<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: - Hacking U3 USB Drives</title>
	<atom:link href="http://www.mcgrewsecurity.com/pub/hackingu3/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.mcgrewsecurity.com</link>
	<description></description>
	<lastBuildDate>Sat, 13 Mar 2010 16:07:37 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Hacking the U3 into a Switchblade on Windows Vista and Windows 7 - ./hadak</title>
		<link>http://www.mcgrewsecurity.com/pub/hackingu3/comment-page-1/#comment-49184</link>
		<dc:creator>Hacking the U3 into a Switchblade on Windows Vista and Windows 7 - ./hadak</dc:creator>
		<pubDate>Sun, 21 Feb 2010 22:57:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?page_id=394#comment-49184</guid>
		<description>[...] and in moments you will have a working USB Switchblade. This hack can be attributed to Andre.   Share and [...]</description>
		<content:encoded><![CDATA[<p>[...] and in moments you will have a working USB Switchblade. This hack can be attributed to Andre.   Share and [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: shiro</title>
		<link>http://www.mcgrewsecurity.com/pub/hackingu3/comment-page-1/#comment-48662</link>
		<dc:creator>shiro</dc:creator>
		<pubDate>Wed, 10 Feb 2010 13:40:01 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?page_id=394#comment-48662</guid>
		<description>Good analyse. 
Actually I have first head of Universal Customizer for hacking u3 devices (thanks to hacking exposed 6).

I was looking for a solution under Linux, BSD or any other unix OS. If someone has a clue on how to make it, please tell me !
Davd, I don&#039;t know if your solution works for a standard sandisk usb drive, but the idea must remain the same.
I think there should be a sort of key used to tell the device to accept writing, something like that. I&#039;ve tried to ``dd&#039;&#039; a crafted iso file on it, dd process was in state of ``bioswait&#039;&#039;, meaning the hardware didn&#039;t accept _my_ input data. It may accept the key and then any other data until it is not power supplied anymore. What do you think ?

There are tools on windows for monitoring input/outputs, maybe someone should try to experiment a bit with it, I don&#039;t think anything will break up, if you screw up your partition, all you have to do is use the vendor software again.

Another question : Cannot one fake a u3 USB key ? I mean just formatting a usb drive in 2 partition and create a cd9660 filesystem on one of these two partitions. There should be a way to fool windows, isn&#039;t it ?</description>
		<content:encoded><![CDATA[<p>Good analyse.<br />
Actually I have first head of Universal Customizer for hacking u3 devices (thanks to hacking exposed 6).</p>
<p>I was looking for a solution under Linux, BSD or any other unix OS. If someone has a clue on how to make it, please tell me !<br />
Davd, I don&#8217;t know if your solution works for a standard sandisk usb drive, but the idea must remain the same.<br />
I think there should be a sort of key used to tell the device to accept writing, something like that. I&#8217;ve tried to &#8220;dd&#8221; a crafted iso file on it, dd process was in state of &#8220;bioswait&#8221;, meaning the hardware didn&#8217;t accept _my_ input data. It may accept the key and then any other data until it is not power supplied anymore. What do you think ?</p>
<p>There are tools on windows for monitoring input/outputs, maybe someone should try to experiment a bit with it, I don&#8217;t think anything will break up, if you screw up your partition, all you have to do is use the vendor software again.</p>
<p>Another question : Cannot one fake a u3 USB key ? I mean just formatting a usb drive in 2 partition and create a cd9660 filesystem on one of these two partitions. There should be a way to fool windows, isn&#8217;t it ?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: -nilzZZz-™</title>
		<link>http://www.mcgrewsecurity.com/pub/hackingu3/comment-page-1/#comment-47069</link>
		<dc:creator>-nilzZZz-™</dc:creator>
		<pubDate>Thu, 14 Jan 2010 00:53:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?page_id=394#comment-47069</guid>
		<description>try Process hacker to view working dir. and such. greez ;) i hope 4 more posts</description>
		<content:encoded><![CDATA[<p>try Process hacker to view working dir. and such. greez ;) i hope 4 more posts</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Davd</title>
		<link>http://www.mcgrewsecurity.com/pub/hackingu3/comment-page-1/#comment-46759</link>
		<dc:creator>Davd</dc:creator>
		<pubDate>Thu, 07 Jan 2010 23:31:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?page_id=394#comment-46759</guid>
		<description>Kingston, SanDisk and Verbatim USB Flash drives with AES 256-bit hardware encryption that supposedly meet the highest security standards FIPS 140-2 Level 2, have been hacked.  

