Charging stations have become ubiquitous in public spaces, including malls, hotels, restaurants and parks. AFP
Charging stations have become ubiquitous in public spaces, including malls, hotels, restaurants and parks. AFP
Charging stations have become ubiquitous in public spaces, including malls, hotels, restaurants and parks. AFP
Charging stations have become ubiquitous in public spaces, including malls, hotels, restaurants and parks. AFP

FBI warns against using public charging stations due to malware and 'juice jacking' risk


Alvin R Cabral
  • English
  • Arabic

The FBI has warned against the use of public charging points for electronic devices, saying they can be a gateway for cyber criminals.

Public charging stations heightens the risk of bad actors installing malware and gaining access to devices, the top US law enforcement agency's Denver department said on Twitter.

“Avoid using free charging stations in airports, hotels or shopping centres. Bad actors have figured out ways to use public USB ports to introduce malware and monitoring software on to devices,” the FBI said.

“Carry your own charger and USB cord and use an electrical outlet instead.”

Charging stations have become ubiquitous in public spaces, including malls, hotels, restaurants and parks, providing users a convenient way to power up their devices.

However, the practice has paved the way for what is called “juice jacking”, which simply means using a USB connection to compromise a device.

Aside from bringing personal charging equipment, it is also advised to plan ahead and charge devices before stepping out to prevent any cyber risk that may result from using public charging points.

WHAT%20IS%20'JUICE%20JACKING'%3F
%3Cp%3E%E2%80%A2%20Juice%20jacking%2C%20in%20the%20simplest%20terms%2C%20is%20using%20a%20rogue%20USB%20cable%20to%20access%20a%20device%20and%20compromise%20its%20contents%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20The%20exploit%20is%20taken%20advantage%20of%20by%20the%20fact%20that%20the%20data%20stream%20and%20power%20supply%20pass%20through%20the%20same%20cable.%20The%20most%20common%20example%20is%20connecting%20a%20smartphone%20to%20a%20PC%20to%20both%20transfer%20data%20and%20charge%20the%20former%20at%20the%20same%20time%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20The%20term%20was%20first%20coined%20in%202011%20after%20researchers%20created%20a%20compromised%20charging%20kiosk%20to%20bring%20awareness%20to%20the%20exploit%3B%20when%20users%20plugged%20in%20their%20devices%2C%20they%20received%20a%20security%20warning%20and%20discovered%20that%20their%20phones%20had%20paired%20to%20the%20kiosk%2C%20according%20to%20US%20cybersecurity%20company%20Norton%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20While%20juice%20jacking%20is%20a%20real%20threat%2C%20there%20have%20been%20no%20known%20widespread%20instances.%20Apple%20and%20Google%20have%20also%20added%20security%20layers%20to%20prevent%20this%20on%20the%20iOS%20and%20Android%20devices%2C%20respectively%3C%2Fp%3E%0A

Malware — a programme typically designed to disrupt or gain unauthorised access into a system — constitutes one of the biggest threats in the IT industry.

It is part of the wider cyber crime sector projected to cause global financial damage of about $10.5 trillion by 2025, according to data from Cybersecurity Ventures.

Globally, about 5.5 billion malware attacks took place in 2022, an increase of 2 per cent from 2021 and nearly half the 10.5 billion peak recorded in 2018, data from Statista shows.

Cyber attacks can cause reputational and financial damage to users. The global average cost for a data breach in 2022 was $4.35 million, up from $4.24 million the previous year, according to the latest edition of IBM's Cost of a Data Breach report.

The FBI has similar guidance on its website, covering a variety of topics on internet safety, including warning against conducting sensitive transactions on a public Wi-Fi network.

“Every day tasks — opening an email attachment, following a link in a text message, making an online purchase — can open you up to online criminals who want to harm your systems or steal from you,” the FBI said.

“Preventing internet-enabled crimes and cyber intrusions requires each of us to be aware and on guard.”

It is not clear if the FBI warning is prompted by any specific case, but US authorities have warned about “juice jacking” in the past.

Most recently, the Federal Communications Commission also warned that cyber criminals can gain access to online accounts and even sell them in the dark web through “juice jacking”.

“Cyber security experts have warned that criminals can load malware on to public USB charging stations to maliciously access electronic devices while they are being charged,” the FCC said.

