题名 | BADUSB-C: Revisiting BadUSB with Type-C |
作者 | |
通讯作者 | Zhang, Fengwei |
DOI | |
发表日期 | 2021
|
会议名称 | 42nd IEEE Symposium on Security and Privacy (S and P)
|
ISBN | 978-1-6654-3733-2
|
会议录名称 | |
页码 | 327-338
|
会议日期 | MAY 27, 2021
|
会议地点 | null,null,ELECTR NETWORK
|
出版地 | 10662 LOS VAQUEROS CIRCLE, PO BOX 3014, LOS ALAMITOS, CA 90720-1264 USA
|
出版者 | |
摘要 | The security of the Universal Serial Bus (USB) protocol has been paid extensive attention to because of its wide usage. Due to the trust-by-default characteristics, USB security has caused severe problems. For example, a well-known firmware attack, BadUSB, performs malicious operations on the victim hosts through disguising ordinary USB devices as human interface devices like keyboards and mice. However, BadUSB suffers from several limitations. Attackers cannot obtain the status of User Interface (UI) to conduct precise attacks and get the visual feedback of their attacks. In this work, we extended BadUSB to support the new USB Type-C features and proposed a multi-mode attack model, BADUSB-C. This obtains III status to make attacks more precise and effective. To the best of our knowledge, BADUSB-C is the first attack model utilizing USB Type-C. To validate the usability and effectiveness, we conducted extensive experiments to simulate daily usage and summarized the private information collected. We also discussed the recommended countermeasures for our attack model, including isolated III rendering, which may be inspiring for future research on defense methods. |
关键词 | |
学校署名 | 第一
; 通讯
|
语种 | 英语
|
相关链接 | [来源记录] |
收录类别 | |
WOS研究方向 | Computer Science
|
WOS类目 | Computer Science, Information Systems
; Computer Science, Theory & Methods
|
WOS记录号 | WOS:000697689400046
|
来源库 | Web of Science
|
全文链接 | https://ieeexplore.ieee.org/stamp/stamp.jsp?tp=&arnumber=9474274 |
引用统计 |
被引频次[WOS]:3
|
成果类型 | 会议论文 |
条目标识符 | http://sustech.caswiz.com/handle/2SGJ60CL/253823 |
专题 | 工学院_计算机科学与工程系 |
作者单位 | 1.Southern Univ Sci & Technol, Dept Comp Sci & Engn, Shenzhen, Guangdong, Peoples R China 2.Southern Univ Sci & Technol, Res Inst Trustworthy Autonomous Syst, Shenzhen, Guangdong, Peoples R China |
第一作者单位 | 计算机科学与工程系 |
通讯作者单位 | 计算机科学与工程系; 南方科技大学 |
第一作者的第一单位 | 计算机科学与工程系 |
推荐引用方式 GB/T 7714 |
Lu, Hongyi,Wu, Yechang,Li, Shuqing,et al. BADUSB-C: Revisiting BadUSB with Type-C[C]. 10662 LOS VAQUEROS CIRCLE, PO BOX 3014, LOS ALAMITOS, CA 90720-1264 USA:IEEE COMPUTER SOC,2021:327-338.
|
条目包含的文件 | ||||||
文件名称/大小 | 文献类型 | 版本类型 | 开放类型 | 使用许可 | 操作 | |
badusbc-woot21.pdf(2151KB) | -- | -- | 限制开放 | -- |
|
除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。
修改评论