Cracking the drives is therefore quite simple. The SySS experts wrote a small tool for the active password entry program&#039;s RAM which always made sure that the appropriate string was sent to the drive, irrespective of the password entered and as a result gained immediate access to all the data on the drive. The vulnerable devices include the Kingston DataTraveler BlackBox, the SanDisk Cruzer Enterprise FIPS Edition and the Verbatim Corporate Secure FIPS Edition.

http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html</description>
		<content:encoded><![CDATA[<p>Kingston, SanDisk and Verbatim USB Flash drives with AES 256-bit hardware encryption that supposedly meet the highest security standards FIPS 140-2 Level 2, have been hacked.  </p>
<p>Cracking the drives is therefore quite simple. The SySS experts wrote a small tool for the active password entry program&#8217;s RAM which always made sure that the appropriate string was sent to the drive, irrespective of the password entered and as a result gained immediate access to all the data on the drive. The vulnerable devices include the Kingston DataTraveler BlackBox, the SanDisk Cruzer Enterprise FIPS Edition and the Verbatim Corporate Secure FIPS Edition.</p>
<p><a href="http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html" rel="nofollow">http://www.h-online.com/security/news/item/NIST-certified-USB-Flash-drives-with-hardware-encryption-cracked-895308.html</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pyr8noob</title>
		<link>http://www.mcgrewsecurity.com/pub/hackingu3/comment-page-1/#comment-46753</link>
		<dc:creator>pyr8noob</dc:creator>
		<pubDate>Thu, 07 Jan 2010 19:36:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?page_id=394#comment-46753</guid>
		<description>Trying to bypass U3 security to see contents.  How do I get past the door?  Everyone says its secure, I don&#039;t think anything is secure.  I need to recover the password or bypass U3.

Any ideas?</description>
		<content:encoded><![CDATA[<p>Trying to bypass U3 security to see contents.  How do I get past the door?  Everyone says its secure, I don&#8217;t think anything is secure.  I need to recover the password or bypass U3.</p>
<p>Any ideas?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: SifJar</title>
		<link>http://www.mcgrewsecurity.com/pub/hackingu3/comment-page-1/#comment-46166</link>
		<dc:creator>SifJar</dc:creator>
		<pubDate>Sat, 26 Dec 2009 12:31:22 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?page_id=394#comment-46166</guid>
		<description>I was wondering: Do you have a link to a guide on how to use Ethereal (or WireShark, Ethereal&#039;s successor) like you used it in this post, to monitor the network activity of a program? I am trying to see where another program downloads something from, and I can&#039;t work out how to use the software...</description>
		<content:encoded><![CDATA[<p>I was wondering: Do you have a link to a guide on how to use Ethereal (or WireShark, Ethereal&#8217;s successor) like you used it in this post, to monitor the network activity of a program? I am trying to see where another program downloads something from, and I can&#8217;t work out how to use the software&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: manioc</title>
		<link>http://www.mcgrewsecurity.com/pub/hackingu3/comment-page-1/#comment-45224</link>
		<dc:creator>manioc</dc:creator>
		<pubDate>Wed, 09 Dec 2009 03:38:42 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?page_id=394#comment-45224</guid>
		<description>I followed the instructions on this site in order to automount a TrueCrypt travelers disk partition on the U3 partition and it worked like a charm for me.

