Re: [qubes-users] Re: Are Qubes/Xen vulnerable to new DRAMA attack?

2016-11-11 Thread Chris Laprise

On 11/11/2016 10:37 PM, Sec Tester wrote:

Perhaps another reason why VM's shouldn't have default root access?

"taskset 0x2 sudo ./measure -p 0.7 -s 16."


This really needs root to work?!  This could be important... these 
rowhammer vulns have become BAD.


Chris

--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/a0b3d88a-e244-25a5-ddca-ce6fa145%40openmailbox.org.
For more options, visit https://groups.google.com/d/optout.


Re: [qubes-users] Re: Are Qubes/Xen vulnerable to new DRAMA attack?

2016-11-10 Thread Chris Laprise

On 11/10/2016 12:50 PM, Chris Laprise wrote:

On 11/10/2016 12:41 PM, raahe...@gmail.com wrote:
On Thursday, November 10, 2016 at 12:38:58 PM UTC-5, 
raah...@gmail.com wrote:

On Thursday, November 10, 2016 at 6:28:33 AM UTC-5, Eva Star wrote:

Subj
https://github.com/IAIK/drama

All systems probably are.

maybe AEM will help detect something.



I think it would. This is where AEM shines.

Chris



...Provided the specific attack was against BIOS firmware or initial 
boot file (TCB).


Chris

--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/ebb197a1-5f9c-dd5e-c05a-9c06b7d98710%40openmailbox.org.
For more options, visit https://groups.google.com/d/optout.