BugTraq
RE: [Full-disclosure] Firewire Attack on Windows Vista Mar 08 2008 12:12PM
Larry Seltzer (Larry larryseltzer com) (3 replies)
Re: [Full-disclosure] Firewire Attack on Windows Vista Mar 10 2008 06:50PM
FD (fd cms ac)
> How much should the average user worry about this? Not very much. Most
> notebooks from average users don't even have Firewire on them and you
> would have an easier time cracking them with a dictionary attack on
> the password and other such things, which means that this attack
> makes you no more vulnerable to compromise if you've already granted
> physical access than you were before.

you don't need a firewire port on your laptop, a pcmcia slot is enough
where an attacker inserts a firewire card. but still.. it's a physical
access attack..

regarding your other email:

> OK, I guess I misunderstood the original paper
> (http://www.sec-consult.com/fileadmin/Whitepapers/Vista_Physical_Attacks

> .pdf). It now looks to me like they are claiming they can disable
> password authentication *even while the system is not logged on* - do
> I have that right?

yes, if the system is off and you can turn it on (e.g. no bios or hdd
encryption passwords) you can bypass the logon screen. this is because
the tool searches for the function "MsvpPasswordValidate" in memory and
patches it to allow any password.

FD

[ reply ]
Re: Firewire Attack on Windows Vista Mar 09 2008 04:27PM
Stefan Kanthak (stefan kanthak nexgo de) (1 replies)
Re: Firewire Attack on Windows Vista Mar 11 2008 12:51AM
Steve Shockley (steve shockley shockley net) (1 replies)
Re: Firewire Attack on Windows Vista Mar 11 2008 10:55PM
Stefan Kanthak (stefan kanthak nexgo de)
Re: [Full-disclosure] Firewire Attack on Windows Vista Mar 08 2008 06:32PM
Tim (tim-security sentinelchicken org) (1 replies)
RE: [Full-disclosure] Firewire Attack on Windows Vista Mar 08 2008 10:03PM
Larry Seltzer (Larry larryseltzer com) (2 replies)
Re: [Full-disclosure] Firewire Attack on Windows Vista Mar 09 2008 12:28AM
Jacob Appelbaum (jacob appelbaum net) (1 replies)
RE: [Full-disclosure] Firewire Attack on Windows Vista Mar 10 2008 03:36AM
Larry Seltzer (Larry larryseltzer com) (1 replies)
Re: [Full-disclosure] Firewire Attack on Windows Vista Mar 11 2008 03:56AM
Jacob Appelbaum (jacob appelbaum net)
Re: [Full-disclosure] Firewire Attack on Windows Vista Mar 08 2008 10:51PM
Tim (tim-security sentinelchicken org)


 

Privacy Statement
Copyright 2010, SecurityFocus