By George Norman - Software News Editor
Added on 05 Aug 2009(266 Views)
When you think of computer security, the usual threats normally come to mind, things like viruses, Trojans, spyware, spam, malware and so on. The topic rarely focuses on a computer’s keyboard, unless of course you have keyloggers in mind. This year, at the Defcon conference in Las Vegas, a security researcher from the Georgia Institute of Technology known to us only by his nickname, K. Chen, showed the world that the Apple Keyboard poses a security threat to the Mac user.

The security researcher showcased a means of infecting the Apple Keyboard’s firmware, thus granting the attacker complete control over the targeted machine – that would be your beloved Mac. But wait, it gets better. Since the code is nestled comfortably in the keyboard, formatting the Mac’s hard drive will not get solve the problem. The only viable solution, explained K. Chen, is to throw away the infected keyboard and get another.


“Such code could also completely bypass the remote attestation of a Trusted Platform Module, if one were present in the computer. As far as everybody is concerned, our [malicious keyboard] code is simply the user typing commands at the keyboard,” explained K. Chen.

A detailed technical paper describing how an Apple Keyboard can be compromised is available here (PDF warning).
A video demonstrating the attack on an Apple Keyboard is available on YouTube here.

It’s not just the hardware that raises security questions, it is the Mac itself. For the time being attacks on Macs are very rare and security is something that Mac users take quite lightly, According to Charlie Miller, the security expert that recently uncovered the critical iPhone SMS vulnerability, and Dai Zovi, security researcher that co-authored “The Mac Hacker’s Security Handbook” alongside Miller, this is all due to change in the future. As Apple gains more market share, the Mac is will become a tempting target to hackers. And once hackers take Macs seriously and put in the resources to target them, you can expect Macs to become as vulnerable as Windows machines are now.





Don't forget to:

RSS


Tags: Apple, Keyboard, Hacker, Defcon, Mac

Link to this article:



Add comment:
Name(Required)
Email(Required - Never shown)
Website(Optional)
Comment(Required):

Insert the following code:
Software News
Chromium OS Goes Open-Source
This summer Google let the world know that it is working on a new operating system meant for the user that spends most of his time online. The operating system – aptly named Chrome OS because it is a natural extension...
20 Nov 2009
Office 2010 Beta Downloads Available to the Public
Earlier this week Redmond-based software giant Microsoft announced that Office 2010 became available for download as a Beta. The catch was that only ...
20 Nov 2009
Mozilla Releases: Firefox 3.6 Beta 3
The development process of the Firefox 3.6 browser is moving along rapidly. The first Beta version was released at the start of the month; Beta 2 was released about two weeks after Beta 1. About a week has passed since...
20 Nov 2009
New Labs Feature for Gmail: Green Robot!
The software developers at Google have announced the release of a new Gmail Labs offering called Green Robot! This new offering is meant to improve the Gmail Chat user experience by letting the ...
20 Nov 2009
Opera Mobile 10 Beta for Windows Mobile Is Out Also
Opera Software, the company that we all know for making the innovative and feature rich Opera web browser, has released Opera Mobile 10 Beta for Windows Mobile-powered devices. This release follows in the...
19 Nov 2009
Beta Testing is Over, Stable Version of Trillian for iPhone Released
The focus so far has been on desktop version of this multiprotocol instant messaging software application, Trillian Astra (version 4.1). Today is time to switch focus away from the desktop version and onto something a bit more...
19 Nov 2009
Recommended Tools

Top Downloads