Comment Re:USB 4.x to offer signed USB device signatures?? (Score 1) 205
There are much worse threats. Thunderbolt and Firewire give the device full access to RAM, with no protection at all. For over a decade companies have been making Firewire and now Thunderbolt devices that dump a running PC's memory for forensic analysis, complete with any encryption keys and passwords that happen to be there. Law enforcement loves them because even if the computer is locked or the user logged out when they get there most operating systems auto-configure newly plugged in devices. Thunderbolt allows pre-boot attacks as well (including cold boot key recovery).
The only way to solve this problem is to train people not plug random stuff into their computers, and to disable Thunderbolt and Firewire ports. Plugging in a random USB memory stick is a risk and many people are starting to understand that, so we just need to extend it to cover all USB devices.