OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: Dell BIOS DoS

From: Steve Shockley (steve.shockleyshockley.net)
Date: Tue Dec 09 2003 - 11:53:08 CST


jon schatz wrote:
> seriously, bios passwords are worthless.

Hard disk passwords are somewhat less worthless. See:

http://ssddom01.hgst.com/tech/techlib.nsf/techdocs/85256AB8006A31E587256A780
0644ED8/$file/dara_sp.pdf
(http://tinyurl.com/yg06)

page 84. If the security level is set to Maximum and the User password is
unknown, you can either erase the drive (if you know the Master password) or
throw it away. I'm sure it's feasable to recover the data by physical
disassembly or modifying the drive's circuits or firmware, but at least it's
not trivial like BIOS passwords.