5 ms·
Great writeup on how to do a black box "cold-boot stepping attack" (https://www.usenix.org/system/files/conference/woot17/woot17-paper-obermaier.pdf https://www
by hyper_reality 6y ago
Great writeup on how to do a black box "cold-boot stepping attack" (https://www.usenix.org/system/files/conference/woot17/woot17-paper-obermaier.pdf https://www.usenix.org/system/files/conference/woot17/woot17...) on an encrypted HDD. This is why the recommendation is to use encrypted filesystems rather than relying on the obscure hardware device to do FDE securely. Which might seem obvious to most readers here, but I guess that self-encrypting hard disks are highly marketable.
- azalemeth 6y agoSome organisations (e.g. pharmaceutical companies, medical researchers) mandate that all employees have physically encrypted portable drives. The presumption is that "bad but enough encryption" is better than "non technical user can't work out how to use an encrypted filesystem". The really sensitive stuff is walked around on both…