{"id":13791481,"url":"https://github.com/thereisnotime/xxUSBSentinel","last_synced_at":"2025-05-12T14:30:45.777Z","repository":{"id":48065032,"uuid":"145916008","full_name":"thereisnotime/xxUSBSentinel","owner":"thereisnotime","description":"Windows anti-forensics USB monitoring tool.","archived":false,"fork":false,"pushed_at":"2023-02-17T08:48:33.000Z","size":3007,"stargazers_count":64,"open_issues_count":4,"forks_count":14,"subscribers_count":2,"default_branch":"master","last_synced_at":"2024-11-18T06:40:58.534Z","etag":null,"topics":["anti-forensic","anti-forensics","monitoring-tool","opsec","privacy-tools","secops","security","security-tools","usb","usb-devices","windows"],"latest_commit_sha":null,"homepage":null,"language":"C#","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":null,"status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/thereisnotime.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":null,"code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null}},"created_at":"2018-08-23T22:59:09.000Z","updated_at":"2024-11-05T15:16:59.000Z","dependencies_parsed_at":"2024-01-07T01:42:48.320Z","dependency_job_id":"cd010a8f-e073-4fea-a25e-004c8d023e7d","html_url":"https://github.com/thereisnotime/xxUSBSentinel","commit_stats":null,"previous_names":[],"tags_count":1,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/thereisnotime%2FxxUSBSentinel","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/thereisnotime%2FxxUSBSentinel/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/thereisnotime%2FxxUSBSentinel/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/thereisnotime%2FxxUSBSentinel/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/thereisnotime","download_url":"https://codeload.github.com/thereisnotime/xxUSBSentinel/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":253754959,"owners_count":21958933,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["anti-forensic","anti-forensics","monitoring-tool","opsec","privacy-tools","secops","security","security-tools","usb","usb-devices","windows"],"created_at":"2024-08-03T22:01:00.872Z","updated_at":"2025-05-12T14:30:41.327Z","avatar_url":"https://github.com/thereisnotime.png","language":"C#","funding_links":[],"categories":["Tools"],"sub_categories":["Hardware"],"readme":"# xxUSBSentinel\n\n### Description ###\nWindows anti-forensics USB monitoring tool. First you map a Key USB device - it can be a mouse, keyboard, flash drive etc. It will ask you to plug and unplug your device. Then the program remembers the device ID (VID:PID). After that you can arm the Sentinel and it would listen for device disconnect events and if your Key USB device is unplugged - xxUSBSentinel will shutdown your computer the fast way. The whole purpose of that is to make recovering your encrypted drive keys almost impossible.\n\n* WARNING: This software will not encrypt or protect your data/drives, its only aim is to help you improve your operation security.\n \n### Features ###\n- Monitor and log all types of USB devices connecting and disconnecting\n- Export logs to file\n- Resolve device VID:PID \n- Map a device to be a Key USB device\n- Fast shutdown on Key USB device unplug\n- Control everything from GUI or from the traybar icon\n- Test mode option for practice\n\n### Screenshots ###\n![Screenshot1](/Screenshots/Screenshot_1.jpg?raw=true \"Default mode.\")\n![Screenshot2](/Screenshots/Screenshot_2.jpg?raw=true \"Armed and ready.\")\n![Screenshot3](/Screenshots/Screenshot_3.jpg?raw=true \"Resolving a device.\")\n![Screenshot4](/Screenshots/Screenshot_4.jpg?raw=true \"Tray icon functionality.\")\n\n### Installation ###\nNo installation is needed, download release or build it yourself.\n\n### Dependencies ###\nCurrently it depends on LibUsbDotNet, but in future releases the library will be packed with the executable:\n```sh\nLibUsbDotNet.dll\n````\n\n### Compatability ###\nThe should work on most Windows versions and has been tested on the following:\n```sh\nWindows 10 Home x64\n``` \n\n### Todo ###\nAdd RAM, hiberfil, pagefile and swapfile secure wiping.\nAdd fake BSOD.\nAdd configuration saving.\nAdd option for custom commands instead of shutdown.\nPack libraries with release executable.\n\n### Uninstall ###\nDelete the executable.\n\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fthereisnotime%2FxxUSBSentinel","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fthereisnotime%2FxxUSBSentinel","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fthereisnotime%2FxxUSBSentinel/lists"}