{"id":177991,"date":"2019-12-03T12:28:31","date_gmt":"2019-12-03T12:28:31","guid":{"rendered":"https:\/\/bm.dev.synology.me\/?p=177991"},"modified":"2019-12-03T12:28:31","modified_gmt":"2019-12-03T12:28:31","slug":"cum-poti-sa-fii-atacat-de-hackeri-prin-soneria-de-la-usa","status":"publish","type":"post","link":"https:\/\/bm.dev.synology.me\/?p=177991","title":{"rendered":"Cum po\u0163i s\u0103 fii atacat de hackeri prin soneria de la u\u015f\u0103"},"content":{"rendered":"<p>\nO vulnerabilitate de securitate prezent\u0103 \u00een soneriile inteligente Ring Video Doorbell Pro, produse \u015fi comercializate de c\u0103tre magazinul online Amazon, ar fi permis atacatorilor afla\u0163i \u00een preajma acestora s\u0103 intercepteze datele de acces la re\u0163eaua wi-fi \u015fi deci la toate dispozitivele conectate din locuin\u0163\u0103, arat\u0103 o cercetare recent\u0103 a speciali\u015ftilor \u00een securitate informatic\u0103 de la Bitdefender, ale c\u0103ror rezultate au fost publicate \u00eentr-un comunicat de pres\u0103.<\/p>\n<p>\nPotrivit Bitdefender, soneriile Ring Video sunt unele dintre cele mai populare dispozitive din locuin\u0163ele inteligente \u015fi sunt dotate cu senzori de mi\u015fcare \u015fi capabilit\u0103\u0163i de supraveghere video ce permit utilizatorilor s\u0103 vad\u0103 \u015fi s\u0103 comunice printr-o aplica\u0163ie cu persoanele care sun\u0103 la u\u015f\u0103.<\/p>\n<p>\n<strong>Cum puteau controla atacatorii soneria<\/strong><\/p>\n<p>\nC\u00e2nd intr\u0103 \u00een modul de configurare, dispozitivul prime\u015fte datele de conectare la re\u0163eaua wi-fi de la aplica\u0163ia instalat\u0103 pe telefon. Pentru c\u0103 schimbul de date se face nesecurizat prin HTTP, creden\u0163ialele transmise sunt expuse c\u0103tre cei care intercepteaz\u0103 traficul.<\/p>\n<p>\nUn alt pas important \u00een exploatarea vulnerabilit\u0103\u0163ii e acela c\u0103 o persoan\u0103 r\u0103u inten\u0163ionat\u0103 poate declan\u015fa inclusiv reinstalarea soneriei de c\u0103tre utilizator. O modalitate este s\u0103 trimit\u0103 \u00een mod repetat mesaje de deconectare p\u00e2n\u0103 c\u00e2nd dispozitivul \u00eenceteaz\u0103 s\u0103 mai fie legat de re\u0163eaua wi-fi. \u00cen acel moment, aplica\u0163ia mobil\u0103 pierde conectivitatea \u015fi instruie\u015fte utilizatorul s\u0103 \u00ee\u015fi reconfigureze dispozitivul.<\/p>\n<p>\nLa momentul public\u0103rii acestui raport de cercetare, toate camerele Ring Doorbell Pro au primit o actualizare de securitate care s\u0103 repare vulnerabilitatea semnalat\u0103 celor de la Amazon de c\u0103tre speciali\u015ftii \u00een securitate informatic\u0103 de la Bitdefender. De-a lungul timpului, speciali\u015ftii de la Bitdefender au g\u0103sit vulnerabilit\u0103\u0163i \u00een numeroase dispozitive inteligente, precum prize electrice, becuri conectate, sisteme audio smart, routere, camere pentru monitorizarea bebelu\u015filor \u015fi alte tipuri de aparate de supraveghere video.<\/p>\n<p>\nSfaturi de securitate pentru dispozitive smart<\/p>\n<p>\n\u00b7&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u00cenainte de a cump\u0103ra dispozitivul, citi\u0163i recenzii ale produsului \u015fi afla\u0163i opiniile altor utilizatori legate de modul \u00een care func\u0163ioneaz\u0103. Verifica\u0163i frecven\u0163a cu care produc\u0103torul trimite actualiz\u0103ri de securitate.<\/p>\n<p>\n\u00b7&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Actualiza\u0163i dispozitivele inteligente cu cea mai recent\u0103 versiune a sistemului de operare.<\/p>\n<p>\n\u00b7&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Asigura\u0163i-v\u0103 c\u0103 toate dispozitivele au parole complexe sau c\u0103 au fost schimbate cele ini\u0163iale.<\/p>\n<p>\n\u00b7&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Utiliza\u0163i o solu\u0163ie de securitate destinat\u0103 protec\u0163iei echipamentelor smart.<\/p>\n<p>\nBitdefender a anun\u0163at produc\u0103torul dispozitivului men\u0163ionat anterior despre rezultatele cercet\u0103rii. Vulnerabilit\u0103\u0163ile identificate de c\u0103tre speciali\u015ftii \u00een securitate cibernetic\u0103 au fost comunicate \u00een concordan\u0163\u0103 cu politica Bitdefender de notificare \u015fi dezv\u0103luire a vulnerabilit\u0103\u0163ilor. Potrivit acesteia, furnizorii sunt \u00een\u015ftiin\u0163a\u0163i \u00een scris despre descoperiri \u015fi sunt \u00eencuraja\u0163i s\u0103 remedieze erorile \u015fi defec\u0163iunile din produsele semnalate. La 90 de zile dup\u0103 comunicarea ini\u0163ial\u0103, rezultatele cercet\u0103rii sunt transmise publicului larg.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>O vulnerabilitate de securitate prezent\u0103 \u00een soneriile inteligente Ring Video Doorbell Pro, produse \u015fi comercializate de c\u0103tre magazinul online Amazon, ar fi permis atacatorilor afla\u0163i \u00een preajma acestora s\u0103 intercepteze datele de acces la re\u0163eaua wi-fi \u015fi deci la toate dispozitivele conectate din locuin\u0163\u0103, arat\u0103 o cercetare recent\u0103 a speciali\u015ftilor \u00een securitate informatic\u0103 de la [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[510],"tags":[5438,10403,10653,8039,8866,302,10541,14785,7543,219,7745,552],"class_list":["post-177991","post","type-post","status-publish","format-standard","hentry","category-actualitate","tag-amazon","tag-aplicatie","tag-atac","tag-bitdefender","tag-cercetare","tag-dispozitiv","tag-dispozitive","tag-hackeri","tag-retea","tag-securitate","tag-specialisti","tag-video"],"_links":{"self":[{"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=\/wp\/v2\/posts\/177991","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=177991"}],"version-history":[{"count":0,"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=\/wp\/v2\/posts\/177991\/revisions"}],"wp:attachment":[{"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=177991"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=177991"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=177991"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}