Hacker News new | ask | show | jobs
by acdha 4515 days ago
firewire / thunderbolt DMA access was fixed many years ago: if you enabled a firmware password, those buses have DMA disabled.
1 comments

Are you saying that if I have a firmware password on my MBA that my internal SSD is inaccessible via Thunderbolt externally (until I've entered my password)?
No, but your TB device wouldn't have read access to physical memory (where keys would be)
No - but it means that a device can't read your FileVault keys out of memory so all they can read is the encrypted volume.