Sunday, August 22, 2010

Computer - Evil Maid attack

While researching the net over the security, I came across the term "Evil Maid" attack.
So, what is the "Evil maid" attack?

Well, here's the story.
Lets assume you leave you laptop in a hotel room and go lunch/dinner. The house maid comes in to clean the room.But, she is just any ordinary house maid, while she is there she installs the boot loader and key logger, then shuts down your laptop.
You return to the hotel room, you power on your laptop, enter the passphrase, do you work.
The next day, when the maid returns, she returns, most likely to either retrieve the key and restore the previous boot loader, erasing her tracks.
Now she has access to your data, can image the drive for offline analysis and perform all sort of nasty stuffs as desired. Hence, the term "Evil Maid".

No comments:

Post a Comment