On Thursday, 19 January 2017 03:04:32 UTC+4, [email protected]  wrote:
> As always physical access is a checkmate situation, you need to not be 
> an idiot and don't leave your stuff in overseas hotel rooms or not have 
> secure locks on your door.

Unless USB port seals (e.g. 
http://www.padjack.com/padjack-versions/usb-port-lock/) are put in place as 
soon as the laptop is removed from the manufacturers box it is impossible to 
know whether someone has installed a device that has in turn infected firmware. 
A similar situation for any DMA access ports (Thunderbolt etc) 

I'm interested in being able to take a possibly infected laptop (i.e. infected 
with firmware malware) and reset it to a known safe starting point. Coreboot 
seems to handle the BIOS (thank you for clarification that it completely 
rewrite legacy and UEFI). Replacing the HD with a new SSD should handle that 
firmware attack vector. That leaves the other EEPROMS.

I figure, if I'm going to strip down my G505S to reflash with Coreboot, I 
should see what other EEPROMs I can reflash.

Apart from the obvious RAM and SSD upgrade and possible putting switches on 
peripherals, are there any other hardware mods you can suggest for the G505S.

Having sorted out the hardware, I am then going to be looking to use Qubes to 
protect against any attempts to reflash through Malware and after thats done, 
I'll be looking for ways to detect that any attack is being attempted.

All in all I think I've got about a years work ahead !

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/25c4d632-9ddd-40a7-a28c-b0ff6c8201de%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to