Due to radiation, the contents of PC memory spread 7 meters around – and this is a security problem

Cybersecurity experts from Israel have discovered a new way to steal data from isolated computer systems. These systems, used in critical structures such as military installations, government agencies and nuclear power plants, are physically cut off from the Internet to protect against external threats. However, a new attack to intercept sensitive information, called RAMBO, uses electromagnetic radiation generated by RAM operation.

Image source: Copilot

Despite the lack of a direct connection to the Internet, writes BleepingComputer, systems with an air gap (Air-gapped) still appear to be susceptible to compromise. Attackers can inject malware through physical media, such as USB drives, or use a more complex chain of actions to establish communication with a PC. Malware embedded in a system can silently manipulate components of RAM, generating controlled electromagnetic pulses that transmit information from computers.

The data is encoded into RF signals, where “1” and “0” are represented as “on” and “off”. To increase transmission reliability and reduce errors, the Manchester code is used, which is an absolute bipulse encoding of the original binary data using a binary digital signal. A hacker can intercept these signals using low-cost software-defined radios (SDRs) and decode them back into binary code. At the same time, the data transfer rate during the RAMBO (Radiation of Air-gapped Memory Bus for Offense) attack is low and reaches 1000 bits per second (bps), which is equivalent to 0.125 KB/s. However, as the researchers note, “this is sufficient to steal small amounts of data, such as text, keystrokes, and small files.” For example, stealing a password takes between 0.1 and 1.28 seconds, while a 4096-bit RSA encrypted key takes between 4 and 42 seconds.

Image source: Arxiv.org

In turn, the data transmission range depends on the transmission speed. At maximum speed (1000 bits per second), the signal is stable at a distance of up to 3 meters, but as the distance increases, the likelihood of errors also increases. When the speed is reduced to 500 bits per second and below, the transmission range can reach 7 meters. Researchers experimented with higher speeds, but found that above 5Kbps the signal became too weak to reliably transmit information. “We found that the data rate should not exceed 5000 bits per second, otherwise the signal becomes too weak and contains a lot of noise,” the study authors report.

The published scientific work suggests several methods to protect against RAMBO attacks and other similar methods. These include enhanced physical protection, suppression of electromagnetic emissions generated by random access memory (RAM), external radio frequency interference, and the use of Faraday shielding enclosures to block electromagnetic emissions. The researchers also tested the effectiveness of the RAMBO attack on virtual machines and found that the vulnerability works even in this environment. However, the interaction of the host system’s RAM with the operating system and other virtual machines can cause the attack to fail. “Although we have shown that the RAMBO attack works in virtual environments, interaction with the host system can cause it to crash,” the researchers explain.

admin

Share
Published by
admin

Recent Posts

In the add-on with Conan the Barbarian for Mortal Kombat 1, they found a secret pink ninja named Floyd and a new arena

In October 2022, Mortal Kombat series co-creator Ed Boon admitted that he would really like…

1 hour ago

Adobe Premiere Pro can now find video clips based on verbal descriptions

Adobe has updated the content search feature in Premiere Pro with AI-powered visual recognition tools.…

3 hours ago

Scientists have detected an anomalous increase in the expansion rate of the Universe

New data on nearby galaxies showed a local increase in the Hubble constant, a value…

3 hours ago

In ChromeOS you can now control the cursor using facial expressions

Google has introduced a number of new ChromeOS features designed to benefit students and make…

3 hours ago

Former top manager of Intel headed the second largest Chinese chip manufacturer

Hua Hong Semiconductor, China's second-largest chip maker, has made a strategic leadership reshuffle with the…

4 hours ago