Dec 31 2004
At a Kiosk near you
(ISC)2: Security Risk and Defense for Internet Access Kiosks
I’ve rarely had to use a kiosk computer to access anything, but this article by Anthony Lai makes me loathe to ever access anything with a password from one. I wonder if I could install my own Knoppix cd in the drive of one of these kiosks and boot to a LiveCD image? Doing so would alleviate many of my concerns about a kiosk, but would probably raise many more in the mind of the owner.
The suggestion I like best in this article is a fresh image every time the system boots. I know that something similar to this is done at the local junior college, so I know it can be done. Even if the re-image happens daily instead of every reboot, it would severely limit the impact of a trojan or worm that manages to get on a kiosk.