FBI Issues Cyber Security Warning over using Public Charging Points
The FBI has issued a warning urging individuals and businesses to avoid using public USB ports due to the risk of malware infections. According to a tweet from the Denver FBI office (as reported by CNBC), cyber criminals have exploited charging stations and points located in hotels, airports, shopping centres and more to spread malware and monitoring software.
To minimise the risk of cyber attacks, the FBI recommends that people carry their own wall charger and USB cable and opt to use electrical outlets rather than public USB ports for charging. It is worth noting that public Qi (Wireless) Charging points remain safe to use. Although Apple has implemented a USB security feature for iPhones and Macs that limits data transfer through the Lightning port after an hour of device inactivity, this does not prevent malware installation when devices are connected to public ports during active use. Connecting to a public USB port (or using public USB cables) can leave unprotected devices devices vulnerable to cyber attacks, as hackers could use these as attack vectors to access sensitive information such as; intercepting emails, access browsing sessions to potentially steal account data, passwords or potentially funds from online accounts, and more. These malicious Ports and USB cables can be used to inject malware or other malicious code into your device upon connectivity, to ensure safety individuals should use their personal USB cables and wall chargers for charging in public places.
The FBI has echoed this warning on their website, advising against using public usb ports or charging stations. Additionally, they caution against using public Wi-Fi (see our video on the Dangers of Public WiFi) for confidential transactions, opening suspicious files, reusing passwords across accounts, and clicking on unexpected links in messages and emails. To ensure that your business has complete security against these attack vectors we urge businesses to follow these recommendations and ensure that all of their devices are protected with the best security tools and services available to them, we recommend services such as SASE (Secure Access Service Edge) to act as a cloud based firewall for all of your device, no matter where they are in the world & EDR (Endpoint Detection & Response) for your business Laptops (and other Endpoints) to proactively monitor and stop for any malicious or unusual activity on any of your endpoints, including the monitoring of USB connectivity to ensure that malicious code can not be launched from USB connectivity (an attack vector made popular through the use of “USB Rubber Ducky” and “Rubber Ducky Cables”). In addition to this, our Active Email Threat Protection service can also check links and attachments in emails to ensure that they are safe to open or download, quarantining those that are not safe.
To find out more about our Cyber Security services please reach out to see how we can help your business, you can also download our FREE Cyber Security Self Assessment to see if your business is following the best Cyber Security practices.
Latest News Stories
Celebrating our Local Football Teams
In a remarkable turn of events that has sent waves of jubilation throughout the Sheffield region, both Sheffield Wednesday and Sheffield United football clubs have secured their respective promotions in the 2022-2023 season. This is a tremendous achievement for both...
Rochester Schools Still Suffering 1 Month After Cyber Attack
Rochester Public Schools, based in Minnesota, was hit by a significant ransomware attack on 6th April 2023, disrupting its operations and affecting thousands of students, teachers, and staff members. The attack was first detected at 4:30 a.m. by a member of their IT...
Simple Email Habits Give Cyber Criminals an Edge
In an increasingly digital world, even the seemingly innocent action of sharing holiday plans in an out-of-office email could give cyber criminals an edge. At the recent 2023 SmallBiz Week conference in Melbourne, Australia, representatives from small businesses, as...
Our Customers
Testimonials
Claire H, MSP PLC
Made a call into day, to arrange an engineer visit and was able to get there before 12noon and solve the issue.
Kevin Wood, IT Consultant
The service from Jack has been 110% throughout in line with the excellent service I’ve received since discovering One2Call. Thanks Jack and all.
Annette, Blastcom
Ryan was very helpful and sorted out the problem for me.