Overview
Wear resistant Keypad
Special coating covers the keys on the keypad which masks key usage that can be used to aid a potential attacker guess the most commonly used keys.
Certified Secure with FIPS Compliant Design
Full disk hardware encryption is just a start of keeping your data completely safe should it ever get into the wrong hands. While the hardware design is impenetrable we don’t stop there, all user data and crypto parameters are encrypted as well.
The SecureUSB® KP contain an independent processor, crypto processor as well as other security components to create a unique and patent pending design. Every vital piece of electronics is covered with a tough epoxy coating cementing the critical components in an indistinguishable solid capsule.
While this epoxy is effectively impossible to remove without destroying the independent components, it does not however affect the functionality of each component nor reduce the overall performance, it simply makes the electronics impossible to separate and reverse engineer.
OS and Platform Independent
The SecureUSB® KP will work on any host operating system (Microsoft Windows, MacOS, iOS, Linux, Chrome, Thin Clients, Zero Clients, Android & Embedded Systems). This means this is the perfect backup solution for DVRs, Game Consoles, Laptops, PCs, Servers, Workstations and any other device with USB ports. There are no drivers or software to update, all encryption and authentication is performed directly on the drive.
Preloaded with Antivirus
Keep your SecureUSB® KP virus free with a pre-loaded 1 year license for the USB Antivirus by ESET real-time Heuristic Scanning. Even if not connected to the internet the ESET engine will recognize malicious files based on a custom algorithm and deny saving them to the SecureUSB® KP. Unlike desktop antivirus software the USB Antivirus is designed for mobile devices and does not require any installation on the host system.
Full Disk Hardware Encryption
There is absolutely no communication between the host Operating System (Windows, Linux, MacOS or similar) and the drive until the User enters the correct PIN via on-board keypad. Only at this time will the USB controller be unlocked to initiate communication between the drive and host OS. Hardware encryption also eliminates loss in data read/write speeds unlike software based data encryption which can slow performance by 30% or more. Even if the hard drive is extracted from the enclosure starting at sector 0 all data is encrypted all the way to the last Logical Block, rest assured there is no way to decrypt the data without the 256-bit key.
256 bit AES XTS Mode
The data encryption process consists of 14 different rounds of encryption to make your original data unrecognizable to an unauthorized user. SecureUSB® KP encryption for data at rest is implemented using the XTS block cipher mode since it circumvents multiple weaknesses of the older AES modes, such as CBC and ECB.
USB 3.0 Super Speed
USB 3.0 uses two unidirectional data paths: one to receive data and the other to transmit. The “SuperSpeed” bus provides for a transfer mode at a nominal rate of 5.0 Gbit/s while being backwards compatible with USB 2.0 for older hardware.
Brute Force Anti-Hacking Self Destruct Feature
Entering an incorrect password ten consecutive times will trigger the brute force hacking detection which will crypto-erase the passwords, all User data and drive formatting. The drive will remain functional but will require reformatting and all data which resided on the device including any identifiable user parameters will be unrecoverable.
IMPORTANT – If the User PIN is forgotten there are no techniques to retrieve the key. There are absolutely no back-doors and all data will be erased permanently.
BadUSB Protection
Since the SecureUSB® KP is hardware encrypted the USB controller is locked until it correct user pin is entered. This unique design does not allow for any malicious firmware modifications/updates preventing the BadUSB exploit.
Admin and User modes
Setting up an Admin PIN will allow the Admin to regain access to the data if the User is no longer available and well as set policies such as Read-Only and Inactivity AutoLock.
Read Only Mode
Optional Read-Only mode prevents Writing, Deleting, Saving or editing any Files to the device until Read/Write is enabled.
Bootable Drive
Saving a boot files and drivers required to load a PC, Laptop or Workstation on a SECUREUSB® KP® will keep your system image fully encrypted until you’re ready to load the machine. Upon successful User Authentication the SecureUSB® KP performs identical to a non-secure USB or Hard Drive.
Inactivity AutoLock
To protect against unauthorized access when the drive is connected to a host computer and unattended, the Drive can be set to automatically lock after a pre-set amount of time of inactivity. The default state of the Inactivity Lock is OFF. This feature can be set to activate (lock) at predefined times between 1 and 60 minutes.