I-BadPower: uhlaselo lweeadaptha ezikhawulezayo ezinokubangela umlilo

Kungekudala kukhutshwe ulwazi thaca ngabaphandi de Ukhuseleko lwenkampani yaseTshayina Tencent ngaphezulu kwesinye Udidi olutsha lohlaselo abalubiza ngokuba yi "BadPower" kwaye yintoni ijolise ekuhlaseleni inkqubo yokutshaja ngokukhawuleza kwizixhobo ezahlukeneyo ze-elektroniki, ezinje ngetshaja zee-smartphones, iilaptops phakathi kwabanye abazixhasayo.

Amandla aMbi ivumela uhlaselo apho lubangela ukuba umlayishi aye yesixhobo qalisa ukugqithisa kwamandla okugqithisileyo izixhobo azenzelwanga ukuphatha, ezinokubangela ukungasebenzi kakuhle, zinyibilike iinxalenye okanye umlilo.

Malunga neBadPower

Uhlaselo lwenziwa kwi-smartphone yexhoba, ulawulo lukabani ithathwa ngumhlaselie, umzekelo, ngokuxhaphaza ubungozi okanye ukwazisa i-malware (isixhobo sisebenza ngaxeshanye njengomthombo kunye nohlaselo).

Indlela ingasetyenziselwa ukonakalisa isixhobo ngokwasemzimbeni sele engene esichengeni kwaye esenza isabotage enokubangela umlilo. Uhlaselo iyasebenza kwitshaja ezixhasa uhlaziyo lwe-firmware kwaye abasebenzisi ukuqinisekiswa kwesiginesha yedijithali yekhowudi ekhutshelweyo.

Itshaja ezingakuxhasi ukudanyaza azixhomekekanga kuhlaselo. Iqondo lomonakalo onokwenzeka lixhomekeke kwimodeli yetshaja, ukuphuma kwamandla, kunye nokufumaneka kweendlela zokukhusela ngaphezulu kwezixhobo ezihlawulisiweyo.

Inkqubo yokutshaja ngokukhawuleza nge-USB Kuthetha ubukho benkqubo yokulungelelanisa iiparameter zokutshaja kunye nesixhobo esihlawulisiweyo. Isixhobo esitshajekayo idlulisa ulwazi malunga neemowudi ezixhasiweyo kwtshaja kunye nevolthi evunyelweyo (umzekelo, endaweni ye-volts ezi-5, kunokwenzeka ukwamkela i-9, 12 okanye i-20 volts). Itshaja inokubeka iliso kwiiparamitha ngexesha lokutshaja, tshintsha isantya sokutshaja kwaye uhlengahlengise umbane ngokuxhomekeke kubushushu.

Ukuba itshaja iyazi ngabom iiparameter okanye itshintshe ikhowudi yolawulo lwentlawulo, kwayeItshaja inokukhupha iiparameter zokutshaja ezingayenzelwanga sisixhobo.

Indlela yokuhlaselwa kweBadPower kubandakanya ukonakalisa i-firmware okanye ukulayisha i-firmware eguqulweyo Kwitshaja ecwangcisa ubuninzi bevolthi enokubakho. Amandla eeshaja akhula ngokukhawuleza kwaye, umzekelo, uXiaomi uceba ukumilisela izixhobo ezixhasa i-100 kunye ne-125 watt yeetekhnoloji zokutshaja ngokukhawuleza kwinyanga ezayo.

Kwiiadaptha ezingama-35 ukutshaja ngokukhawuleza kunye neebhetri zangaphandle (iBhanki yamandla) kuvavanywa ngabaphandi, kukhethwe kwiimodeli ezingama-234 ezikhoyo kwintengiso, uhlaselo lusetyenzisiwe kwizixhobo ze-18 yenziwe ngabavelisi abasi-8.

Ukuhlaselwa Izixhobo ezili-11 kwezi-18 ezinengxaki zazinokwenzeka ngendlela ezenzekelayo ngokupheleleyo. Ukutshintsha i-firmware kwizixhobo ezi-7, ukunyanzeliswa komzimba komlayishi kwakufuneka. Abaphandi bagqibe kwelokuba inqanaba lokhuseleko alixhomekeke kwinkqubo yokutshaja ekhawulezayo esetyenzisiweyo, kodwa inxulumene kuphela nokubanakho kokuhlaziya i-firmware nge-USB kunye nokusebenzisa iindlela zekhompyuter zokuqinisekisa ukusebenza kwe-firmware.

Ukuhlaziywa kwezinye iishaja kwenziwa ngezibuko eliqhelekileyo le-USB kwaye ikuvumela ukuba uguqule i-firmware ye-smartphone okanye ilaptop ehlaselwe ngaphandle kokusebenzisa izixhobo ezizodwa kwaye ifihliwe kumnini wesixhobo.

Ngokwabaphandi, malunga neepesenti ezingama-60 zeetshiphusi ezibonelelwa kwintengiso ukutshaja ngokukhawuleza vumela ukuhlela uhlaziyo lwe-firmware ngezibuko le-USB kwiimveliso zokugqibela.

Uninzi lweengxaki ezinxulumene netekhnoloji yokuhlaselwa I-BadPower inokulungiswa kwinqanaba le-firmware. Ukuthintela uhlaselo, abavelisi beetshaja ezinengxaki bakhuthazwa ukuba bomeleze ukhuseleko kulungiso olungagunyaziswanga lwefirmware, kwaye abavelisi bezixhobo zabathengi bakhuthazwa ukuba bongeze iindlela zokulawula ngaphezulu.

Abasebenzisi abanconywa ukuba basebenzise i-adapters yohlobo C ukudibanisa izixhobo ukubiza ngokukhawuleza kwii-smartphones ezingayixhasi le ndlela njenge le mizekelo ayikhuselekanga kangako ngokuchasene nokugcwala okukhulu.


Shiya uluvo lwakho

Idilesi yakho ye email aziyi kupapashwa. ezidingekayo ziphawulwe *

*

*

  1. Inoxanduva lwedatha: I-AB Internet Networks 2008 SL
  2. Injongo yedatha: Ulawulo lwe-SPAM, ulawulo lwezimvo.
  3. Umthetho: Imvume yakho
  4. Unxibelelwano lwedatha: Idatha ayizukuhanjiswa kubantu besithathu ngaphandle koxanduva lomthetho.
  5. Ukugcinwa kweenkcukacha
  6. Amalungelo: Ngalo naliphi na ixesha unganciphisa, uphinde uphinde ucime ulwazi lwakho.