Kufunyenwe ukuba semngciphekweni kweentsuku ezimbini zero kwi-Safari

Ukuxhaphaza eSafari

Iikhompyuter zeMac bezisoloko beziqhayisa, ubuncinci abasebenzisi bazo, ngokuba ukuzikhusela kwiintsholongwane, i-malware, i-spyaware kunye nezinye iindlela zokosulela izixhobo zekhompyutha. Oku akunjalo, kuba ekuphela kwesizathu sokuba abahlaseli bagxile kwiWindows, kwaye kungekhona i-OS X / macOS, ngenxa yesabelo sayo semarike emhlabeni jikelele.

Enyanisweni, kwiminyaka yakutshanje, kuya kuxhaphaka ukubona ukuba njani iMacOS ichatshazelwa lolu hlobo lwesoftware, efuna ukuthatha idatha yethu, ukulandelela umsebenzi wethu okanye ukufihla umxholo wekhompyutheni yethu yonke ngokutshintshiselana nentlawulelo (i-ransomware). Ukuthetha ngokhuseleko kunye ne-macOS, iqela labaduni lasebenzisa imisebenzi emibini yeentsuku zero kwiSafari Zero Day Initiative eyayibanjelwe eVancouver.

I-Zero-day explots zezo bezikhona kwisicelo ukusukela kwinguqulelo yayo yokugqibela, ngaphandle kokuba umphuhlisi uyazi ngalo naliphi na ixesha. Zombini ezi zinto zisetyenziselwa ukunyusa amalungelo kwi-macOS de ufumane ulawulo olupheleleyo.

Ukuxhaphaza eSafari

I-exploit yokuqala ivumela ukutsiba kwibhokisi yesanti, ukhuseleko olusetyenziswa yi-macOS ukuqinisekisa ukuba ii-apps zifikelela kuphela kwidatha yazo okanye nayiphi na idatha yenkqubo evunyelwa yi-Apple. Ngokusebenzisa oku kuxhaphaza, naluphi na ulwazi esilugcine kwikhompyuter yethu lunokufikelelwa kwi-browser ye-Safari. Oku kuxhaphaza kufunyenwe ngu-Amat Cama kunye noRichard Zhu abafumene ixabiso le-55.000 yeedola.

Ukuxhaphaza eSafari

Ukuxhaphaza okwesibini kuyingozi ngakumbi, kuba ivumela fumana ingcambu kunye ne-kernel ukufikelela kwi-Mac, ikuvumela ukuba uthathe ulawulo olupheleleyo lweqela. Oku kuxhaphazwa kwesibini kufunyenwe ngu @_niklasb @qwertyoruiopz kunye @bkth_ apho bakwazile ukufumana i-45.000 yeedola.

Safari rhoqo Ibe yenye yezona ndawo ziphambili zokufikelela kubageli. Kunyaka ophelileyo, ngexesha lokhuphiswano olwalubanjelwe eVancouver apho ezi zenzo zimbini zitsha zabhaqwayo, abanye abahlaseli babona enye i-exploit eyabavumela ukuba bathathe ulawulo lweTouch Bar kwiMacBook Pros, le yeyona nto yatsala ingqalelo enkulu. eziye zabhaqwa nakwi-browser ye-Apple.

Lo msitho, uxhaswe yiTrend Micro kwaye ubizwa ngokuba yiZero Day Initiative (ZDI) wenzelwe ukukhuthaza abaqweqwedisi ukuba bachaze ubuthathaka abadla ngokuyibona endaweni yokuba bazithengisele amaqela esithathu, nangona iyeyona ndlela ilungileyo yokufumana imali eninzi kakhulu kunala mabhaso, isixa esinyuka minyaka le.


Shiya uluvo lwakho

Idilesi yakho ye email aziyi kupapashwa. ezidingekayo ziphawulwe *

*

*

  1. Uxanduva lwedatha: UMiguel Ángel Gatón
  2. Injongo yedatha: Ulawulo lwe-SPAM, ulawulo lwezimvo.
  3. Umthetho: Imvume yakho
  4. Unxibelelwano lwedatha: Idatha ayizukuhanjiswa kubantu besithathu ngaphandle koxanduva lomthetho.
  5. Ukugcinwa kweenkcukacha
  6. Amalungelo: Ngalo naliphi na ixesha unganciphisa, uphinde uphinde ucime ulwazi lwakho.