I-Pwn2Own 2021 okhuphisana nayo iphumelele i-100.000 yeedola yokugenca iSafari

Pwn2Yenziwe

Kwiithelevishini zelizwe lethu siziqhelanise nokubona olona khuphiswano lungaqhelekanga nolwahlukileyo. Kude kwi "1,2,3 phendula kwakhona" kunye "noburharha obumthubi" baseJapan, namhlanje siyazonwabisa ngokubukela i-blockbusters yabantu abadumileyo kwiziqithi ezizimeleyo, okanye izinto ezinjalo.

Kukho ukhuphiswano lonyaka oluhlala lungaqapheleki kuthi, kodwa lulandelayo olukhulu kwihlabathi liphela. I malunga "Pwn2Yenziwe«, Apho abaduni abadumileyo babekwa kuvavanyo ngokubenza ukuba" baphile "kwiinkqubo ezahlukeneyo zihlala. Omnye wabo ufumene i-nip elungileyo ngokuqhekeza ukuxhaphaza kweSafari.

Qho ngonyaka, iphulo i-Zero Day Initiative liququzelela ukhuphiswano lokuqhekeza olubizwa ngokuba yi "Pwn2Own" apho abaphandi bezokhuseleko banokufumana imali xa befumana ukuba sesichengeni kakhulu bahlala kumaqonga aphambili anje ngala IWindows kunye neMacOS.

Lo msitho ubonakalayo "Pwn2Own 2021" uqalwe ekuqaleni kwale veki kwaye waboniswa I-23 iinzame zokuqhekeza Yahlulwe kwiimveliso ezili-10 ezahlukeneyo, kubandakanya izikhangeli zewebhu, ubuchule, iiseva, nokunye okuninzi. Ukhuphiswano oluhlala iiyure ezininzi ngosuku iintsuku ezintathu zilandelelana, sasaza ngqo kwiYouTube.

Iinkqubo zika-Apple azange zihlaselwe ngamandla kolu hlelo lomncintiswano, kodwa kusuku lokuqala, Imihla kaJack Iinkqubo zeRET2 zibaleke ukuxhaphaza iSafari "ukuya kwi-kernel zero-day" kwaye yaphumelela IRandi ye100.000. Sebenzisa ukugcwala kwenani elipheleleyo eSafari kunye nesikripthi se-OOB ukufumana ikhowudi kwinqanaba lenkozo, njengoko kungqinisisiwe weposi yombutho.

Abazange batyhalele iSafari kuphela

Olunye uvavanyo lokugenca ngexesha lomsitho we "Pwn2Own" ojolise kuTshintshiselwano lweMicrosoft, ukufana, Windows 10, Amaqela eMicrosoft, Ubuntu, Oracle VirtualBox, Zoom, Google Chrome, kunye neMicrosoft Edge, ukufumana ubutyebi obuninzi okanye obuncinci.

Umzekelo, abaphandi abangamaDatshi uDaan Keuper kunye noThijs Alkemade, babonakalise ukungalunganga kwezokhuseleko Zoom. I-duo ixhaphaze i-trio yeziphene ukufumana ulawulo olupheleleyo lwe-PC ekujolise kuyo usebenzisa i-Zoom app ngaphandle kokunxibelelana nomsebenzisi.

Pwn2Own abagqatswa abafumene ngaphezulu 1,2 iidola ezigidi kwimivuzo yeempazamo abazifumeneyo. I-Pwn2Own inika abathengisi abanjengeentsuku ezingama-90 ze-Apple ukuba bavelise ukulungiswa kobungozi obufunyenweyo, ke sinokulindela ukuba ibug ibhekiswe kuhlaziyo oluzayo.


Umxholo wenqaku uyabambelela kwimigaqo yethu imigaqo yokuziphatha yokuhlela. Ukuxela impazamo cofa apha.

Yiba ngowokuqala ukuphawula

Shiya uluvo lwakho

Idilesi yakho ye email aziyi kupapashwa. ezidingekayo ziphawulwe *

*

*

  1. Uxanduva lwedatha: UMiguel Ángel Gatón
  2. Injongo yedatha: Ulawulo lwe-SPAM, ulawulo lwezimvo.
  3. Umthetho: Imvume yakho
  4. Unxibelelwano lwedatha: Idatha ayizukuhanjiswa kubantu besithathu ngaphandle koxanduva lomthetho.
  5. Ukugcinwa kweenkcukacha
  6. Amalungelo: Ngalo naliphi na ixesha unganciphisa, uphinde uphinde ucime ulwazi lwakho.