Hello,
You can always solder the SODIMM board to the slot yourself, or easier,
glue it in. Similar degree of security. An attacker who seizes the machine
will be able to connect to signal traces anyway with a good signal
analyser. This hardware measure just makes cold ram attack harder,
especially the freeze and clone variant.

Make sure to add a case opening sensor. You can make one for internal USB
which can be added to many laptops. Some laptops also might have the
standard 5V tampering signal pins like desktops, just unpopulated. This
would take some investigation. When available, these can be read via
lm-sensors and related interfaces and security measures can be taken.
A system of a custom design is preferable.
Xen memory wiping functionality would be very useful to attach to such a
script.

Additional interesting approach is a dead man USB key or using the built in
camera for monitoring and alarm.

Best regards,
Radosław


On 2 Feb 2017 1:56 a.m., "pixel fairy" <[email protected]> wrote:

probably a unicorn, but if you can find a laptop with the ram and/or drive
soldered into the motherboard,
that also raises the bar on offline attacks. ironically, the only laptops
ive found with soldered in ram are macbooks.

-- 
You received this message because you are subscribed to the Google Groups
"qubes-devel" group.
To unsubscribe from this group and stop receiving emails from it, send an
email to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit https://groups.google.com/d/
msgid/qubes-devel/f058dceb-11b4-4d9f-8e90-2809ade40d3a%40googlegroups.com
<https://groups.google.com/d/msgid/qubes-devel/f058dceb-11b4-4d9f-8e90-2809ade40d3a%40googlegroups.com?utm_medium=email&utm_source=footer>
.

For more options, visit https://groups.google.com/d/optout.

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-devel" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-devel/CAAmECqQ8d%3DL1Z6r2b%3DtOPgQPrs6uL6oMwHEp%2B%2B%3Dyx9scMiW32g%40mail.gmail.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to