> Begging the question: Are there ways of mitigating that avenue of > attack beyond just changing the boot sequence in the BIOS & password- > protecting the BIOS setup?
Booting to an alternative operating system can be defeated by clever choice of the physical memory location where the key material is stored. This trick doesn't apply as well to hardware FDE systems, but works very nicely for software systems. See Defense #2 in this talk: http://www.blackhat.com/presentations/bh-usa-08/McGregor/BH_US_08_McGregor_C old_Boot_Attacks.pdf Tim Hollebeek BitArmor Systems _______________________________________________ FDE mailing list [email protected] http://www.xml-dev.com/mailman/listinfo/fde
