Matches in SemOpenAlex for { <https://semopenalex.org/work/W4308241796> ?p ?o ?g. }
Showing items 1 to 72 of
72
with 100 items per page.
- W4308241796 abstract "USB is the most prevalent peripheral interface in modern computer systems and its inherent insecurities make it an appealing attack vector. A well-known limitation of USB is that traffic is not encrypted. This allows on-path adversaries to trivially perform man-in-the-middle attacks. Off-path attacks that compromise the confidentiality of communications have also been shown to be possible. However, so far no off-path attacks that breach USB communications integrity have been demonstrated. In this work we show that the integrity of USB communications is not guaranteed even against off-path attackers.Specifically, we design and build malicious devices that, even when placed outside of the path between a victim device and the host, can inject data to that path. Using our developed injectors we can falsify the provenance of data input as interpreted by a host computer system. By injecting on behalf of trusted victim devices we can circumvent any software-based authorisation policy defences that computer systems employ against common USB attacks. We demonstrate two concrete attacks. The first injects keystrokes allowing an attacker to execute commands. The second demonstrates file-contents replacement including during system install from a USB disk. We test the attacks on 29 USB 2.0 and USB 3.x hubs and find 14 of them to be vulnerable." @default.
- W4308241796 created "2022-11-09" @default.
- W4308241796 creator A5010335338 @default.
- W4308241796 creator A5029386182 @default.
- W4308241796 creator A5056484605 @default.
- W4308241796 creator A5074471766 @default.
- W4308241796 date "2022-11-02" @default.
- W4308241796 modified "2023-09-27" @default.
- W4308241796 title "The Impostor Among US(B): Off-Path Injection Attacks on USB Communications" @default.
- W4308241796 doi "https://doi.org/10.48550/arxiv.2211.01109" @default.
- W4308241796 hasPublicationYear "2022" @default.
- W4308241796 type Work @default.
- W4308241796 citedByCount "0" @default.
- W4308241796 crossrefType "posted-content" @default.
- W4308241796 hasAuthorship W4308241796A5010335338 @default.
- W4308241796 hasAuthorship W4308241796A5029386182 @default.
- W4308241796 hasAuthorship W4308241796A5056484605 @default.
- W4308241796 hasAuthorship W4308241796A5074471766 @default.
- W4308241796 hasBestOaLocation W43082417961 @default.
- W4308241796 hasConcept C111919701 @default.
- W4308241796 hasConcept C126831891 @default.
- W4308241796 hasConcept C148730421 @default.
- W4308241796 hasConcept C149635348 @default.
- W4308241796 hasConcept C18903297 @default.
- W4308241796 hasConcept C2776788033 @default.
- W4308241796 hasConcept C2777735758 @default.
- W4308241796 hasConcept C2777904410 @default.
- W4308241796 hasConcept C31258907 @default.
- W4308241796 hasConcept C37360884 @default.
- W4308241796 hasConcept C38652104 @default.
- W4308241796 hasConcept C41008148 @default.
- W4308241796 hasConcept C507366226 @default.
- W4308241796 hasConcept C61361435 @default.
- W4308241796 hasConcept C71745522 @default.
- W4308241796 hasConcept C71784007 @default.
- W4308241796 hasConcept C86803240 @default.
- W4308241796 hasConcept C9390403 @default.
- W4308241796 hasConceptScore W4308241796C111919701 @default.
- W4308241796 hasConceptScore W4308241796C126831891 @default.
- W4308241796 hasConceptScore W4308241796C148730421 @default.
- W4308241796 hasConceptScore W4308241796C149635348 @default.
- W4308241796 hasConceptScore W4308241796C18903297 @default.
- W4308241796 hasConceptScore W4308241796C2776788033 @default.
- W4308241796 hasConceptScore W4308241796C2777735758 @default.
- W4308241796 hasConceptScore W4308241796C2777904410 @default.
- W4308241796 hasConceptScore W4308241796C31258907 @default.
- W4308241796 hasConceptScore W4308241796C37360884 @default.
- W4308241796 hasConceptScore W4308241796C38652104 @default.
- W4308241796 hasConceptScore W4308241796C41008148 @default.
- W4308241796 hasConceptScore W4308241796C507366226 @default.
- W4308241796 hasConceptScore W4308241796C61361435 @default.
- W4308241796 hasConceptScore W4308241796C71745522 @default.
- W4308241796 hasConceptScore W4308241796C71784007 @default.
- W4308241796 hasConceptScore W4308241796C86803240 @default.
- W4308241796 hasConceptScore W4308241796C9390403 @default.
- W4308241796 hasLocation W43082417961 @default.
- W4308241796 hasLocation W43082417962 @default.
- W4308241796 hasOpenAccess W4308241796 @default.
- W4308241796 hasPrimaryLocation W43082417961 @default.
- W4308241796 hasRelatedWork W2351899473 @default.
- W4308241796 hasRelatedWork W2352133177 @default.
- W4308241796 hasRelatedWork W2355577285 @default.
- W4308241796 hasRelatedWork W2357074514 @default.
- W4308241796 hasRelatedWork W2357807744 @default.
- W4308241796 hasRelatedWork W2366100887 @default.
- W4308241796 hasRelatedWork W2379070429 @default.
- W4308241796 hasRelatedWork W2382966359 @default.
- W4308241796 hasRelatedWork W2383600006 @default.
- W4308241796 hasRelatedWork W2386502429 @default.
- W4308241796 isParatext "false" @default.
- W4308241796 isRetracted "false" @default.
- W4308241796 workType "article" @default.