Hacker Poesy
  • FAQ
  • Login
  • Public

    • Public
    • Groups
    • Recent tags
    • Popular
    • Directory

Conversation:

Notices

  1. Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca (bobjonkmanformer)'s status on Friday, 20-Feb-2015 11:17:28 EST Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca
    Remote profile options...
    • lnxw48 (Linux Walt)
    LUKS is applied at the file system by the OS. Even compromised firmware on a hard drive will see only a stream of encrypted bits. OTOH the baked-in encryption on drives is now forever suspect.
    Friday, 20-Feb-2015 11:17:28 EST from sn.jonkman.ca permalink
    • Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca (bobjonkmanformer)'s status on Friday, 20-Feb-2015 10:07:33 EST Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca
      Remote profile options...
      • Luana Spinetti
      @luanaspinetti We've got to use application layer !crypto. We can no longer trust transport layer security like https (Thanx, Lenovo!) or hardware security like smart cards (Thanx, GCHQ!)
      Friday, 20-Feb-2015 10:07:33 EST permalink
    • MMN-o ✅⃠ (mmn)'s status on Friday, 20-Feb-2015 10:37:53 EST MMN-o ✅⃠ MMN-o ✅⃠
      Remote profile options...
      • Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca
      Of course we can trust transport layer security, as long as we don't blindly trust a factory image to come configured in a secure fashion. :)
      Heck, even harddrives have been known to come preloaded with trojans because they were "pre-formatted" with a filesystem (and someone had measled in an evil .exe). Can't really remember who had this problem, but I think it was #Maxtor or someother.
      Friday, 20-Feb-2015 10:37:53 EST permalink
    • MMN-o ✅⃠ (mmn)'s status on Friday, 20-Feb-2015 10:55:49 EST MMN-o ✅⃠ MMN-o ✅⃠
      Remote profile options...
      • Roland Häder
      In the case I was thinking about you could format it either way you wanted.
      The more dangerous backdoors are the ones the #NSA have access to, where the actual firmware of the disk is tampered with (giving possibilities to circumvent many security measures).
      And such tampering is already available publically for SD cards (and SSDs in general I guess) since bunnie et al. presented it on 30c3.
      Friday, 20-Feb-2015 10:55:49 EST permalink
    • Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca (bobjonkmanformer)'s status on Friday, 20-Feb-2015 11:08:42 EST Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca
      Remote profile options...
      • lnxw48 (Linux Walt)
      @lnxw48 True, https is still good. And yes, the entire PKI business is corrupt (Thanx, Diginotar and Comodo!). The Lenovo MITM problem comes from corporate greed, an operating system that's hostile to its users, browsers that merrily display a little lock icon regardless of origin (see my PKI complaint above), and users who trust the vendors, certs, OS, and browsers without verifyi…
      Friday, 20-Feb-2015 11:08:42 EST permalink

      Attachments

      1. bobjonkman-20150220-ostatus-jj2n.html
    • MMN-o ✅⃠ (mmn)'s status on Friday, 20-Feb-2015 11:50:38 EST MMN-o ✅⃠ MMN-o ✅⃠
      Remote profile options...
      • Former Bob Jonkman -- Please use the new server at https://gs.jonkman.ca
      @bobjonkman Yes, it is hard to trust hardware nowadays. Hopefully RNGs aren't infiltrated too.
      Friday, 20-Feb-2015 11:50:38 EST permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • Privacy
  • Source
  • Version
  • Contact

Hacker Poesy is a GNU social hub. It runs version 1.1.3-beta3, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All Hacker Poesy content and data are available under the Creative Commons Attribution 3.0 license.

Switch to mobile site layout.