Germans devise attacks on Windows BitLocker


  1. Posts : 1,614
    Windows 7 Pro & Vista Home Premium
       #1

    Germans devise attacks on Windows BitLocker


    German researchers have devised five methods that determined attackers can use to bypass hard-drive encryption in recent versions of Microsoft operating systems. The methods, laid out by a research team from the Frauenhofer Institute
    for Security Information

    Technology, can be used to access files protected by BitLocker drive encryption... … The researchers stress that the strategies are useful only for targeted attacks, such as those used in industrial espionage, where an attacker is willing to devote considerable effort to breaching a single individual's security. … Among the methods discussed is what they call a "hardware-level phishing attack," in which a target machine is replaced with a counterfeit one that provides precisely the same messages and prompts that the original machine would have produced. The imposter machine captures user input and relays it to the attacker, who then uses it on the real machine.

    Date: 5 December 2009

    More............http://www.theregister.co.uk/2009/12/05/windows_bitlocker_attacks/
      My Computer


  2. Posts : 2,528
    Windows 7 x64 Ultimate
       #2

    Wow... the old "fake ui to grab password" trick, impressive. They come up with that all by themselves?

    That is a standard attack on any and all systems local and ESPECIALLY web based now and probably for all time.

    Sounds like someone is looking to generate publicity for themselves...
      My Computer


  3. Posts : 31,250
    Windows 11 Pro x64 [Latest Release and Release Preview]
       #3

    This actually paints Bittlocker in quite a good light - given the physical access to the machine that this type of attack demands, (replacing the machine with a clone), and still having to rely on a "phishing" type of attack, rather than simply removing the HDD and cracking the encryption - shows that the actual encryption algorithm used is good.
      My Computers


  4. Posts : 3,960
    W7 x64
       #4

    I think it's more of a weak publicity stunt than anything else...

    More likely than not might be an NSA engineered back door into Bitlocker, in spite of Microsofts claims to the contrary!

    It wasn't all that many years ago the US Gov't prohibited the export of software such as PGP or other encryption packages, can't really see that they'd allow Microsoft to receive exceptional treatment on a global product which could well be used by some unsavoury characters known to the FBI etc...
      My Computer


  5. Posts : 5,941
    Linux CENTOS 7 / various Windows OS'es and servers
       #5

    Das is NICHT in Ordnung

    Cheers
    jimbo
      My Computer


  6. jav
    Posts : 713
    Windows 7 Ultimate x86 SP1
       #6

    hmm.. seems bitlocker getting popular this week:
    https://www.sevenforums.com/system-se...bitlocker.html

    and softpedia sells crack for just $ 795
    http://news.softpedia.com/news/Crack...n-128894.shtml


    All Credits for finding this information goes to JMH
      My Computer


  7. Posts : 1,614
    Windows 7 Pro & Vista Home Premium
    Thread Starter
       #7

    Here I though Softpedia was a decent site.

    I can almost guarantee you that the forensic tool is only available to forensic investigator's and law enforcement.

    When you ckick on the forensic link it is limited to

    Office Password Cracker - for Microsoft Excel, PowerPoint,
    Word, Outlook, Access. More..
    - for Microsoft Excel, PowerPoint,
    Word, Outlook, Access. More..
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 7 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 7" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 10:12.
Find Us