Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.




4 posts

Wannabe Geek
Inactive user


# 52941 7-Dec-2009 20:47
Send private message

Someone has just found a way to find your Windows 7 BitLocker password:

http://arstechnica.com/microsoft/news/2009/12/first-commercial-tool-cracks-bitlocker.ars

And I thought BitLocker was going to be all that.

Create new topic
5216 posts

Uber Geek

Trusted
Microsoft

  # 280171 7-Dec-2009 22:00
Send private message

calm down - this is not a traditional crack. This "attack" needs physical access to the machine at runtime. However, this is not a classical vulnerability.

Microsoft is aware of it, but at the end of the day security is a journey and not a destination and physical security is a big part of the solution too.

19282 posts

Uber Geek
Inactive user


  # 280172 7-Dec-2009 22:07
Send private message

Good god some people over react

Worlds going to end tomorrow people

 
 
 
 


167 posts

Master Geek


  # 280176 7-Dec-2009 22:22
Send private message

johnr: Good god some people over react

Worlds going to end tomorrow people



If thats the case can you let me out of my contract.
/s

4002 posts

Uber Geek

Trusted

# 280195 7-Dec-2009 23:32
Send private message

patznz:
johnr: Good god some people over react

Worlds going to end tomorrow people



If thats the case can you let me out of my contract.
/s


Sarah Palin for President in 2012. World is going to end that year anyways.




Do whatever you want to do man.

  

424 posts

Ultimate Geek


  # 280197 7-Dec-2009 23:36
Send private message

I can see how this is a problem if you get your laptop stolen while it's in Sleep mode (or running of course). Remember when MIT or whoever discovered that ram unplugged didn't erase its memory in seconds? I can see organisations needing highly secure laptops having memory that self destructs when someone accesses it, ie takes off the memory compartment lid.

PGP help refers to an issue where a memory cell that has been at the same state for some time, develops a static charge. Using a special device, you strip off the plastic covering of a chip and use a charge detector to see what the key that was in memory was.  This is when everything is turned off. PGP gets around this by inverting the bits every second, so no static charge develops.

8035 posts

Uber Geek

Trusted

  # 280215 8-Dec-2009 00:53
Send private message

You need a memory dump from a running system where you have admin access for it to work, same "flaw" applies to every full disk encryption because the encryption keys have to be stored in ram.

53 posts

Master Geek


  # 280250 8-Dec-2009 08:27
Send private message

oh noes *runs*

 
 
 
 


xpd

Chief Trash Bandit
10158 posts

Uber Geek

Mod Emeritus
Trusted
Lifetime subscriber

  # 280321 8-Dec-2009 10:56
Send private message





XPD / Gavin / DemiseNZ

 

Server : i5-3470s @ 3.50GHz  16GB RAM  Win 10 Pro    Workstation : Ryzen 5 3600 / 16GB DDR4 / RX580 4GB    Console : Xbox One

 

Now on BigPipe 100/100 and 2Talk               Add me on Steam


5216 posts

Uber Geek

Trusted
Microsoft

  # 280449 8-Dec-2009 17:11
Send private message

birdmanz: Someone has just found a way to find your Windows 7 BitLocker password:

http://arstechnica.com/microsoft/news/2009/12/first-commercial-tool-cracks-bitlocker.ars

And I thought BitLocker was going to be all that.



Windows Security Blog re BitLocker 'hack' claims http://bit.ly/7trj9Y "a relatively low risk to folks who use BitLocker in the real world"

19282 posts

Uber Geek
Inactive user


# 280472 8-Dec-2009 18:46
Send private message

c71931f:
johnr: Good god some people over react

Worlds going to end tomorrow people




We are all going to dieeeee....


No point in paying this months power bill then

2787 posts

Uber Geek


  # 280487 8-Dec-2009 20:18
Send private message

Is this the same bitlocker vulnerability they discovered a couple of months back, or something different?




Create new topic



Twitter and LinkedIn »



Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





News »

Samsung Galaxy Fold now available in New Zealand
Posted 6-Dec-2019 00:01


NZ company oDocs awarded US$ 100,000 Dubai World Expo grant
Posted 5-Dec-2019 16:00


New Zealand Rugby Selects AWS-Powered Analytics for Deeper Game Insights
Posted 5-Dec-2019 11:33


IMAGR and Farro bring checkout-less supermarket shopping to New Zealand
Posted 5-Dec-2019 09:07


Wellington Airport becomes first 5G connected airport in the country
Posted 3-Dec-2019 08:42


MetService secures Al Jazeera as a new weather client
Posted 28-Nov-2019 09:40


NZ a top 10 connected nation with stage one of ultra-fast broadband roll-out completed
Posted 24-Nov-2019 14:15


Microsoft Translator understands te reo Māori
Posted 22-Nov-2019 08:46


Chorus to launch Hyperfibre service
Posted 18-Nov-2019 15:00


Microsoft launches first Experience Center worldwide for Asia Pacific in Singapore
Posted 13-Nov-2019 13:08


Disney+ comes to LG Smart TVs
Posted 13-Nov-2019 12:55


Spark launches new wireless broadband "Unplan Metro"
Posted 11-Nov-2019 08:19


Malwarebytes overhauls flagship product with new UI, faster engine and lighter footprint
Posted 6-Nov-2019 11:48


CarbonClick launches into Digital Marketplaces
Posted 6-Nov-2019 11:42


Kordia offers Microsoft Azure Peering Service
Posted 6-Nov-2019 11:41



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.


Support Geekzone »

Our community of supporters help make Geekzone possible. Click the button below to join them.

Support Geezone on PressPatron



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.