Laptops And Flat Panels Now Vulnerable to Van Eck Methods
Posted by
Zonk
on Fri Apr 20, 2007 05:18 PM
from the i-seee-you dept.
from the i-seee-you dept.
An anonymous reader writes "Using radio to eavesdrop on CRTs has been around since the 80s, but Cambridge University researchers have now shown that laptops and flat-panel displays are vulnerable too. Using basic radio equipment and an FPGA board totaling less than $2,000 it was possible for researchers to read text from a laptop three offices away. 'Kuhn also mentioned that one laptop was vulnerable because it had metal hinges that carried the signal of the display cable. I asked if you could alter a device to make it easier to spy on. "There are a lot of innocuous modifications you can make to maximize the chance of getting a good signal," he told me. For example, adding small pieces of wire or cable to a display could make a big difference.'"
Related Stories
[+]
Coming to a Desktop near you: Tempest Capabilities 111 comments
AftanGustur writes "New Scientist has an interesting article about a new toy we will all want. It's a card that plugs in one of your PCI slots and allows you to scan the EMF spectrum and read your neighbours terminal. In about 5 years you might be able to get one for just under £1000. (Modern Tempest Hardware costs about £30000) " Excellent. Now I won't have to read over Rob's shoulder all the time.
This discussion has been archived.
No new comments can be posted.
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
Full
Abbreviated
Hidden
Loading ... Please wait.

Telling question (Score:5, Insightful)
Okay, see, that's the type of questions the NSA likes to see its potential employees ask. Any other type of person would ask if you could alter a device to make it *harder* to spy on.
Re:Telling question (Score:4, Insightful)
less social intelligence than a 13 year old (Score:5, Funny)
"guard against it?"
"no, no, what he could do to... um, make sure the 'bad guys' haven't modified his system, ehem, like, what would a bad guy do to make this work better so he could do it, i mean, so he could have an idea of the kind of modifications to look out for?"
BEHOLD ! I am TEMPEST, they LORD and MASTER (Score:5, Funny)
BEHOLD ! I am TEMPEST, thy LORD and MASTER ! Bow before ME ! Fear ME ! I see ALL*!
*its a bit fuzzy, like snowy tv - BUT I SEE ALL !! FEAR ME !!!
Re:Telling question (Score:4, Insightful)
Re:Telling question (Score:5, Funny)
ch0wned! (Score:4, Insightful)
I think this means they've always been vulnerable, but no one knew. It's not like someone turned on the Vulnerable switch.
Re:ch0wned! (Score:5, Interesting)
The MPAA will be furious!
Oh bull (Score:5, Interesting)
That's a pretty big red flag that these suckers were subject to Van Eck.
And if the NSA could hear Scott McNealy's friggin keyboard outside in the parking lot (as they later told him during a meeting in the late 1990's), you'd better believe that the NSA has had LCD monitor reading capability for at least that long.
Just because it's not in the popular press, or published papers, hardly means that no one knew. The only thing surprising here is that it took so long for someone to get a paper out it.
I don't mean to disparage the researchers, who deserve a lot of credit to finally bringing this to public knowledge, but this is really low-hanging fruit.
Yes, we've known for a decade (Score:5, Interesting)
My ~1995 laptop (486? Pentium 60? MHz) would display on my parents' TV screen when I visited them. (No, I didn't live in their basement, I'd just avoided having a TV in my house back then:-) It wasn't in sync, so there were three partial screen images scrolling slowly, and there weren't enough pixels, but it was readable enough to be obvious that a real receiver would be able to display the output cleanly. My guess was that the culprit wasn't really the LCD drivers, but the auxiliary VGA port on the back of the laptop; I no longer remember if I tried turning that on and off, or exactly which laptop model it was, but Google probably knows.
The real difficulties are getting enough focus to only grab signals from the laptop you're looking for, and not all the other CRTs and TVs and LCDs around, which is why you're reading an interview with an expert like Markus Kuhn and not just some 1337 k1dd13z, and doing so without parking a big antennaful van on the street in front of your target.
If you look at the real security threats here, there are two sides -
An ounce of prevention (Score:5, Funny)
Re:An ounce of prevention (Score:5, Funny)
Wow (Score:5, Funny)
So adding an antenna makes it broadcast better meaning you can pick it up easier. Shocking. Very useful for remote spying. Step one, add an antenna to the target's display.
The Offical Howto (Score:5, Funny)
HDMI? (Score:5, Insightful)
Re:HDMI? (Score:5, Interesting)
With DVI it's probably a lot harder, but the signal might actually be clearer if you knew how to pick it up, kind of like how you can pick up UWB radio at high ranges. The on-off style of the signal creates a sharper signal. It might require more hardware but I wouldn't be surprised if you could do it at longer range.
An encrypted signal, of course, will be much harder to deal with whether there's an easy-to-receive digital signal or not.
I'm skeptical of the idea that the main video link will be encrypted any time soon though, because of the immense bandwidth involved.
Also, I have to wonder if you could simply pick up the signal between the controller, which decodes the signal (digital or no) and the panel itself...
Bad story submission title (Score:5, Informative)
The title given to this story on slashdot is awful, especially for a geek news site. Haven't we already established that obscurity is not security? And about a million times over?
An unpublished vulnerability is no less real than one that has been announced, and is in fact more dangerous because the lack of an announcement leads to a false feeling of security. The real story is that your laptop has in fact been vulnerable to van eck phreaking for years and year, not just "now".
It's a good thing I haven't had faith in slashdot for a long time now, or I'd be really disappointed. As it is, I'm just pointing this out for those who didn't already notice.
Bypassing DRM (Score:5, Funny)
Security hole in the making (Score:5, Insightful)
Not to go slightly off topic here, but BPL (broadband over power wires) providers ought to see this as a wakeup call. Coupling broad band ODMF signals on widely spaced wires hanging 40+ feet in the air, radiating like antennas is a HUGE security issue. Not only can BPL be jammed with something as simple as a CB or Amateur radio transceiver, but a creative individual could use similar methods to monitor BPL signals.
van Eck only made it public (Score:5, Informative)
Cryptonomicon? (Score:5, Informative)
Wobbly windows to the rescue! (Score:4, Funny)
At last! (Score:5, Funny)
Sigh If only they would make a portable version of my laptop...
TEMPEST (Score:5, Informative)
Article Polls! (Score:5, Interesting)
My first reaction was "WTF did the relatively recent end-of-civ poll go" and then when I voted it showed this article's comment under the poll results, which was another WTF moment. When was this feature added/first used? I can already see great use for the article polls, for example the editors could try to guess the popular tags and use them for poll items.