Cryptographic key recovery from Linux memory dumps
Does dm-crypt and cryptoloop provide expected security when facing modern computer forensics techniques?
Original File: cccamp07-en-2002-Cryptographic_key_recovery_from_Linux_memory_dumps.m4v |
About: Cryptographic key recovery from Linux memory dumps | Report Broken File | embed video
About: Cryptographic key recovery from Linux memory dumps | Report Broken File | embed video
Cryptoloop and dm-crypt are the two disk encryption solutions provided by the stock Linux kernel. This lecture will describe in detail how to find and reuse cryptoloop and dm-crypt keys from kernel memory.
Persons:- Torbjörn Pettersson