zlacker

[return to "Toward a Reasonably Secure Laptop"]
1. HugoDa+bg[view] [source] 2017-07-11 14:05:02
>>doener+(OP)
"Finally, we are going to require that Qubes-certified hardware does not have any built-in USB-connected microphones (e.g. as part of a USB-connected built-in camera) that cannot be easily physically disabled by the user, e.g. via a convenient mechanical switch. However, it should be noted that the majority of laptops on the market that we have seen satisfy this condition out of the box, because their built-in microphones are typically connected to the internal audio device, which itself is a PCIe type of device. This is important, because such PCIe audio devices are – by default – assigned to Qubes’ (trusted) dom0 and exposed through our carefully designed protocol only to select AppVMs when the user explicitly chooses to do so."

This made me download Qubes. Amazing project that seems to care.

◧◩
2. pmoria+pv[view] [source] 2017-07-11 15:53:47
>>HugoDa+bg
I personally would not trust any laptop with an internal microphone at all.

If a laptop does have an internal microphone, I just assume it is on and recording.

◧◩◪
3. kowder+vc2[view] [source] 2017-07-12 11:48:11
>>pmoria+pv
So you don't own a laptop, smartphone or tablet? How do you live your life peacefully while there are dozens of devices around you with internal microphones?
◧◩◪◨
4. zdkl+Hd2[view] [source] 2017-07-12 12:04:56
>>kowder+vc2
You don't do business covered by serious NDAs on non EMSEC/COMSEC equipment. You do not talk about sensitive information in a wired room.

In your personal life just leave your microphoned laptops/phones in a box in the room next door. Two birds, one stone: less time spent behind a screen unless you need it, and your tinfoil-hat friends feel safer!

[go to top]