Browse Definitions :
Definition

USB Killer

A USB Killer is USB drive that has been modified to deliver an electrical surge that can damage or destroy hardware when the altered thumb drive is inserted into a computer's USB port.The modified drive essentially commands the computer's on-board capacitors to rapidly charge and discharge repeatedly. If left alone, the repeated overcharging will overload the USB port and physically destroy the computer's electrical system.

Essentially, a USB Killer works by delivering 210-220 volts to an interface that is designed for 5 volts. The overpowered-surge can damage or destroy not only ports, but also attached hardware. The concept behind USB Killer is similar to that of Ethernet Killer, a modified power cord that does much the same thing.

USB Killer is sold commercially under the name USB Kill. The original concept behind the device was allegedly to help hardware manufacturers and network administrators determine how well a digital device could withstand power surges and electrostatic discharge (ESD). Since its invention, however, this type of altered thumb drive has not been used for penetration testing by any major company -- it has proved popular with cybercriminals, however. 

The concept of a USB Killer is credited to a Russian computer researcher known as Dark purple. In the United States, USB Killer was infamously used in the wild by a student at the College of Saint Rose in upstate New York. The student, who used his iPhone to record himself using USB Killer, destroyed over 60 college computers and was sentenced in 2019 to one year in federal prison. 

To avoid being harmed by a rogue USB Killer, security experts recommend that network administrators and end users take the following steps:

  • Apply firmware updates as soon as they become available.
  • Refrain from using USB drives of unknown origin.
  • Cap USB ports on mission-critical devices. 

This was last updated in June 2019

Continue Reading About USB Killer

SearchNetworking
SearchSecurity
  • man in the browser (MitB)

    Man in the browser (MitB) is a security attack where the perpetrator installs a Trojan horse on the victim's computer that is ...

  • Patch Tuesday

    Patch Tuesday is the unofficial name of Microsoft's monthly scheduled release of security fixes for the Windows operating system ...

  • parameter tampering

    Parameter tampering is a type of web-based cyber attack in which certain parameters in a URL are changed without a user's ...

SearchCIO
  • chief procurement officer (CPO)

    The chief procurement officer, or CPO, leads an organization's procurement department and oversees the acquisitions of goods and ...

  • Lean Six Sigma

    Lean Six Sigma is a data-driven approach to improving efficiency, customer satisfaction and profits.

  • change management

    Change management is a systematic approach to dealing with the transition or transformation of an organization's goals, processes...

SearchHRSoftware
SearchCustomerExperience
  • clickstream data (clickstream analytics)

    Clickstream data and clickstream analytics are the processes involved in collecting, analyzing and reporting aggregate data about...

  • neuromarketing

    Neuromarketing is the study of how people's brains respond to advertising and other brand-related messages by scientifically ...

  • contextual marketing

    Contextual marketing is an online marketing strategy model in which people are served with targeted advertising based on their ...

Close