Cold boot encryption attack video
posted May 13th 2008 2:15pm by Eliot Phillipsfiled under: misc hacks
We haven’t made a regular habit of watching BoingBoing TV, but lately they’ve been covering topics we’ve been interested in… not the dolphin pr0n. In yesterday’s episode they talked to Jacob Appelbaum and members of the EFF about the cold boot encryption attack. The attack involves dumping the contents of memory to a storage device by power cycling the system. Cooling the memory chip with compressed air helps preserve the integrity of the data. The attacker can then search the data to find encryption keys protecting the contents of the hard drive. A fool proof solution to mitigate this attack hasn’t been developed yet. You can read more about cold boot attacks at the Center for Information Technology Policy. The BoingBoing TV episode, bizarre editing and all, can be downloaded directly here.

I’ve got a fool-proof fix for this attack, it is the #1 rule of system security.
Restrict physical access to all sensitive boxes.
Posted at 2:30 pm on May 13th, 2008 by SleighBoy