A small $5 worth USB hacking tool can compromise a password protected PC

in #security7 years ago

Samy Kamkar who previously developed many sophisticated hacking tools has recently developed a very strong hacking tool called “Poison Tap”. It’s a very small USB device that works by re-routing all the internet traffic to its own domain and hence accesses cookies. And for this the attacker can access even password protected computer. 

This hacking tool evades the following security mechanisms:

  • Password Protected Lock Screens
  • Routing Table priority and network interface Service Order
  • Same-Origin Policy
  • X-Frame-Options
  • HttpOnly Cookies
  • SameSite cookie attribute
  • Two-Factor/Multi-Factor Authentication (2FA/MFA)
  • DNS Pinning
  • Cross-Origin Resource Sharing (CORS)


reference :

https://www.hackread.com/hacking-tool-bypass-locked-computers-security/


follow me on steemit AND resteem it


verify rep sp posts followers curation

>>Thanks to @elyaque for designing my badges :)<<

                     MY STATS
   REPUTATION SCORE : 68.6 | TOTAL FOLLOWERS : 584
   TOTAL BLOG POSTS : 535 | TOTAL LIKES : 34916
   TOTAL EARNINGS   : $5278.98
Sort:  

Thank you for sharing this valuable information.

Well... That's insane! I'm curious to how many lines of code this hack is? It's basically good bye everything if you get attacked. Physical protection of computers is very necessary now. Loosing a $1000 computer is one thing, but this would be the end of evereything. Haha. Thank you!

thank you for your nice comment

In my experience, physical security of devices is often overlooked but is the easiest way for criminals to gain access to your system and network. Great post!

This is some crazy stuff! I did not fully understand how we can thwart these attacks. There was some mention about protecting usb ports, vaults etc towards the end? Can you write in your article about more specifics that he has mentioned in the video?

Where do I get one? :p

This post has been ranked within the top 25 most undervalued posts in the first half of Jun 20. We estimate that this post is undervalued by $28.27 as compared to a scenario in which every voter had an equal say.

See the full rankings and details in The Daily Tribune: Jun 20 - Part I. You can also read about some of our methodology, data analysis and technical details in our initial post.

If you are the author and would prefer not to receive these comments, simply reply "Stop" to this comment.

Coin Marketplace

STEEM 0.20
TRX 0.12
JST 0.028
BTC 64024.15
ETH 3515.24
USDT 1.00
SBD 2.55