Does Dropping USB Drives in Parking Lots and Other Places Really Work?
by Elie Bursztein
At every Black Hat you will inevitably hear hackers boasting that they can break into any company by dropping a malicious USB drive in the company's parking lot. This anecdote has even entered mainstream culture and was prominently featured in the Mr. Robot TV series. However despite its popularity, there has been no rigorous study of whether the attack works or is merely an urban legend. To answer this burning question and assess the actual threat posed by malicious USB drives, we dropped nearly 300 USB sticks on the University of Illinois Urbana-Champaign campus and measured who plugged in the drives. And oh boy how effective that was! Of the drives we dropped, 98% were picked up and for 48% of the drives, someone not only plugged in the drive but also clicked on files. Join us for this talk if you are interested in physical security and want to learn more about the effectiveness of arguably the most well known anecdote of our community. We will provide an in-depth analysis of which factors influence users to pick up a drive, why users plug them in, and demo a new tool that can help mitigate USB attacks.
Видео Does Dropping USB Drives in Parking Lots and Other Places Really Work? канала Black Hat
At every Black Hat you will inevitably hear hackers boasting that they can break into any company by dropping a malicious USB drive in the company's parking lot. This anecdote has even entered mainstream culture and was prominently featured in the Mr. Robot TV series. However despite its popularity, there has been no rigorous study of whether the attack works or is merely an urban legend. To answer this burning question and assess the actual threat posed by malicious USB drives, we dropped nearly 300 USB sticks on the University of Illinois Urbana-Champaign campus and measured who plugged in the drives. And oh boy how effective that was! Of the drives we dropped, 98% were picked up and for 48% of the drives, someone not only plugged in the drive but also clicked on files. Join us for this talk if you are interested in physical security and want to learn more about the effectiveness of arguably the most well known anecdote of our community. We will provide an in-depth analysis of which factors influence users to pick up a drive, why users plug them in, and demo a new tool that can help mitigate USB attacks.
Видео Does Dropping USB Drives in Parking Lots and Other Places Really Work? канала Black Hat
Показать
Комментарии отсутствуют
Информация о видео
Другие видео канала
USB Drive That Steals FilesAirBnBeware: Short Term Rentals Long Term PwnageWatch this hacker break into a companyThe 5 Most Dangerous New Attack Techniques and How to Counter ThemUSB drop attack demo - Blackhat USA 2016Dealing with a Ransomware Attack: A full guideJmaxxz - Your Car is My Car - DEF CON 27 ConferenceWhy 2.6 Million People Can Push This Button But We Can'tUSB Keylogger mit Wifi - VORSICHT! - Security AwarenessThis Will Kill Your ComputerFun and Easy USB - How the USB Protocol WorksWhat Malware Authors Don't Want You to Know - Evasive Hollow Process InjectionPrivilege Escalation FTW48 Dirty Little Secrets Cryptographers Don’t Want You To KnowApple won't like this... - Run MacOS on ANY PCBadUSB - On Accessories that Turn Evil by Karsten Nohl + Jakob LellExploding USB Drives - Hak5 2407CQTools: The New Ultimate Hacking ToolkitShieldFS: The Last Word in Ransomware Resilient File Systems