airgap
airgap copied to clipboard
Design for an economical and simple air-gapped system.
http://www.wired.com/2014/07/usb-security/ In summary: - A USB stick's firmware can be malicious and take control of the system. - Malware on a system can install the malicious firmware onto a USB...
http://www.scifgroup.com/category/scif-standards/ The Grugq says on Twitter "If you’re serious about building an air gapped system, learn about SCIF operational procedures."
Document a system for managing passwords. It's unreasonable to memorize them all, and actually since we are going for "physical attack necessary", it might be alright to write them down...
In practice, vulnerabilities in Tails will be found, and we have to get the new version (although, we should _not_ update, unless a vulnerability actually affects our use case, since...