Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 22 Mar 2008 19:12:09 +0100
From:      Jeremie Le Hen <jeremie@le-hen.org>
To:        freebsd-security@FreeBSD.org
Subject:   Firewire vulnerability applicable on FreeBSD?
Message-ID:  <20080322181209.GJ66530@obiwan.tataz.chchile.org>

next in thread | raw e-mail | index | archive | help
Hi there,

I've stumbled on this article.  I wonder if this is applicable to
FreeBSD.  Would it still be possible to exploit it without a firewire
driver?

http://www.dailytech.com/Lock+Your+Workstations+Or+Not+New+Tool+Bypasses+Windows+Logon/article10972.htm

« The tool is a simple, 200-line script written in the Python
programming language exploits features built into Firewire that allow
direct access to a computer's memory.  By targeting specific places that
Windows consistently stores its vital authentication functions,
Boileau's tool is able to overwrite Windows' secured code with patches
that skip Windows' password check entirely. »

Regards,
-- 
Jeremie Le Hen
< jlehen at clesys dot fr >



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20080322181209.GJ66530>