Re: Firewire vulnerability applicable on FreeBSD?



On Sat, Mar 22, 2008 at 07:12:09PM +0100, Jeremie Le Hen wrote:
Hi there,

I've stumbled on this article. I wonder if this is applicable to
FreeBSD. Would it still be possible to exploit it without a firewire
driver?

http://www.dailytech.com/Lock+Your+Workstations+Or+Not+New+Tool+Bypasses+Windows+Logon/article10972.htm

« The tool is a simple, 200-line script written in the Python
programming language exploits features built into Firewire that allow
direct access to a computer's memory. By targeting specific places that
Windows consistently stores its vital authentication functions,
Boileau's tool is able to overwrite Windows' secured code with patches
that skip Windows' password check entirely. »


It is, and FreeBSD was used in a proof of concept for reading passwords
via FireWire some years ago (see http://md.hudora.de/presentations/ for
sample Python code). In CURRENT and RELENG_7, there's a tunable to
disable physical access, see fwohci(4), it should probably be ported back
to RELENG_6.

- Christian

--
Christian Brueffer chris@xxxxxxxxxxxxx brueffer@xxxxxxxxxxx
GPG Key: http://people.freebsd.org/~brueffer/brueffer.key.asc
GPG Fingerprint: A5C8 2099 19FF AACA F41B B29B 6C76 178C A0ED 982D

Attachment: pgp6dKUDEPK4y.pgp
Description: PGP signature



Relevant Pages

  • Re: freebsd reseller
    ... 2000 for workstations and 2000 Server for servers. ... FreeBSD and OpenBSD. ... When I try to install dvips I get the following ... >> I'm not at all familiar with firewire stuff. ...
    (freebsd-questions)
  • Re: Can anyone recommend an external firewire-based drive?
    ... I'm not sure if FreeBSD supports booting from firewire. ... LaCie is another highly respected brand among Mac users. ... they announce the penryn based models) and am planning to dual boot ...
    (freebsd-questions)
  • Re: All your laptops are belong to Windows.
    ... I tried a bunch of things to get my HP Pavilion to work, ... FreeBSD 5.3 *does* install on another P3-650 laptop on which I ... I also bought a FireWire card for my old laptop, ...
    (freebsd-questions)
  • Re: question
    ... > I have heard that the Mac Mini can boot from ... > Firewire, but I don't know if FreeBSD has the same ability. ... FireWire drives have another feature, ...
    (comp.unix.bsd.freebsd.misc)
  • Re: Can anyone recommend an external firewire-based drive?
    ... I'm not sure if FreeBSD supports booting from firewire. ... LaCie is another highly respected brand among Mac users. ... There were some Western Digital Firewire externals on the market but ...
    (freebsd-questions)