4 ms·
Not true...
by bostand 9y ago
Not true...
- averagewall 9y agoCan you cite any examples or describe the mechanism it would do that?
- paulmd 9y agoUSB sticks that can use firmware-level filesystem tables and/or multiple host-visible partitions, pretend to be a hub that is hosting multiple devices (HID mouse+keyboard, etc) in addition to an autorun, etc. Not only can you trivially make such a thing with an arduino but there are also some commercial USB sticks which have a persistent "background" filesystem that cannot be formatted away. Anything that is run automatically in the background, like the thumbnail services.
- averagewall 9y agoFor a fake HID device, you'd see cmd windows or whatever else it uses popping up. Other data hidden on it isn't a problem by itself. It can only passively sit there without some other attack vector.
- tokenizerrr 9y agoRight, but the GP described an USB stick that they own. If you know that it's just an USB stick none of that applies. Autorun hasn't been a thing in ages.
- Franciscouzo 9y agoExcept that is not true, there's BadUSB (https://github.com/brandonlw/Psychson https://github.com/brandonlw/Psychson), which updates the firmware of some common USB drives to make it do whatever your want (such as emulating a mouse/keyboard).
- tgsovlerkhgsel 9y agoHowever, this is rather theoretical. All that common malware does is hide/delete all your existing directories, and put EXEs (or LNKs) with folder icons and the names of the original directories in their place. Plus maybe some autorun tricks.
- kore 9y agoStuxnet
- averagewall 9y agoPatched
- DanBC 9y agohttps://opensource.srlabs.de/projects/badusb https://opensource.srlabs.de/projects/badusb