[tor-talk] janusvm still safe?

Brian Harrington bharrington at alticon.net
Thu Dec 22 13:36:18 UTC 2011


Jake,

While its not as consistent as i'd like, how about harvesting information from dmidecode? should work on anything except xen or ultra high end hardware (i.e. NEC), but for commodity situations it should report bios, asset tags, etc.

-Redbeard

Jacob Appelbaum <jacob at appelbaum.net> wrote:

>On 12/22/2011 04:51 AM, Eugen Leitl wrote:
>> 
>> Obviously an amnesic VM appliance doesn't leak info nearly
>> as badly as the usual Tor browser/proxy bundly, and will contain
>> (and revert) compromises.
>
>We need ways to dump the BIOS, SMM related stuff and other embedded
>controllers. It's easy to know if the disk is changes, it's quite hard
>to know if the same is true for the BIOS/EFI/Keyboard EC/etc.
>
>All the best,
>Jacob
>_______________________________________________
>tor-talk mailing list
>tor-talk at lists.torproject.org
>https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-talk


More information about the tor-talk mailing list