zlacker

[return to "Qubes OS: A reasonably secure operating system"]
1. notfed+Mm[view] [source] 2017-11-19 20:42:53
>>ploggi+(OP)
Note that while Qubes OS uses full-disk encryption, it runs on Xen, which does not support hibernate.

This means that, if you use this OS on a laptop, you'll be vulnerable to cold-boot attacks, even after you close your lid, unless you configure it to shutdown on lid close. (I.e., if a highly skilled adversary steals your laptop then, even if your laptop lid is closed, they will be able to read your RAM and therefore decrypt your entire hard drive.)

Despite the major security implications, it doesn't sound like a fix will be implemented any time soon. [1]

[1] https://github.com/QubesOS/qubes-issues/issues/2414

◧◩
2. freelo+ss[view] [source] 2017-11-19 21:58:17
>>notfed+Mm
Silly. If you did fully shutdown, you're now much more vulnerable to an evil maid attack, which that same advisory could employ. And now you haven't been tipped off there was an attack to begin with.
[go to top]