t2e_integrity_check | Integrity checking script for Apple Thunderbolt

 by   legbacore Python Version: Current License: No License

kandi X-RAY | t2e_integrity_check Summary

kandi X-RAY | t2e_integrity_check Summary

t2e_integrity_check is a Python library typically used in Financial Services, Banks, Payments applications. t2e_integrity_check has no bugs, it has no vulnerabilities and it has low support. However t2e_integrity_check build file is not available. You can download it from GitHub.

Apple Thunderbolt to Ethernet PCI Option ROM Integrity Checker. PCI Option ROMs (OROMs, also known as Expansion ROMs) are a known source of attacks[1][2][3][4] on computing systems. In [2][4][5] it was shown in particular that the Apple thunderbolt-to-ethernet (t2e) adapter could be used to attack Macs. However, the OROM for every t2e adapter we have looked at has been basically the same (with the exception of the MAC and a checksum.) Therefore integrity checking is highly tractable. However, we have had a limited set of devices on which to test. If this program generates an alert, it may be a false positive due to you having an image that is valid, but simply was not seen during our testing. Send all alerts/errors to the email(s) listed at the top of this file. This is not meant to be a highly-trustworthy tool. It is not currently know whether the firmware that the Broadcom chip on these devices runs can lie about the contents of the OROM. However it is suspected they may be able to. While this tool may check a single OROM, there is still a world of other OROMs out there which can be used to attack people. The only way the situation will improve is if customers start telling security vendors that they want them to protect against firmware-borne attacks. If enough people actually talk to their vendors, they will start to listen. [1] "Implementing and Detecting a PCI Rootkit", John Heasman, bh-dc-07/Heasman/Paper/bh-dc-07-Heasman-WP.pdf. [2] "DE MYSTERIIS DOM JOBSIVS: MAC EFI ROOTKITS", Loukas K., [3] "UEFI and PCI Bootkits", Pierre Chifflier, psj13/psj2013-day2_Pierre_pacsec-uefi-pci.pdf. [4] "Thunderstrike: EFI firmware bootkits for Apple MacBooks", Trammell Hudson, Larry Rudolph, citation.cfm?id=2757673. [5] "Thunderstrike 2: Sith Strike", Trammel Hudson, Xeno Kovah, Corey Kallenberg, The binary version of DirectHW.kext was compiled from Trammell Hudson's The binary version of tg3-eeprom was compiled from Trammell Hundson's sudo chmod -R 700 DirectHW.kext/. sudo chown -R root:wheel DirectHW.kext/. sudo ./tg3-eeprom > my.orom. (it must be named "my.orom"). If your OROM is intact, a message to that effect will print. If not, send any alerts/errors to xeno@legbacore.com.
Support
    Quality
      Security
        License
          Reuse

            kandi-support Support

              t2e_integrity_check has a low active ecosystem.
              It has 26 star(s) with 1 fork(s). There are 12 watchers for this library.
              OutlinedDot
              It had no major release in the last 6 months.
              There are 2 open issues and 0 have been closed. On average issues are closed in 1431 days. There are no pull requests.
              It has a neutral sentiment in the developer community.
              The latest version of t2e_integrity_check is current.

            kandi-Quality Quality

              t2e_integrity_check has no bugs reported.

            kandi-Security Security

              t2e_integrity_check has no vulnerabilities reported, and its dependent libraries have no vulnerabilities reported.

            kandi-License License

              t2e_integrity_check does not have a standard license declared.
              Check the repository for any license declaration and review the terms closely.
              OutlinedDot
              Without a license, all rights are reserved, and you cannot use the library in your applications.

            kandi-Reuse Reuse

              t2e_integrity_check releases are not available. You will need to build from source code and install.
              t2e_integrity_check has no build file. You will be need to create the build yourself to build the component from source.

            Top functions reviewed by kandi - BETA

            kandi's functional review helps you automatically verify the functionalities of the libraries and avoid rework.
            Currently covering the most popular Java, JavaScript and Python libraries. See a Sample of t2e_integrity_check
            Get all kandi verified functions for this library.

            t2e_integrity_check Key Features

            No Key Features are available at this moment for t2e_integrity_check.

            t2e_integrity_check Examples and Code Snippets

            No Code Snippets are available at this moment for t2e_integrity_check.

            Community Discussions

            No Community Discussions are available at this moment for t2e_integrity_check.Refer to stack overflow page for discussions.

            Community Discussions, Code Snippets contain sources that include Stack Exchange Network

            Vulnerabilities

            No vulnerabilities reported

            Install t2e_integrity_check

            You can download it from GitHub.
            You can use t2e_integrity_check like any standard Python library. You will need to make sure that you have a development environment consisting of a Python distribution including header files, a compiler, pip, and git installed. Make sure that your pip, setuptools, and wheel are up to date. When using pip it is generally recommended to install packages in a virtual environment to avoid changes to the system.

            Support

            For any new features, suggestions and bugs create an issue on GitHub. If you have any questions check and ask questions on community page Stack Overflow .
            Find more information at:

            Find, review, and download reusable Libraries, Code Snippets, Cloud APIs from over 650 million Knowledge Items

            Find more libraries
            CLONE
          • HTTPS

            https://github.com/legbacore/t2e_integrity_check.git

          • CLI

            gh repo clone legbacore/t2e_integrity_check

          • sshUrl

            git@github.com:legbacore/t2e_integrity_check.git

          • Stay Updated

            Subscribe to our newsletter for trending solutions and developer bootcamps

            Agree to Sign up and Terms & Conditions

            Share this Page

            share link