Contact us today!
866-348-2602

Total Tech Care Blog

Total Tech Care has been serving Florida since 2001, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Without Protection, Your USB Ports Could Become RIP Ports

Without Protection, Your USB Ports Could Become RIP Ports

It seems like everything available today can function with a USB connection, be it a thumb drive, device charger, or a desktop device--there are even USB-powered mini fridges meant for a single soda can. Unfortunately, “everything” includes malicious devices and malware.

If a USB drive is infected by malware, you can put your computer and data at risk by merely plugging it in, and there are some malicious USB devices out there that pose some pretty serious threats.

USB Kill 2.0 
Despite being powered by electricity, computers don’t mix well with too much charge, as USBKill.com has capitalized on. Creating a dongle that is capable of siphoning power off of the device it is plugged into, USBKill.com’s proprietary device then releases the energy back into the system as a power surge attack.

Intended for hardware developers to test their devices’ resistances against ‘juice jacking' (a form of data theft that extracts data as a device is charging), the USB Kill 2.0 permanently damaged--if not destroyed--95% of all devices it was tested with without the company’s proprietary USB protection shield. This shield is what allows the USB Kill 2.0 to be safely used for its intended purpose--to test electrical attack resistance.

What’s more, in some cases when used without the shield, the USB Kill 2.0 wipes data from the device. While this is not what the USB Kill 2.0 is intended to do, this occurs simply because the charge is enough to damage the device’s drive controllers.

Needless to say, a business saboteur could find great use in the $56 USB Kill 2.0 as a method of attack, and there aren’t many effective protections a workplace can implement, besides educating employees to resist the temptation of plugging in any USB device they find.

USB-to-Ethernet Theft
Best practices for workstation security dictate that a system be locked whenever its user steps away, no matter how briefly. However, a security researcher recently discovered a method of extracting data from a locked computer using, you guessed it, a USB-connected device. By disguising itself in a particular way, the target computer adopts the device as the preferred network interface, allowing the hacker to extract data to a rogue computer attached to the cable’s other end in about 13 seconds. The best defense, according to the researcher who uncovered this flaw: don’t leave your workstation logged in and unattended, even with the screen locked.

What a Business Can Do to Protect Itself
Of course, not all USBs are evil carriers of the worst malwares and threats, but by no means should they be used after being found on the street willy-nilly, especially in a workplace setting. In order to protect business workstations and data from threats, simply enforce a requirement to have any USBs fully checked by your IT department before in-office use. Alternatively, consider utilizing a cloud solution as a much safer option to meet your mobile storage needs.

To protect your business from possible saboteurs introducing their USB-based malware, it is also wise to secure exposed ports with locking devices.

While USB devices seem to be the pinnacle of affordable convenience in data storage, they are far more trouble than they are worth, at least in terms of security. There are much safer solutions to implement that feature equal, if not greater mobility than even a flash drive. A cloud solution, for instance, can be accessed from anywhere there is an Internet connection, kept safe in a well-protected, offsite location. New and improved solutions like these make risk-laden devices, such as USB dongles, unnecessary.

For more IT tips, tricks, and solutions, subscribe to our blog.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Tuesday, 03 December 2024
If you'd like to register, please fill in the username, password and name fields.

Blog Archive

Sign Up for Our Newsletter

  • First Name *
  • Last Name *

      Free Consultation

      Sign up today for a
      FREE Network Consultation

      How secure is your IT infrastructure?
      Let us evaluate it for free!

      Sign up Now!

