Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Compromising Computers with Synthesized DNA, Privacy Leaks, and More
e 2017 USENIX Security Symposium ^ | 8/10/2017 | P Ney, K Koscher, L Organick, L Ceze, and T Kohno

Posted on 08/12/2017 8:17:29 AM PDT by AdmSmith

The rapid improvement in DNA sequencing has sparked a big data revolution in genomic sciences, which has in turn led to a proliferation of bioinformatics tools. To date, these tools have encountered little adversarial pressure. This paper evaluates the robustness of such tools if (or when) adversarial attacks manifest. We demonstrate, for the first time, the synthesis of DNA which — when sequenced and processed— gives an attacker arbitrary remote code execution. To study the feasibility of creating and synthesizing a DNA-based exploit, we performed our attack on a modified downstream sequencing utility with a deliberately introduced vulnerability. After sequencing, we observed information leakage in our data due to sample bleeding. While this phenomena is known to the sequencing community, we provide the first discussion of how this leakage channel could be used adversarially to inject data or reveal sensitive information. We then evaluate the general security hygiene of common DNA processing programs, and unfortunately, find concrete evidence of poor security practices used throughout the field. Informed by our experiments and results, we develop a broad framework and guidelines to safeguard security and privacy in DNA synthesis, sequencing, and processing.


TOPICS: Miscellaneous; War on Terror
KEYWORDS: cyberwar; dna
Full article : http://dnasec.cs.washington.edu/dnasec.pdf
1 posted on 08/12/2017 8:17:29 AM PDT by AdmSmith
[ Post Reply | Private Reply | View Replies]

To: TigerLikesRooster; nuconvert; gattaca; SeekAndFind; Chode

Just an experiment: Writing a computer program in DNA code.


2 posted on 08/12/2017 8:28:37 AM PDT by AdmSmith (GCTGATATGTCTATGATTACTCAT)
[ Post Reply | Private Reply | To 1 | View Replies]

To: AdmSmith

Thanks.

I hear tell you can punch holes in cards and affect a computer.


3 posted on 08/12/2017 8:59:48 AM PDT by ifinnegan (Democrats kill babies and harvest their organs to sell)
[ Post Reply | Private Reply | To 1 | View Replies]

To: AdmSmith
An interesting concept. I wonder if a similar thing can be done with a photograph and a scanner.
4 posted on 08/12/2017 9:49:14 AM PDT by TigerLikesRooster (dead parakeet + lost fishing gear = freep all day)
[ Post Reply | Private Reply | To 2 | View Replies]

To: ifinnegan

Urban legend. Snopes debunked.


5 posted on 08/12/2017 2:03:19 PM PDT by YogicCowboy ("I am not entirely on anyone's side, because no one is entirely on mine." - JRRT)
[ Post Reply | Private Reply | To 3 | View Replies]

To: TigerLikesRooster

Perhaps for a OCR scan
http://www.overclock.net/t/1031999/spicewrks-malicious-code-injection-via-ocr-scan

(I have not checked if it is a real threat)


6 posted on 08/13/2017 7:04:42 AM PDT by AdmSmith (GCTGATATGTCTATGATTACTCAT)
[ Post Reply | Private Reply | To 4 | View Replies]

To: AdmSmith
Yes, that was what I was wondering. If a document is printed on a squeaky clean paper with well-delineated characters, it could be doable.
7 posted on 08/13/2017 7:16:08 AM PDT by TigerLikesRooster (dead parakeet + lost fishing gear = freep all day)
[ Post Reply | Private Reply | To 6 | View Replies]

To: TigerLikesRooster

If depends on how the data from the OCR reader is handled. If it is stored as a data file that can be used as input in the program then it might be problem.


8 posted on 08/13/2017 7:29:49 AM PDT by AdmSmith (GCTGATATGTCTATGATTACTCAT)
[ Post Reply | Private Reply | To 7 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson