首页 | 本学科首页   官方微博 | 高级检索  
     

恶意USB设备原理及防护措施研究
引用本文:康云川,代彦.恶意USB设备原理及防护措施研究[J].计算机技术与发展,2020(1):112-117.
作者姓名:康云川  代彦
作者单位:重庆三峡学院计算机科学与工程学院;重庆市文化信息中心
基金项目:重庆市智慧文化云—文化大数据平台建设专项(P-NN-20180514150627210)
摘    要:在网络与信息安全领域中,计算机USB接口安全一直以来都面临着严峻的风险挑战,也是用户最容易忽略的问题,而恶意USB设备是计算机USB接口安全的主要威胁之一,它严重威胁着企业的信息安全与公民隐私信息安全。针对当前USB安全问题现状进行了分析,介绍了常见的恶意USB设备Keylogger与BadUSB的危害、攻击特性,对Keylogger,BadUSB硬件电路原理,硬件程序实现,攻击方法进行了详细剖析。通过AVR微控芯片构建出Keylogger,BadUSB设备,然后用其设备对计算机进行攻击实验,最终实现对目标主机的监听与控制,并研究拦截Keylogger记录监听与抵御BadUSB攻击的安全防护措施,为用户提供有效的安全保护解决方案。这些防护措施与解决方案能有效地保护公共信息安全与个人信息安全,能遏制USB接口层面信息安全事件的发生。

关 键 词:USB安全  USB  HID攻击  信息安全  BadUSB  KEYLOGGER

Research on Principles and Protection Measures of Malicious USB Devices
KANG Yun-chuan,DAI Yan.Research on Principles and Protection Measures of Malicious USB Devices[J].Computer Technology and Development,2020(1):112-117.
Authors:KANG Yun-chuan  DAI Yan
Affiliation:(School of Computer Science and Engineering,Chongqing Three Gorges University,Chongqing 404000,China;Chongqing Cultural Information Center,Chongqing 401121,China)
Abstract:In the field of network and information security,computer USB interface security has been facing serious risks and challenges,but also the most easily ignored by users,while malicious USB device is one of the main threats to computer USB interface security,which seriously threatens the enterprise information security and citizen privacy information security.We analyze the present situation of USB security problems,introduce the harm and attack characteristics of common malicious USB devices Keylogger and BadUSB,and analyze Keylogger,BadUSB hardware circuit principle,hardware program implementation,and attack methods in detail.The Keylogger,BadUSB devices are constructed by AVR microchip,by which the attack experiments are carried out on the computer.Finally,the recording and control of the target host are realized,and the security protection measures of intercepting Keylogger record listening and resisting BadUSB attack are studied to provide users with effective security protection solutions.These protection measures and solutions can effectively protect public information security and personal information security,and can curb the occurrence of information security events in the USB interface field.
Keywords:USB security  USB HID attack  information security  BadUSB  Keylogger
本文献已被 维普 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号