Evil Maid Just Got Angrier - Why Full-Disk Encryption ... - CanSecWest
Evil Maid Just Got Angrier - Why Full-Disk Encryption ... - CanSecWest
Evil Maid Just Got Angrier - Why Full-Disk Encryption ... - CanSecWest
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
The Problem<br />
Startup UEFI BIOS firmware at reset vector is inherently trusted<br />
To initiate chain of measurements or signature verification<br />
But it’s firmware and can be updated<br />
If subverted, all measurements in the chain can be forged allowing<br />
firmware modifications to go undetected