Tartame Pwn2Own 2021 wuxuu ku guuleystey $ 100.000 jabsiga Safari

Milkiile2

Telefishinnada dalkeenna waxaan u baranay inaan ku aragno tartamada ugu yaabka badan uguna kala duwan. Ka fog "jawaabta 1,2,3 markale" iyo "kaftanka jaallaha ah" ee Jabbaan, maanta waxaan isku maaweelinaynaa innaga oo daawaneyna baarayaal caan ku ah dadka caanka ah ee ku go'doonsan jasiiradaha cidlada ah, ama waxyaabo la mid ah.

Waxaa jira tartan sanadle ah oo inta badan aan la dareemin, laakiin leh taageerayaal aad u tiro badan adduunka oo dhan. Ku saabsan "Milkiile2", Halka jabsadayaasha ugu caansan lagu tijaabiyo iyaga oo ka dhigaya" qarxiya "nidaamyo kala duwan oo nool. Midkood ayaa ku kasbaday qanjaruufo fiican jabsashada ka faa'iideysiga Safari.

Sannad kasta, Mashruuca 'Zero Day Initiative' wuxuu abaabulaa tartan loo yaqaan 'hacking' oo loo yaqaan "Pwn2Own" halkaas oo cilmi-baarayaasha amniga ay lacag ka heli karaan haddii ay u arkaan nuglaansho daran oo ku nool meheradaha waaweyn sida Windows iyo macOS.

Dhacdadan dalwaddii ah "Pwn2Own 2021" ayaa bilaabatay horraantii toddobaadkan waana lasoo bandhigay 23 isku day jabsiga loo kala saaray 10 badeecadood oo kala duwan, oo ay ku jiraan daalacayaasha shabakadda, ku shaqeynta, adeegyo, iyo kuwo kaloo badan Tartan soconaya dhowr saacadood maalintii seddex maalmood oo isku xigta, ayaa si toos ah looga sii daayaa YouTube.

Nidaamyada Apple si xoog leh looma weerarin koobkan tartanka, laakiin maalinta koowaad, Taariikhaha Jack RET2 Systems waxay ku shaqeysay Safari isticmaalkeeda "ilaa eber eber-maalin" wayna guuleysatay 100.000 Dollar. Waxaa loo adeegsaday tiro isku dhafan oo Safari ah iyo qoraalka OOB si loo helo koodh fulin heer kernel ah, sida lagu caddeeyay Tweet ururka.

Iyagu ma ahan oo keliya inay jabsadeen Safari

Isku day kale oo jabsiga ah intii lagu jiray "Pwn2Own" dhacdadu waxay bartilmaameedsatay Microsoft Exchange, Parallels, Windows 10, Microsoft Teams, Ubuntu, Oracle VirtualBox, Zoom, Google Chrome, iyo Microsoft Edge, iyagoo helayo wax ka yar ama ka yar.

Tusaale ahaan, Baarayaasha reer Holland ee Daan Keuper iyo Thijs Alkemade, waxay muujiyeen cillad daran oo xagga amniga ah Zoom. Labada shaqsi ayaa ka faa'iideystay seddex cilladood si ay si buuxda gacanta ugu hayaan PC bartilmaameedsanaya iyagoo adeegsanaya barnaamijka Zoom oo aan lahayn isdhexgalka isticmaalaha.

Tartamayaasha Pwn2Own ayaa helay 1,2 Milyan dollar abaalmarin ahaan khaladaadka ay ogaadeen. Pwn2Own waxay siinaysaa waratada sida Apple 90 maalmood si ay u soo saaraan cilad u nuglaanta la ogaaday, sidaa darteed waxaan filan karnaa in cayayaanka wax looga qabto cusbooneysiinta soo socota.


Iibso domain
Waxaad xiiseyneysaa:
Siraha sirta ah ee lagu furayo degelkaaga si guul leh

Ka tag faalladaada

cinwaanka email aan la daabacin doonaa. Beeraha loo baahan yahay waxaa lagu calaamadeeyay la *

*

*

  1. Masuul ka ah xogta: Miguel Ángel Gatón
  2. Ujeedada xogta: Xakamaynta SPAM, maaraynta faallooyinka.
  3. Sharci: Oggolaanshahaaga
  4. Isgaarsiinta xogta: Xogta looma gudbin doono dhinacyada saddexaad marka laga reebo waajibaadka sharciga ah.
  5. Kaydinta xogta: Macluumaadka ay martigelisay Shabakadaha Occentus (EU)
  6. Xuquuqda: Waqti kasta oo aad xadidi karto, soo ceshan karto oo tirtiri karto macluumaadkaaga.