aboutsummaryrefslogtreecommitdiff
path: root/docs/hardware/dock.md
diff options
context:
space:
mode:
Diffstat (limited to 'docs/hardware/dock.md')
-rw-r--r--docs/hardware/dock.md1
1 files changed, 1 insertions, 0 deletions
diff --git a/docs/hardware/dock.md b/docs/hardware/dock.md
index f1e86226..079a4e6f 100644
--- a/docs/hardware/dock.md
+++ b/docs/hardware/dock.md
@@ -8,6 +8,7 @@
Usually when people do full disk encryption, it's not really full disk,
instead they still have a /boot in clear.
+
So an evil maid attack can still be done, in two passes:
1) Clone the hdd, Infect the initramfs or the kernel.
2) Wait for the user to enter its password, recover the password,