Tech ARP Forums

Go Back   Tech ARP Forums > Software Discussion > General Software
Register
FAQ Members List Calendar Arcade Mark Forums Read

Google Web www.techarp.com forums.techarp.com

General Software This is the forum for general discussions about software.

Reply
 
LinkBack Thread Tools
Old 10th Mar 2008, 10:38 AM   #1 (permalink)
Active
 
Zenphic's Avatar
 
Join Date: 23 Apr 2006
Location: Quebec, Canada
Posts: 694
Reputation: 176
Zenphic has a spectacular aura aboutZenphic has a spectacular aura about
Rep Power: 4
Default Hack into a Windows PC - no password needed

Yikes!

News: Hack into a Windows PC - no password needed - Security - Technology

Quote:
Hack into a Windows PC - no password needed
Email Printer friendly version Normal font Large font Saved Asher Moses
March 4, 2008 - 1:28PM


Interviewed in ITRadio's Risky Business podcast, Boileau said the tool, released to the public today, could "unlock locked Windows machines or login without a password ... merely by plugging in your Firewire cable and running a command".
Zenphic is offline   Reply With Quote
SPONSOR
Old 10th Mar 2008, 05:42 PM   #2 (permalink)
Da Boss
 
Join Date: 10 Oct 2002
Location: In front of my BenQ Joybook 7000 notebook!
Posts: 29,426
Reputation: 2830
Adrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond repute
Rep Power: 63
Default

Yikes! So easy??

Guess we better disable the Firewire port unless we really use it.
__________________
Dr. Adrian Wong
Tech ARP | Blog @ Tech ARP | The Free Trade Zone


DYKT : The only offshore account I have is at the sand bank?

Keep Tech ARP free! Visit our sponsors!

We need PROGRAMMERS and TECHNICAL WRITERS! Contact us if you are a hot shot programmer or technical writer!

My items for sale : 50x SD Card | Memory Stick PRO | Cyclone Energy Saver | Seiko SS watch | Tiger/Carlsberg beer jugs | Travel Speakers | Motorola V600 | Nokia N90 SOLD! | New Lowepro Mini Trekker AW

Other items for sale @ the FTZ : Zalman CNPS9500 LED @ $20 | Zalman CNPS7700 Cu @ $20 | Zalman CNPS7000 Cu @ $20 | Swarovski bracelet watches | Dell 17" LCD | Hi-Fi speakers | English DIVX movies | HP LaserJet toners! | Office chairs
Adrian Wong is offline   Reply With Quote
Old 12th Mar 2008, 01:49 AM   #3 (permalink)
Active
 
Zenphic's Avatar
 
Join Date: 23 Apr 2006
Location: Quebec, Canada
Posts: 694
Reputation: 176
Zenphic has a spectacular aura aboutZenphic has a spectacular aura about
Rep Power: 4
Default

Quote:
Originally Posted by Adrian Wong View Post
Yikes! So easy??

Guess we better disable the Firewire port unless we really use it.
Aye, I always disabled whatever I never used for performance. Never knew it would be more secure
Zenphic is offline   Reply With Quote
Old 12th Mar 2008, 08:44 AM   #4 (permalink)
ARP Webmaster
 
peaz's Avatar
 
Join Date: 13 Oct 2002
Location: http://atpeaz.placidthoughts.com/
Posts: 8,487
Reputation: 1633
peaz has a brilliant futurepeaz has a brilliant futurepeaz has a brilliant futurepeaz has a brilliant futurepeaz has a brilliant futurepeaz has a brilliant futurepeaz has a brilliant futurepeaz has a brilliant futurepeaz has a brilliant futurepeaz has a brilliant futurepeaz has a brilliant future
Rep Power: 30
Default

Wow... interesting.

Hmm

Quote:
Paul Ducklin, head of technology for security firm Sophos, said the security hole found by Boileau was not a vulnerability or bug in the traditional sense, because the ability to use the Firewire port to access a computer's memory was actually a feature of Firewire.

"If you have a Firewire port, disable it when you aren't using it," Ducklin said.
peaz is offline   Reply With Quote
Old 12th Mar 2008, 03:24 PM   #5 (permalink)
Just Started
 
Join Date: 18 Oct 2007
Location: Kampar, Perak
Posts: 27
Reputation: 0
eXPeri3nc3 is an unknown quantity at this point
Rep Power: 0
Default

Quote:
Originally Posted by Zenphic View Post
Aye, I always disabled whatever I never used for performance. Never knew it would be more secure
Eh disabling it can boost performance? Cool.
Time to disable mine.
__________________
Meh: Blog | DeviantArt | Friendster | I'm 18+, Single | Perakian | Missing Someone | Turning Over A New Leaf
eXPeri3nc3 is offline   Reply With Quote
Old 12th Mar 2008, 09:32 PM   #6 (permalink)
Da Boss
 
Join Date: 10 Oct 2002
Location: In front of my BenQ Joybook 7000 notebook!
Posts: 29,426
Reputation: 2830
Adrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond repute
Rep Power: 63
Default

Quote:
Originally Posted by eXPeri3nc3 View Post
Eh disabling it can boost performance? Cool.
Time to disable mine.
Not really. It will save you an IRQ though... although modern PCs have more than enough IRQs thanks to APIC.
__________________
Dr. Adrian Wong
Tech ARP | Blog @ Tech ARP | The Free Trade Zone


DYKT : The only offshore account I have is at the sand bank?

