{"id":182428,"date":"2020-04-29T11:27:32","date_gmt":"2020-04-29T11:27:32","guid":{"rendered":"https:\/\/bm.dev.synology.me\/?p=182428"},"modified":"2020-04-29T11:27:32","modified_gmt":"2020-04-29T11:27:32","slug":"o-noua-modalitate-prin-care-raufacatorii-pot-ajunge-in-intimitatea-casei-noastre-de-la-distanta","status":"publish","type":"post","link":"https:\/\/bm.dev.synology.me\/?p=182428","title":{"rendered":"O nou\u0103 modalitate prin care r\u0103uf\u0103c\u0103torii pot ajunge \u00een intimitatea casei noastre de la distan\u0163\u0103"},"content":{"rendered":"<p>\nSpeciali\u015ftii \u00een securitate informatic\u0103 de la Bitdefender au identificat recent o serie de vulnerabilit\u0103\u0163i \u00een camera de supraveghere Netatmo Smart Indoor Security Camera, un model popular de pe pia\u0163\u0103 \u015fi v\u00e2ndut la un pre\u0163 convenabil, folosit pentru monitorizarea locuin\u0163ei, potrivit unui comunicat de pres\u0103 trimis de produc\u0103torul rom\u00e2nesc de antivirus. Caren\u0163ele g\u0103site ar fi permis compromiterea total\u0103 a dispozitivului, deci invadarea ne\u00eengr\u0103dit\u0103 a vie\u0163ii private a victimei.<\/p>\n<p>\nServerul web care ruleaz\u0103 pe camera de supraveghere ar fi putut fi compromis pentru a ob\u0163ine drepturi de acces de la distan\u0163\u0103. Pentru ca atacul s\u0103 se deruleze cu succes, un r\u0103uf\u0103c\u0103tor trebuia s\u0103 cunoasc\u0103 o cale secret\u0103 de acces c\u0103tre camer\u0103 sau s\u0103 ob\u0163in\u0103 acces la datele de autentificare apar\u0163in\u00e2nd utilizatorului \u015fi apoi s\u0103 o controleze printr-o solu\u0163ie de tip VPN.<\/p>\n<p>\nIat\u0103 c\u00e2teva recomand\u0103ri menite s\u0103 fereasc\u0103 utilizatorii de tentative de spionaj:<\/p>\n<p style=\"margin-left:36.0pt\">\n\u00b7&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; \u00cenainte de a cump\u0103ra dispozitivul, citi\u0163i recenzii ale produsului \u015fi afla\u0163i opiniile altor utilizatori legate de modul \u00een care func\u0163ioneaz\u0103. Verifica\u0163i frecven\u0163a cu care produc\u0103torul trimite update-uri \u015fi reputa\u0163ia acestuia legat\u0103 de securitate informatic\u0103.<\/p>\n<p style=\"margin-left:36.0pt\">\n\u00b7&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Actualiza\u0163i dispozitivele inteligente cu cea mai recent\u0103 versiune a sistemului de operare.<\/p>\n<p style=\"margin-left:36.0pt\">\n\u00b7&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Asigura\u0163i-v\u0103 c\u0103 toate dispozitivele au parole complexe sau c\u0103 au fost schimbate cele ini\u0163iale.<\/p>\n<p style=\"margin-left:36.0pt\">\n\u00b7&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Utiliza\u0163i o solu\u0163ie de securitate destinat\u0103 protec\u0163iei echipamentelor smart.<\/p>\n<p>\nPreviziunile exper\u0163ilor arat\u0103 c\u0103 peste 45 de miliarde de camere vor fi active p\u00e2n\u0103 \u00een 2022, iar o mare parte dintre acestea vor fi camere smart. De mai mul\u0163i ani \u00eens\u0103, speciali\u015ftii \u00een securitate informatic\u0103 au identificat numeroase vulnerabilit\u0103\u0163i \u00een dispozitive conectate \u015fi au avertizat constant at\u00e2t produc\u0103torii, c\u00e2t \u015fi utilizatorii acestora, despre numeroasele pericole la care se expun c\u00e2nd atacatorii le controleaz\u0103 de la distan\u0163\u0103: s\u0103 supravegheze utilizatorii oric\u00e2nd \u00een intimitatea c\u0103minului sau s\u0103 compromit\u0103 re\u0163elele de acas\u0103 \u015fi chiar infrastructura global\u0103 ce permite func\u0163ionarea internetului.<\/p>\n<p>\nUn studiu realizat de Bitdefender arat\u0103 c\u0103 95% dintre vulnerabilit\u0103\u0163ile detectate \u00een dispozitive smart sunt legate de firmware, iar 42% dintre toate erorile de securitate asociate firmware-ului implic\u0103 restric\u0163ionarea accesului la servicii, ceea ce \u00eenseamn\u0103 c\u0103 dispozitivul devine nefunc\u0163ional permanent sau temporar.<\/p>\n<p>\nBitdefender a anun\u0163at produc\u0103torul dispozitivului men\u0163ionat anterior despre rezultatele cercet\u0103rii \u00een luna decembrie 2019, iar problema a fost reparat\u0103 \u00een luna ianuarie 2020. Vulnerabilit\u0103\u0163ile identificate de c\u0103tre speciali\u015ftii \u00een securitate cibernetic\u0103 au fost comunicate \u00een concordan\u0163\u0103 cu politica Bitdefender de notificare \u015fi dezv\u0103luire a vulnerabilit\u0103\u0163ilor. Potrivit acesteia, furnizorii sunt \u00een\u015ftiin\u0163a\u0163i \u00een scris despre descoperiri \u015fi sunt \u00eencuraja\u0163i s\u0103 remedieze erorile \u015fi defec\u0163iunile din produsele semnalate. La 90 de zile dup\u0103 comunicarea ini\u0163ial\u0103, rezultatele cercet\u0103rii sunt transmise publicului larg.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Speciali\u015ftii \u00een securitate informatic\u0103 de la Bitdefender au identificat recent o serie de vulnerabilit\u0103\u0163i \u00een camera de supraveghere Netatmo Smart Indoor Security Camera, un model popular de pe pia\u0163\u0103 \u015fi v\u00e2ndut la un pre\u0163 convenabil, folosit pentru monitorizarea locuin\u0163ei, potrivit unui comunicat de pres\u0103 trimis de produc\u0103torul rom\u00e2nesc de antivirus. Caren\u0163ele g\u0103site ar fi permis [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[510],"tags":[238,8039,302,10541,219,14589],"class_list":["post-182428","post","type-post","status-publish","format-standard","hentry","category-actualitate","tag-acces","tag-bitdefender","tag-dispozitiv","tag-dispozitive","tag-securitate","tag-supraveghere"],"_links":{"self":[{"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=\/wp\/v2\/posts\/182428","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=182428"}],"version-history":[{"count":0,"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=\/wp\/v2\/posts\/182428\/revisions"}],"wp:attachment":[{"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=182428"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=182428"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/bm.dev.synology.me\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=182428"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}