Attack infects keyboards to record keystrokes and more
No one wants to get their computer
hacked or infected with viruses. For a long time, Windows PCs were
the only real target of hackers and nefarious users, but as Apple Mac
computers have become more popular hacks for these systems are now
becoming more common.
A new hack that was demonstrated at
DEFCON 2009 doesn't attack the software of Apple computers, rather it
attacks the hardware.
Strangely it doesn't attack hardware
inside the computer, rather the attack focuses on Apple's USB
and Bluetooth keyboards. That means that once infected, the
keyboard can’t simply be repaired with a firmware update. The man
who devised the hack goes by K. Chen and says he goes by that name
because of fear that he would be harassed by Mac fans.
Once
infected, the keyboard spits the text most recently typed in reverse
order back onto the screen of the computer each time the enter key is
pressed. The demonstration shows that the hardware attack is capable
of recording keystrokes and injecting them back to the host machine.
The key logging capability of the attack can also reportedly work
during the boot phase unlocking more hardware and encryption
features.
When the keyboard is infected, it can be used to run
a bash connect back shell and then give the attacker full control
over the computer allowing a root kit to be installed. The level of
control is enough that the hacker could wait until the computer was
idle and then start the attack.
The exact weakness in the Mac
OS used to install the hack on the keyboard is unknown, but Chen says
that the code needed to execute the attack in under 100kb and takes
under 18 seconds to execute. Once infected the keyboard can’t be
fixed and would simply need to be replaced. Chen says he is working
with Apple on a fix for the issue.
More and more security
issues are being found with Mac computers as they grow in
popularity and become more appealing targets for hackers.
"Let's face it, we're not changing the world. We're building a product that helps people buy more crap - and watch porn." -- Seagate CEO Bill Watkins
|
Most Popular ArticlesSource: Don't Worry, NSA Spies on "99 Percent" of Americans' Locations, Call Records June 14, 2013, 3:57 PM Report: Intel Delays 14 nm Broadwell, Schedules Haswell Refresh for 2014 June 17, 2013, 5:30 PM NSA Leaker May be Killed in Drone Strike Says Ron Paul June 17, 2013, 11:18 AM Report: Apple to Release Larger iPhone Screens, Cheaper iPhone for $99 June 13, 2013, 9:41 AM Just How Powerful is the Xbox One? Microsoft is Confused June 18, 2013, 11:30 AM
|