Kingston Admits To Secure USB Drive Flaw

Memory giant Kingston Technology has admitted that some of its supposedly secure USB sticks can in fact be hacked, and it has asked customers to return the devices for an update.

Kingston has posted a warning on its drive information page and warned that a “skilled person with the proper tools and physical access to the drives may be able to gain unauthorised access to data contained on the following Kingston Secure USB drives.”

The affected models include the DataTraveler BlackBox; DataTraveler Secure – Privacy Edition; and DataTraveler Elite – Privacy Edition.

According to Jim Selby, Kingston’s manager of European product marketing, the flaw lies in how the drives process passwords.

“The encryption itself is sound, but there is a small loophole regarding the processing of the password,” Selby told ZDNet UK. “Someone who is skilled enough, with the right tools, could exploit the weakness.”

According to Selby, Kingston was alerted to the flaw by a German penetration testing company called SySS, after it had written some software that uncovered the workings of the password authentication process, despite these drives utilising 256-bit AES encryption.

UK users are advised to contact Kingston on 01932 738950 to get their drives updated.

Kingston is a well established player in the memory field and offers a range of secure USB flash drives for the consumer, enterprise, and government sectors. Back in July it launched the biggest little flash drive in the world with 256GB of storage in a 71mm USB memory stick, the Data Traveler 300.

Tom Jowitt

Tom Jowitt is a leading British tech freelancer and long standing contributor to Silicon UK. He is also a bit of a Lord of the Rings nut...

Recent Posts

Northvolt Mulls US Bankruptcy Protection – Report

Troubled battery maker Northvolt reportedly considers Chapter 11 bankruptcy protection in the United States as…

13 hours ago

FTC Plans Investigation Into Microsoft Cloud Business – Report

Microsoft's cloud business practices are reportedly facing a potential anti-competitive investigation by the FTC

14 hours ago

Programmer Sentenced To Five Years In Prison For Bitcoin Laundering

Ilya Lichtenstein sentenced to five years in prison for hacking into a virtual currency exchange…

16 hours ago

Hate Speech Watchdog CCDH To Quit Musk’s X

Target for Elon Musk's lawsuit, hate speech watchdog CCDH, announces its decision to quit X…

1 day ago

Meta Fined €798m Over Alleged Facebook Marketplace Violations

Antitrust penalty. European Commission fines Meta a hefty €798m ($843m) for tying Facebook Marketplace to…

1 day ago

Elon Musk Rebuked By Italian President Over Migration Tweets

Elon Musk continues to provoke the ire of various leaders around the world with his…

1 day ago