当前位置:主页>产 业>业界新闻>

苹果秋季将推iOS 7软件更新修复伪劣充电器漏洞

元器件交易网讯 8月1日消息,据外媒路透社报道,鉴于苹果手机使用伪劣充电器遭黑的问题,该公司发布iOS 7软件更新来修补其漏洞,该款软件将于秋季推出。

三位计算机专家周三在拉斯维加斯黑帽安全大会上,研究人员演示了这个漏洞,在场的有7000位安全专家了解了计算机黑客构成的最新威胁。

此次大会上,他们作一个演示,把iPhone插在一个定制的充电器上, 然后配备一个微型的编程Linux计算机来攻击iOS设备。他们称价格是45美元,需要一周时间来设计。(元器件交易网董蕾 译)

外媒原文如下:

Apple fixing bug that allows fake charging stations to hack iPhones

Apple"s devices are vulnerable to attacks until the company releases its iOS 7 software update, which is slated for this fall.

Three computer scientists, who alerted Apple to the problem earlier this year, demonstrated the security vulnerability at the Black Hat hacking convention in Las Vegas on Wednesday where some 7,000 security professionals are learning about the latest threats posed by computer hacking.

Apple said the issue had been fixed in the latest beta of iOS 7, which has already been released to software developers.

"We would like to thank the researchers for their valuable input," Apple spokesman Tom Neumayr said.

The work was done by Billy Lau, a research scientist at the Georgia Institute of Technology, and graduate students Yeongjin Jang and Chengyu Song.

In a demonstration at the hacking conference, they plugged an iPhone into a custom-built charger they equipped with a tiny Linux computer that was programmed to attack iOS devices. They said it cost about $45 to buy and a week to design.

It infected the phone with a computer virus designed to dial the phone of one of the researchers, which it did.

They said that real-world cyber criminals might build viruses that would give them remote control of the devices. That would enable them to take screen shots for stealing banking passwords and credit card numbers. They could also access emails, texts and contact information or track the location of the phone"s owner, Lau said.

"It can become a spying tool," said Lau.

Lau said they were publicizing the issue in the spirit of "white hat" hacking, which is finding security bugs so that manufacturers can fix them before criminals exploit them.

"Security doesn"t work if you bury problems," he told Reuters on the sidelines of the press conference.

Lau said that devices running Google Inc"s Android operating system are not vulnerable to the same types of attack because they warn users if they plug devices into a computer, even one posing as a charging station.

After Apple"s iOS 7 software update, a message will pop up to alert the user that they are connecting to a computer, not an ordinary charger, he said.

(责任编辑:)

分享到:

更多
发表评论
请自觉遵守互联网相关的政策法规,严禁发布色情、暴力、反动的言论。
评价:
表情:
  • 微笑/wx
  • 撇嘴/pz
  • 抓狂/zk
  • 流汗/lh
  • 大兵/db
  • 奋斗/fd
  • 疑问/yw
  • 晕/y
  • 偷笑/wx
  • 可爱/ka
  • 傲慢/am
  • 惊恐/jk
用户名: 验证码:点击我更换图片
资料下载专区
图文资讯

中国重启银行业安全新规 下月征集意见

中国重启银行业安全新规 下月征集意见

8月19日,路透社今日援引知情人士的消息称,中国将重启银行业安全新规。在此之前,该...[详细]

网络安全准则还需“下一步”

网络安全准则还需“下一步”

近日,联合国信息安全问题政府专家组召开会议,并向联合国秘书长提交报告。专家组包括...[详细]

用大数据为互联网金融保驾护航

用大数据为互联网金融保驾护航

近日,在2015上海新金融年会暨外滩互联网金融外滩峰会上,中国人民银行条法司司长张涛...[详细]

互联网深刻变革:世界正向黑客帝国演进

互联网深刻变革:世界正向黑客帝国演进

2015年中国互联网大会于7月23日在北京国家会议中心闭幕了,很显然,由于去年办过一次...[详细]

《网络安全法》有望在三季度出台

《网络安全法》有望在三季度出台

2015年,第十二届全国人大常委会第十五次会议初次审议了《中华人民共和国网络安全法(...[详细]

返回首页 返回顶部