Advanced memory forensics: The Cold Boot Attacks

Recovering keys and other secrets after power off

Veröffentlicht am: 27.12.2008, 21:45 Uhr
Präsentation vom: 27.12.2008, 21:45 Uhr

Autor: Jacob Appelbaum

Abstract: Contrary to popular assumption, DRAMs used in most modern computers retain their contents for seconds to minutes after power is lost, even at operating temperatures and even if removed from a motherboard. Although DRAMs become less reliable when they are not refreshed, they are not immediately erased, and their contents persist sufficiently for malicious (or forensic) acquisition of usable full-system memory images.

Language: en
Date: 2008-12-27
Time: 21:45
Room: Saal 1

