Less than an hour into a Tinder date in a Moscow restaurant last year, Patrick Wardle began to wonder about the laptop he'd left in his hotel room. Wardle had come to the city for a security conference; as a former
NSA staffer who'd worked on the elite hacking unit known as Tailored Access Operations, he was
paranoid enough to bring only a "burner" PC on his trip, carefully stripped of any sensitive information. But when his date told him she was a former employee of Russia's Ministry of Foreign Affairs, the question became real for him: Had he been lured out of his room so that someone could lay hands on that computer? And if so, would he ever know for sure?
Wardle never found evidence of tampering or malware on that burner machine. But he did keep thinking about so-called "evil maid" attacks, the classic security problem that computers are far more vulnerable to hacking when the attacker can get physical access to them. Like, say, in a hotel room, while the computer's owner is ordering appetizers on the other side of the Moskva River.