Adam Savage explores malicious hardware in plain sight, showcasing examples encountered by the ThreatLocker team [0:00].
A seemingly normal phone charging cable, an "O.M.G. cable," is demonstrated to contain a Wi-Fi antenna and a built-in computer, capable of capturing keystrokes and accessing webcams remotely [0:46].
A malicious USB keyboard is shown to log all keystrokes, transmitting them wirelessly without the user's knowledge [1:54].
A regular webcam, when plugged in via a compromised USB cable, can be remotely activated and record video, uploading it to a hacker's server [7:00].
The discussion emphasizes a "Zero Trust" security model, where every device and user is assumed to be a potential threat, highlighting the importance of layered security measures [4:07].
The video also touches on the increasing financial impact of cybercrime, the targeting of smaller businesses, and the need for rigorous security practices [10:04].
Introduction to Malicious Hardware [0:00] [Image 0]
Adam Savage and the ThreatLocker team explore malicious devices hidden in plain sight.
They highlight how innocent-looking hardware can be compromised to steal data or spy on users.
This follows a previous discussion on the threat vector of USB drives.
The O.M.G. Cable: A Malicious Charging Cable [0:44] [Image 4]
Description and Hidden Capabilities:
The O.M.G. cable appears to be a standard phone charging cable [0:46] [Image 5].
It contains a Wi-Fi antenna and a keyboard built into the cable itself [1:02] [Image 7].
Functionality and Security Risks:
The cable can perform almost any action on a connected computer as if a user were physically present.
It can remotely capture keystrokes and access cameras.
The cable functions normally as a charger, making it indistinguishable from a legitimate one.
This poses a significant threat if a legitimate cable is swapped with a malicious one.
Personal Security Practice:
Adam Savage shares his practice of only using his own charging cable, recognizing the risk.
Malicious USB Keyboard Demonstration [1:54] [Image 2]
Description and Capabilities:
A standard-looking USB keyboard is introduced [1:54] [Image 1].
It has a wireless antenna built into its cable, allowing remote access.
When plugged into a computer, it can log all keystrokes.
The hacker remotely sends a payload to activate the webcam [8:09] [Image 21].
The webcam records video without any indicator light, making it covert.
The recorded video (showing Adam Savage) is uploaded every 10 seconds to a Google storage bucket, accessible by the hacker [8:26] [Image 24].
Vulnerability in Specific Environments:
This type of attack is particularly effective in places like hospitals, where computers are often left unattended and contain sensitive patient data, increasing the likelihood of ransom payments.
The Growing Threat of Cybercrime [10:04] [Image 30]
Escalating Costs and Targets:
Cybercrime costs are estimated at 1.5 trillion dollars and are continuously rising.
Smaller companies, like a tire repair shop, are increasingly targeted with ransomware because they often lack robust security and are perceived as more likely to pay.
Attacker Tactics:
Hackers research target companies to find out their financial information, including cyber insurance policies, to determine appropriate ransom demands.
Individual Vulnerability:
Individuals often have little control over how businesses (car dealerships, hospitals) process and store their personal data.
It is advisable for individuals to lock their credit reports and be aware that their personal information is likely already compromised in some way.
Internal Threats:
Even with regular training, employees can still fall victim to phishing attacks.
Security measures must account for internal human error, limiting access to only what is strictly necessary.