“Malware installed through a dirty USB port can lock a device or export personal data and passwords directly to the perpetrator.”

The Los Angeles County District Attorney’s Office in November 2019 had also cautioned travellers about USB charger scams.

WHAT IS A BLACK HOLE?

1. Black holes are objects whose gravity is so strong not even light can escape their pull

2. They can be created when massive stars collapse under their own weight

3. Large black holes can also be formed when smaller ones collide and merge

4. The biggest black holes lurk at the centre of many galaxies, including our own

5. Astronomers believe that when the universe was very young, black holes affected how galaxies formed

If you go

The flights 

Emirates flies from Dubai to Funchal via Lisbon, with a connecting flight with Air Portugal. Economy class returns cost from Dh3,845 return including taxes.

The trip

The WalkMe app can be downloaded from the usual sources. If you don’t fancy doing the trip yourself, then Explore  offers an eight-day levada trails tour from Dh3,050, not including flights.

The hotel

There isn’t another hotel anywhere in Madeira that matches the history and luxury of the Belmond Reid's Palace in Funchal. Doubles from Dh1,400 per night including taxes.

 

 

In-demand jobs and monthly salaries
  • Technology expert in robotics and automation: Dh20,000 to Dh40,000 
  • Energy engineer: Dh25,000 to Dh30,000 
  • Production engineer: Dh30,000 to Dh40,000 
  • Data-driven supply chain management professional: Dh30,000 to Dh50,000 
  • HR leader: Dh40,000 to Dh60,000 
  • Engineering leader: Dh30,000 to Dh55,000 
  • Project manager: Dh55,000 to Dh65,000 
  • Senior reservoir engineer: Dh40,000 to Dh55,000 
  • Senior drilling engineer: Dh38,000 to Dh46,000 
  • Senior process engineer: Dh28,000 to Dh38,000 
  • Senior maintenance engineer: Dh22,000 to Dh34,000 
  • Field engineer: Dh6,500 to Dh7,500
  • Field supervisor: Dh9,000 to Dh12,000
  • Field operator: Dh5,000 to Dh7,000
Paris%20Agreement
%3Cp%3EArticle%2014%3C%2Fp%3E%0A%3Cp%3E1.%20%5BThe%20Cop%5D%20shall%20periodically%20take%20stock%20of%20the%20implementation%20of%20this%20Agreement%20to%20assess%20the%20collective%20progress%20towards%20achieving%20the%20purpose%20of%20this%20Agreement%20and%20its%20long-term%20goals%20(referred%20to%20as%20the%20%22global%20stocktake%22)%3C%2Fp%3E%0A%3Cp%3E2.%20%5BThe%20Cop%5D%20shall%20undertake%20its%20first%20global%20stocktake%20in%202023%20and%20every%20five%20years%20thereafter%C2%A0%3C%2Fp%3E%0A
UAE currency: the story behind the money in your pockets
HOSTS

T20 WORLD CUP 

2024: US and West Indies; 2026: India and Sri Lanka; 2028: Australia and New Zealand; 2030: England, Ireland and Scotland 

