
Submission + - APPLE KEYBOARDS infected with keylogger firmware (semiaccurate.com) 2
Anonymouse writes: APPLE KEYBOARDS are vulnerable to a hack that puts keyloggers and malware directly into the keyboard's firmware. This could be a serious problem, and now that the presentation and code is out there, the bad guys will surely be exploiting it.
The vulnerability was discovered by K. Chen, and he gave a talk on it at Blackhat this year ( http://www.blackhat.com/html/bh-usa-09/bh-usa-09-archives.html#Chen ). The concept is simple, a modern Apple keyboard has about 8K of flash memory, and 256 bytes of working ram. For the intelligent, this is more than enough space to have a field day. It is completely remotely exploitable, and almost impossible to remove, especially if you don't know it is there.
PDF: http://www.blackhat.com/presentations/bh-usa-09/CHEN/BHUSA09-Chen-RevAppleFirm-PAPER.pdf
Slides(pdf): http://www.blackhat.com/presentations/bh-usa-09/CHEN/BHUSA09-Chen-RevAppleFirm-SLIDES.pdf
The vulnerability was discovered by K. Chen, and he gave a talk on it at Blackhat this year ( http://www.blackhat.com/html/bh-usa-09/bh-usa-09-archives.html#Chen ). The concept is simple, a modern Apple keyboard has about 8K of flash memory, and 256 bytes of working ram. For the intelligent, this is more than enough space to have a field day. It is completely remotely exploitable, and almost impossible to remove, especially if you don't know it is there.
PDF: http://www.blackhat.com/presentations/bh-usa-09/CHEN/BHUSA09-Chen-RevAppleFirm-PAPER.pdf
Slides(pdf): http://www.blackhat.com/presentations/bh-usa-09/CHEN/BHUSA09-Chen-RevAppleFirm-SLIDES.pdf