From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from lists.gentoo.org (pigeon.gentoo.org [208.92.234.80]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by finch.gentoo.org (Postfix) with ESMTPS id A5B2C1396D9 for ; Thu, 9 Nov 2017 14:08:12 +0000 (UTC) Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id CEF49E0DA3; Thu, 9 Nov 2017 14:08:05 +0000 (UTC) Received: from mout.gmx.net (mout.gmx.net [212.227.15.15]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by pigeon.gentoo.org (Postfix) with ESMTPS id 32327E0D43 for ; Thu, 9 Nov 2017 14:08:05 +0000 (UTC) Received: from localhost ([173.239.215.7]) by mail.gmx.com (mrgmx002 [212.227.17.184]) with ESMTPSA (Nemesis) id 0MAyZg-1eKSzc0QeC-009uXU for ; Thu, 09 Nov 2017 15:07:53 +0100 Subject: Re: [gentoo-user] Linux USB security holes. To: gentoo-user@lists.gentoo.org References: <65c1af14-a224-4c9f-1ca8-eca4ccc71d0f@gmail.com> <3cd9d629-8be8-4b5d-b702-912f26a06bd5@gmail.com> <1836dfed-0545-cdda-e9af-d12f143a6559@gmail.com> From: "Taiidan@gmx.com" Message-ID: <36c58c03-fc6d-713b-f3dd-ad0f32c829da@gmx.com> Date: Thu, 9 Nov 2017 09:07:46 -0500 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:52.0) Gecko/20100101 Thunderbird/52.2.1 Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-user@lists.gentoo.org Reply-to: gentoo-user@lists.gentoo.org MIME-Version: 1.0 In-Reply-To: <1836dfed-0545-cdda-e9af-d12f143a6559@gmail.com> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit Content-Language: en-US X-Provags-ID: V03:K0:EDX3IKRPk0UUJYieJI2s+n0zdGtGhi1jikTScLvibQYMuyvUSNF ig7OpD6NdUalWwWD2D9goqGRisap9Mu+7iJh/5IHhfN11HjKxDg0j+6sX/PV5G+nEfWMf15 A8MxoM3T0BcX+BqQE8RmT1nZ7AGFLu79MxSPRQj3hF2N4j2PynuiHv8cZGAsgvKdbs/JDS+ PE0tSQRrUi80+cbm3M4Ww== X-UI-Out-Filterresults: notjunk:1;V01:K0:jEjxOqofTMA=:Rbwy1MsIprdluaEmFRodqR ylV6B8AXd8W/+QQun4NXLEKDn/V+V1kZ2mPISxa/iyhrp6Lm8fq4g8xgWURvOc06zR5LjI+UR eLJz8vTikL/FiMxKj+vs8inWy06GxOIY1b+sLC3AYhq+jpYK7F44/3g+mhvu86fuSSC6HPpKY vWuY+ekW/gcCT8/MTbdtzxnyCg5qEC2qG+P9b6Wr1liORP9Xm7IQzLDP8uEKvsN9C5ylgqavW JzKAOrUD71hudC5W3KaThVU6YvviQ5v+dgjc7b/TiJYTwjeGKTPtT6wiN2O+YZhTuSB/t9fIb aLZpr8qvPnnetDGn0CM86WW7C+a50z9x/I6Anfxx4lLOrJRBMNnkugW5tDQltIMsRtHlAR/Mn t2vrJ70pU6xSgQN8gIwzMFj2wdjCGFn9c0osHhfK5xYeosM60LdRUwcklivS+Xx3CDBVJ6cvR 1aqQwEWxGrepeewGw+JT/9IIBYHHJ9xPkYdLvu2jwRi37BdGAymlZjJ3tkRyaiRXpPg832qIk fP8fvK+BMX3B1xZ8MTA58j88WzqBYqSAaRrPdyqtZ8z+L8K070qwzA2QpYqU1qEJpqZ5WD6j6 hKR+8LqGo3ZQ2LnTvTeLZmBuD1TlCiiz4J0xEf+H+QYzM15lg2xskhfL4KIUqrn6s0dT3kxhK CSpUZeusY07fjBO5v+3XJB2JY34guvEnjxghYeWEgbTFwd2RBKkal/o3gt4Hnf2JnlfN9KKxz zNatYrchDj/dzLmaqBJrXKS/pk27OxhkCbRDikiGwt3whzlDe9r/inZu9in29Kq3l8/v2fTR4 Xi64AHxKbhqxC2jgtdCBdqPcOyK8Vba+fWgUlRXeCN8rAo4RT0= X-Archives-Salt: edc2eef8-c21e-474a-b71e-4823804460a9 X-Archives-Hash: 274b97ebe74e1b52320899c24fa83367 You can forward your USB controllers to a VM OR Disable them in the BIOS It is very easy to re-write a USB drive firmware via another virus on a poorly secured different computer so this doesn't really need physical access not that it would be difficult to simply have someone cause a scene and then have someone else walk by and insert a drive in to your laptop for a few seconds while you were distracted if you were a high profile target (politician, ceo, lawyer etc)