problem lies in an unexpected property of today's
DRAM memories. DRAMs are the main memory chips used to store data
while the system is running. Virtually everybody, including experts,
will tell you that DRAM contents are lost when you turn off the
power. But this isn't so. Our research shows that data in DRAM
actually fades out gradually over a period of seconds to minutes,
enabling an attacker to read the full contents of memory by cutting
power and then rebooting into a malicious operating system.

...

http://www.freedom-to-tinker.com/?p=1257


NMFall 20%
Posted by Rick Merrill on February 23, 2008, 9:27 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Monty Solomon wrote:
> New Research Result: Cold Boot Attacks on Disk Encryption
> February 21st, 2008 by Ed Felten
>
> Today eight colleagues and I are releasing a significant new research
> result. We show that disk encryption, the standard approach to
> protecting sensitive data on laptops, can be defeated by relatively
> simple methods. We demonstrate our methods by using them to defeat
> three popular disk encryption products: BitLocker, which comes with
> Windows Vista; FileVault, which comes with MacOS X; and dm-crypt,
> which is used with Linux. The research team includes J. Alex
> Halderman, Seth D. Schoen, Nadia Heninger, William Clarkson, William
> Paul, Joseph A. Calandrino, Ariel J. Feldman, Jacob Appelbaum, and
> Edward W. Felten.
>
> Our site has links to the paper, an explanatory video, and other
> materials.
>
> The root of the problem lies in an unexpected property of today's
> DRAM memories. DRAMs are the main memory chips used to store data
> while the system is running. Virtually everybody, including experts,
> will tell you that DRAM contents are lost when you turn off the
> power. But this isn't so. Our research shows that data in DRAM
> actually fades out gradually over a period of seconds to minutes,
> enabling an attacker to read the full contents of memory by cutting
> power and then rebooting into a malicious operating system.
>
> ...
>
> http://www.freedom-to-tinker.com/?p=1257
>


The problem is that a reboot does NOT turn off the memory, and on
a few systems the POST code is not even fully run.

So if your encryption key is in the DRAM - kiss it goodbye!


Similar ThreadsPosted
Cold Boot Attacks: Vulnerable While Sleeping February 29, 2008, 9:01 pm
DECT For Local Loop: 'Boot up Time'. April 2, 2005, 3:22 am
TJX Breach Shows that Encryption Can be Foiled March 31, 2007, 9:38 am
Cyberspeak: Boot Camp Will Start Exodus to Windows April 14, 2006, 2:14 pm
Patton's Low-Cost WAN Router Integrates VPN, QoS and Encryption July 6, 2005, 12:29 pm
Encryption Can Save Data in Laptop Lapses June 18, 2006, 11:12 pm
Re: Encryption Can Save Data in Laptop Lapses June 19, 2006, 12:16 am
What is the state-of-the-art of telephone call encryption? [Telecom] May 22, 2008, 6:42 am
May 6th -- 50th Anniversary of Disk Storage May 5, 2005, 10:56 am
Data Disk on Georgians Lost April 10, 2007, 11:55 am

other useful resources:
The Federal Communications Commission (FCC)
Telecommunications Industry Association
Electronic and Software Security Products and Services
International Telecommunication Union

Custom CGI Perl and PHP programming by 1-Script.com

Contact Us | Privacy Policy
The site map in XML format XML site map