Go Back   Wireless and Wifi Forums > News > Newsgroups > alt.computer.security
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 03-04-2008, 11:26 PM
Sebastian G.
Guest
 
Posts: n/a
Default Re: Hack into a Windows PC - no password needed

The really strange thing is that every WHQL-certified FireWire driver is
explicitly required to disable this feature on startup.

Reply With Quote
  #2 (permalink)  
Old 03-05-2008, 12:14 AM
kitten
Guest
 
Posts: n/a
Default Hack into a Windows PC - no password needed

A security consultant based in New Zealand has released a tool that can
unlock Windows computers in seconds without the need for a password.

Adam Boileau first demonstrated the hack, which affects Windows XP
computers but has not yet been tested with Windows Vista, at a security
conference in Sydney in 2006, but Microsoft has yet to develop a fix.

Interviewed in ITRadio's Risky Business podcast, Boileau said the tool,
released to the public today, could "unlock locked Windows machines or
login without a password ... merely by plugging in your Firewire cable
and running a command".

Boileau, a consultant with Immunity Inc., said he did not release the
tool publicly in 2006 because "Microsoft was a little cagey about
exactly whether Firewire memory access was a real security issue or not
and we didn't want to cause any real trouble".

But now that a couple of years have passed and the issue has not
resolved, Boileau decided to release the tool on his website.

To use the tool, hackers must connect a Linux-based computer to a
Firewire port on the target machine. The machine is then tricked into
allowing the attacking computer to have read and write access to its memory.

With full access to the memory, the tool can then modify Windows'
password protection code, which is stored there, and render it ineffective.

Older desktop computers do not come equipped with Firewire ports, which
are needed for the hack to work, but many recent models do. Most laptops
made in the last few years include Firewire ports.

Paul Ducklin, head of technology for security firm Sophos, said the
security hole found by Boileau was not a vulnerability or bug in the
traditional sense, because the ability to use the Firewire port to
access a computer's memory was actually a feature of Firewire.

"If you have a Firewire port, disable it when you aren't using it,"
Ducklin said.

"That way, if someone does plug into your port unexpectedly, your side
of the Firewire link is dead, so they can't interact with your PC,
legitimately or otherwise."

Ducklin also advised people to be careful when giving others physical
access to their computer.

"I know people who'd think three times about asking passing strangers to
take their photo in front of the Opera House in case they did a runner
with the camera, yet who are much more casual with their laptop PC, as
long as it's software-locked, even though the hardware alone is worth
five times as much as the camera," he said.

Microsoft was unavailable for comment at the time of publication.


http://www.theage.com.au/news/securi...402423638.html

Reply With Quote
  #3 (permalink)  
Old 03-05-2008, 01:52 AM
SafeBoot Simon
Guest
 
Posts: n/a
Default Re: Hack into a Windows PC - no password needed

On Mar 4, 6:26*pm, "Sebastian G." <se...@seppig.de> wrote:
> The really strange thing is that every WHQL-certified FireWire driver is
> explicitly required to disable this feature on startup.


Are you sure? I thought DMA access was a requirement of the Firewire
HW specification to allow a device to map into memory?

Reply With Quote
  #4 (permalink)  
Old 03-05-2008, 02:19 AM
nemo_outis
Guest
 
Posts: n/a
Default Re: Hack into a Windows PC - no password needed

SafeBoot Simon <hunt.simon@gmail.com> wrote in news:7ef8d9ed-323c-4ea6-
a401-f0239548e669@m34g2000hsc.googlegroups.com:

> On Mar 4, 6:26*pm, "Sebastian G." <se...@seppig.de> wrote:
>> The really strange thing is that every WHQL-certified FireWire driver is
>> explicitly required to disable this feature on startup.

>
> Are you sure? I thought DMA access was a requirement of the Firewire
> HW specification to allow a device to map into memory?


Yep, you've got it right.

Regards,



Reply With Quote
  #5 (permalink)  
Old 03-05-2008, 12:25 PM
Sebastian G.
Guest
 
Posts: n/a
Default Re: Hack into a Windows PC - no password needed

SafeBoot Simon wrote:

> On Mar 4, 6:26 pm, "Sebastian G." <se...@seppig.de> wrote:
>> The really strange thing is that every WHQL-certified FireWire driver is
>> explicitly required to disable this feature on startup.

>
> Are you sure? I thought DMA access was a requirement of the Firewire
> HW specification to allow a device to map into memory?



DMA access and allowing DMA access to every possible memory location are two
different pairs of shoes. A third relevant pair would be bus-mastering.

Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Secure web authentication system w/o SSL and PKI Yong Kwang comp.security.misc 3 02-12-2008 11:10 PM
Any way to disable need for password when dialing voicemail fromphone techman41973@yahoo.com alt.cellular.verizon 35 12-31-2007 08:17 PM
Patent buster for a method that increases password security Juuso Hukkanen alt.computer.security 15 12-07-2006 03:45 PM
Patent buster for a method that increases password security Juuso Hukkanen comp.security.misc 17 12-07-2006 03:45 PM
best practices to secure home's network strutsng@gmail.com alt.internet.wireless 31 10-14-2005 11:22 AM


All times are GMT. The time now is 05:34 AM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2009, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45