Maxim Suhanov
dbc0eb5bd1
disk/cryptodisk: Wipe the passphrase from memory
...
Switching to another EFI boot application while there are secrets in
RAM is dangerous, because not all firmware is wiping memory on free.
To reduce the attack surface, wipe the passphrase acquired when
unlocking an encrypted volume.
Signed-off-by: Maxim Suhanov <dfirblog@gmail.com>
Reviewed-by: Daniel Kiper <daniel.kiper@oracle.com>
2025-05-06 17:14:03 +02:00
..
2019-04-08 15:22:10 +10:00
2025-02-13 15:45:58 +01:00
2025-05-06 17:14:03 +02:00
2025-05-06 17:14:03 +02:00
2023-11-08 05:04:24 +01:00
2023-05-16 18:51:12 +02:00
2025-04-23 18:10:53 +02:00
2023-01-19 17:39:04 +01:00
2025-02-13 15:45:56 +01:00
2024-04-11 15:48:25 +02:00
2012-03-03 13:05:08 +01:00
2011-11-11 21:03:49 +01:00
2024-06-06 16:55:15 +02:00
2025-05-06 17:13:00 +02:00
2025-04-10 19:37:16 +02:00
2025-04-10 19:39:27 +02:00
2023-05-25 16:48:00 +02:00
2025-03-26 15:15:22 +01:00
2025-05-06 17:14:02 +02:00
2025-02-13 15:45:58 +01:00
2023-11-08 05:05:06 +01:00
2022-11-14 17:17:21 +01:00
2025-03-05 12:11:09 +01:00
2025-02-26 19:34:57 +01:00
2024-11-28 21:50:54 +01:00
2025-02-13 15:45:58 +01:00
2023-03-14 16:07:54 +01:00
2025-02-26 19:34:57 +01:00
2014-01-18 23:15:40 +04:00
2014-01-18 23:15:40 +04:00
2024-10-10 13:18:00 +02:00
2024-05-09 15:04:54 +02:00
2017-05-03 12:49:31 +02:00
2022-03-21 18:47:16 +01:00
2013-03-01 11:15:09 +01:00
2024-11-28 21:50:55 +01:00
2024-11-28 23:02:24 +01:00
2017-05-03 12:49:31 +02:00