{"id":775593,"date":"2021-06-30T13:26:38","date_gmt":"2021-06-30T10:26:38","guid":{"rendered":""},"modified":"2021-06-30T13:39:05","modified_gmt":"2021-06-30T10:39:05","slug":"sekrety-kiberbezpeky-usb-flesh-nakopychuvach-yak-skladova-arsenalu-hakeriv","status":"publish","type":"post","link":"https:\/\/new.eba.com.ua\/en\/sekrety-kiberbezpeky-usb-flesh-nakopychuvach-yak-skladova-arsenalu-hakeriv\/","title":{"rendered":"The Secrets of Cybersecurity: USB Flash Drive as a Weapon in the Hands of Hackers"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-341941 size-full\" src=\"https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_5_30062021.png\" alt=\"\" width=\"941\" height=\"531\" srcset=\"https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_5_30062021.png 941w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_5_30062021-300x169.png 300w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_5_30062021-768x433.png 768w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_5_30062021-650x367.png 650w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_5_30062021-270x152.png 270w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_5_30062021-800x451.png 800w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_5_30062021-125x70.png 125w\" sizes=\"auto, (max-width: 941px) 100vw, 941px\" \/><\/p>\n<h3>Risks associated with the use of USB flash drives in the workplace<\/h3>\n<p>USB flash drives are one of the most popular data transmission tools. Every employee as well as common users regularly use a few USB flash drives. These tools are very useful for data transmission and storage purposes due to their size and ease of use.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-341942 size-full\" src=\"https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_6_30062021.png\" alt=\"\" width=\"941\" height=\"218\" srcset=\"https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_6_30062021.png 941w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_6_30062021-300x70.png 300w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_6_30062021-768x178.png 768w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_6_30062021-650x151.png 650w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_6_30062021-800x185.png 800w\" sizes=\"auto, (max-width: 941px) 100vw, 941px\" \/><\/p>\n<p>One of the most widespread threats related to the use of USB flash drives for professional purposes is the possibility that these small tools may be lost or stolen. There is the risk that accidental finding may appear in the hands of hackers who can easily access all information and files stored on this drive. In 2017, the insurance company MAPFRE Life was fined <a href=\"https:\/\/www.channelfutures.com\/strategy\/stolen-usb-drive-leads-to-2-2-million-hipaa-breach-penalty\" target=\"_blank\" rel=\"noopener\">$2.2 mln<\/a> due to the violation of the Health Insurance Portability and Accountability Act (HIPAA), the main document governing the protection of patients\u2019 data. The USB flash drive containing information about 2,200 patients such as their names, dates of birth, social insurance numbers, and other data was stolen from the insurance agent\u2019s office.<\/p>\n<p>However, even when data has been deleted from a USB flash drive, hackers may restore it since a drive may contain the tracks of files or their copies. That is why the steal of these tools or their loss creates serious risks for companies.<\/p>\n<p>The loss of a USB flash drive may is also associated with the risk of substitution. Upon finding a flash drive with the logo of a particular company, a hacker may install hidden software and bring the \u201cfinding\u201d to the company\u2019s office. The employees without any suspect of possible malicious intentions of this \u201ckind person\u201d will continue using the found USB flash drive thereby infecting both corporate and personal devices. In this case, a hacker is not interested in accessing the information stored on a flash drive but rather is interested in accessing as many devices as possible.<\/p>\n<p>When a USB flash drive contains malicious software or is infected by viruses, there is a high risk that these malicious programs may be transmitted to the devices to which this tool is connected. Malicious software is used by hackers to steal files from the infected device, view browser history, gain control over the programs, changing configurations, etc. By connecting the infected flash drive to a computer a user without noticing it launches the installation of so-called browser pirates that redirect him to dangerous websites or resources from which the process of further transmission of malicious software takes place.