usbdeath Logo

usbdeath

A bash-based anti-forensic script that monitors USB ports and triggers system shutdown when unauthorized devices are detected.

130
Endpoint Security
Free
Visit website
0

usbdeath Description

usbdeath is a bash-based anti-forensic script that monitors USB port changes and executes shutdown commands when unauthorized USB devices are detected. The tool operates as a rule file manipulation script that integrates with the existing udev daemon for monitoring, rather than running as a separate daemon process. It provides enhanced device identification by utilizing multiple USB device attributes including device name and serial number, offering more granular control compared to similar tools. Key features include: - Bash implementation for easy code auditing and modification - Integration with udev daemon for USB port monitoring - Configurable trigger commands (default: sync and poweroff) - Whitelist generation and management for authorized USB devices - Multiple operational modes including activation, deactivation, and manual rule editing - Support for both insertion and removal event triggers The script includes a safe demo mode for testing purposes and allows users to customize trigger commands according to their security requirements. It generates udev rules files to handle USB device events and provides commands for managing these rules through a simple command-line interface.

FEATURED

Proton Pass Logo

Password manager with end-to-end encryption and identity protection features

NordVPN Logo

VPN service providing encrypted internet connections and privacy protection

Mandos Fractional CISO Services Logo

Fractional CISO services for B2B companies to accelerate sales and compliance

Stay Updated with Mandos Brief

Get the latest cybersecurity updates in your inbox

POPULAR

RoboShadow Logo

A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.

10
TestSavantAI Logo

Security platform that provides protection, monitoring and governance for enterprise generative AI applications and LLMs against various threats including prompt injection and data poisoning.

5
Cybersec Feeds Logo

A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.

5
Fabric Platform by BlackStork Logo

Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.

5
Mandos Brief Newsletter Logo

A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

5
View Popular Tools →