Thunderclap TL;DR: someone finally tried on PCs (over Thunderbolt) what we did on the PS4 (over PCIe) years ago. As I said at the time, IOMMUs are useless if the drivers are not written assuming the device is evil. *Nobody* writes PCIe drivers assuming the device is evil.
Not using Thunderbolt will prevent this attack, because I doubt there is a single Thunderbolt device driver that is secure.
-
-
There is supposedly device authorization which can be enabled in the BIOS which utilizes some kind of certificate system to allow or disallow connection of the device to the OS. See: boltctl
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.