{"id":4471,"date":"2024-01-13T15:21:29","date_gmt":"2024-01-13T20:21:29","guid":{"rendered":"https:\/\/control-h.org\/?p=4471"},"modified":"2024-01-13T15:21:29","modified_gmt":"2024-01-13T20:21:29","slug":"shmoocon-4","status":"publish","type":"post","link":"https:\/\/control-h.org\/index.php\/2024\/01\/13\/shmoocon-4\/","title":{"rendered":"Shmoocon #4"},"content":{"rendered":"\n<p>Watched this <a href=\"https:\/\/www.shmoocon.org\/speakers\/#hikeyboard\" target=\"_blank\" rel=\"noreferrer noopener\">one<\/a>.  Well, the presentation section.  They were in the Q&amp;A at least, maybe.<\/p>\n\n\n\n<p>I have the vaguest understanding of what he had done, and was trying to do, with regards to taking control of systems with a rogue keyboard.<\/p>\n\n\n\n<p>Fascinating stuff to be sure, but I keep having this thing pop through my head about likelihood.<\/p>\n\n\n\n<p>Yeah, you <em>can<\/em> do this stuff, but what&#8217;s the LOE, and what&#8217;s the probability somebody actually <em> would<\/em> do it?<\/p>\n\n\n\n<p>When you have physical proximity to a system, can you do it within the access window?<\/p>\n\n\n\n<p>I guess I really considered likelihood when I was younger.<\/p>\n\n\n\n<p>I guess I did some when doing hardware integration, but for something like what was covered in the session, <span style=\"text-decoration: underline;\">none of this is at all likely to happen.<\/span><\/p>\n\n\n\n<p>As I&#8217;ve written before, cars and cooking are too-often captured metaphors, but it&#8217;s the first thing that came to mind;  I&#8217;m sure you could manufacture a tire with a bulletproof sidewall, <em><strong>But why would you<\/strong><\/em>?  It&#8217;s going to be heavy, and more expensive than most people whold be willing to pay for a tire.<\/p>\n\n\n\n<p>Coming back to the keyboard, what are the chances someone would be in proximity to your PC or phone long enough to get in?<\/p>\n\n\n\n<p>The vendors are rolling out patches that eliminate the vulnerability the speaker used.  It&#8217;s a very simple fix.  To a problem most people will never experience.  That doesn&#8217;t mean it shouldn&#8217;t be fixed, of course, but why lose sleep over it??<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Watched this one. Well, the presentation section. They were in the Q&amp;A at least, maybe. I have the vaguest understanding of what he had done, and was trying to do, with regards to taking control of systems with a rogue keyboard. Fascinating stuff to be sure, but I keep having this thing pop through my [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[36],"class_list":["post-4471","post","type-post","status-publish","format-standard","hentry","category-uncategorized","tag-uncategorized"],"_links":{"self":[{"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/posts\/4471","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/comments?post=4471"}],"version-history":[{"count":0,"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/posts\/4471\/revisions"}],"wp:attachment":[{"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/media?parent=4471"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/categories?post=4471"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/control-h.org\/index.php\/wp-json\/wp\/v2\/tags?post=4471"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}