Thunderbolt bugs can expose a PC if you leave it alone with a hacker
地区:
  类型:
  时间:2024-09-22 02:06:24
剧情简介

Thunderbolt ports may put your PC in jeopardy, but only if you leave it alone with a capable and well-prepared hacker.

That's according to security researcher Björn Ruytenberg from the Eindhoven University of Technology, who outlined seven vulnerabilities in Thunderbolt, collectively called Thunderspy, in a recent paper (via Wired). The vulnerabilities are serious — a hacker who knows what they are doing could gain full access to data on a laptop that's locked and encrypted.

Laptops made before 2019 with Thunderbolt ports running Windows and Linux are vulnerable. Macs built before 2019 are a little safer, as an attacker would have to use another attack in conjunction with Thunderspy to gain access. The researcher claims the bugs cannot be fixed via a software update.

Mashable Light SpeedWant more out-of-this world tech, space and science stories?Sign up for Mashable's weekly Light Speed newsletter.By signing up you agree to our Terms of Use and Privacy Policy.Thanks for signing up!

Pulling off the attack isn't easy, though. The hacker needs physical access to the machine, so they can unscrew it and attach a device to it (see Ruytenberg's video below).

Thunderbolt is a practical hardware interface as it allows for high-speed data transfer as well as charging, and it's compatible with USB-C. It was first introduced on Apple's MacBook Pro in 2011.

Thunderbolt is Intel's standard, and the company issued a response Sunday, claiming that a new security scheme called Kernel Direct Memory Access (DMA) has been implemented since 2019, protecting from these types of attacks. In his paper, Ruytenberg says that "systems supporting Kernel DMA Protection in place of Security Levels, released from 2019 onward, are currently subject to further investigation."

SEE ALSO:Apple launches 13-inch MacBook Pro with Magic Keyboard, new processor

Thunderbolt came under scrutiny in 2019, when security experts outlined a number of security vulnerabilities under the collective name Thunderclap, which also allow attackers with physical access to a PC to compromise its security. It's worth noting that Microsoft's recently launched Surface devices do not support Thunderbolt, allegedly due to security concerns.

19次播放
83381人已点赞
3人已收藏
明星主演
庞晓宇
秦海菲
殷正洋
最新评论(357+)

舒高

发表于7分钟前

回复 明萌派 :


徐嘉良

发表于2分钟前

回复 碧昂丝 :


阿弟

发表于3分钟前

回复 夏天的雪 :


猜你喜欢
Thunderbolt bugs can expose a PC if you leave it alone with a hacker
热度
326
点赞

友情链接: