Bitcoin Forum
May 07, 2024, 11:28:35 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: A new era of computer hacking.  (Read 5425 times)
e1ghtSpace (OP)
Legendary
*
Offline Offline

Activity: 1526
Merit: 1001


Crypto since 2014


View Profile WWW
August 01, 2014, 02:50:36 AM
 #1

Don't plug in a USB unless you know it is safe.

A new era of computer hacking is born:
http://www.businessinsider.com.au/r-hackers-can-tap-usb-devices-in-new-attacks-researcher-warns-2014-31/

Quote
BOSTON (Reuters) – USB devices such as mice, keyboards and thumb-drives can be used to hack into personal computers in a potential new class of attacks that evade all known security protections, a top computer researcher revealed on Thursday.

Karsten Nohl, chief scientist with Berlin’s SR Labs, noted that hackers could load malicious software onto tiny, low-cost computer chips that control functions of USB devices but which have no built-in shields against tampering with their code.

“You cannot tell where the virus came from. It is almost like a magic trick,” said Nohl, whose research firm is known for uncovering major flaws in mobile phone technology.

The finding shows that bugs in software used to run tiny electronics components that are invisible to the average computer user can be extremely dangerous when hackers figure out how to exploit them. Security researchers have increasingly turned their attention to uncovering such flaws.

Nohl said his firm has performed attacks by writing malicious code onto USB control chips used in thumb drives and smartphones. Once the USB device is attached to a computer, the malicious software can log keystrokes, spy on communications and destroy data, he said.

Computers do not detect the infections when tainted devices are inserted into a PC because anti-virus programs are only designed to scan for software written onto memory and do not scan the “firmware” that controls the functioning of those devices, he said.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
forever21
Sr. Member
****
Offline Offline

Activity: 252
Merit: 250


View Profile
August 01, 2014, 03:26:26 AM
 #2

isnt that part of social engineering toolkit? i think that is one of the wonder of infectious media generator in SET that you can create
The Infectious USB/CD/DVD module will create an autorun.inf file and a
 Metasploit payload. When the DVD/USB/CD is inserted, it will automatically
 run if autorun is enabled
RedDiamond
Sr. Member
****
Offline Offline

Activity: 294
Merit: 250


View Profile
August 01, 2014, 09:20:25 AM
 #3

isnt that part of social engineering toolkit? i think that is one of the wonder of infectious media generator in SET that you can create
The Infectious USB/CD/DVD module will create an autorun.inf file and a
 Metasploit payload. When the DVD/USB/CD is inserted, it will automatically
 run if autorun is enabled

No, much worse than that. They are modifying USB stick's firmware which makes malware impossibile to detect by any antivirus software.
FUR11
Sr. Member
****
Offline Offline

Activity: 378
Merit: 250

FURring bitcoin up since 1762


View Profile
August 06, 2014, 10:17:06 PM
 #4

I really don't get how this is a new era... You can easily modify a USB device in a way that it may emulate a HID and proceeds to take over the computer. As long as this is possible while having physical access to the machine, it can be automated in such a way!

vm1990
Legendary
*
Offline Offline

Activity: 1540
Merit: 1002



View Profile
August 06, 2014, 10:28:31 PM
 #5

its not that new a while ago a gang got caught sticking usb devices into phone chargers the device then uploaded personal info while you phone or tablet charged... i was very impressed by it.

BitcoinHeroes
Sr. Member
****
Offline Offline

Activity: 364
Merit: 250



View Profile
August 07, 2014, 09:46:10 AM
 #6

its not that new a while ago a gang got caught sticking usb devices into phone chargers the device then uploaded personal info while you phone or tablet charged... i was very impressed by it.

USB is also one of the easiest way to pass virus... So I guess using it to hack seems possible and easy..
Lauda
Legendary
*
Offline Offline

Activity: 2674
Merit: 2965


Terminated.


View Profile WWW
August 07, 2014, 10:51:16 AM
 #7

Don't be too paranoid, it's not like someone is already using it and/or it's on a massive scale. If you look at how many USB devices are out there and even if 0.001% are infected (doubt it), statistically there is no way that you will encounter one.

"The Times 03/Jan/2009 Chancellor on brink of second bailout for banks"
😼 Bitcoin Core (onion)
Datcracktho
Newbie
*
Offline Offline

Activity: 42
Merit: 0


View Profile
August 07, 2014, 11:40:04 AM
 #8

Shits worse than ebola yo.
elliwilli
Sr. Member
****
Offline Offline

Activity: 307
Merit: 250


et rich or die tryi


View Profile WWW
August 07, 2014, 11:50:13 AM
 #9

https://srlabs.de/badusb/

The guy gave a talk at blackhat and showed off the code, its really quite awesome, i cant wait for the VOD of it to be put up!

homm88
Member
**
Offline Offline

Activity: 70
Merit: 10

BTC/Doge


View Profile
August 07, 2014, 12:31:07 PM
 #10

https://srlabs.de/badusb/

The guy gave a talk at blackhat and showed off the code, its really quite awesome, i cant wait for the VOD of it to be put up!

Looking forward to it!
Daniel91
Legendary
*
Offline Offline

Activity: 3374
Merit: 1824



View Profile
August 07, 2014, 01:18:19 PM
 #11

its not that new a while ago a gang got caught sticking usb devices into phone chargers the device then uploaded personal info while you phone or tablet charged... i was very impressed by it.

USB is also one of the easiest way to pass virus... So I guess using it to hack seems possible and easy..

Yes, it's true.
This is the reason why I used just my own USB on my computer, never from unknown source.
It's never safe.

.freebitcoin.       ▄▄▄█▀▀██▄▄▄
   ▄▄██████▄▄█  █▀▀█▄▄
  ███  █▀▀███████▄▄██▀
   ▀▀▀██▄▄█  ████▀▀  ▄██
▄███▄▄  ▀▀▀▀▀▀▀  ▄▄██████
██▀▀█████▄     ▄██▀█ ▀▀██
██▄▄███▀▀██   ███▀ ▄▄  ▀█
███████▄▄███ ███▄▄ ▀▀▄  █
██▀▀████████ █████  █▀▄██
 █▄▄████████ █████   ███
  ▀████  ███ ████▄▄███▀
     ▀▀████   ████▀▀
BITCOIN
DICE
EVENT
BETTING
WIN A LAMBO !

.
            ▄▄▄▄▄▄▄▄▄▄███████████▄▄▄▄▄
▄▄▄▄▄██████████████████████████████████▄▄▄▄
▀██████████████████████████████████████████████▄▄▄
▄▄████▄█████▄████████████████████████████▄█████▄████▄▄
▀████████▀▀▀████████████████████████████████▀▀▀██████████▄
  ▀▀▀████▄▄▄███████████████████████████████▄▄▄██████████
       ▀█████▀  ▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀  ▀█████▀▀▀▀▀▀▀▀▀▀
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
.PLAY NOW.
forever21
Sr. Member
****
Offline Offline

Activity: 252
Merit: 250


View Profile
August 09, 2014, 12:10:26 PM
 #12

this is nothing compare to ucsniff
this can only prevent if you use your own usb drive or hard drive and never let any other people to insert anything in your machine
but ucsniff can fuck you up and can tap your webcams listen to your calls and can watch you while having a sex show via any video chat application
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!