{"id":41110,"date":"2020-02-05T21:30:57","date_gmt":"2020-02-05T18:30:57","guid":{"rendered":"https:\/\/prohoster.info\/blog\/blog_prohoster\/metody-otklyucheniya-zashhity-lockdown-v-ubuntu-dlya-udalyonnogo-obhoda-uefi-secure-boot"},"modified":"2020-02-05T21:30:57","modified_gmt":"2020-02-05T18:30:57","slug":"metody-otklyucheniya-zashhity-lockdown-v-ubuntu-dlya-udalyonnogo-obhoda-uefi-secure-boot","status":"publish","type":"post","link":"https:\/\/prohoster.info\/es\/blog\/metody-otklyucheniya-zashhity-lockdown-v-ubuntu-dlya-udalyonnogo-obhoda-uefi-secure-boot","title":{"rendered":"M\u00e9todos para desactivar la protecci\u00f3n Lockdown en Ubuntu para el bypass remoto de UEFI Secure Boot","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p>Andrey Konovalov de Google <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/xairy\/unlockdown\">public\u00f3<\/a><\/noindex> m\u00e9todo de desactivaci\u00f3n remota de la protecci\u00f3n  <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=51591\">Lockdown<\/a><\/noindex>, ofrecido en el paquete con el n\u00facleo de Linux proporcionado en Ubuntu (te\u00f3ricamente, los m\u00e9todos propuestos <noindex><a rel=\"nofollow\" href=\"https:\/\/bugzilla.redhat.com\/show_bug.cgi?id=1599197\">deben<\/a><\/noindex> funcionar con el n\u00facleo de Fedora y otros distribuidores, pero no han sido probados). <\/p>\n<p>Lockdown restringe el acceso del usuario root al n\u00facleo y bloquea las rutas de bypass del arranque seguro UEFI. Por ejemplo, en modo de lockdown, se restringe el acceso a \/dev\/mem, \/dev\/kmem, \/dev\/port, \/proc\/kcore, debugfs, el modo de depuraci\u00f3n kprobes, mmiotrace, tracefs, BPF, CIS de PCMCIA (Estructura de Informaci\u00f3n de la Tarjeta), algunas interfaces ACPI y registros MSR de la CPU, se bloquean las llamadas a kexec_file y kexec_load, se proh\u00edbe la entrada en modo de suspensi\u00f3n, se limita el uso de DMA para dispositivos PCI, se proh\u00edbe la importaci\u00f3n de c\u00f3digo ACPI desde variables EFI, no se permiten manipulaciones con puertos de entrada\/salida, incluyendo el cambio de n\u00fameros de interrupci\u00f3n y puertos de entrada\/salida para el puerto serie.<\/p>\n<p>El mecanismo Lockdown se incorpor\u00f3 recientemente al n\u00facleo principal de Linux <noindex><a rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=51881\">5.4<\/a><\/noindex>, pero en los n\u00facleos proporcionados en los distribuidores sigue implementado en forma de parches o complementado con parches. Una de las diferencias entre las extensiones proporcionadas en los distribuidores y la implementaci\u00f3n integrada en el n\u00facleo es la posibilidad de desactivar el bloqueo proporcionado en caso de tener acceso f\u00edsico al sistema. <\/p>\n<p>En Ubuntu y Fedora, la combinaci\u00f3n de teclas para desactivar Lockdown es Alt+SysRq+X. Se supone que la combinaci\u00f3n Alt+SysRq+X solo se puede usar con acceso f\u00edsico al dispositivo, y en caso de un hackeo remoto y obtener acceso root, el atacante no podr\u00e1 desactivar Lockdown y, por ejemplo, cargar en el n\u00facleo un m\u00f3dulo sin firma digital con rootkit. <\/p>\n<p>Andrei Konovalov demostr\u00f3 que los m\u00e9todos relacionados con el uso del teclado para confirmar la presencia f\u00edsica del usuario son ineficaces. La forma m\u00e1s sencilla de desactivar Lockdown ser\u00eda una simulaci\u00f3n program\u00e1tica <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/xairy\/unlockdown\/blob\/master\/00-sysrq-trigger\/run.sh\">de la pulsaci\u00f3n de Alt+SysRq+X a trav\u00e9s de \/dev\/uinput, pero esta opci\u00f3n est\u00e1 bloqueada desde el principio. Sin embargo, se han identificado al menos otras dos formas de inyectar Alt+SysRq+X.