BadUSB is a hack attacking USB controllers everywhere.

What is this BadUSB?

Extremetech.com has  a story  and the Youtube video from BlackHat 2014(not Derbycon as in article)

blackhat2014youtube

The controller can be hacked and code inserted inside the USB chips themselves.

chipsbank_usb_drives

So we have to create good security policies and reduce the chance of plugging in USB devices that we do not know about.

vader-stormxcf

This could really be the mother lode Darth Vader attack.

 

 

 

Update on 10/8/14 – Bruce Schneier’s comments and some of his website visitors:

https://www.schneier.com/blog/archives/2014/10/badusb_code_has.html