26.03.2013 Views

Evil Maid Just Got Angrier - Why Full-Disk Encryption ... - CanSecWest

Evil Maid Just Got Angrier - Why Full-Disk Encryption ... - CanSecWest

Evil Maid Just Got Angrier - Why Full-Disk Encryption ... - CanSecWest

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

The Problem<br />

Startup UEFI BIOS firmware at reset vector is inherently trusted<br />

To initiate chain of measurements or signature verification<br />

But it’s firmware and can be updated<br />

If subverted, all measurements in the chain can be forged allowing<br />

firmware modifications to go undetected

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!