      Free Consultation
       

      Tag Cloud

      Security Tip of the Week Technology Best Practices Business Computing Cloud Privacy Hackers Productivity Hosted Solutions Software Efficiency Network Security Business Google Microsoft Internet Email Malware Backup Workplace Tips Innovation User Tips Data Computer Mobile Devices Hardware IT Services VoIP Disaster Recovery Android communications Smartphones IT Support Business Continuity Communication Miscellaneous Smartphone Mobile Device Browser Small Business Network Productivity Collaboration Quick Tips Cybersecurity Users Business Management Windows Phishing Managed IT Services Upgrade Outsourced IT Ransomware Data Backup Windows 10 Cloud Computing Office Server Data Recovery Save Money Passwords Windows 10 Chrome Virtualization Tech Term Saving Money Holiday Social Media Gadgets Managed Service Managed IT Services Automation Microsoft Office Computers Facebook Operating System Artificial Intelligence Cybercrime BYOD Mobile Device Management Internet of Things Networking IT Support Wi-Fi Health Hacking Information Covid-19 Spam Office 365 Telephone Systems Information Technology Remote Alert Managed Service Provider Router Bandwidth BDR Recovery Employer-Employee Relationship Social Engineering Mobility Money Remote Monitoring Encryption Applications Mobile Computing Application App History Law Enforcement Data Breach Big Data Human Resources Password Apps How To Remote Computing Mobile Office Data Storage Patch Management Government Office Tips Training Private Cloud VPN Managed IT Blockchain Paperless Office Mouse Flexibility HaaS Infrastructure Marketing Voice over Internet Protocol WiFi Google Drive IT solutions Entertainment Website Vulnerability Budget Windows 7 Word Avoiding Downtime Wireless Servers Gmail Settings Bring Your Own Device Data Security Data Management Two-factor Authentication Work/Life Balance Managed Services Apple Connectivity Display Remote Work Social End of Support Education Physical Security User Error Employee/Employer Relationship Safety Meetings RMM Sports HIPAA Conferencing Redundancy Keyboard Scam Risk Management USB Hacker Data Protection The Internet of Things Lithium-ion battery Vendor Management Save Time Firewall Telephone System Staff Software as a Service Vendor Cleaning Virtual Reality Machine Learning Update Remote Workers Virus Value Network Congestion Battery Processor Spam Blocking Unified Threat Management Electronic Medical Records eWaste Google Docs Computer Accessories Identity Theft Shadow IT Legal Hard Drive Hiring/Firing Internet Exlporer Augmented Reality Wearable Technology Retail Hard Drives Computing Printer PDF Fraud Instant Messaging Bluetooth Excel Remote Worker Robot Proactive IT Business Intelligence Biometrics Cryptocurrency Audit Worker Best Practice Virtual Desktop YouTube IT Management Digital Signage Black Market IT Consultant Botnet DDoS Comparison IT Plan Humor CES SharePoint Document Management Procurement Wireless Technology Workplace Strategy Unsupported Software Solid State Drive Net Neutrality Business Technology How to Content Management Downtime Access Control Help Desk Charger Customer Service Environment Printing Virtual Assistant Data storage Compliance Fax Server Automobile OneNote Authentication Computer Care Current Events Telephony Managed Services Provider Computing Infrastructure Samsung SaaS Going Green Database Skype Windows Server 2008 R2 Digital Signature Reputation Streaming Media Maintenance Customer relationships Warranty Content Data loss IaaS Tech Support Manufacturing Leadership Google Apps Windows Media Player Laptop Troubleshooting Email Best Practices Bloatware User IT Assessment Outlook HVAC PowerPoint Techology Start Menu Analysis Customers Computer Tips Tablets Administrator Audiobook Managed IT Service Screen Mirroring Devices Security Cameras Loyalty Biometric Security Touchpad Books Virtual CIO Entrepreneur Managing Stress OneDrive Frequently Asked Questions Enterprise Content Management Peripheral Mobile MSP Windows 10s Accountants Shortcut Digital Security Cameras Microchip Politics Using Data Cast Thought Leadership Cameras Advertising Credit Cards 5G webinar Password Manager Emergency Cost Management Copiers Tip of the week Password Management Quick Tip Professional Services Public Cloud Employer Employee Relationship Multi-Factor Security Notifications Social Networking Ergonomics Search Engine Twitter Smartwatch Assessment OLED Business Mangement Development Windows Server 2008 NIST PCI DSS Tools Virtual Machine Smart Tech Relocation Running Cable Trending 2FA Memory Fiber Optics Addiction Printer Server Employee Television Amazon Video Games Cabling Recycling Messaging Policy Wiring Worker Commute Hypervisor Practices Dark mode Experience Trend Micro Cache Public Computer Amazon Web Services Scalability Default App Criminal Transportation SMS Regulations Safe Mode Procedure Science GDPR Business Owner Saving Time Computer Fan Hosted Computing Rootkit NarrowBand dark theme Shopping Wireless Internet Google Search Online Shopping File Sharing Search IT Infrastructure Workers Benefits AI FinTech Camera FENG Inventory iPhone Bing Distributed Denial of Service Specifications Customer Relationship Management Evernote Analyitcs Social Network Wire IBM Investment Smart Technology Travel Programming Flash Employees Printers Consultant Employee/Employer Relationships Files Millennials Wireless Charging Chromecast Windows 365 Software Tips Smart Office Analytics ISP Supercomputer ROI Emails Antivirus Video Conferencing Sync Sales Windows 8 Virtual Private Network Best Available Bitcoin Colocation Shortcuts Workforce Uninterrupted Power Supply Cables IT service Point of Sale WIndows 7 Personal Cryptomining Netflix Monitor Two Factor Authentication Supply Chain Management Monitoring Tablet Project Management Batteries Root Cause Analysis Nanotechnology Telecommuting Knowledge Cortana Music Domains Windows 8.1 Digitize HBO

      Top Blog

      The reasoning for this is simple: you want to make sure that operations are proceeding as intended, even if you’re not there. If you completely check out from the workplace every time you leave, you could return from your vacation to a complete and total disaster that may have been prevented with y...
      QR-Code