ODI WORLD CUP 

2027: South Africa, Zimbabwe and Namibia; 2031: India and
Bangladesh 

CHAMPIONS TROPHY 

2025: Pakistan; 2029: India  

SPEC%20SHEET%3A%20SAMSUNG%20GALAXY%20S23%20ULTRA
%3Cp%3E%3Cstrong%3EDisplay%3A%3C%2Fstrong%3E%206.8%22%20edge%20quad-HD%2B%20dynamic%20Amoled%202X%2C%20Infinity-O%2C%203088%20x%201440%2C%20500ppi%2C%20HDR10%2B%2C%20120Hz%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EProcessor%3A%3C%2Fstrong%3E%204nm%20Qualcomm%20Snapdragon%208%20Gen%202%2C%2064-bit%20octa-core%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EMemory%3A%3C%2Fstrong%3E%208%2F12GB%20RAM%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStorage%3A%3C%2Fstrong%3E%20128%2F256%2F512GB%2F1TB%20(only%20128GB%20has%20an%208GB%20RAM%20option)%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EPlatform%3A%3C%2Fstrong%3E%20Android%2013%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EMain%20camera%3A%3C%2Fstrong%3E%20quad%2012MP%20ultra-wide%20f%2F2.2%20%2B%20200MP%20wide%20f%2F1.7%20%2B%2010MP%20telephoto%20f%2F4.9%20%2B%2010MP%20telephoto%202.4%3B%203x%2F10x%20optical%20zoom%2C%20Space%20Zoom%20up%20to%20100x%3B%20auto%20HDR%2C%20expert%20RAW%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EVideo%3A%3C%2Fstrong%3E%208K%4024%2F30fps%2C%204K%4060fps%2C%20full-HD%4060fps%2C%20HD%4030fps%2C%20full-HD%20super%20slo-mo%40960fps%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EFront%20camera%3A%3C%2Fstrong%3E%2012MP%20f%2F2.2%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EBattery%3A%3C%2Fstrong%3E%205000mAh%2C%20fast%20wireless%20charging%202.0%2C%20Wireless%20PowerShare%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EConnectivity%3A%3C%2Fstrong%3E%205G%2C%20Wi-Fi%2C%20Bluetooth%205.2%2C%20NFC%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EI%2FO%3A%3C%2Fstrong%3E%20USB-C%3B%20built-in%20Galaxy%20S%20Pen%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ESIM%3A%3C%2Fstrong%3E%20single%20nano%20%2F%20nano%20%2B%20eSIM%20%2F%20nano%20%2B%20nano%20%2B%20eSIM%20%2F%20nano%20%2B%20nano%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EColours%3A%3C%2Fstrong%3E%20cream%2C%20green%2C%20lavender%2C%20phantom%20black%3B%20online%20exclusives%3A%20graphite%2C%20lime%2C%20red%2C%20sky%20blue%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EPrice%3A%3C%2Fstrong%3E%20Dh4%2C949%20for%20256GB%2C%20Dh5%2C449%20for%20512GB%2C%20Dh6%2C449%20for%201TB%3B%20128GB%20unavailable%20in%20the%20UAE%3C%2Fp%3E%0A
Desert Warrior

Starring: Anthony Mackie, Aiysha Hart, Ben Kingsley

Director: Rupert Wyatt

Rating: 3/5

The Sand Castle

Director: Matty Brown

Stars: Nadine Labaki, Ziad Bakri, Zain Al Rafeea, Riman Al Rafeea

Rating: 2.5/5

Key facilities
  • Olympic-size swimming pool with a split bulkhead for multi-use configurations, including water polo and 50m/25m training lanes
  • Premier League-standard football pitch
  • 400m Olympic running track
  • NBA-spec basketball court with auditorium
  • 600-seat auditorium
  • Spaces for historical and cultural exploration
  • An elevated football field that doubles as a helipad
  • Specialist robotics and science laboratories
  • AR and VR-enabled learning centres
  • Disruption Lab and Research Centre for developing entrepreneurial skills
WHAT%20IS%20'JUICE%20JACKING'%3F
%3Cp%3E%E2%80%A2%20Juice%20jacking%2C%20in%20the%20simplest%20terms%2C%20is%20using%20a%20rogue%20USB%20cable%20to%20access%20a%20device%20and%20compromise%20its%20contents%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20The%20exploit%20is%20taken%20advantage%20of%20by%20the%20fact%20that%20the%20data%20stream%20and%20power%20supply%20pass%20through%20the%20same%20cable.%20The%20most%20common%20example%20is%20connecting%20a%20smartphone%20to%20a%20PC%20to%20both%20transfer%20data%20and%20charge%20the%20former%20at%20the%20same%20time%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20The%20term%20was%20first%20coined%20in%202011%20after%20researchers%20created%20a%20compromised%20charging%20kiosk%20to%20bring%20awareness%20to%20the%20exploit%3B%20when%20users%20plugged%20in%20their%20devices%2C%20they%20received%20a%20security%20warning%20and%20discovered%20that%20their%20phones%20had%20paired%20to%20the%20kiosk%2C%20according%20to%20US%20cybersecurity%20company%20Norton%3C%2Fp%3E%0A%3Cp%3E%E2%80%A2%20While%20juice%20jacking%20is%20a%20real%20threat%2C%20there%20have%20been%20no%20known%20widespread%20instances.%20Apple%20and%20Google%20have%20also%20added%20security%20layers%20to%20prevent%20this%20on%20the%20iOS%20and%20Android%20devices%2C%20respectively%3C%2Fp%3E%0A
Updated: April 11, 2023, 8:01 AM