1. Home

Glue is not a solution for Aerospace.

If you are using a flash drive to update your navigational system data on an Apache, Black-hawk, or jet: the only flash drive you should be using is a locking flash drive.

Foxrun Presents HIPPO

Flash drive and port lock : Hardware that can be locked Flash drive and port lock: Can communicate remotely via WiFi. See how the Hippo Flash Drive can be locked and unlocked remotely from anywhere in the world. (Note: the Hippo is also programmable.) Click on the video beside.

Conventional Port Security Solution Vulnerabilities

Software Based Solutions

  • Run at the operating system (OS) level, and are vulnerable to hardware/firmware based threats
  • Unable to protect many embedded and other devices running firmware, real-time operating systems (RTOS), and/or uncommon/proprietary operating systems (e.g. Industrial Automation equipment, IoT devices, etc.)
  • Use hardware/firmware identifiers for accept/reject evaluation, which are easily cloned and/or configurable
    Example: The enumeration/descriptor data from a whitelisted PnP USB device can be cloned using a microcontroller or embedded development board (e.g. Arduino). Then malicious embedded code can spoof the original device and carry out attacks after insertion into a “protected” host machine.

Macro Physical Security Solutions

  • Grants gross access to multiple pieces of equipment, increasing attack potential/surface area
  • Can be bypassed (e.g. social engineering, tailgating)
  • Can be complex, costly, and resource intensive

Passive Mechanical Port Lock/Block Solutions

  • Are easily defeated and/or removed
  • Many do not utilize tamper-proof indication features
  • Requires personnel to routinely monitor whether the device is installed and shows no signs of tampering

Permanently Disabling and/or Destroying Port Solutions

  • Prevents the disabled port from being used (non-malicious), and prevents device reuse/repurpose
  • Can prevent security updates/patches (specialty/industrial equipment)