三级aa视频在线观看-三级国产-三级国产精品一区二区-三级国产三级在线-三级国产在线

English 中文網(wǎng) 漫畫(huà)網(wǎng) 愛(ài)新聞iNews 翻譯論壇
中國(guó)網(wǎng)站品牌欄目(頻道)
當(dāng)前位置: Language Tips> 閱讀天地> 新聞選讀

黑客令A(yù)TM機(jī)自動(dòng)吐鈔
Hacker ATM attacks show security holes

[ 2010-08-02 13:40]     字號(hào) [] [] []  
免費(fèi)訂閱30天China Daily雙語(yǔ)新聞手機(jī)報(bào):移動(dòng)用戶編輯短信CD至106580009009

上周,在美國(guó)拉斯韋加斯舉行的電腦安全專業(yè)大會(huì)“黑帽大會(huì)”上,一位計(jì)算機(jī)黑客向觀眾展示了不用銀行卡就能讓ATM機(jī)瘋狂吐鈔的“絕技”,讓現(xiàn)場(chǎng)觀眾看得目瞪口呆。這位黑客名叫杰克,其實(shí)是一位資深的計(jì)算機(jī)安全研究人員,他花了兩年的時(shí)間研究各種獨(dú)立ATM機(jī),并找到了這些設(shè)備的漏洞。他發(fā)現(xiàn)同一廠商制造的同一型號(hào)ATM機(jī)使用的鑰匙都是一樣的,他在展示時(shí)用鑰匙打開(kāi)一臺(tái)ATM里含有標(biāo)準(zhǔn)USB裝置的部件,插入他自己寫(xiě)的破解程序,然后順利操控ATM電腦,讓機(jī)器自己吐出鈔票。杰克展示的另一種攻擊方式則更具威脅性,他是通過(guò)網(wǎng)絡(luò)對(duì)ATM系統(tǒng)進(jìn)行遠(yuǎn)程操控,利用ATM廠商與ATM機(jī)網(wǎng)絡(luò)連接中的漏洞入侵ATM機(jī)的電腦系統(tǒng),不用任何密碼便能自如操控ATM機(jī)。杰克在會(huì)上沒(méi)有深入說(shuō)明入侵ATM方法的具體操作細(xì)節(jié),以及涉及的ATM廠商。他強(qiáng)調(diào),他“不是在教大家破解ATM機(jī) ”,而是要讓ATM廠商提高警覺(jué)。

黑客令A(yù)TM機(jī)自動(dòng)吐鈔

黑客令A(yù)TM機(jī)自動(dòng)吐鈔

A hacker has discovered a way to force ATMs to disgorge their cash by hijacking the computers inside them.

A hacker has discovered a way to force ATMs to disgorge their cash by hijacking the computers inside them.

The attacks demonstrated Wednesday targeted standalone ATMs. But they could potentially be used against the ATMs operated by mainstream banks.

Computer hacker Barnaby Jack spent two years tinkering in his Silicon Valley apartment with ATMs he bought online. These were standalone machines, the type seen in front of convenience stores, rather than the ones in bank branches.

His goal was to find ways to take control of ATMs by exploiting weaknesses in the computers that run the machines.

He showed off his results here at the Black Hat conference, an annual gathering devoted to exposing the latest computer-security vulnerabilities.

His attacks have wide implications because they affect multiple types of ATMs and exploit weaknesses in software and security measures that are used throughout the industry.

Jack, who works as director of security research for Seattle-based IOActive Inc, showed in a theatrical demonstration two ways he can get ATMs to spit out money:

- He found that the physical keys that came with his machines were the same for all ATMs of that type made by that manufacturer. He figured this out by ordering three ATMs from different manufacturers for a few thousand dollars each. Then he compared the keys he got to pictures of other keys, found on the internet.

He used his key to unlock a compartment in the ATM that had standard USB slots. He inserted a program he had written into one of them, commanding the ATM to dump its vaults.

- He hacked into the machines by exploiting weaknesses in the way ATM makers communicate with the machines over the internet. Jack said the problem is that outsiders are permitted to bypass the need for a password. He didn't go into much more detail because he said the goal of his talk "isn't to teach everybody how to hack ATMs. It's to raise the issue and have ATM manufacturers be proactive about implementing fixes."

