Post AYVEGKs4bkcDC2WmtE by Lee_Holmes@infosec.exchange
(DIR) More posts by Lee_Holmes@infosec.exchange
(DIR) Post #AYVChh8BkpAG8pz36u by sj@social.scriptjunkie.us
2023-08-07T23:12:32Z
0 likes, 0 repeats
Finding, critical: CVE-2023-l0lOI, CVSS 10. User employs a mechanical keyboard.Remediation: institute company policy to only allow neuralink input for computer use.https://www.theregister.com/2023/08/07/audio_keystroke_security/
(DIR) Post #AYVEGKs4bkcDC2WmtE by Lee_Holmes@infosec.exchange
2023-08-07T23:29:59Z
0 likes, 0 repeats
@sj Gotta love the researchers' recommended mitigations: change your typing patterns, or play keyboard typing sounds over top of your actual typing :)The research is neat though. This has been a fruitful area of research for decades (I remember seeing a Microsoft Research one in the early 2000s): https://security.stackexchange.com/questions/23322/keyboard-sniffing-through-audio-recorded-typing-patterns