Security

Booting, installing, newbie
Post Reply
Message
Author
roclin14
Posts: 1
Joined: Tue 30 Mar 2010, 14:12

Security

#1 Post by roclin14 »

What is there to prevent a hacker from using a puppy live CD to log in as root on another person's computer and erase important files on that person's hard drive?

User avatar
Béèm
Posts: 11763
Joined: Wed 22 Nov 2006, 00:47
Location: Brussels IBM Thinkpad R40, 256MB, 20GB, WiFi ipw2100. Frugal Lin'N'Win

#2 Post by Béèm »

Good question.
As far as I know nothing.

An this is not limited to a boot from puppy.
Time savers:
Find packages in a snap and install using Puppy Package Manager (Menu).
[url=http://puppylinux.org/wikka/HomePage]Consult Wikka[/url]
Use peppyy's [url=http://wellminded.com/puppy/pupsearch.html]puppysearch[/url]

DMcCunney
Posts: 889
Joined: Tue 03 Feb 2009, 00:45

Re: Security

#3 Post by DMcCunney »

roclin14 wrote:What is there to prevent a hacker from using a puppy live CD to log in as root on another person's computer and erase important files on that person's hard drive?
Sure. Make sure the hacker doesn't have physical access to the machine. If someone has access to the actual machine, all bets are off.

One thing that might be done is to specify in the BIOS that the hard drive is the first place the machine will try to boot from, then set a BIOS password so it can't be changed without providing the password. The machine will still be able to read a CD, but not boot from it. (On my machines, I set the CD as the first boot option, then the HD, since I do a number of things that require booting from CD. If there's no CD in the drive, the machine boots from HD.)

This won't protect you from a case where someone with access to the machine can simply remove the HD and take it away to mount as a secondary drive in another machine and investigate at leisure.

Meanwhile, it's not a Puppy issue. There are an assortment of bootable CDs that will permit that sort of access, and the problem will be present for all of them.
______
Dennis

User avatar
Lobster
Official Crustacean
Posts: 15522
Joined: Wed 04 May 2005, 06:06
Location: Paradox Realm
Contact:

#4 Post by Lobster »

What is there to prevent a hacker from using a puppy live CD to log in as root on another person's computer and erase important files on that person's hard drive?
or . . . what is to prevent a gastro-geek removing the bios and eating it
or . . . a child of a tantrum temperament (aprox 2 years old) stuffing a peanut butter sandwich in the CD player
or . . . a militant penguin removing Windows and replacing with Linux
(Bravo I say)

ah the possibilities are endless . . . :D

someone might just decide to leave a Puppy Linux CD by a hacker prone PC for people to make up their own minds and behaviour . . .

Welcome to Puppy
Use at your own risk
Puppy Raspup 8.2Final 8)
Puppy Links Page http://www.smokey01.com/bruceb/puppy.html :D

User avatar
Béèm
Posts: 11763
Joined: Wed 22 Nov 2006, 00:47
Location: Brussels IBM Thinkpad R40, 256MB, 20GB, WiFi ipw2100. Frugal Lin'N'Win

#5 Post by Béèm »

I like the militant penguin. 8)
Time savers:
Find packages in a snap and install using Puppy Package Manager (Menu).
[url=http://puppylinux.org/wikka/HomePage]Consult Wikka[/url]
Use peppyy's [url=http://wellminded.com/puppy/pupsearch.html]puppysearch[/url]

sfeeley
Posts: 812
Joined: Sun 14 Feb 2010, 16:34

#6 Post by sfeeley »

Ahh, dreams of using puppy loaded onto a usb to hack the villain's computer, steal the weapon files, and then drive off in an Aston martin, woman at my side . . . :D

User avatar
Béèm
Posts: 11763
Joined: Wed 22 Nov 2006, 00:47
Location: Brussels IBM Thinkpad R40, 256MB, 20GB, WiFi ipw2100. Frugal Lin'N'Win

#7 Post by Béèm »

James Bond in disguise? :wink:
Time savers:
Find packages in a snap and install using Puppy Package Manager (Menu).
[url=http://puppylinux.org/wikka/HomePage]Consult Wikka[/url]
Use peppyy's [url=http://wellminded.com/puppy/pupsearch.html]puppysearch[/url]

Post Reply