The remote style of attack is more dangerous because an attacker doesn't need to open up the ATMs.

It allows an attacker to gain full control of the ATMs and not only order it to spit out money, but also to silently harvest card data from anyone who uses the machines. It also affects more than just the standalone ATMs vulnerable to the physical attack, and could potentially be used against the kinds of ATMs used by mainstream banks.

Jack said he didn't think he'd be able to break the ATMs when he first started probing them.

Jack said the manufacturers whose machines he studied are deploying software fixes for both vulnerabilities, but added that the prevalence of remote-management software broadly opens up ATMs to hacker attacks.

相關(guān)閱讀

法男子入侵奧巴馬微博賬號(hào)被捕

英一提款機(jī)雙倍吐錢(qián) 百人排隊(duì)取款

(Agencies)

黑客令A(yù)TM機(jī)自動(dòng)吐鈔

(中國(guó)日?qǐng)?bào)網(wǎng)英語(yǔ)點(diǎn)津 Helen 編輯)

 
中國(guó)日?qǐng)?bào)網(wǎng)英語(yǔ)點(diǎn)津版權(quán)說(shuō)明:凡注明來(lái)源為“中國(guó)日?qǐng)?bào)網(wǎng)英語(yǔ)點(diǎn)津:XXX(署名)”的原創(chuàng)作品,除與中國(guó)日?qǐng)?bào)網(wǎng)簽署英語(yǔ)點(diǎn)津內(nèi)容授權(quán)協(xié)議的網(wǎng)站外,其他任何網(wǎng)站或單位未經(jīng)允許不得非法盜鏈、轉(zhuǎn)載和使用,違者必究。如需使用,請(qǐng)與010-84883631聯(lián)系;凡本網(wǎng)注明“來(lái)源:XXX(非英語(yǔ)點(diǎn)津)”的作品,均轉(zhuǎn)載自其它媒體,目的在于傳播更多信息,其他媒體如需轉(zhuǎn)載,請(qǐng)與稿件來(lái)源方聯(lián)系,如產(chǎn)生任何問(wèn)題與本網(wǎng)無(wú)關(guān);本網(wǎng)所發(fā)布的歌曲、電影片段,版權(quán)歸原作者所有,僅供學(xué)習(xí)與研究,如果侵權(quán),請(qǐng)?zhí)峁┌鏅?quán)證明,以便盡快刪除。
 

關(guān)注和訂閱

人氣排行

翻譯服務(wù)

中國(guó)日?qǐng)?bào)網(wǎng)翻譯工作室

我們提供:媒體、文化、財(cái)經(jīng)法律等專業(yè)領(lǐng)域的中英互譯服務(wù)
電話:010-84883468
郵件:translate@chinadaily.com.cn
 
 
主站蜘蛛池模板: 国产三级视频在线播放 | 成人自拍偷拍 | 在线不卡一区二区三区日韩 | 久热精品视频在线观看99小说 | 一级特级欧美午夜片免费观看 | 国产精品亚洲欧美大片在线看 | 黄色网在线看 | 黄色福利在线观看 | 亚洲夜色| 国产高清精品一区 | 日韩aⅴ在线观看 | 亚洲制服另类 | 女同视频一区二区在线观看 | 大杳蕉精品视频在线观看 | 香蕉97超级碰碰碰碰碰久 | 国产毛片一级国语版 | 国产精品亚洲欧美日韩区 | 国产精品一区二区综合 | 成人毛片100部免费看 | 色综合天天综合网国产成人网 | 亚洲国产第一区二区三区 | 99久久亚洲综合精品网站 | 亚洲欧美日韩中文字幕一区二区三区 | 综合久久久久久中文字幕 | 亚洲成人免费网站 | 久久免费毛片 | 国产精品美女自在线观看免费 | 欲色影视天天一区二区三区色香欲 | 久久久久久久91精品免费观看 | 看黄免费在线 | 精品欧美一区二区三区在线观看 | 欧美一级毛片欧美毛片视频 | 一区两区三不卡 | 三级黄色免费网站 | 哪里可以看黄色播放免费 | 日本特黄特色大片免费视频 | 欧美人成人亚洲专区中文字幕 | 国产在线精品二区韩国演艺界 | 中国黄色www | 国产精品福利片 | 日韩视频一区 |