编程知识 cdmana.com

The computer that cuts off a network also has the possibility that hacker attacks??!

Python The actual combat community

Java The actual combat community

Long press to identify the QR code below , Add as needed

Scan code, pay attention to add customer service

Into the Python community ▲

Scan code, pay attention to add customer service

Into the Java community

Big data digest

source :gizmodo

compile : Zhou Xi

 

A new name is “Air-Fi” The theoretical loopholes in the , You can turn a safe air gap computer into a wifi The emitter , Help hackers leak security data .

 

An air gap computer is a computer that is completely disconnected from any network . Israel Negev Ben-Gurion University researchers Mordechai Guri Express :“ Many machines have removed all possible network components , from wifi To Bluetooth , But this vulnerability can be exploited by hackers DDR SDRAM( Double data flow - Synchronous dynamic random access memory ) The bus is in 2.4GHz WiFi The frequency band produces electromagnetic radiation , And use this to encode the binary data .”

 

Guri Say in an email :“ This technology requires attackers to have a high level of technology in both design and implementation . However , Tradition in the outside world IT Environment , There's a simpler hidden leak . The focus of this vulnerability is where the traditional network-based covert channel fails , Leaking data from the air gap computer .”

 

He also noted that :“ In such an unconventional way Wi-Fi medium , It's something I've been working on for the past year .”

 

These transmissions are invisible to other devices , Only hackers can receive it through specially prepared software and hardware .

 

He wrote :

As part of the infiltration phase , An attacker may collect data from an intruded computer . These data can be files 、 Key record 、 voucher 、 Encryption key, etc . Once the data is collected , The malware will start AIR-FI Secret passage . It encodes the data , And make use of DDR SDRAM The electromagnetic radiation generated by the bus transmits data into the air ( With 2.4 GHz Of Wi-Fi Frequency band ).

 

Guri Well known in the field of security for trying to attack air gap computers .2019 year , He uses the brightness of the screen and the power cord to transmit data from a secure computer ,2018 year , He can also use simple computer speakers to transfer data through ultrasonic audio files .

 

In this loophole ,Guri It can be enforced DDR SDRAM The bus transmits signals to intruded laptops and smartphones with wifi Functional devices . He used this vulnerability to hack into four workstations , Each workstation is equipped with a similar 4GB DIMM DDR4 or DDR3 Memory module . The rest of the hardware is a poor standard configuration , Running Ubuntu operating system .

 

The vulnerability requires hackers to be able to access the computer's operating system , This means that hackers have to infect the machine before they start sending data . Besides , Once the computer transmits through its memory bus , Hackers have to install a receiver no more than a few feet from the machine , To capture wifi The signal , Which makes this vulnerability more interesting than dangerous .

 

Guri say :“ Interestingly , in the past , We have successfully demonstrated penetration through covert FM radio signals generated by displays , Then we show how attackers can generate cellular frequencies from computers to leak data . The next candidate, of course, is Wi-Fi. This is also the most challenging .”

 

Relevant reports :

https://gizmodo.com/computer-memory-can-be-made-to-speak-in-wifi-researche-1845897596

 Programmer column   Scan code and pay attention to customer service   Press and hold to recognize the QR code below to enter the group 

Recent highlights are recommended :  

  Another programmer , Caught !( Real events )

  What kind of experience is it for a programmer to have a cute girlfriend ?

 “12306” How awesome is the architecture of ?

 csv A simple solution to the problem of file reading and writing garbled code


Here's a look Good articles to share with more people ↓↓

版权声明
本文为[osc_ i7pg9ead]所创,转载请带上原文链接,感谢
https://cdmana.com/2020/12/20201225084659647r.html

Scroll to Top