Bringing you the latest of security news from applications and softwares - stay tuned for latest information regarding the computer world.
Tuesday, 31 December 2013
Hacking SD Card to execute malicious code
A SD Card is not just a memory storage device, it also has a built-in micro controllers. That sounds good, isn't it? But researchers say it is not.
Two hardware hackers Bunnie and Xobs gave a talk on hacking the MicroSD cards at Chaos Computer Congress (30C3). The researchers say SD cards are vulnerable to arbitrary code execution.
In a blog post, Bunnie said SD cards have built-in micro controller typically a heavily modified 8051 or ARM CPU. The reason why there is micro controller inside SD Cards is because it is cheaper than thoroughly testing to make sure it's a flawless. These micro controllers can be used for both good and bad purposes.
On the dark side, attackers can run malicious code to perform a perfect Man in the Middle (MITM) attack that could be difficult to detect.
"There is no standard protocol or method to inspect and attest to the contents of the code running on the memory card’s micro controller." Researcher said in his blog.
On the good side, these SD cards can be used as Micro controllers for simple projects as it is very cheap and powerful.
Subscribe to:
Post Comments (Atom)
Popular Posts
-
In October 2013, Microsoft adopted a silent, offensive method to tackle infection due to a Tor-based botnet malware called ...
-
In this Internet savvy generation, we want all of our data to be secured at some place. Having backups of your data is always a good idea,...
-
When you visit a website, it stores some information on your system through a web browser for later use i.e. Login information, so you do...
-
A malware campaign has been unearthed by security researcher Stefan Esser after many of the users of jailbroken iPhones and iPads posted ...
-
356 227 Reddit 10 Buffer 2 18 How many of you use Google Chrome for surfing the Internet and feel ...

No comments:
Post a Comment