logoalt Hacker News

gruezyesterday at 12:24 AM2 repliesview on HN

https://en.wikipedia.org/wiki/Cold_boot_attack

tl;dr they pull the decryption keys from your computer while it's still running, which of course it is because your mail server has to be up 24/7.


Replies

wildzzzyesterday at 1:55 AM

Simple solution: put your server inside of a cabinet or enclosure that immediately powers it off if opened with a hidden micro switch. Additionally, write a little udev rule to immediately power off if any new USB device is connected or Ethernet is unplugged.

show 1 reply
encrypted_birdyesterday at 3:42 AM

That is fascinating! Thanks for sharing!