<\/p>\n<p>Furthermore, the infected flash drives may contain adware, spy modules, and potentially dangerous software. The type of threat that may be caused by connecting a USB flash drive to a computer depends on the intentions of hackers. The variety of tools hackers have at their disposal is very broad. That is why companies need to strictly monitor the use of USB flash drives by employees and try to minimize it.<\/p>\n<h3>How do USB flash drives become a weapon?<\/h3>\n<p><strong>USB Rubber Ducky<\/strong><\/p>\n<p>One of the main tools in the hands of hackers related to USB flash drives is USB rubber ducky that resembles popular USB flash drives. USB rubber duckies with pre-installed malicious software allow hackers to rapidly enter commands to the victim\u2019s computer. These tools have a microcontroller and memory with the required loaded sketch. It takes just a few seconds for a \u201cducky\u201d to crack systems. USB rubber duckies may be purchased online at the price of <a href=\"https:\/\/hak5.org\/products\/usb-rubber-ducky-deluxe\" target=\"_blank\" rel=\"noopener\">$50<\/a>. The detailed instruction and lessons on how to make rubber duckies from common USB flash drives may be easily found on the Internet. Both experienced and specialists and hackers-amateurs may just by following a few steps make dangerous rubber duckies.<\/p>\n<p style=\"text-align: center;\"><img loading=\"lazy\" decoding=\"async\" class=\"size-medium wp-image-341929 aligncenter\" src=\"https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_3_30062021-300x203.png\" alt=\"\" width=\"300\" height=\"203\" srcset=\"https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_3_30062021-300x203.png 300w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_3_30062021.png 372w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_3_30062021-370x252.png 370w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/p>\n<p style=\"text-align: center;\"><em>Rubber ducky &#8211; the most popular BadUSB<\/em><\/p>\n<p><strong>WiFi Ducky<\/strong><\/p>\n<p>It is the analogue a rubber ducky but with a built-in Wi-Fi module. The sketch is not executed immediately when connecting this tool to a computer but the access point awaiting connection is created. One may connect to this access point from any device while the required actions may be carried out at any point in time. And that is one of the main advantages of Wi-Fi ducky over a USB rubber ducky. Wi-Fi ducky was firstly developed by Stephan Kremser and now it is <a href=\"https:\/\/spacehuhn.com\/\" target=\"_blank\" rel=\"noopener\">available for sale<\/a>.<\/p>\n<p><strong>USbee<\/strong><\/p>\n<p>The attack in the form of airgap. By connecting the USB flash drive to the victim\u2019s computer hackers can transmit data stored on this device at a frequency that ranges between 240 and 480 MHz. This type of attack targets computers that are not united in a network. <a href=\"https:\/\/arstechnica.com\/information-technology\/2016\/08\/meet-usbee-the-malware-that-uses-usb-drives-to-covertly-jump-airgaps\/\" target=\"_blank\" rel=\"noopener\">USbee<\/a> was developed by researchers from Israel. The information transmitted at this frequency comes to a receiver that is located nearby, for example, in the next room. The data transmission speed is just close to 80 bytes per second, however, it is enough to steal confidential data including passwords. The advantage of this method is that there is no need to modify the USB tool and receiver. The effectiveness of this type of attack depends on many factors and that is why its popularity is lower compared to the frequency of use of rubber and Wi-Fi duckies.\u00a0<\/p>\n<p><strong>USB Thief<\/strong><\/p>\n<p>The USB trojan may be launched from the USB flash drive or external hard drive and does not leave any trace in the compromised computer. The victim does not notice the transmission of files to the external holders. The trojan is fixed only for a specified USB tool.\u00a0 <a href=\"https:\/\/securityaffairs.co\/wordpress\/45741\/malware\/usb-thief-trojan.html#:~:text=USB%20Thief%2C%20the%20new%20USB%2Dbased%20data%2Dstealing%20Trojan,infect%20also%20air%2Dgapped%20systems&amp;text=NAI)%2C%20that%20relies%20on%20USB,in%20order%20to%20spread%20itself.\" target=\"_blank\" rel=\"noopener\">USB thief<\/a> uses the popular practice of storing on the USB holders the portable versions of popular programs including TrueCrypt, NotePad++, Firefox, etc. Trojan will work in the background of the application launched. The malicious program inserts its code into the chain of commands in the format of a dynamic connected library or plugin. The main objective of the USB thief is to steal files of the prescribed type. The encryption of the stolen files is made via cryptography.<\/p>\n<h3>How to safely use a USB flash drive in the workplace<\/h3>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-341943 size-full\" src=\"https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_8_30062021.png\" alt=\"\" width=\"941\" height=\"616\" srcset=\"https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_8_30062021.png 941w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_8_30062021-300x196.png 300w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_8_30062021-768x503.png 768w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_8_30062021-650x426.png 650w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_8_30062021-136x90.png 136w, https:\/\/new.eba.com.ua\/wp-content\/uploads\/2021\/06\/Hacken_8_30062021-800x524.png 800w\" sizes=\"auto, (max-width: 941px) 100vw, 941px\" \/><\/p>\n<p>Both employees and the company\u2019s cybersecurity specialists should be responsible for the safe use of USB flash drives in the workplace. By following the basic security rules, the use of USB flash drives by employees in the workplace will be associated with minimal risks to the company\u2019s digital security. Let us provide the main rules on how to safely use USB flash drives in the workplace:<\/p>\n<ul>\n<li>Use different USB flash drives for personal and professional purposes. In the office, employees should strive to corporate data holders and do not connect them to personal devices. As a result, the risk that USB flash drives may be infected will be minimized;<\/li>\n<li>Use only the USB flash drives manufactured by certified companies and sold in licensed stores. Criminal actors may illegally sell portable data holders of famous brands that are infected by malicious software;<\/li>\n<li>Do not store files containing confidential information on USB flash drives without necessity. By following this rule you can dramatically minimize risks associated with losing the portable device;<\/li>\n<li>Do not use accidentally found or brought by a \u201ckind person\u201d USB flash drives both for personal and corporate purposes even if they have a corporate label or any other confirmation that they may belong to the company\u2019s employees. These portable devices should be given to respective cybersecurity specialists for their thorough check;<\/li>\n<li>Use specialized software and antivirus programs to block suspicious portable tools. As a result, employees will be able to use only the USB flash drives that will not cause damage to corporate devices. Furthermore, it is of the greatest importance to regularly update security software;<\/li>\n<li>Encrypt the information stored on a portable USB flash drive. Even when accessing the information holder, hackers will not be able to easily get data stored on this tool. The time won a company may use to take preventive measures;<\/li>\n<li>Disable autorun function of the portable tool to minimize risks related to potential launch of malicious code.<\/li>\n<\/ul>\n<p>By following the above-mentioned rules employees may minimize the risks related to possible loss of data and hack of corporate devices when working with USB flash drives. Generally, the higher attention employees pay to USB flash drives and the more companies focus on teaching employees how to safely use them, the more serious challenges hackers will face when trying to access the victim\u2019s systems through portable data holders.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Risks associated with the use of USB flash drives in the workplace USB flash drives are one of the most popular data transmission tools. Every employee as well as common users regularly use a few USB flash drives. These tools are very useful for data transmission and storage purposes due to their size and ease [&hellip;]<\/p>\n","protected":false},"author":4489,"featured_media":341939,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[15576,15575],"tags":[],"class_list":["post-775593","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-articles-en","category-news-and-articles-from-companies-en","company-21319"],"_links":{"self":[{"href":"https:\/\/new.eba.com.ua\/en\/wp-json\/wp\/v2\/posts\/775593","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/new.eba.com.ua\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/new.eba.com.ua\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/new.eba.com.ua\/en\/wp-json\/wp\/v2\/users\/4489"}],"replies":[{"embeddable":true,"href":"https:\/\/new.eba.com.ua\/en\/wp-json\/wp\/v2\/comments?post=775593"}],"version-history":[{"count":0,"href":"https:\/\/new.eba.com.ua\/en\/wp-json\/wp\/v2\/posts\/775593\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/new.eba.com.ua\/en\/wp-json\/wp\/v2\/media\/341939"}],"wp:attachment":[{"href":"https:\/\/new.eba.com.ua\/en\/wp-json\/wp\/v2\/media?parent=775593"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/new.eba.com.ua\/en\/wp-json\/wp\/v2\/categories?post=775593"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/new.eba.com.ua\/en\/wp-json\/wp\/v2\/tags?post=775593"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}