<\/a><\/noindex> El primer m\u00e9todo est\u00e1 relacionado con el uso de la interfaz \u201csysrq-trigger\u201d \u2014 para la simulaci\u00f3n, basta con habilitar esta interfaz, escribiendo \u201c1\u201d en \/proc\/sys\/kernel\/sysrq, y luego escribir \u201cx\u201d en \/proc\/sysrq-trigger. Esta laguna <\/p>\n<p>El primer m\u00e9todo est\u00e1 relacionado con el uso de la interfaz \u00absysrq-trigger\u00bb \u2014 para simular, basta con habilitar esta interfaz, escribiendo \u00ab1\u00bb en \/proc\/sys\/kernel\/sysrq, y luego escribir \u00abx\u00bb en \/proc\/sysrq-trigger. La vulnerabilidad mencionada <noindex><a rel=\"nofollow\" href=\"https:\/\/bugs.launchpad.net\/ubuntu\/+source\/linux\/+bug\/1851380\">se solucion\u00f3<\/a><\/noindex> intentaron <noindex><a rel=\"nofollow\" href=\"https:\/\/git.launchpad.net\/~ubuntu-kernel\/ubuntu\/+source\/linux\/+git\/bionic\/commit\/?id=531c25a35b2a93e025e72e04f16b0f3620ace581\">intentaron<\/a><\/noindex> bloquear este m\u00e9todo, pero el bloqueo no funcion\u00f3 debido a <noindex><a rel=\"nofollow\" href=\"https:\/\/lore.kernel.org\/lkml\/15833.1551974371@warthog.procyon.org.uk\/\">un error<\/a><\/noindex> en el c\u00f3digo.<\/p>\n<p>El segundo m\u00e9todo est\u00e1 relacionado con la emulaci\u00f3n del teclado a trav\u00e9s de  <noindex><a rel=\"nofollow\" href=\"http:\/\/usbip.sourceforge.net\/\">USB\/IP<\/a><\/noindex> y el env\u00edo posterior de la secuencia Alt+SysRq+X desde el teclado virtual. En el n\u00facleo de Ubuntu suministrado, USB\/IP est\u00e1 habilitado de forma predeterminada (CONFIG_USBIP_VHCI_HCD=m y CONFIG_USBIP_CORE=m) y se proporcionan los m\u00f3dulos necesarios, firmados digitalmente, usbip_core y vhci_hcd. Un atacante puede <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/xairy\/unlockdown\/blob\/master\/01-usbip\/keyboard.c\">crear<\/a><\/noindex> un dispositivo USB virtual, <noindex><a rel=\"nofollow\" href=\"https:\/\/github.com\/xairy\/unlockdown\/blob\/master\/01-usbip\/run.sh\">iniciando<\/a><\/noindex> un controlador de red en la interfaz de loopback y conect\u00e1ndolo como un dispositivo USB remoto mediante USB\/IP. Se ha informado sobre el m\u00e9todo mencionado <noindex><a rel=\"nofollow\" href=\"https:\/\/bugs.launchpad.net\/ubuntu\/+source\/linux\/+bug\/1861238\">a los<\/a><\/noindex> desarrolladores de Ubuntu, pero la correcci\u00f3n a\u00fan no se ha lanzado.<\/p>\n<p><noindex><a rel=\"nofollow\" name=\"link\"><\/a><\/noindex><\/p>\n<p>Fuente: <a \ncontent=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/www.opennet.ru\/opennews\/art.shtml?num=52286\">opennet.ru<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0410\u043d\u0434\u0440\u0435\u0439 \u041a\u043e\u043d\u043e\u0432\u0430\u043b\u043e\u0432 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Google \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043b \u0441\u043f\u043e\u0441\u043e\u0431 \u0443\u0434\u0430\u043b\u0451\u043d\u043d\u043e\u0433\u043e \u043e\u0442\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u044f \u0437\u0430\u0449\u0438\u0442\u044b Lockdown, \u043f\u0440\u0435\u0434\u043b\u0430\u0433\u0430\u0435\u043c\u043e\u0439 \u0432 \u043f\u0430\u043a\u0435\u0442\u0435 \u0441 \u044f\u0434\u0440\u043e\u043c Linux, \u043f\u043e\u0441\u0442\u0430\u0432\u043b\u044f\u0435\u043c\u043e\u043c \u0432 Ubuntu (\u0442\u0435\u043e\u0440\u0435\u0442\u0438\u0447\u0435\u0441\u043a\u0438 \u043f\u0440\u0435\u0434\u043b\u043e\u0436\u0435\u043d\u043d\u044b\u0435 \u043c\u0435\u0442\u043e\u0434\u044b \u0434\u043e\u043b\u0436\u043d\u044b \u0440\u0430\u0431\u043e\u0442\u0430\u0442\u044c \u0441 \u044f\u0434\u0440\u043e\u043c Fedora \u0438 \u0434\u0440\u0443\u0433\u0438\u0445 \u0434\u0438\u0441\u0442\u0440\u0438\u0431\u0443\u0442\u0438\u0432\u043e\u0432, \u043d\u043e \u043e\u043d\u0438 \u043d\u0435 \u043f\u0440\u043e\u0442\u0435\u0441\u0442\u0438\u0440\u043e\u0432\u0430\u043d\u044b). Lockdown \u043e\u0433\u0440\u0430\u043d\u0438\u0447\u0438\u0432\u0430\u0435\u0442 \u0434\u043e\u0441\u0442\u0443\u043f \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044f root \u043a \u044f\u0434\u0440\u0443 \u0438 \u0431\u043b\u043e\u043a\u0438\u0440\u0443\u0435\u0442 \u043f\u0443\u0442\u0438 \u043e\u0431\u0445\u043e\u0434\u0430 UEFI Secure Boot. \u041d\u0430\u043f\u0440\u0438\u043c\u0435\u0440, \u0432 \u0440\u0435\u0436\u0438\u043c\u0435 lockdown \u043e\u0433\u0440\u0430\u043d\u0438\u0447\u0438\u0432\u0430\u0435\u0442\u0441\u044f \u0434\u043e\u0441\u0442\u0443\u043f [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[],"tags":[],"class_list":["post-41110","post","type-post","status-publish","format-standard","hentry"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.2 - aioseo.com -->\n\t<meta name=\"description\" content=\"\u0410\u043d\u0434\u0440\u0435\u0439 \u041a\u043e\u043d\u043e\u0432\u0430\u043b\u043e\u0432 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Google \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043b \u0441\u043f\u043e\u0441\u043e\u0431 \u0443\u0434\u0430\u043b\u0451\u043d\u043d\u043e\u0433\u043e \u043e\u0442\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u044f \u0437\u0430\u0449\u0438\u0442\u044b\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/es\/blog\/metody-otklyucheniya-zashhity-lockdown-v-ubuntu-dlya-udalyonnogo-obhoda-uefi-secure-boot\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.2\" \/>\n\t\t<meta property=\"og:locale\" content=\"es_ES\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47\u041c\u0435\u0442\u043e\u0434\u044b \u043e\u0442\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u044f \u0437\u0430\u0449\u0438\u0442\u044b Lockdown \u0432 Ubuntu \u0434\u043b\u044f \u0443\u0434\u0430\u043b\u0451\u043d\u043d\u043e\u0433\u043e \u043e\u0431\u0445\u043e\u0434\u0430 UEFI Secure Boot | ProHoster\" \/>\n\t\t<meta property=\"og:description\" content=\"\u0410\u043d\u0434\u0440\u0435\u0439 \u041a\u043e\u043d\u043e\u0432\u0430\u043b\u043e\u0432 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Google \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043b \u0441\u043f\u043e\u0441\u043e\u0431 \u0443\u0434\u0430\u043b\u0451\u043d\u043d\u043e\u0433\u043e \u043e\u0442\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u044f \u0437\u0430\u0449\u0438\u0442\u044b\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/es\/blog\/metody-otklyucheniya-zashhity-lockdown-v-ubuntu-dlya-udalyonnogo-obhoda-uefi-secure-boot\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2020-02-05T18:30:57+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2020-02-05T18:30:57+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47M\u00e9todos para deshabilitar la protecci\u00f3n Lockdown en Ubuntu para sortear UEFI Secure Boot | ProHoster","description":"Andrey Konovalov de Google public\u00f3 un m\u00e9todo para deshabilitar remotamente la protecci\u00f3n","canonical_url":"https:\/\/prohoster.info\/es\/blog\/metody-otklyucheniya-zashhity-lockdown-v-ubuntu-dlya-udalyonnogo-obhoda-uefi-secure-boot","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"es_ES","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47\u041c\u0435\u0442\u043e\u0434\u044b \u043e\u0442\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u044f \u0437\u0430\u0449\u0438\u0442\u044b Lockdown \u0432 Ubuntu \u0434\u043b\u044f \u0443\u0434\u0430\u043b\u0451\u043d\u043d\u043e\u0433\u043e \u043e\u0431\u0445\u043e\u0434\u0430 UEFI Secure Boot | ProHoster","og:description":"\u0410\u043d\u0434\u0440\u0435\u0439 \u041a\u043e\u043d\u043e\u0432\u0430\u043b\u043e\u0432 \u0438\u0437 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 Google \u043e\u043f\u0443\u0431\u043b\u0438\u043a\u043e\u0432\u0430\u043b \u0441\u043f\u043e\u0441\u043e\u0431 \u0443\u0434\u0430\u043b\u0451\u043d\u043d\u043e\u0433\u043e \u043e\u0442\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u044f \u0437\u0430\u0449\u0438\u0442\u044b","og:url":"https:\/\/prohoster.info\/es\/blog\/metody-otklyucheniya-zashhity-lockdown-v-ubuntu-dlya-udalyonnogo-obhoda-uefi-secure-boot","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2020-02-05T18:30:57+00:00","article:modified_time":"2020-02-05T18:30:57+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"41110","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":null,"breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-02-28 10:48:15","updated":"2022-09-28 13:36:48","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/posts\/41110","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/comments?post=41110"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/posts\/41110\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/media?parent=41110"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/categories?post=41110"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/es\/wp-json\/wp\/v2\/tags?post=41110"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}