Contact us today!
866-348-2602

Total Tech Care Blog

Total Tech Care has been serving Florida since 2001, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Without Protection, Your USB Ports Could Become RIP Ports

Without Protection, Your USB Ports Could Become RIP Ports

It seems like everything available today can function with a USB connection, be it a thumb drive, device charger, or a desktop device--there are even USB-powered mini fridges meant for a single soda can. Unfortunately, “everything” includes malicious devices and malware.

If a USB drive is infected by malware, you can put your computer and data at risk by merely plugging it in, and there are some malicious USB devices out there that pose some pretty serious threats.

USB Kill 2.0 
Despite being powered by electricity, computers don’t mix well with too much charge, as USBKill.com has capitalized on. Creating a dongle that is capable of siphoning power off of the device it is plugged into, USBKill.com’s proprietary device then releases the energy back into the system as a power surge attack.

Intended for hardware developers to test their devices’ resistances against ‘juice jacking' (a form of data theft that extracts data as a device is charging), the USB Kill 2.0 permanently damaged--if not destroyed--95% of all devices it was tested with without the company’s proprietary USB protection shield. This shield is what allows the USB Kill 2.0 to be safely used for its intended purpose--to test electrical attack resistance.

What’s more, in some cases when used without the shield, the USB Kill 2.0 wipes data from the device. While this is not what the USB Kill 2.0 is intended to do, this occurs simply because the charge is enough to damage the device’s drive controllers.

Needless to say, a business saboteur could find great use in the $56 USB Kill 2.0 as a method of attack, and there aren’t many effective protections a workplace can implement, besides educating employees to resist the temptation of plugging in any USB device they find.

USB-to-Ethernet Theft
Best practices for workstation security dictate that a system be locked whenever its user steps away, no matter how briefly. However, a security researcher recently discovered a method of extracting data from a locked computer using, you guessed it, a USB-connected device. By disguising itself in a particular way, the target computer adopts the device as the preferred network interface, allowing the hacker to extract data to a rogue computer attached to the cable’s other end in about 13 seconds. The best defense, according to the researcher who uncovered this flaw: don’t leave your workstation logged in and unattended, even with the screen locked.

What a Business Can Do to Protect Itself
Of course, not all USBs are evil carriers of the worst malwares and threats, but by no means should they be used after being found on the street willy-nilly, especially in a workplace setting. In order to protect business workstations and data from threats, simply enforce a requirement to have any USBs fully checked by your IT department before in-office use. Alternatively, consider utilizing a cloud solution as a much safer option to meet your mobile storage needs.

To protect your business from possible saboteurs introducing their USB-based malware, it is also wise to secure exposed ports with locking devices.

While USB devices seem to be the pinnacle of affordable convenience in data storage, they are far more trouble than they are worth, at least in terms of security. There are much safer solutions to implement that feature equal, if not greater mobility than even a flash drive. A cloud solution, for instance, can be accessed from anywhere there is an Internet connection, kept safe in a well-protected, offsite location. New and improved solutions like these make risk-laden devices, such as USB dongles, unnecessary.

For more IT tips, tricks, and solutions, subscribe to our blog.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Wednesday, 30 April 2025
If you'd like to register, please fill in the username, password and name fields.

Blog Archive

Sign Up for Our Newsletter

  • First Name *
  • Last Name *

      Free Consultation

      Sign up today for a
      FREE Network Consultation

      How secure is your IT infrastructure?
      Let us evaluate it for free!

      Sign up Now!

