FREE Registration is required
Overview:
This paper presents a software solution to Firewire-based physical security attacks on Microsoft Windows operating systems. In this first proof-of-concept, the FirewireBlocker service is running with SYSTEM privileges in order to be able to enable/disable hardware. While users can normally not interface with service, risk for privilege escalation remains. For example, if users with normal user rights have write access on the executable, they could replace it with a malign piece of software which would then be started with SYSTEM privileges. Future versions should establish the principle of least privilege. Further research is required to identify the fewest required privileges the FirewireBlocker service has to run with in order to be able to serve its purpose.
(Is this item miscategorized? Does it need more tags? Let us know.)
| Format: | Size: | 166 KB | |
| Date: | Aug 2009 | ||
| Pages: | 7 |
Top results from Network Security
» View all Network Security listings
Top results from Security Management
White Papers, Webcasts, and Resources
- Windows Phones and Unified Communications MicrosoftGain a more solid understanding of UC, why its essential for your business today, and what makes Windows phones ideal for secure UC environments.
- IBM WebSphere Portal for z/OS taps into System z, Web 2.0: Executive update IBMSee how to lower costs and extract value faster with more responsive, interactive and intuitive business applications from WebSphere Portal Version 6.1.
- Live Webcast: Get Control over SaaS Application Access TriCipherLearn to simplify and protect access to your company's data in Software-as-a-Service (SaaS) apps using identity and access management best practices.
Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
- News, Insights, Guidance
Visit CBSMoneyWatch.com Today -
MoneyWatch.com is the premier destination for smart, practical personal finance advice. Watch the latest Human Capital videos to make the most of your biggest asset - your earning power
- Learn more >>
Featured Training Courses
Meet Doc
-
Here to help you with your Document Management Needs
- Check out Doc’s Blog on ZDNet
- Help your company, help the earth I want to share with you the Environmental Defense Fund Paper Calculator, which allows you to gauge your organization's environmental impact.
- Which is Greener: Paper or Digital? The Answer May Surprise You Anything we can do to reduce paper consumption is good. But what about the impact of digital waste?
-
Produced by
ZDNet and







