We seek to understand and document all radio transmissions, legal and otherwise, as part of the radio listening hobby. We do not encourage any radio operations contrary to regulations. Always consult with the appropriate authorities if you have questions concerning what is permissible in your locale.

Author Topic: Clever Attack Uses the Sound of a Computer’s Fan to Steal Data  (Read 2159 times)

Offline ChrisSmolinski

  • Administrator
  • Marconi Class DXer
  • *****
  • Posts: 31519
  • Westminster, MD USA
    • View Profile
    • Black Cat Systems
Mordechai Guri, manager of research and development at the Cyber Security Research Center at Ben-Gurion University, and colleagues at the lab, have previously designed three attacks that use various methods for extracting data from air-gapped machines—methods involving radio waves, electromagnetic waves and the GSM network, and even the heat emitted by computers.

Now the lab’s team has found yet another way to undermine air-gapped systems using little more than the sound emitted by the cooling fans inside computers. Although the technique can only be used to steal a limited amount of data, it’s sufficient to siphon encryption keys and lists of usernames and passwords, as well as small amounts of keylogging histories and documents, from more than two dozen feet away. The researchers, who have described the technical details of the attack in a paper (.pdf), have so far been able to siphon encryption keys and passwords at a rate of 15 to 20 bits per minute—more than 1,200 bits per hour—but are working on methods to accelerate the data extraction.

Full article: https://www.wired.com/2016/06/clever-attack-uses-sound-computers-fan-steal-data/
Chris Smolinski
Westminster, MD
eQSLs appreciated! csmolinski@blackcatsystems.com
netSDR / AFE822x / AirSpy HF+ / KiwiSDR / 900 ft Horz skyloop / 500 ft NE beverage / 250 ft V Beam / 58 ft T2FD / 120 ft T2FD / 400 ft south beverage / 43m, 20m, 10m  dipoles / Crossed Parallel Loop / Discone in a tree

Offline Josh

  • DXing Phenomena
  • *******
  • Posts: 4322
    • View Profile
Neat, on top of Van Eck hacking and listening to the cpu via emitted rf now we have fans betraying us.
We do not encourage any radio operations contrary to regulations.

Offline Pigmeat

  • Marconi Class DXer
  • ********
  • Posts: 6684
    • View Profile
Foil lined attic insulation, duct tape and ten or fifteen feet flexible dryer ducting will take care that minor problem. Don't they show "Red Green" in Israel?

Offline Terry

  • Sr. Member
  • ****
  • Posts: 313
  • SE Florida
  • North Fork St. Lucie River
    • View Profile
    • Email
The real question is -- do they send QSL's?  ;D
QTH Florida's Treasure Coast, near Stuart 100 mi N of Miami Grid locator EL97uf
Equipment: Kenwood TS-480SAT, R-600, Yaesu FT-857D, R. S. SW portable (Sangean), R.S. Pro-106 Scanner 25-1300 MHz, HyGain 18AVQII, M2 6M 3 el beam, Misc verticals and dipoles
73,
Terry

Offline ka1iic

  • Hero Member
  • *****
  • Posts: 903
  • Troy, Ohio
  • Troy, Ohio. 20m Vertical & low long wire E/W,
    • View Profile
    • Email
One tri-core I had didn't have any fans what it did have were these massive heat sinks...  Perhaps in that case the data would modulate the sinks?  Who knows...
73 Vince
KA1IIC

"If you can't be anything, you can at least be annoying"

Troy, Ohio. 20m Vertical & low long wire E/W, Yaesu FT-187ND, SDRplay 2, Ratt Shack 2 meter rig, and other little bits of electronics I'm not talking about, homebrewed and otherwise... so there bleech!

Nella F.

  • Guest
The real question is -- do they send QSL's?  ;D

                                                                    "Ha Ha! Even I get that!
                                                                                        8)

 

HFUnderground T-Shirt
HFUnderground T-Shirt
by MitchellTimeDesigns