A simple USB stick bypasses firewalls and antivirus by entering the network physically. Wybot detects any removable-media connection and alerts in real time.
A simple USB stick can bypass firewalls and antivirus by physically entering the network. It is one of the most underestimated attack vectors, and one of the most effective for attackers.
An infected stick runs its code the moment it is plugged in and spreads a virus or ransomware across the whole network, like Stuxnet// CAS D'ÉCOLE · STUXNETStuxnet, le virus introduit par clé USBDécouvert en 2010, Stuxnet est l'un des programmes malveillants les plus célèbres de l'histoire. Ce ver très sophistiqué visait les systèmes industriels (automates Siemens) des centrifugeuses du programme nucléaire iranien.Son intérêt : le réseau ciblé était isolé d'Internet. Stuxnet s'est propagé par de simples clés USB : preuve qu'aucun réseau, même « air-gappé », n'est à l'abri d'un support amovible piégé., introduit par USB.
Un périphérique reprogrammé se fait passer pour un clavier et injecte des commandes à l'insu de l'utilisateur, sans aucun fichier détectable.
Mass, discreet copying of sensitive data onto removable media: information leaks, intellectual property theft, GDPR non-compliance.
A stick left in a car park or at reception: out of curiosity, an employee plugs it in and opens the door to the attacker themselves.
Some professional-use USB keys grant access to highly sensitive systems. Diverted or hacked, they expose their holder to a very real risk: identity theft, misappropriation of funds, fraudulent legal acts, access to confidential data.
Electronic signature of authenticated deeds and access to the Réal network: a diversion would allow fraudulent deeds to be signed.
Access to e-Barreau, electronic signature and court proceedings: a compromise exposes confidential case files.
Signing of tax and social declarations and online procedures on behalf of clients.
Authentication and signature on the court registry's professional applications.
Access to business platforms and signing of deeds: fraudulent access would compromise official proceedings.
Authentication on healthcare systems and signing of care sheets: access to sensitive medical data.
Authentication and signature in the pharmacy's business software.
Access to the Vehicle Registration System (SIV): a hack opens the way to fraudulent registrations and titlesfrauduleux// FRAUDES AU SIVQuand la clé SIV est détournéeLa clé SIV donne un accès direct au fichier national des immatriculations. Compromise, elle devient une arme pour les fraudeurs :▸Fausses cartes grises : certificats émis pour des véhicules volés ou maquillés.▸Blanchiment de véhicules volés : réattribution d'une identité « propre ».▸Usurpation de plaques (doublette) : amendes et délits renvoyés vers un tiers.▸Responsabilité du professionnel : titulaire de l'habilitation, il est exposé juridiquement et redevable auprès de la Préfecture des cartes grises émises frauduleusement en son nom.PROTÉGER MON ACCÈS SIV →.
Thanks to its patented technology, Wybot detects when removable media are plugged in and alerts in real time to regain control of the endpoint before an incident occurs.
See USB-device monitoring in action during a demo.