
usbdeath
A bash-based anti-forensic script that monitors USB ports and triggers system shutdown when unauthorized devices are detected.

usbdeath
A bash-based anti-forensic script that monitors USB ports and triggers system shutdown when unauthorized devices are detected.
usbdeath Description
usbdeath is a bash-based anti-forensic script that monitors USB port changes and executes shutdown commands when unauthorized USB devices are detected. The tool operates as a rule file manipulation script that integrates with the existing udev daemon for monitoring, rather than running as a separate daemon process. It provides enhanced device identification by utilizing multiple USB device attributes including device name and serial number, offering more granular control compared to similar tools. Key features include: - Bash implementation for easy code auditing and modification - Integration with udev daemon for USB port monitoring - Configurable trigger commands (default: sync and poweroff) - Whitelist generation and management for authorized USB devices - Multiple operational modes including activation, deactivation, and manual rule editing - Support for both insertion and removal event triggers The script includes a safe demo mode for testing purposes and allows users to customize trigger commands according to their security requirements. It generates udev rules files to handle USB device events and provides commands for managing these rules through a simple command-line interface.
FEATURED
Password manager with end-to-end encryption and identity protection features
VPN service providing encrypted internet connections and privacy protection
Fractional CISO services for B2B companies to accelerate sales and compliance
Stay Updated with Mandos Brief
Get the latest cybersecurity updates in your inbox
TRENDING CATEGORIES
POPULAR
A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.
Security platform that provides protection, monitoring and governance for enterprise generative AI applications and LLMs against various threats including prompt injection and data poisoning.
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.