Skip to main content
Top

2022 | OriginalPaper | Chapter

Vulnerability Analysis of a Secure USB Memory: Based on a Commercial Product D

Authors : Wontae Jung, Kangbin Yim, Kyungroul Lee

Published in: Advances on Broad-Band Wireless Computing, Communication and Applications

Publisher: Springer International Publishing

Activate our intelligent search to find suitable subject content or patents.

search-config
loading …

Abstract

Secure USB products with security technology applied for safe data storage and storage of users have appeared. Secure USB products include user authentication technology, encryption/decryption technology, access control technology, and data deletion technology. Password authentication technology is widely used for user authentication. The objective of this study was to analyze vulnerabilities of password authentication technology based on the secure USB memory “product D” and identify possible vulnerabilities in advance based on analysis results. Results of the analysis revealed a vulnerability of the password authentication technology of “product D” and that user data could be stolen by bypassing the authentication.

Dont have a licence yet? Then find out more about our products and how to get one now:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literature
1.
go back to reference Lee, J.: Password authentication bypass vulnerability in bio-fingerprint-aware USB 3.0 memory (BF10S). Korea Information Security Agency, KVE-2021-0166 (2021) Lee, J.: Password authentication bypass vulnerability in bio-fingerprint-aware USB 3.0 memory (BF10S). Korea Information Security Agency, KVE-2021-0166 (2021)
2.
go back to reference Lee, S.H., Kwak, J., Lee, I.Y.: The study on the security solutions of USB memory. In: Proceedings of the 4th International Conference on Ubiquitous Information Technologies & Applications, pp. 1–4 (2009) Lee, S.H., Kwak, J., Lee, I.Y.: The study on the security solutions of USB memory. In: Proceedings of the 4th International Conference on Ubiquitous Information Technologies & Applications, pp. 1–4 (2009)
3.
go back to reference Lee, K., Jang, W., Lee, S.Y., Yim, K.: Vulnerability analysis of secure USB: based on the password authentication of product B. In: Proceedings of the Korea Information Processing Society Conference, pp. 155–157 (2018) Lee, K., Jang, W., Lee, S.Y., Yim, K.: Vulnerability analysis of secure USB: based on the password authentication of product B. In: Proceedings of the Korea Information Processing Society Conference, pp. 155–157 (2018)
4.
go back to reference Lee, K., Oh, I., Lee, Y., Lee, H., Yim, K., Seo, J.: A study on a secure USB mechanism that prevents the exposure of authentication information for smart human care services. J. Sens. 2018, 1–17 (2018) Lee, K., Oh, I., Lee, Y., Lee, H., Yim, K., Seo, J.: A study on a secure USB mechanism that prevents the exposure of authentication information for smart human care services. J. Sens. 2018, 1–17 (2018)
5.
go back to reference Lee, K., Yim, K., Spafford, E.H.: Reverse-safe authentication protocol for secure USB memories. J. Secur. Commun. Netw. 5, 834–845 (2012)CrossRef Lee, K., Yim, K., Spafford, E.H.: Reverse-safe authentication protocol for secure USB memories. J. Secur. Commun. Netw. 5, 834–845 (2012)CrossRef
6.
go back to reference Jeong, H., et al.: Vulnerability analysis of secure USB flash drives. In: 2007 IEEE International Workshop on Memory Technology, Design and Testing, pp. 61–64 (2007) Jeong, H., et al.: Vulnerability analysis of secure USB flash drives. In: 2007 IEEE International Workshop on Memory Technology, Design and Testing, pp. 61–64 (2007)
7.
go back to reference Kim, J., Lee, Y., Lee, K., Jung, T., Volokhov, D., Yim, K.: Vulnerability to flash controller for secure USB Drives. J. Internet Serv. Inf. Secur. 3, 136–145 (2013) Kim, J., Lee, Y., Lee, K., Jung, T., Volokhov, D., Yim, K.: Vulnerability to flash controller for secure USB Drives. J. Internet Serv. Inf. Secur. 3, 136–145 (2013)
9.
go back to reference Grand, J.: Attacks on and countermeasures for USB hardware token devices. In: Proceedings of the Fifth Nordic Workshop on Secure IT Systems, pp. 12–13 (2000) Grand, J.: Attacks on and countermeasures for USB hardware token devices. In: Proceedings of the Fifth Nordic Workshop on Secure IT Systems, pp. 12–13 (2000)
10.
go back to reference Magdum, A.N., Patil, Y.M.: A secure data transfer algorithm for USB mass storage devices to protect documents. Int. J. Emerg. Eng. Res. Technol. 2, 78–84 (2014) Magdum, A.N., Patil, Y.M.: A secure data transfer algorithm for USB mass storage devices to protect documents. Int. J. Emerg. Eng. Res. Technol. 2, 78–84 (2014)
Metadata
Title
Vulnerability Analysis of a Secure USB Memory: Based on a Commercial Product D
Authors
Wontae Jung
Kangbin Yim
Kyungroul Lee
Copyright Year
2022
DOI
https://doi.org/10.1007/978-3-030-90072-4_30