English 中文網(wǎng) 漫畫網(wǎng) 愛新聞iNews 翻譯論壇
中國網(wǎng)站品牌欄目(頻道)
當(dāng)前位置: Language Tips> 閱讀天地> 新聞選讀

黑客令A(yù)TM機(jī)自動吐鈔
Hacker ATM attacks show security holes

[ 2010-08-02 13:40]     字號 [] [] []  
免費訂閱30天China Daily雙語新聞手機(jī)報:移動用戶編輯短信CD至106580009009

上周,在美國拉斯韋加斯舉行的電腦安全專業(yè)大會“黑帽大會”上,一位計算機(jī)黑客向觀眾展示了不用銀行卡就能讓ATM機(jī)瘋狂吐鈔的“絕技”,讓現(xiàn)場觀眾看得目瞪口呆。這位黑客名叫杰克,其實是一位資深的計算機(jī)安全研究人員,他花了兩年的時間研究各種獨立ATM機(jī),并找到了這些設(shè)備的漏洞。他發(fā)現(xiàn)同一廠商制造的同一型號ATM機(jī)使用的鑰匙都是一樣的,他在展示時用鑰匙打開一臺ATM里含有標(biāo)準(zhǔn)USB裝置的部件,插入他自己寫的破解程序,然后順利操控ATM電腦,讓機(jī)器自己吐出鈔票。杰克展示的另一種攻擊方式則更具威脅性,他是通過網(wǎng)絡(luò)對ATM系統(tǒng)進(jìn)行遠(yuǎn)程操控,利用ATM廠商與ATM機(jī)網(wǎng)絡(luò)連接中的漏洞入侵ATM機(jī)的電腦系統(tǒng),不用任何密碼便能自如操控ATM機(jī)。杰克在會上沒有深入說明入侵ATM方法的具體操作細(xì)節(jié),以及涉及的ATM廠商。他強調(diào),他“不是在教大家破解ATM機(jī) ”,而是要讓ATM廠商提高警覺。

黑客令A(yù)TM機(jī)自動吐鈔

黑客令A(yù)TM機(jī)自動吐鈔

A hacker has discovered a way to force ATMs to disgorge their cash by hijacking the computers inside them.

A hacker has discovered a way to force ATMs to disgorge their cash by hijacking the computers inside them.

The attacks demonstrated Wednesday targeted standalone ATMs. But they could potentially be used against the ATMs operated by mainstream banks.

Computer hacker Barnaby Jack spent two years tinkering in his Silicon Valley apartment with ATMs he bought online. These were standalone machines, the type seen in front of convenience stores, rather than the ones in bank branches.

His goal was to find ways to take control of ATMs by exploiting weaknesses in the computers that run the machines.

He showed off his results here at the Black Hat conference, an annual gathering devoted to exposing the latest computer-security vulnerabilities.

His attacks have wide implications because they affect multiple types of ATMs and exploit weaknesses in software and security measures that are used throughout the industry.

Jack, who works as director of security research for Seattle-based IOActive Inc, showed in a theatrical demonstration two ways he can get ATMs to spit out money:

- He found that the physical keys that came with his machines were the same for all ATMs of that type made by that manufacturer. He figured this out by ordering three ATMs from different manufacturers for a few thousand dollars each. Then he compared the keys he got to pictures of other keys, found on the internet.

He used his key to unlock a compartment in the ATM that had standard USB slots. He inserted a program he had written into one of them, commanding the ATM to dump its vaults.

- He hacked into the machines by exploiting weaknesses in the way ATM makers communicate with the machines over the internet. Jack said the problem is that outsiders are permitted to bypass the need for a password. He didn't go into much more detail because he said the goal of his talk "isn't to teach everybody how to hack ATMs. It's to raise the issue and have ATM manufacturers be proactive about implementing fixes."

The remote style of attack is more dangerous because an attacker doesn't need to open up the ATMs.

It allows an attacker to gain full control of the ATMs and not only order it to spit out money, but also to silently harvest card data from anyone who uses the machines. It also affects more than just the standalone ATMs vulnerable to the physical attack, and could potentially be used against the kinds of ATMs used by mainstream banks.

Jack said he didn't think he'd be able to break the ATMs when he first started probing them.

Jack said the manufacturers whose machines he studied are deploying software fixes for both vulnerabilities, but added that the prevalence of remote-management software broadly opens up ATMs to hacker attacks.

相關(guān)閱讀

法男子入侵奧巴馬微博賬號被捕

英一提款機(jī)雙倍吐錢 百人排隊取款

(Agencies)

黑客令A(yù)TM機(jī)自動吐鈔

(中國日報網(wǎng)英語點津 Helen 編輯)

 
中國日報網(wǎng)英語點津版權(quán)說明:凡注明來源為“中國日報網(wǎng)英語點津:XXX(署名)”的原創(chuàng)作品,除與中國日報網(wǎng)簽署英語點津內(nèi)容授權(quán)協(xié)議的網(wǎng)站外,其他任何網(wǎng)站或單位未經(jīng)允許不得非法盜鏈、轉(zhuǎn)載和使用,違者必究。如需使用,請與010-84883631聯(lián)系;凡本網(wǎng)注明“來源:XXX(非英語點津)”的作品,均轉(zhuǎn)載自其它媒體,目的在于傳播更多信息,其他媒體如需轉(zhuǎn)載,請與稿件來源方聯(lián)系,如產(chǎn)生任何問題與本網(wǎng)無關(guān);本網(wǎng)所發(fā)布的歌曲、電影片段,版權(quán)歸原作者所有,僅供學(xué)習(xí)與研究,如果侵權(quán),請?zhí)峁┌鏅?quán)證明,以便盡快刪除。
 

關(guān)注和訂閱

人氣排行

翻譯服務(wù)

中國日報網(wǎng)翻譯工作室

我們提供:媒體、文化、財經(jīng)法律等專業(yè)領(lǐng)域的中英互譯服務(wù)
電話:010-84883468
郵件:translate@chinadaily.com.cn
 
 
主站蜘蛛池模板: 免费无码又爽又刺激高潮| 国产精品综合在线| 久久精品国产亚洲7777| 瓮红电影三级在线播放| 国产乱理伦片在线观看播放| 91国高清视频| 少妇丰满大乳被男人揉捏视频 | 人妻少妇一区二区三区| 视频在线观看国产| 国产精品亚洲小说专区| www.99在线| 无翼乌全彩绅士知可子无遮挡| 亚洲午夜久久久影院伊人| 男女做污污无遮挡激烈免费| 国产传媒在线播放| youjizz欧美| 在线免费小视频| 一区二区三区视频免费| 日本亚洲色大成网站www久久| 亚洲国产精品久久久天堂| 男女一边摸一边爽爽视频 | 一级黄色在线看| 日本爽爽爽爽爽爽在线观看免 | 奇米视频888| 中文字幕日本电影| 日韩午夜免费论理电影网| 亚洲国产成人91精品| 波多野结衣教室| 午夜一区二区三区| 蝌蚪网站免费观看| 国产无遮挡又黄又爽在线观看 | 岳代理孕妇在线风间由美| 久久亚洲日韩精品一区二区三区| 欧美乱大交xxxxx在线观看| 亚洲美国产亚洲av| 福利网址在线观看| 向日葵视频app免费下载| 西西人体大胆扒开瓣| 国产成人综合久久精品红| 3d玉蒲团之极乐宝鉴| 大陆一级毛片免费视频观看|