<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xml:base="http://www.fiercecio.com" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
 <title>Disk Encryption</title>
 <link>http://www.fiercecio.com/tags/disk-encryption-0</link>
 <description></description>
 <language>en</language>
<item>
 <title>Source code for &#039;cold boot&#039; attack released</title>
 <link>http://www.fiercecio.com/story/source-code-cold-boot-attack-released/2008-07-22?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FC0</link>
 <description>&lt;p&gt;The security researcher, who in February this year demonstrated a &#039;cold boot&#039; attack, has released the utilities used at the Hackers on Planet Earth (HOPE) conference last weekend.&amp;nbsp;You can read more about &lt;a href=&quot;http://arstechnica.com/news.ars/post/20080221-researchers-crack-filevault-bitlocker-with-canned-air-hack.html&quot;&gt;&#039;cold boot&#039; attacks here&lt;/a&gt;, though the entire principle revolves around the reality that data stored in volatile RAM is, contrary to popular belief, not immediately lost upon powering down a system.&amp;nbsp;Rather, it fades slowly over seconds or even minutes.&amp;nbsp;The team has successfully demonstrated how a DIMM containing 128-bit AES encryption keys could be copied, reconstructing any decayed bits along the way.&lt;/p&gt;
&lt;p&gt;What is the relevance of a &#039;cold boot&#039; attack in the grand scheme of things?&amp;nbsp;Consider just how this new attack vector renders current disk encryption schemes irrelevant.&amp;nbsp;Indeed, the researchers were able to mount a BitLocker-encrypted volume put in an external USB drive in about 25 minutes. Anyway, you can find the research paper as well as explanatory video and the source code &lt;a href=&quot;http://citp.princeton.edu/memory&quot;&gt;here&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;For more on this chilling new attack vector:&lt;br /&gt;- check out this &lt;em&gt;Ars Technica &lt;/em&gt;&lt;a href=&quot;http://arstechnica.com/news.ars/post/20080721-source-code-published-for-cold-boot-exploit.html&quot;&gt;article&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.fiercecio.com/story/source-code-cold-boot-attack-released/2008-07-22#comments</comments>
 <category domain="http://www.fiercecio.com/tags/bitlocker">BitLocker</category>
 <category domain="http://www.fiercecio.com/tags/cold-boot">Cold Boot</category>
 <category domain="http://www.fiercecio.com/tags/dimm">Dimm</category>
 <category domain="http://www.fiercecio.com/tags/disk-encryption-0">Disk Encryption</category>
 <category domain="http://www.fiercecio.com/tags/hackers-0">Hackers</category>
 <category domain="http://www.fiercecio.com/tags/hackers-planet-earth-hope">Hackers on Planet Earth (HOPE)</category>
 <category domain="http://www.fiercecio.com/tags/research-paper">Research Paper</category>
 <category domain="http://www.fiercecio.com/tags/researcher">researcher</category>
 <category domain="http://www.fiercecio.com/tags/source-code">Source Code</category>
 <category domain="http://www.fiercecio.com/flags/tech-watch">Tech Watch</category>
 <pubDate>Tue, 22 Jul 2008 09:03:00 -0400</pubDate>
 <dc:creator>Paul Mah</dc:creator>
 <guid isPermaLink="false">64720 at http://www.fiercecio.com</guid>
</item>
<item>
 <title>Phoenix Technologies enables remote drive security</title>
 <link>http://www.fiercecio.com/story/phoenix-technologies-enables-remote-drive-security/2008-05-09?utm_medium=rss&amp;utm_source=rss&amp;cmp-id=OTC-RSS-FC0</link>
 <description>&lt;p&gt;Phoenix Technologies has announced that it will bring its &quot;FailSafe&quot; tech to Fujitsu&#039;s new Full Disk Encryption (FDE) 2.5&quot; 7200RPM SATA hard drive. FailSafe allows IT admins to remotely track, disable and even erase drives in the event that a machine containing sensitive data is lost or stolen. No word yet on pricing or launch date, though we&#039;re sure that there are plenty of admins out there that can&#039;t wait to get their hands on this tech.&lt;/p&gt;
&lt;p&gt;For more on FailSafe:&lt;br /&gt;- see this &lt;em&gt;Gizmodo &lt;/em&gt;&lt;a href=&quot;http://gizmodo.com/387691/phoenix--enables-users-to-remotely-track-disable-and-erase-data-from-fujitsu-drives&quot;&gt;article&lt;/a&gt;&lt;/p&gt;</description>
 <comments>http://www.fiercecio.com/story/phoenix-technologies-enables-remote-drive-security/2008-05-09#comments</comments>
 <category domain="http://www.fiercecio.com/tags/disk-encryption-0">Disk Encryption</category>
 <category domain="http://www.fiercecio.com/tags/failsafe-0">Failsafe</category>
 <category domain="http://www.fiercecio.com/tags/fujitsu">Fujitsu</category>
 <category domain="http://www.fiercecio.com/tags/hard-drive">hard drive</category>
 <category domain="http://www.fiercecio.com/tags/phoenix-technologies-0">Phoenix Technologies</category>
 <category domain="http://www.fiercecio.com/tags/sensitive-data">sensitive data</category>
 <category domain="http://www.fiercecio.com/flags/tech-watch">Tech Watch</category>
 <pubDate>Fri, 09 May 2008 13:21:52 -0400</pubDate>
 <dc:creator>Mehan Jayasuriya</dc:creator>
 <guid isPermaLink="false">44883 at http://www.fiercecio.com</guid>
</item>
</channel>
</rss>
