Hacker News new | ask | show | jobs
by gavinray 1525 days ago

  > "They never shutdown their computers and if it happened, they did a full format and reinstalled the os - because if security."
I don't get it
2 comments

I don't recall why, it was so long time ago. But my best guess is that they wanted to guarantee that they know what has been booted?
The sibling comment already mentioned evil maid attacks (not as much of an issue nowadays thanks to SecureBoot and TPMs), but there's also DMA attacks through physical ports: https://en.wikipedia.org/wiki/DMA_attack
Offline attack aka Evil Maid