TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Blocking Untrusted USB Devices

82 点作者 comzeradd将近 6 年前

7 条评论

rkagerer将近 6 年前
How immune is this solution to VID &#x2F; PID spoofing?<p>I&#x27;ve thought about this topic before and arrived at the idea that USB devices ought to be treated kind of like user accounts, where I can control what drivers &#x2F; data &#x2F; devices they have access to.
评论 #20745265 未加载
评论 #20755709 未加载
评论 #20758784 未加载
评论 #20756893 未加载
acd将近 6 年前
What a nice security improvement, many thanks for developing this! It should be default in all operating systems to only accept known USB devices and in the case of new USB devices prompt the user with a clear warning message.
评论 #20757375 未加载
评论 #20757190 未加载
oakslab将近 6 年前
From the manpage[1], you could also permanently allow a device by passing the &quot;-p&quot; option.<p><pre><code> usbguard allow-device -p &lt;id&gt; </code></pre> [1]: <a href="https:&#x2F;&#x2F;github.com&#x2F;USBGuard&#x2F;usbguard&#x2F;blob&#x2F;master&#x2F;doc&#x2F;man&#x2F;usbguard.1.adoc" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;USBGuard&#x2F;usbguard&#x2F;blob&#x2F;master&#x2F;doc&#x2F;man&#x2F;usb...</a>
评论 #20755241 未加载
raverbashing将近 6 年前
&gt; But that didn&#x27;t stop the Debian developers, who maintain that package, to allow USBGuard daemon to start with zero configuration<p>Ok so you might install it then lose HID access?<p>Sounds like a bad default config.
评论 #20762534 未加载
mindfulhack将近 6 年前
This sort of thing should be default in all operating systems, as a basic security feature. Sometimes, innovation comes from the Linux world...
评论 #20756482 未加载
评论 #20757431 未加载
cerberusss将近 6 年前
Pretty awesome. I wonder is there&#x27;s something open source like this for macOS?
评论 #20754340 未加载
评论 #20755202 未加载
voiper1将近 6 年前
Does this keep you safe from USB killers?
评论 #20755245 未加载