When a USB stick is connected to a PC the Windows operating system enumerates the device.Â In simple terms, this means Windows will check to see what type of device was just connected, a HID device, Mass Storage Devicet etc, it will also check the speed of the device.
During the enumeration process some registry entries are made into the Windows registry…this is where a hacker could get into your system and take control.Â This is the update Microsoft issues earlier this week to fix the security flaw.
Since the vulnerability is triggered during USB enumeration, no user intervention is required. In fact, the vulnerability can be triggered when the workstation is locked or when no user is logged in, making this an unauthenticated elevation of privilege for an attacker with casual physical access to the machine. Other software that enables low-level pass-through of USB device enumeration may open additional avenues of exploitation that do not require direct physical access to the system.
So be sure to update your PC with the update notification comes through – it’s in your best interest.
Full Microsoft article
If you haven’t heard,DELL is looking to buy back it’s public shares and go private.Â Why you ask?Â Going private would allow them to make quick and swift changes with in the company to re-invent itself.Â Currently the never-ending demands of the stock holders and investors ties their hands in freedom to create as they wish.
DELL, so it is said, started a new code project call Ophelia.Â The project is turning a USB key into a portable desktop.Â The USB would have the ability to access online software tools and operating systems.Â The USB solution from Ophelia will still require a hardware setup (someone’s PC) so think of it as a USB stick high-jacking the processor, RAM, motherboard, video controller etc to run it’s own OS.
We’ve seen things like this from smaller, start-up companies,Â but DELL has the ability to really make this main stream.Â The rumor on target price is $50 US Dollars.
I for one believe the ability to high-jack another PCs hardware doesn’t warrant it enough to be more then a complimentary tool to one’s main PC.Â Now if DELL can high-jack the
What is it about USB steampunk flash drives?Â Am I the only one with a keen interest in showing off these hand crafted USB drives?Â Could it be the material used which draws my attention?Â Could it be the fine detail of each device which peaks my interested?Â Could it be the impressive number of hours required to make each piece?Â I’m not sure, but I could flip through pages and pages of these USB steampunk drives.
For 2012, here are the top 12 styles.Â There is not particular order as each person will favor their own, but you will agree these are probably the 12 most unique designs you’ve seen the past twelve months.
If you look up ambiguous in the dictionary [or wiki page] you’ll probably find a picture of a USB flash drive.Â After all, aren’t they?Â Not with standing, Zana Design has put craft, materials and resource to the limit with their Apophis meteorite flash drive.
Of course, just being made with a meteorite seems like enough, but no, it also comes with a high-purity diamond embedded in it. The drive also incorporates African Black Wood, which is considered a rather high quality material.
As far as the actual thumb drive is concerned, it’s USB 3.0-compatible, and comes with 64GB of internal memory. It also has a lifetime warranty, so at least you know if anything goes wrong with your ultra-expensive drive, you will be able to get it replaced.
The device comes in two different flavors. Both have the diamond and meteorite, but the cheaper version also features silver and will set you back $1,130. The more expensive 18C gold model will set you back $1,990.
My buddy made the comment:Â