Sniffing keystrokes via laser, power lines

keystroke

Researchers from Inverse Path showed a couple interesting techniques for sniffing keystrokes at CanSecWest. For their first experiments they used a laser pointed at the shiny back of a laptop. The keystrokes would cause the laptop to vibrate which they could detect just like they would with any laser listening device. They’ve done it successfully from anywhere between 50 to 100 feet away. They used techniques similar to those in speech recognition to determine what sentences were being typed.

In a different attack, they sniffed characters from a PS/2 keyboard by monitoring the ground line in an outlet 50 feet away. They haven’t yet been able to collect more than just single strokes, but expect to get full words and sentences soon. This leakage via power line is discussed in the 1972 Tempest document we posted about earlier. The team said it wasn’t possible with USB or laptop keyboards.

[Thanks Jeramy]

Comments

  1. amk says:

    as an alternative to pointing a laser at the back of a laptop, I propose pointing a camera at the front.

  2. ex-parrot says:

    I recently discovered that you could pick up the scancodes on a PS/2 keyboard quite easily by just holding a fox/hound sensor next to it (such as are used by telecoms technicians for finding lines in a bundle etc)

  3. Jack says:

    amk, your idea is blowing my mind!

    ;D

  4. therian says:

    my P4 laptop is so loud no one will be able to hear keystrokes ;)

  5. dnny says:

    Soon keyboards will be replased whit touch screens …or atleast thats what I hope. Well the camera thing would stil work on that :)

  6. none says:

    Some government agencies (which will remain nameless), have used fiber-optic cable interconnects between keyboards, mice, and printer s to a PC.

  7. styko says:

    @dnny:
    i don’t think that keyboards will be replaced by touchscreens in the next couple of years. they still remain the most practical way of typing text, no touchscreen system can compete to them by now

  8. Oren Beck says:

    Dubious but worthy of respect as thinkably possible. Absent a live reproducible by peers demo I won’t go farther in holding it as credibile. As for the projected keyboard or touch screens replacing things like button or membrane keyboards anytime soon? All depends on user acceptance more than any other factor. The operative meme to be eternally mindful in tech is a simple one with a few variants. It’s a .Sig for posts in places like this.

    “The first one costs >$1million. Serial #oneMillion costs <$1. And past a certain point selling your tech know-how makes the widget have a negative cost per piece”

  9. therian says:

    >>Soon keyboards will be replased whit touch screens
    no way, iphone proof opposite

  10. Dan Fruzzetti says:

    just because it’s dubious doesn’t mean it’s not possible. so how do we protect against these attacks?

    1) your laptop – should the back be covered with acoustic damping material? can a reflective shade be set up behind it to avoid laser eavesdropping?

    2) take the power outlet you use with your desktops and run a detached, separate ground straight to earth from the plug, then hope nobody taps into your wall at that point?

    Eh.

    keyboards won’t be replaced with touch screens until the touch screens can be made with flexible, expandable material that gives us tactile feedback identical to that of a keyboard. woot.

  11. Mister X says:

    none said: “Some government agencies (which will remain nameless), have used fiber-optic cable interconnects between keyboards, mice, and printer s to a PC.”

    Oh really, Mr. Fake Spook?

    I started working with computers in 1977, and stay fairly on top of the tech scene.

    So just WHERE is this technology?

    A White Paper would have appeared “somewhere” about this technology.

    And it would have “trickled down” to us regular users, but it’s NOWHERE to be seen.

    Let’s SEE some “proof” to back up your spooky statement.

  12. nick says:

    uh, dont mean to be a buzz kill but if you have a uninteruptable power supply, it has filters that filter out the whole electronic noise shenanigans. and your computer shouldnt be using the ground anyways?!?!! The ground is only if your computer has a short on the case or power supply, and when that happens its usually dead…

  13. Oren Beck says:

    Not to even mention the computers that have only a 2 wire power cord from the power supply brick to the wall. Or people like me that have multiple series AC filters to the power supply. And unplugging the laptop to run on battery during sensitive work further defangs the ground spike exploit. A Panasonic Toughbook metal case laptop with touchscreen and the silicone keyboard skin being coated with clear conductive coatings could decrease RF sniff range a bit…

  14. Wwhat says:

    Just attach a vibrating motor to the laptop case and have it twitch in random patterns.
    Or type while a waterfaucet is running over it.

  15. cptfalcon says:

    I knew there was a good reason to make stealth laptops!

    In all seriousness, some laptops have much better hinges than others. If you switched keyboard layouts I think it would really mess up any processing / acoustic methods, especially if you essentially have to touch type as most key presses will look the same.

  16. TJHooker says:

    If you’re wondering why this hasn’t been shown before, it’s because it’s not even remotely practical even with the best possible software and hardware configuration. You’d get fragments of inconsistent data.

  17. therian says:

    can someone imagining how this will looks, one dude staring at you laptop focusing tripod on you and other dude with laptop connected blackbox focusing lenses at you staring at you laptop too and yell to other dude to move triode little bit left or right

    and in the end they get some mix of fan, HD and birdsong.. with keystrokes noises

  18. Tim says:

    So can this only get the time that you press keys? Doesn’t sound very useful.

  19. Heath Jones says:

    Wonder how long it will be until someone figures out how to tap the human, not the laptop.

  20. nubie says:

    Pfft, just use an external keyboard, or isolate the keyboard on some silicone rubber standoffs.

    Not to mention the option of using a half-moon keyboard and a wearable PC.

  21. Mister Y says:

    Mister X, Tempest rated equipment is available from many sources. European countries are well aware of the problems of emsec. Its only the US that ignores the risk outside of classified computer systems.

  22. tempest in a tea pot says:

    google “van eck” for more tempest info.

  23. Sheila says:

    Thanks for sharing this article. For best Keylogger software, use Keyprowler.No one but you can ever see the data that KeyProwler keylogger saves. Ever wondered who your girlfriend or boyfriend is chatting with on Myspace, Facebook, and other dating sites late at night, KeyProwler Keylogger lets you read messages sent on Myspace, Facebook, and any other Internet site and also takes a screenshot of the pages and photos that he or she is looking at. Look at his or her e-mails with KeyProwler Keylogger, check up on or monitor employees. This keylogger can get screenshots on entry of trigger words. http://www.keyprowler.com

  24. lloyd dettering says:

    You guys are so innocent! the N.S.A. and its partners in the other 4 major English-speaking countries (Canada, the U.K., Australia and New Zealand) can hack into your PC through the power outlet and take control of your mouse and keyboard, thereby your entire PC!

  25. lloyd dettering says:

    They’ve let me post the above just to frighten you. But, remember, they’re human like the rest of us and must have an Achilles heel!

  26. lloyd dettering says:

    I couldn’t even download the keyprowler software (trial version), or rather I wasn’t allowed. What are they afraid of? Microsoft gave them the Source Code for all of its Operating Systems (that’s why Microsoft got off lightly in the anti-trust case with Netscrape). So, no anti-malware program, which depends on the O/S first starting up, is of any use.

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s

Follow

Get every new post delivered to your Inbox.

Join 97,759 other followers