Cyber Security News

FBI has Warned People to Avoid Free Public Charging Ports

The FBI issued a warning on the evening of Maundy Thursday about using Free public charging ports. It stated that threat actors use public charging outlets in airports and coffee shops to inject malware and monitoring software.

As per the tweet on Twitter, the FBI said, “Bad actors have figured out ways to use public USB ports to introduce malware and monitoring software onto devices.” 

Why is it Dangerous?

Two main types of “jacking” are done through public USB ports.

  1. Juice Jacking
  2. Video Jacking

Juice Jacking

Juice jacking is a method in which threat actors steal account credentials, financial or any other sensitive information from devices while they are charged. This is done by loading malware onto the public charging stations that are triggered when a device is plugged in.

Video Jacking

Video Jacking is a method in which threat actors hide equipment in public charging stations to record activities on a device while plugged in. This ranges from entering a password to writing an email or accessing a banking application with a password.

Cybercriminals use public charging stations since they are very rarely checked for threat activities.

These activities are possible because the wires we use for charging are also supported for data transfer which is why most of the devices ask for a “Do you want to trust this device?” prompt before allowing data transfer.

Muhammad Yahya Patel, lead security engineer at Checkpoint, said, “It is extremely unlikely and difficult.

You could also have some additional protection by keeping your device locked while plugged in.

We’re seeing blurred lines now with many people using their personal device for work purposes, or even have a separate work phone, and so there’s that additional risk to businesses.”

The FBI recommends carrying our adapter and charging wire to protect from these attacks. Using a power bank or battery backup is also an affordable solution. Additional solutions include using a wire that is only supported for charging instead of multipurpose.

Why do Organizations need Unified endpoint management – 

Related Read:

Guru Baran

Gurubaran KS is a cybersecurity analyst, and Journalist with a strong focus on emerging threats and digital defense strategies. He is the Co-Founder and Editor-in-Chief of Cyber Security News, where he leads editorial coverage on global cybersecurity developments.

Recent Posts

Hackers Target AI Infrastructure With RCE, Prompt Injection and API Key Theft

Hackers are actively probing AI systems, turning exposed gateways and agent tools into routes for…

4 hours ago

Hackers Make Phishing Pages Change Their Code Every Time Someone Opens Them

Hackers are making some phishing pages harder to track by changing the code delivered to…

4 hours ago

Iran-Linked Hackers Reportedly Knock UK Power Plant Offline for Four Days

A cyber incident reportedly forced a British power plant to halt operations for about four…

5 hours ago

Russian Hackers Use New HOOKEDGE Malware to Spy on European Defense and Diplomatic Targets

Russian hackers have used a new backdoor called HOOKEDGE to target defense manufacturers, government bodies,…

6 hours ago

Ransomware Gang Claims AI Can Analyze 700GB of Stolen Data Every Hour

TITAN ransomware is pairing file encryption with an ambitious claim: artificial intelligence that can sort…

6 hours ago

Hackers Compromise Hundreds of WordPress Sites to Deploy Amatera Stealer via ClickFix

A fake student resume is being used to place a remote-access tool on researchers’ Windows…

7 hours ago