http://www.instructables.com/id/Using_U3_Technology_to_its_fullest_on_an_8G_Cruzer/</description>
		<content:encoded><![CDATA[<p>I followed the instructions on this site in order to automount a TrueCrypt travelers disk partition on the U3 partition and it worked like a charm for me.</p>
<p><a href="http://www.instructables.com/id/Using_U3_Technology_to_its_fullest_on_an_8G_Cruzer/" rel="nofollow">http://www.instructables.com/id/Using_U3_Technology_to_its_fullest_on_an_8G_Cruzer/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ben Jones</title>
		<link>http://www.mcgrewsecurity.com/pub/hackingu3/comment-page-1/#comment-42363</link>
		<dc:creator>Ben Jones</dc:creator>
		<pubDate>Mon, 19 Oct 2009 18:52:45 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?page_id=394#comment-42363</guid>
		<description>*bump*
U3Customizer (all versions that I can find)- &quot;Failed to access your U3 smart drive&quot;
GuidoZ- fails after about 7 seconds
Lpinstaller local- also fails quickly
Because I can load smaller files, around 700-800MB, I&#039;m thinking possibly it&#039;s because of the CDFS formatting of the U3 partition.  Is there a way to force any of the above programs to format the U3 partition as UDF or is there something I am missing.  Also, instead of being vague, the 7.12GB file I am trying to put onto the U3 partition is OS X 10.5.  I successfully accomplished it about a year ago, so I know it WAS possible.  Any help would be greatly appreciated.</description>
		<content:encoded><![CDATA[<p>*bump*<br />
U3Customizer (all versions that I can find)- &#8220;Failed to access your U3 smart drive&#8221;<br />
GuidoZ- fails after about 7 seconds<br />
Lpinstaller local- also fails quickly<br />
Because I can load smaller files, around 700-800MB, I&#8217;m thinking possibly it&#8217;s because of the CDFS formatting of the U3 partition.  Is there a way to force any of the above programs to format the U3 partition as UDF or is there something I am missing.  Also, instead of being vague, the 7.12GB file I am trying to put onto the U3 partition is OS X 10.5.  I successfully accomplished it about a year ago, so I know it WAS possible.  Any help would be greatly appreciated.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ben Jones</title>
		<link>http://www.mcgrewsecurity.com/pub/hackingu3/comment-page-1/#comment-40929</link>
		<dc:creator>Ben Jones</dc:creator>
		<pubDate>Sat, 26 Sep 2009 10:45:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?page_id=394#comment-40929</guid>
		<description>OK, I am really at a loss here.  I have tried every suggestion on this site and every other site I can find.  NOTHING WORKS!!!! I find it so incredible that I had it working at one point and cannot get it back to save my life.  It&#039;s like I got lucky once.  Any other suggestions are very much appreciated!</description>
		<content:encoded><![CDATA[<p>OK, I am really at a loss here.  I have tried every suggestion on this site and every other site I can find.  NOTHING WORKS!!!! I find it so incredible that I had it working at one point and cannot get it back to save my life.  It&#8217;s like I got lucky once.  Any other suggestions are very much appreciated!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: GuidoZ</title>
		<link>http://www.mcgrewsecurity.com/pub/hackingu3/comment-page-1/#comment-40653</link>
		<dc:creator>GuidoZ</dc:creator>
		<pubDate>Tue, 22 Sep 2009 22:12:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?page_id=394#comment-40653</guid>
		<description>Check out the info I posted - there is utilities for putting everything back the way it was, as well as fully customizing the ISO U3 uses. Works like a charm everytime, and has been for years!

http://www.GuidoZ.com/U3/

--
Peace. ~G</description>
		<content:encoded><![CDATA[<p>Check out the info I posted &#8211; there is utilities for putting everything back the way it was, as well as fully customizing the ISO U3 uses. Works like a charm everytime, and has been for years!</p>
<p><a href="http://www.GuidoZ.com/U3/" rel="nofollow">http://www.GuidoZ.com/U3/</a></p>
<p>&#8211;<br />
Peace. ~G</p>
]]></content:encoded>
	</item>
</channel>
</rss>
