Contact us today!
866-348-2602

Total Tech Care Blog

Total Tech Care has been serving Florida since 2001, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Without Protection, Your USB Ports Could Become RIP Ports

Without Protection, Your USB Ports Could Become RIP Ports

It seems like everything available today can function with a USB connection, be it a thumb drive, device charger, or a desktop device--there are even USB-powered mini fridges meant for a single soda can. Unfortunately, “everything” includes malicious devices and malware.

If a USB drive is infected by malware, you can put your computer and data at risk by merely plugging it in, and there are some malicious USB devices out there that pose some pretty serious threats.

USB Kill 2.0 
Despite being powered by electricity, computers don’t mix well with too much charge, as USBKill.com has capitalized on. Creating a dongle that is capable of siphoning power off of the device it is plugged into, USBKill.com’s proprietary device then releases the energy back into the system as a power surge attack.

Intended for hardware developers to test their devices’ resistances against ‘juice jacking' (a form of data theft that extracts data as a device is charging), the USB Kill 2.0 permanently damaged--if not destroyed--95% of all devices it was tested with without the company’s proprietary USB protection shield. This shield is what allows the USB Kill 2.0 to be safely used for its intended purpose--to test electrical attack resistance.

What’s more, in some cases when used without the shield, the USB Kill 2.0 wipes data from the device. While this is not what the USB Kill 2.0 is intended to do, this occurs simply because the charge is enough to damage the device’s drive controllers.

Needless to say, a business saboteur could find great use in the $56 USB Kill 2.0 as a method of attack, and there aren’t many effective protections a workplace can implement, besides educating employees to resist the temptation of plugging in any USB device they find.

USB-to-Ethernet Theft
Best practices for workstation security dictate that a system be locked whenever its user steps away, no matter how briefly. However, a security researcher recently discovered a method of extracting data from a locked computer using, you guessed it, a USB-connected device. By disguising itself in a particular way, the target computer adopts the device as the preferred network interface, allowing the hacker to extract data to a rogue computer attached to the cable’s other end in about 13 seconds. The best defense, according to the researcher who uncovered this flaw: don’t leave your workstation logged in and unattended, even with the screen locked.

What a Business Can Do to Protect Itself
Of course, not all USBs are evil carriers of the worst malwares and threats, but by no means should they be used after being found on the street willy-nilly, especially in a workplace setting. In order to protect business workstations and data from threats, simply enforce a requirement to have any USBs fully checked by your IT department before in-office use. Alternatively, consider utilizing a cloud solution as a much safer option to meet your mobile storage needs.

To protect your business from possible saboteurs introducing their USB-based malware, it is also wise to secure exposed ports with locking devices.

While USB devices seem to be the pinnacle of affordable convenience in data storage, they are far more trouble than they are worth, at least in terms of security. There are much safer solutions to implement that feature equal, if not greater mobility than even a flash drive. A cloud solution, for instance, can be accessed from anywhere there is an Internet connection, kept safe in a well-protected, offsite location. New and improved solutions like these make risk-laden devices, such as USB dongles, unnecessary.

For more IT tips, tricks, and solutions, subscribe to our blog.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Wednesday, 15 January 2025
If you'd like to register, please fill in the username, password and name fields.

Blog Archive

Sign Up for Our Newsletter

  • First Name *
  • Last Name *

      Free Consultation

      Sign up today for a
      FREE Network Consultation

      How secure is your IT infrastructure?
      Let us evaluate it for free!

      Sign up Now!

