May 19, 2020

Thunderspy

"Thunderspy, a series of attacks that break all primary security claims for Thunderbolt 1, 2, and 3. So far, our research has found the following vulnerabilities:
  1. Inadequate firmware verification schemes
  2. Weak device authentication scheme
  3. Use of unauthenticated device metadata
  4. Downgrade attack using backwards compatibility
  5. Use of unauthenticated controller configurations
  6. SPI flash interface deficiencies
  7. No Thunderbolt security on Boot Camp"

May 11, 2020

Why can't police officers accept payment on the spot for a ticket?

Why can't police officers accept payment on the spot for a ticket? It's not a dumb question, I really want to know...