Thunderbolt ports vulnerable to hands-on hacks | SC Media
Strategy, Vulnerability management

Thunderbolt ports vulnerable to hands-on hacks

May 11, 2020
  1. inadequate firmware verification schemes
  2. Weak device authentication scheme
  3. Use of unauthenticated device metadata
  4. Downgrade attack using backwards compatibility
  5. Use of unauthenticated controller configurations
  6. SPI flash interface deficiencies
  7. No Thunderbolt security on Boot Camp
prestitial ad