Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
0 points
pmoriarty
9y ago
0 comments
Save
Share
So if you don't use the RJ45 port on the motherboard but instead use an RJ45 port on an expansion card instead you're safe?
0 comments
4 comments · 1 top-level
top
newest
oldest
mschuster91
9y ago
· 3 in thread
Partially. Expansion cards use PCI-E which has DMA capability, so a bug/backdoor in their firmware can very well be used to attack a system.
But I believe newer systems with MMUs acting as "firewalls" for DMA are safe from this vector.
woodrowbarlow
9y ago
there's also the concern of physical attacks, via the motherboard's RJ45 or USB.
mschuster91
9y ago
At least USB doesn't have device-initiated DMA, but USB descriptor parsing bugs have in the past led to exploits (I remember the PlayStation jailbreak).
pmoriarty
OP
9y ago
A good argument to epoxy those ports shut, if you're really worried about that.
j
/
k
navigate · click thread line to collapse