[Techinfo] archivalasra milyen hdd

ka at mayten.sch.bme.hu ka at mayten.sch.bme.hu
2018. Jan. 11., Cs, 10:05:12 CET


On 2018-01-08 20:21, József Venczel wrote:
> A felhő alapú védelem megbízhatóságához:
> https://prohardver.hu/hir/intel_cpu_hiba_rengeteg_teljesitmenybe_kerul.html
> 

nem akartam ujra felmelegiteni a szalat, de ma lattam ezt a hat napos 
hirt.  Ha mar a felhos adattarolasrol, vagy az otthoni nasunk "felhon" 
keresztuli elereserol van szo.

"Security researchers have discovered several severe vulnerabilities and 
a secret hard-coded backdoor in Western Digital's My Cloud NAS devices"

"Since these devices have been designed to be connected over the 
Internet, the hardcoded backdoor would leave user data open to hackers."

"This vulnerability can also be easily exploited to gain a remote shell 
as root. For this, all an attacker has to do is send a post request 
containing a file to upload using the parameter Filedata[0]—a location 
for the file to be uploaded to which is specified within the "folder" 
parameter, and a fake "Host" header."

"Researchers also found the existence of a "classic backdoor"—with admin 
username "mydlinkBRionyg" and password "abc12345cba," which is hardcoded 
into the binary and cannot be changed."

https://thehackernews.com/2018/01/western-digital-mycloud.html

Szoval ertem, hogy nem a klasszikus felho alapu tarolas, csupan azt 
mondom, hogy ilyenek kabe havonta derulnek ki mind termekekrol, mind 
pedig szolgaltatasokrol.  Igy en inkabb tavol tartom magam ezektol.

Akinek esetleg van ilyenje, szerintem tegye elerhetetlenne az internet 
felol.

-- 
Regards
Adam



További információk a(z) Techinfo levelezőlistáról