      Free Consultation
       

      Tag Cloud

      Security Tip of the Week Technology Best Practices Business Computing Cloud Privacy Hackers Productivity Hosted Solutions Efficiency Software Network Security Business Google Microsoft Internet Email Malware Workplace Tips Backup Innovation Data User Tips Computer Mobile Devices Hardware IT Services Android VoIP Disaster Recovery communications Smartphones Communication Business Continuity IT Support Miscellaneous Smartphone Mobile Device Browser Small Business Network Collaboration Productivity Cybersecurity Quick Tips Users Business Management Upgrade Phishing Windows Managed IT Services Outsourced IT Data Backup Ransomware Windows 10 Server Save Money Data Recovery Cloud Computing Office Windows 10 Passwords Chrome Gadgets Virtualization Social Media Tech Term Saving Money Holiday Microsoft Office Managed IT Services Automation Managed Service Operating System Facebook Computers Artificial Intelligence Cybercrime IT Support Hacking Internet of Things Wi-Fi Health BYOD Mobile Device Management Networking Spam Remote Managed Service Provider Office 365 Telephone Systems Covid-19 Information Technology Information Alert Router Social Engineering Mobility BDR Employer-Employee Relationship Recovery Bandwidth Remote Monitoring Data Breach Applications Big Data Law Enforcement App History Mobile Computing Human Resources Password Application Money Encryption Government Office Tips Blockchain Paperless Office Training Private Cloud How To VPN Managed IT Apps Data Storage Patch Management Remote Computing Mobile Office Google Drive Servers Avoiding Downtime Data Security Wireless Flexibility Marketing Gmail WiFi Settings IT solutions Bring Your Own Device Entertainment Data Management Infrastructure Website Work/Life Balance Voice over Internet Protocol Budget Two-factor Authentication Vulnerability Windows 7 Mouse Word HaaS User Error Safety Meetings Sports HIPAA Redundancy Vendor Management Keyboard Vendor Risk Management Hacker Managed Services Display Telephone System The Internet of Things Staff Software as a Service Lithium-ion battery Machine Learning Save Time Remote Work Employee/Employer Relationship Connectivity RMM Firewall Cleaning USB Conferencing Virtual Reality Apple End of Support Scam Social Education Physical Security Data Protection Botnet Net Neutrality Workplace Strategy IT Plan Comparison Help Desk PDF Printing Wearable Technology Retail Hard Drives CES Unsupported Software Proactive IT Instant Messaging Excel Charger Robot Best Practice Business Technology Content Management Managed Services Provider YouTube Compliance Biometrics Access Control Database OneNote Black Market Computer Care Virtual Desktop Current Events Virtual Assistant Telephony Virus Authentication Remote Workers DDoS Samsung Unified Threat Management Processor Document Management Solid State Drive Computer Accessories SharePoint Wireless Technology How to Downtime Value Hard Drive Update Spam Blocking Electronic Medical Records Customer Service Data storage Environment Automobile Google Docs Identity Theft Printer Hiring/Firing Computing Fax Server Bluetooth Computing Infrastructure Going Green SaaS Augmented Reality Fraud Digital Signage IT Consultant Battery Business Intelligence Network Congestion Shadow IT Remote Worker Legal Audit eWaste Worker Cryptocurrency IT Management Humor Internet Exlporer Procurement Cache Social Network Amazon Web Services Computer Fan Rootkit Shortcut Notifications Safe Mode Criminal Investment Consultant Workers Benefits GDPR Employees Cost Management Hosted Computing Employee/Employer Relationships Wireless Internet Online Shopping ISP FENG Analytics Windows 365 Social Networking IBM File Sharing Video Conferencing ROI Relocation Flash Specifications Shortcuts Best Available Smart Technology Camera Sales Inventory Bitcoin Wire Personal Evernote Cryptomining WIndows 7 Video Games Running Cable Point of Sale Supercomputer Supply Chain Management Memory Worker Commute Software Tips Travel Experience Sync Millennials Emails Printers Monitoring Batteries Smart Office Digitize Wireless Charging Scalability Windows 8.1 Windows Server 2008 R2 Business Owner Workforce Netflix NarrowBand Two Factor Authentication Virtual Private Network Customer relationships IT Assessment Science Cables Manufacturing User Search Root Cause Analysis PowerPoint Email Best Practices Windows Media Player iPhone Knowledge Music HBO Skype Telecommuting Security Cameras Project Management Computer Tips Nanotechnology Managed IT Service OneDrive Cortana Biometric Security Managing Stress Data loss Distributed Denial of Service Virtual CIO Customer Relationship Management Files Leadership Troubleshooting Peripheral Analyitcs Digital Signature Outlook Start Menu Cameras Chromecast Warranty Digital Security Cameras Programming Using Data HVAC Copiers Google Apps 5G Screen Mirroring Loyalty Colocation Uninterrupted Power Supply Books Quick Tip Analysis Frequently Asked Questions Mobile Smartwatch Windows 10s Antivirus Administrator Ergonomics Devices Enterprise Content Management Development Windows 8 OLED Cast Monitor webinar IT service Emergency MSP PCI DSS Accountants Virtual Machine Tip of the week Professional Services Credit Cards Employee Public Cloud Printer Server Employer Employee Relationship Microchip 2FA Thought Leadership Fiber Optics Streaming Media Password Management Messaging Tablet Password Manager Cabling Reputation Assessment Domains Tech Support Policy Hypervisor Content Windows Server 2008 Multi-Factor Security Twitter Trend Micro Tools Techology Laptop Search Engine Dark mode Maintenance NIST SMS Business Mangement Default App IaaS Customers Television Trending Procedure Bloatware Smart Tech Saving Time Audiobook Addiction Shopping Amazon Google Search Touchpad dark theme AI Tablets Recycling IT Infrastructure Public Computer Regulations Bing Advertising Transportation Wiring FinTech Entrepreneur Practices Politics

      Top Blog

      The reasoning for this is simple: you want to make sure that operations are proceeding as intended, even if you’re not there. If you completely check out from the workplace every time you leave, you could return from your vacation to a complete and total disaster that may have been prevented with y...
      QR-Code