Keep Tech ARP free! Visit our sponsors!

We need PROGRAMMERS and TECHNICAL WRITERS! Contact us if you are a hot shot programmer or technical writer!

My items for sale : 50x SD Card | Memory Stick PRO | Cyclone Energy Saver | Seiko SS watch | Tiger/Carlsberg beer jugs | Travel Speakers | Motorola V600 | Nokia N90 SOLD! | New Lowepro Mini Trekker AW

Other items for sale @ the FTZ : Zalman CNPS9500 LED @ $20 | Zalman CNPS7700 Cu @ $20 | Zalman CNPS7000 Cu @ $20 | Swarovski bracelet watches | Dell 17" LCD | Hi-Fi speakers | English DIVX movies | HP LaserJet toners! | Office chairs
Adrian Wong is offline   Reply With Quote
Old 13th Mar 2008, 09:59 AM   #7 (permalink)
Active
 
Zenphic's Avatar
 
Join Date: 23 Apr 2006
Location: Quebec, Canada
Posts: 694
Reputation: 176
Zenphic has a spectacular aura aboutZenphic has a spectacular aura about
Rep Power: 4
Default

Quote:
Originally Posted by eXPeri3nc3 View Post
Eh disabling it can boost performance? Cool.
Time to disable mine.
Maybe not firewire, but things like IDE channels or network cards might slightly boost Windows startup speed since the OS will not need to autodetect some non-existing devices. Well that's what I think happens
Zenphic is offline   Reply With Quote
Old 13th Mar 2008, 12:25 PM   #8 (permalink)
Da Boss
 
Join Date: 10 Oct 2002
Location: In front of my BenQ Joybook 7000 notebook!
Posts: 29,426
Reputation: 2830
Adrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond reputeAdrian Wong has a reputation beyond repute
Rep Power: 63
Default

Quote:
Originally Posted by Zenphic View Post
Maybe not firewire, but things like IDE channels or network cards might slightly boost Windows startup speed since the OS will not need to autodetect some non-existing devices. Well that's what I think happens
Yup, that's true.
__________________
Dr. Adrian Wong
Tech ARP | Blog @ Tech ARP | The Free Trade Zone


DYKT : The only offshore account I have is at the sand bank?

Keep Tech ARP free! Visit our sponsors!

We need PROGRAMMERS and TECHNICAL WRITERS! Contact us if you are a hot shot programmer or technical writer!

My items for sale : 50x SD Card | Memory Stick PRO | Cyclone Energy Saver | Seiko SS watch | Tiger/Carlsberg beer jugs | Travel Speakers | Motorola V600 | Nokia N90 SOLD! | New Lowepro Mini Trekker AW

Other items for sale @ the FTZ : Zalman CNPS9500 LED @ $20 | Zalman CNPS7700 Cu @ $20 | Zalman CNPS7000 Cu @ $20 | Swarovski bracelet watches | Dell 17" LCD | Hi-Fi speakers | English DIVX movies | HP LaserJet toners! | Office chairs
Adrian Wong is offline   Reply With Quote
Old 18th Apr 2008, 12:07 PM   #9 (permalink)
Just Started
 
Join Date: 29 Jun 2006
Posts: 30
Reputation: 0
64bit is an unknown quantity at this point
Rep Power: 0
Default

Just read through the article:

Quote:
To use the tool, hackers must connect a Linux-based computer to a Firewire port on the target machine.
It does not seems that easy since a Linux-based computer is needed too. By the time one has hacked into it, he might haven been discovered due to the equipments needed.

For me, this is considered a more troublesome alternative comparing to the large amount of software available that can reset/unlock Windows XP accounts.
64bit is offline   Reply With Quote
Old 18th Apr 2008, 12:39 PM   #10 (permalink)
Just Started
 
CoolZone's Avatar
 
Join Date: 7 Dec 2006
Posts: 28
Reputation: 0
CoolZone is an unknown quantity at this point
Rep Power: 0
Default

I guess it is too much hassle to make it work.I really hoped that this could have been done over a network
CoolZone is offline   Reply With Quote
Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Reality check: what we know (and don't) about Windows 7 Dashken General Software 0 21st Dec 2007 02:50 PM
LEAKED: Vista SP1 analysed in-depth Dashken News 4 30th Aug 2007 10:16 PM
Windows Services Exposed adn Expunge kayFX General Software 9 10th Jun 2005 09:32 PM


All times are GMT +8. The time now is 07:38 AM.


Powered by vBulletin® Version 3.6.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.1.0
Copyright © 1998-2007 Tech ARP. All rights reserved.