John Deere's Promotional USB Drive Hijacks Your Keyboard

Discussion in 'other security issues & news' started by ronjor, Jun 18, 2019.

  1. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,888
    Location:
    Texas
    by Lorenzo Franceschi-Bicchierai and Joseph Cox Jun 18 2019
     
  2. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    Never thought that any company would use BadUSB method just to bring person to their website. What a waste of hardware.
     
  3. zapjb

    zapjb Registered Member

    Joined:
    Nov 15, 2005
    Posts:
    5,556
    Location:
    USA still the best. But barely.
    Makes sure you're only taking your tractor to dealerships.
     
  4. shmu26

    shmu26 Registered Member

    Joined:
    Jul 9, 2015
    Posts:
    1,550
    So most AVs still don't block simple BADUSB attacks?

    EDIT: this protection is not enabled by default in HitmanPro.Alert, and if I remember right, it has caused a lot of issues with USB devices in the past. So apparently, it is not such an easy protection to implement.
     
    Last edited: Jun 19, 2019
  5. Reality

    Reality Registered Member

    Joined:
    Aug 25, 2013
    Posts:
    1,198
    A promotional USB? That right there should be a red flag warning to fire the thing in the rubbish tin.
     
  6. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    Yes IMO it is not that easy to implement. When USB device presents itself to OS as a keyboard, AV should somehow figure out that device is not keyboard but something else and block it.
     
  7. NiteRanger

    NiteRanger Registered Member

    Joined:
    Nov 15, 2016
    Posts:
    651
    Location:
    Far East
  8. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.