Skip to main content

Plug the USG into your port before you plug in that new USB flash drive

usg protects against usb based malware usage diagram header
Robert Fisk
A number of nasty methods exist to remotely exploit a device, for example, a router that is connected to the internet. There are even more ways to exploit a PC if the cybercriminal has physical access to it. But the most embarrassing, perhaps, is when you infect your own PC by plugging in a malware-infested USB flash drive.

That is probably not terribly fair — anyone can be tricked into plugging in such devices, given that they are designed to look just like any other flash drive. And there is little you can do to protect yourself against them, which is something a new hardware firewall called USG is intended to help prevent, Hackaday reports.

The reason malware-infected USB flash drives are so dangerous is that devices using attacks like BadUSB inject their malicious code directly into the USB driver software that enables a PC to connect to a USB device. The code is executed by the USB device’s own microprocessor, meaning there is no virus file being accessed on the PC that antivirus software can recognize and protect against.

The USG device created by engineer Robert Fisk sits in between the PC’s USB port and any device that is going to be plugged in, inserting an SPI hardware firewall to isolate any bad USB device. Because the firmware of the USG device is completely open, anyone with the technical know-how can dig into it and verify that it can be trusted — something that’s just not possible with the typical USB flash drive.

According to some sources, even factory-fresh USB flash drives can’t be assumed free of malware, backdoors, and other nefarious purposes, and so a device like the USG could one day be more than just a luxury of the paranoid. Fisk provides details on how to build your own USG device, along with information on how and why it works. He also sells a version that is more professional in appearance for $60, in case you don’t have the time or technical inclination to build your own.

Updated on 3-6-2017 by Mark Coppock: Clarified that the USG is an SPI hardware firewall and updated pricing information.

Editors' Recommendations

Mark Coppock
Mark has been a geek since MS-DOS gave way to Windows and the PalmPilot was a thing. He’s translated his love for…
How to do hanging indent on Google Docs
Google Docs in Firefox on a MacBook.

The hanging indent is a classic staple of word processing software. One such platform is Google Docs, which is completely free to start using. Google Docs is packed with all kinds of features and settings, to the point where some of its more basic capabilities are overlooked. Sure, there are plenty of interface elements you may never use, but something as useful as the hanging indent option should receive some kind of limelight.

Read more
How to disable VBS in Windows 11 to improve gaming
Highlighting VBS is disabled in Windows 11.

Windows 11's Virtualization Based Security features have been shown to have some impact on gaming performance — even if it isn't drastic. While you will be putting your system more at risk, if you're looking to min-max your gaming PC's performance, you can always disable it. Just follow the steps below to disable VBS in a few quick clicks.

Plus, later in this guide, we discuss if disabling VBS is really worth it, what you'd be losing if you choose to disable it, and other options for boosting your PCs gaming performance that don't necessarily involve messing with VBS.

Read more
How to do a hanging indent in Microsoft Word
A person typing on a keyboard, connected to a Pixel Tablet.

Microsoft Word is one of the most feature-rich word processing tools gifted to us human beings. In fact, the very word “Word” has invaded nomenclature to the point where any discussion of this type of software, regardless of what the product is actually called, typically results in at least one person calling the software “Word.”

Read more