0wn3d by an iPod – now for download
Besides the Slides from CanSecWest we now put Linux modified for the iPod to do the FireWire Attacks online. Get
it here.
Besides the Slides from CanSecWest we now put Linux modified for the iPod to do the FireWire Attacks online. Get
it here.
Martin Pittenauer was so nice to confirm that the OF protection is there since MacOS 10.2.2. He also pointed me to an interesting article on “Securing Firewire” by Jonathan ‘Wolf’ Rentzsch.
Also tagged RedTeamThink Secret – Briefly: Mac OS X 10.3.7 gains more improvements: “While tracking the latest developer builds can admittedly get redundant, build 7S210 is somewhat significant [...] 7S210 includes improved compatibility with FireWire drives that failed to mount previously, apparently correcting current issues with FireWire drives”
I wonder if this Issues also include the missing OHCI-Filters?
We will give some presentations on the Issues in near future:
Hacking with Fire
Will be held by Michael Becher at the chaos communication congress Berlin, Germany, 27.-29. December 2004.
Course on offensive and forensic aspects of FireWire
This 5-day class will be held by the staff of the Laboratory for Dependable Distributed Systemsin April in Cologne or Aachen.
FireWire [...]
To reduce confusion among the press, we drafted a press release on the FireWire issues.
Also tagged RedTeamI have been interviewed on the FireWire issues by macnews.de (in German).
Also tagged RedTeamSomebody has a weblog entry on the pac sec conference. Since the weblog is french I only have a vague idea what this is all about (and a suspicion who’s weblog it is) but there is an AVI of my demonstration at pac sec at that site. The video is in quite decent quality and [...]
Also tagged RedTeamIn my forensics lecture I basically gave the same presentation as at PacSec on the Firewire issues, but this time it was recorded. Check: Video of the lecture (in english), audio-only track, Q&A (in german), Advisory: FireWire/IEEE 1394 direct memory access – CAN-2004-1038.
Also tagged RedTeamComputers have a Tendency to be nondeterministic whenever you are preparing/doing a demonstrations. That happened to me with the FireWire presentation. I prepared the demos between two Macs. Since I had no two Macs to take with me to Tokyo I decided to do the Demo between my powerbook and my wife’s Dell Lattitude X [...]
Also tagged RedTeamFireWire/IEEE 1394 direct memory access – CAN-2004-1038
Advisory URL: http://pacsec.jp/advisories.html
Subject: Potential system compromise by connected FireWire devices
CVE #: CAN-2004-1038
Affected: So far all tested Operating Systems with FireWire support
Summary:
——–
The FireWire/IEEE 1394 specification allows client devices [...]