Cold-Boot Attack
Извличане на residual data, включително cryptographic keys, от RAM след power reset/physical access.
Какво е
Извличане на residual data, включително cryptographic keys, от RAM след power reset/physical access.
Как работи
DRAM не губи информация мигновено; специализирана physical procedure може да запази/прочете част от memory contents.
Как да се предотврати
Physical security, shutdown/secure hibernate behavior, memory encryption на modern platforms, TPM/sealed keys и protection на high-risk devices.
Помагат частично
- Encryption at rest + key management · P015.11 Cold boot — ограничено