Journal of Information Security Research ›› 2018, Vol. 4 ›› Issue (7): 639-645.

Previous Articles     Next Articles

Review of USB Device Security Technology

  

  • Received:2018-07-12 Online:2018-07-15 Published:2018-07-12

USB设备安全技术研究综述

吕志强1,薛亚楠1,张宁1,陆云2   

  1. 1. 中国科学院信息工程研究所
    2. 中国科学院大学
  • 通讯作者: 吕志强
  • 作者简介:吕志强 博士,副研究员,硕士生导师,主要研究方向为信号收发与分析、射频系统集成. 薛亚楠 硕士研究生,主要研究方向为嵌入式硬件安全. 张宁 硕士,助理工程师,主要研究方向为电路与系统和电磁物理安全. 陆云 硕士研究生,主要研究方向为电磁与通信安全.

Abstract: The emergence of the USB (universal serial bus) interface has brought convenience to users. However, the convenience and the use of extensive make it one of the attackers targets. Common USB attacks include USB ferry attacks and USB HID attacks. This paper analyzes several common USB attacks, summarizes the detection and protection techniques for USB attacks at home and abroad. At the same time, this paper analyzes the advantages and disadvantages of each protection technique. In the end, combined with various protection techniques, we propose protection strategies against USB attacks and future development directions.

Key words: USB (universal serial bus) device security, USB attack, USB composite device, malicious USB device, peripheral equipment

摘要: 通用串行总线(universal serial bus, USB)接口的出现为用户带来了便利,但也正由于它的便利性、使用广泛性使得其成为攻击者的攻击目标之一.常见的USB攻击主要有USB摆渡攻击和USB HID攻击.从USB攻击技术出发,分析了几种常见的USB攻击技术的原理,着重总结整理了国内外针对USB攻击的检测防护技术,并分析了各防护技术的优劣,同时,结合各防护技术提出了应对USB攻击的防护策略及未来的发展方向.

关键词: USB设备安全, USB攻击, USB复合设备, 恶意USB设备, 外设