Live data from Hacker News

Battering RAM: Low-Cost Interposer Attacks on Confidential Computing

batteringram.eu

1–5 of 5 posts

Re: Battering RAM: Low-Cost Interposer Attacks on Confidential Computing

#2
Physical access means you're pwned. And it's not something nagios (or whatever you use) won't warn about since the server has to be briefly turned off and physically opened up. By the time you're unracking the server the police will be readying their handcuffs behind you.

Re: Battering RAM: Low-Cost Interposer Attacks on Confidential Computing

#3
All you have to do is breach the server room, open the server case, insert this raspberry pi memory module into the DIMM slot, and reboot the machine.

I have an even lower cost way of attacking the server. A simply cast iron axe could be used to smash the rack and access the motherboard, after which I would simply rip out the hardware.

Re: Battering RAM: Low-Cost Interposer Attacks on Confidential Computing

#5
post #2

Physical access means you're pwned. And it's not something nagios (or whatever you use) won't warn about since the server has to be briefly turned off and physically opened up. By the time you're unracking the server the police will be readying their handcuffs behind you.

Imagine though, making this much smaller, and selling ram sticks with this inside. Wouldn’t get into businesses much, but it would wreck havoc on everyone else.