      Free Consultation
       

      Tag Cloud

      Security Tip of the Week Technology Best Practices Business Computing Cloud Privacy Hackers Productivity Hosted Solutions Efficiency Software Network Security Business Google Internet Microsoft Email Malware Backup Workplace Tips Innovation User Tips Data Computer Mobile Devices IT Services Hardware Android VoIP Disaster Recovery communications Smartphones Communication Business Continuity IT Support Miscellaneous Smartphone Mobile Device Browser Small Business Network Productivity Collaboration Quick Tips Cybersecurity Users Business Management Managed IT Services Windows Phishing Upgrade Data Backup Outsourced IT Ransomware Windows 10 Server Save Money Data Recovery Cloud Computing Office Passwords Windows 10 Chrome Virtualization Gadgets Saving Money Social Media Holiday Tech Term Microsoft Office Managed IT Services Automation Managed Service Operating System Computers Facebook Artificial Intelligence Cybercrime Hacking Internet of Things BYOD Mobile Device Management Wi-Fi Networking Health IT Support Managed Service Provider Covid-19 Spam Office 365 Telephone Systems Information Information Technology Alert Remote Social Engineering Mobility Router BDR Bandwidth Recovery Employer-Employee Relationship Data Breach Encryption Big Data Applications Remote Monitoring Law Enforcement Mobile Computing App History Application Password Money Human Resources Remote Computing Mobile Office Government Blockchain Paperless Office How To Office Tips Private Cloud Training Managed IT VPN Data Storage Patch Management Apps Two-factor Authentication Servers Mouse HaaS Google Drive Data Security Flexibility Marketing Avoiding Downtime WiFi IT solutions Entertainment Wireless Website Budget Gmail Infrastructure Voice over Internet Protocol Bring Your Own Device Settings Data Management Work/Life Balance Vulnerability Windows 7 Word Virtual Reality Vendor End of Support Apple Data Protection Physical Security Managed Services Education Display Vendor Management Social Safety HIPAA User Error Sports Redundancy Meetings Employee/Employer Relationship Keyboard RMM Risk Management Hacker Staff Software as a Service Telephone System Machine Learning The Internet of Things Connectivity Remote Work USB Lithium-ion battery Save Time Conferencing Cleaning Firewall Scam IT Management SaaS Remote Worker Managed Services Provider Battery Shadow IT Botnet Cryptocurrency IT Plan Database Legal Network Congestion eWaste Internet Exlporer Remote Workers Unsupported Software Comparison Processor CES Charger PDF Virus Hard Drive Compliance OneNote Content Management Computer Care Unified Threat Management Wearable Technology Proactive IT Business Technology Hard Drives Access Control Current Events Computer Accessories Retail Best Practice Instant Messaging Telephony Samsung YouTube Robot Virtual Assistant Computing Excel Authentication Black Market Biometrics Value Virtual Desktop Printer Electronic Medical Records Bluetooth Spam Blocking Document Management Digital Signage Update Solid State Drive DDoS Wireless Technology How to Downtime Hiring/Firing SharePoint Google Docs Identity Theft Data storage Automobile IT Consultant Procurement Net Neutrality Workplace Strategy Customer Service Environment Computing Infrastructure Humor Help Desk Printing Business Intelligence Going Green Fax Server Augmented Reality Fraud Worker Audit Personal Tablet Consultant Smart Tech Cryptomining Public Computer Trending Techology Point of Sale Laptop Customers Domains Supply Chain Management Regulations Addiction Analytics Amazon Transportation Audiobook Rootkit Monitoring Batteries Computer Fan Recycling Digitize Best Available Practices IaaS Windows 8.1 Touchpad Maintenance Wiring Bloatware WIndows 7 Cache Windows Server 2008 R2 Workers Amazon Web Services Benefits Politics Advertising Customer relationships Safe Mode FENG Criminal GDPR IT Assessment Tablets Hosted Computing Manufacturing IBM Email Best Practices Notifications Entrepreneur Flash Wireless Internet Online Shopping Smart Technology Security Cameras Computer Tips File Sharing Managed IT Service Camera OneDrive Software Tips Inventory Biometric Security Supercomputer Specifications Virtual CIO Shortcut Windows Media Player Relocation Peripheral Cost Management Sync User Wire Emails PowerPoint Evernote Travel Digital Security Cameras Social Networking Using Data Printers Copiers 5G Millennials Video Games Two Factor Authentication Quick Tip Managing Stress Smart Office Netflix Wireless Charging Worker Commute Root Cause Analysis Smartwatch Experience Running Cable Ergonomics Virtual Private Network Development Memory HBO OLED Knowledge Cameras Workforce Scalability Music PCI DSS Skype Virtual Machine Cables Business Owner Data loss Employee 2FA NarrowBand Fiber Optics Project Management Messaging Outlook Nanotechnology Cabling Leadership Telecommuting Search Troubleshooting iPhone Policy Start Menu Hypervisor Cortana Science Screen Mirroring Digital Signature Loyalty Dark mode Trend Micro Warranty SMS Frequently Asked Questions Default App Printer Server Books Files Procedure Mobile HVAC Saving Time Windows 10s Google Apps Cast Analysis Google Search Distributed Denial of Service dark theme Chromecast Customer Relationship Management Shopping Administrator AI Analyitcs Tip of the week Devices IT Infrastructure webinar Emergency Employer Employee Relationship Colocation FinTech Uninterrupted Power Supply Programming Professional Services Enterprise Content Management Public Cloud Bing Accountants Assessment MSP Social Network Monitor Microchip Windows Server 2008 Thought Leadership Investment Credit Cards Antivirus Employees Tools Password Management Employee/Employer Relationships Password Manager Windows 8 ISP Television Multi-Factor Security Windows 365 Reputation IT service Search Engine Video Conferencing Streaming Media Twitter ROI Shortcuts Content Sales Tech Support NIST Bitcoin Business Mangement

      Top Blog

      The reasoning for this is simple: you want to make sure that operations are proceeding as intended, even if you’re not there. If you completely check out from the workplace every time you leave, you could return from your vacation to a complete and total disaster that may have been prevented with y...
      QR-Code