Feature #5451

Protect against external bus exploitation

Added by Tails 2013-07-18 07:41:17 . Updated 2019-07-07 15:18:36 .

Status:
Confirmed
Priority:
Normal
Assignee:
Category:
Target version:
Start date:
2015-06-13
Due date:
% Done:

18%

Starter:
0
Affected tool:
Deliverable for:

Description

Team: DrWhax, ? (team mate)


Subtasks

Feature #5336: Test protection against external bus memory forensics Confirmed

0

Feature #5463: Support Thunderbolt 3 in a security-conscious way Rejected intrigeri

100

Feature #5547: Deactivate PCMCIA, ExpressCard and FireWire if unused after 5 minutes Confirmed

0

Feature #5580: Document protection against external bus memory forensics Confirmed

0

Feature #9569: Research available protections against rogue USB devices Confirmed

0

Feature #11581: Blocklist dangerous PCIe hotplugging modules that are not needed for supported use cases In Progress

10


Related issues

Blocks Tails - Feature #5317: Disable FireWire DMA Confirmed
Blocks Tails - Feature #5631: Disable PCMCIA when unused at boot Confirmed
Blocks Tails - Feature #5828: Disable ExpressCard when it's unused at boot Confirmed

History

#1 Updated by intrigeri 2013-07-19 01:55:00

  • Type of work set to Code

Type of work: Code

#2 Updated by BitingBird 2014-06-09 10:48:47

  • Subject changed from protect against external bus memory forensics to Protect against external bus memory forensics
  • Starter set to No

#3 Updated by intrigeri 2015-06-13 07:31:53

  • related to Feature #9569: Research available protections against rogue USB devices added

#4 Updated by sajolida 2015-08-14 12:11:28

  • Description updated
  • Assignee set to Dr_Whax

#5 Updated by sajolida 2015-09-10 12:00:13

  • Subject changed from Protect against external bus memory forensics to Protect against external bus exploitation
  • Target version changed from Hardening_M1 to 2016

#6 Updated by intrigeri 2016-01-03 21:06:43

  • blocked by deleted (Feature #5751: Support Bluetooth when it's used at boot)

#7 Updated by intrigeri 2016-08-20 11:00:21

  • Target version deleted (2016)

(Removed from the roadmap during Tails summit 2016.)

#8 Updated by intrigeri 2017-03-20 10:04:12

  • related to deleted (Feature #9569: Research available protections against rogue USB devices)

#9 Updated by cypherpunks 2017-03-30 05:46:07

Is there anything we can do about EDID without a kernel patch?

#10 Updated by Dr_Whax 2019-07-07 15:18:36

  • Assignee deleted (Dr_Whax)