April 2017 Digital Edition

Click Here

March 2017 Digital Edition

Click Here

Feb. 2017 Digital Edition

Click Here

January 2017 Digital Edition

Click Here

Nov/Dec 2016 Digital Edition

Click Here

Oct 2016 Digital Edition

Click Here

Technology Sectors

Market Sectors

IronKey Secure USB devices protect against BadUSB malware

Oakdale, MN-based Imation Corp, a global data storage and information security company, has announced that its IronKey Secure USB devices are not vulnerable to BadUSB malware that was revealed at Black Hat. BadUSB is the first USB malware designed to attack the device itself instead of attacking the data on the device. IronKey’s leadership in security, including its use of digital signatures in all controller firmware, makes its products immune to this new threat. To help reduce the impact of BadUSB, the company is offering a GoodUSB Trade-Up Program that provides discounts on its secure USB products.

As revealed at the Black Hat session on BadUSB, the attack changes the firmware that controls the behavior of the USB hardware, allowing the USB device to become a host that can subsequently infect other computers and USB devices. The modified controller firmware cannot be detected by today’s anti-malware solutions, and in many cases, may remain undetectable.

As explained by the researchers, the best protection against this vulnerability is to use code signing for firmware updates. If the signed firmware is modified, the device cannot authenticate the firmware and simply will not operate. This prevents the infection from spreading but results in an unusable device. That is why in addition to using signed firmware, IronKey protects the mechanism used to update the firmware with hardware-based security keys. This prevents tampering with the signed firmware, which would leave the device unusable.

Additional key security features available for secure USB include secure, military-grade 256-bit AES full disk hardware encryption, FIPS (Federal Information Processing Standards) 140-2 Level 3 validation, and centralized management supporting remote. Features also include wipe/disable of lost or stolen devices, multifactor authentication, and built-in password protection policies.

“Protecting critical data has been the primary reason for deploying secure USB flash drives in enterprises and government agencies,” said Ken Jones, vice president of engineering and product management for IronKey. “BadUSB is a new kind of threat. Now more than ever secure flash drives are a necessity to protect your entire corporate infrastructure and even your home environment.”

Imation is a global data storage and information security company. Our products and solutions help organizations and individuals store, manage and protect their digital content. Imation’s storage and security portfolio includes Nexsan high-density, archive and solid-state optimized unified hybrid storage solutions; IronKey mobile security solutions that address the needs of professionals for secure data transport and mobile workspaces; and consumer storage solutions, audio products and accessories sold under the Imation, Memorex and TDK Life on Record brands.

 

 

Recent Videos

HID Global is opening the door to a new era of security and convenience.  Powered by Seos technology, the HID Mobile Access solution delivers a more secure and convenient way to open doors and gates, access networks and services, and make cashless payments using phones and other mobile devices. ...
Mobile device forensics can make a difference in many investigations, but you need training that teaches you how to get the most out of your mobile forensics hardware and software, and certifies you to testify in court. Read this white paper to learn how to evaluate mobile forensics training...
PureTech Systems is a software company that develops and markets PureActiv, its geospatial analytics solution designed to protect critical perimeters and infrastructure.  Its patented video analytics leverage thermal cameras, radars and other perimeter sensors to detect, geo-locate, classify, and...
PureTech Systems is a technology leader in the use of geospatial video, focusing on perimeter security.  When combining geospatial capabilities with video analytics and PTZ camera control, managers of critical facilities can benefit by allowing the video management system to aid them in the process...