Wired Keyboards Remotely Hacked From 20 Meters Away
LASEC, the Security and Cryptography Laboratory, claimed to have found four different ways of remotely capturing keystrokes from wired keyboards from a distance of up to 20 meters away. The keystrokes can be captured through walls, making vulnerable the security of many computers and even possibly ATMs.
The approach used works on the theory that when a key is pressed on a wired keyboard, it produces electromagnetic emanations. This electromagnetic radiation can be acquired and captured with the use of an antenna, which can then be analyzed. Four different methods had been tested, including the Kuhn attack, although not much information on the other methods have yet been provided. It was claimed that the attacks could be significantly improved, as the equipment used in the experiment was relatively inexpensive.
Eleven different wired keyboard models were tested, including PS/2, USB and laptop keyboards, all of which were vulnerable to at least one of the four different methods used. Apparently the reason these keyboards generate the compromising emanations is mostly “because of the cost pressures in the design.” More information regarding these attacks will soon be published, although the paper is still undergoing peer review. For the time being however, there are two videos being hosted that demonstrate the attacks.
From the videos, it looked as if the antenna being used in one of the demonstrations was rather large and not very inconspicuous, nor did it seem as if the keystrokes could be captured at a high rate of speed. However, with banking machines using wired keyboards, it may be possible for a truck to park nearby an ATM and remotely capture private information entered into the ATM, such as a customer’s PIN. No longer it seem is just avoiding wireless keyboards enough to ensure security, as even wired keyboards now need protection, such as electromagnetic shielding.
- Panasonic Unveils Notebook Fuel Cell
- Blizzard Speaks Out on DRM
- Good and Bad news for the Electric Car
- Teen Charged in Scientology Web Attack
- Motorola's Social Smartphone Scheduled for Q2 2009
- Yahoo! Expected to Announce Layoffs Later This Week
- More Intel Price Slashing on Quad-Core and Dual-Core Chips
- Intel Demonstrates 'Moorestown' Mobile Platform
- Ballmer Says Windows 7 is Vista but Improved
- HP Announces Two New Smartphones
- RIM Announces Blackberry App Store
- Samsung Claiming Thinnest LCD Screen at 7.9mm
- Nvidia Announces Licensing of SLI by Big Players
- Microsoft Announces Anti-Piracy Day
- Recalled Version of LittleBigPlanet Sells for $250 on Ebay
- A Second Wind for MSI this November: Integrated 3.5G and XP
- World's Smallest Notebook - Smaller Than a Netbook
- Dell to Showcase New Instant-On Desktop Systems





It doesn't surprise me (I know an unprotected fax machine's scan can be picked up at several hundred meters).
However, it's a big leap to say that if a plastic USB, Laptop or PS/2 keyboard is unprotected, a metal encased ATM one must be too. True, it might be, but though they mention them, they didn't test them.