Back to News
Advertisement
Advertisement

⚡ Community Insights

Discussion Sentiment

86% Positive

Analyzed from 417 words in the discussion.

Trending Topics

#lab#attack#https#already#raspberry#equipment#secure#nation#state#actor

Discussion (35 Comments)Read Original on HackerNews

BitBangingBytesabout 2 hours ago
I appreciate all the details they provide in the post. The $250k in lab gear is useful when initially discovering, exploiting and documenting attacks like this.

Definitely doable in a home lab for under $25k in equipment, likely under $10k.

Same as my replicating Colin O’Flynn’s BAM BAM attack on a MPC5566 chip, he used a ChipShouter ($5,000) and I used a PicoEMP ($50).

https://youtu.be/URmI1VVilek

throwaway8152317 minutes ago
Nice, thanks. I had wondered whether the $250K in lab gear is something that a serious HW security lab would already have on hand, as opposed to specialized expenditure for just this attack. I mean I rode in a $250K(?) motor vehicle a few days ago (the #2 SF Muni bus towards the Marina) but I didn't have to spend a lot to ride it, since it was already deployed. Nobody had to go out and buy it.
bybabout 2 hours ago
The RP2350's secure enclave made it particularly attractive for use as a Yubikey alternative.

There will always be an arms race between safe-crackers and safe-builders. Presumably the lessons learned will help make the next generation tougher to break into.

jacquesmabout 3 hours ago
That's reminiscent of when we first found out that if you opened up dram chips you could use them for imaging. Of course the scale at which this is done is extremely impressive.
jacquesmabout 1 hour ago
stackghostabout 4 hours ago
> The attack requires physical access, destructive preparation, and approximately $250,000 of laboratory equipment.

Not super practical, but neat attack

mrlambchopabout 3 hours ago
250k is not a bad investment for a company doing "reverse engineering as a service" - say 1k a pop to extract the firmware. Naturally, a good business idea for somewhere in the world with less regulations...
stickfigureabout 3 hours ago
That is peanuts for a nation-state actor.
stackghostabout 2 hours ago
Sure, but if you’re defending against a nation state actor hopefully you aren’t expecting a raspberry pi to keep you secure.
palmoteaabout 2 hours ago
> Sure, but if you’re defending against a nation state actor hopefully you aren’t expecting a raspberry pi to keep you secure.

Is there anything about these techniques that are raspberry pi specific? It seems like they're using lasers to identify and flip particular bits in registers.

ssl-3about 2 hours ago
The RP2350 is an inexpensive microcontroller IC with reasonable performance and some very useful (and somewhat unusual) features in its PIO blocks.

Why wouldn't a person build that into the heart of something important?

_trampeltierabout 3 hours ago
Some people have such and other toys just at work and can use it in spare time.
paulnpaceabout 3 hours ago
> $250,000 of laboratory equipment

*currently

stavrosabout 3 hours ago
$300,000 next year.
TeMPOraLabout 2 hours ago
In 5 years, either $400,000 or $50 and a hammer, depending on whether the core piece of the process aligns with the needs of some fast-growing consumer tech product like e.g. drones.
k12sosseabout 2 hours ago
We're already up to 400,000 just today.
TZubiriabout 3 hours ago
It reads as impressive defense. Meaning that it's presumably not possible to get root with physical access on a live 50$ device without 250k capital
Rohansiabout 2 hours ago
This is for a $1 microcontroller. I'm assuming you're talking about the Raspberry Pi computers based on the $50 cost and root.
Fred27about 3 hours ago
There's always an XKCD... https://xkcd.com/538/
orbital-decayabout 3 hours ago
It needs to be updated. Modern evil planners don't even need a wrench since they already have most keys given to them in advance by everyone, including nerds
junonabout 2 hours ago
Care to expand?
brcmthrowawayabout 3 hours ago
Now it can be done for Apple iPhone. Apple is cooked.