12.11.2012 Views

Can you still trust your network card? - Agence nationale de la ...

Can you still trust your network card? - Agence nationale de la ...

Can you still trust your network card? - Agence nationale de la ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Real impact Controlling the host<br />

OS <strong>de</strong>pen<strong>de</strong>nt<br />

◮ like all DMA-based attacks;<br />

◮ need to get around IOMMU;<br />

◮ need to find out where to read/write;<br />

◮ need to trigger the co<strong>de</strong> execution.<br />

◮ for the proof of concept, we used Linux (because we know how<br />

it works);<br />

◮ same would work for any other OS;<br />

◮ nice trick, configure a new mac address on the NIC:<br />

90:90:90:90:90:90.<br />

SGDSN/ANSSI – http://www.ssi.gouv.fr/<strong>trust</strong><strong>network</strong><strong>card</strong> 46/51

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!