Today at the Usenix Security conference, a group of University of Washington researchers will present a paper showing how they wrote a piece of malware that attacks common gene-sequencing devices and encoded it into a strand of DNA: gene sequencers that read the malware are corrupted by it, giving control to the attackers.
It's an imperfect attack: it only works 37% of the time, and the researchers used a deliberately weakened version of the sequencing software, but the reliability and virulence of the attack will likely increase in future iterations.
Regardless of any practical reason for the research, however, the notion of building a computer attack—known as an "exploit"—with nothing but the information stored in a strand of DNA represented an epic hacker challenge for the University of Washington team. The researchers started by writing a well-known exploit called a "buffer overflow," designed to fill the space in a computer's memory meant for a certain piece of data and then spill out into another part of the memory to plant its own malicious commands.
But encoding that attack in actual DNA proved harder than they first imagined. DNA sequencers work by mixing DNA with chemicals that bind differently to DNA's basic units of code—the chemical bases A, T, G, and C—and each emit a different color of light, captured in a photo of the DNA molecules. To speed up the processing, the images of millions of bases are split up into thousands of chunks and analyzed in parallel. So all the data that comprised their attack had to fit into just a few hundred of those bases, to increase the likelihood it would remain intact throughout the sequencer's parallel processing.
Computer Security, Privacy, and DNA Sequencing:
Compromising Computers with Synthesized DNA, Privacy Leaks, and More [Peter Ney, Karl Koscher, Lee Organick, Luis Ceze and Tadayoshi Kohno/Usenix Security]
BIOHACKERS ENCODED MALWARE IN A STRAND OF DNA
When I was a kid, my whole circle of D&D-playing, science-fiction reading pals was really into Roger Zelazny's ten-volume Chronicles of Amber, but somehow I never read it; for years, I'd intended to correct this oversight, but I never seemed to find the time -- after all, there's more amazing new stuff than I can […]
I'm in the midst of couple of weeks' worth of lectures, public events and teaching, and you can catch me in Toronto (for Word on the Street, Seeding Utopias and Resisting Dystopias and 6 Degrees); Newry, ME (Maine Library Association) and Portland, ME (in conversation with James Patrick Kelly).
In 2017, Banksy painted a giant mural on a wall in Dover, England depicting a worker chiseling a star off the EU flag, by way of a comment on the Brexit vote; now, parties unknown have painted over that mural, whitewashing it. Banksy is philosophical about this development: "Oh. I had planned that on the […]
Studies have shown cannabidiol (more popularly known as CBD) to be effective in two main areas: Pain relief and stress relief. Both of those make the non-psychoactive, cannabis-derived compound a natural for topical creams. There’s no shortage of CBD products out there, but here’s eight of our favorites, all specifically designed for dermatological use – […]
If you’re part of the maker community, you know Make:. Though Make: magazine is off the shelves as of this year, the eBooks and resources put out by Maker Media are still a fantastic resource for the new generation of tinkerers, hackers, and robotics geeks. If you’re in that tribe, listen up: they’ve released a […]
Life isn’t getting any less hectic, and pressure cookers are a quick, healthy solution for a growing number of kitchens. But if you thought your Instant Pot was versatile, there’s a major upgrade on the market: The Yedi 9-in-1 Total Package Instant Programmable Pressure Cooker. If you’ve somehow never used a pressure cooker before, try […]