好莱坞女明星裸照疯传,云储存安全性受到质疑

来源:百度文库 编辑:超级军网 时间:2024/05/02 02:20:21
链接:http://www.independent.co.uk/life-style/gadgets-and-tech/is-apples-icloud-safe-after-leak-of-jennifer-lawrence-and-other-celebrities-nude-photos-9703142.html
正文:-----------------------
The apparent leak of hundreds of naked photos purportedly belonging to more than 100 high-profile singers, actors and celebrities has raised questions of the safety and security of digital services.

On Sunday night, images of 101 high-profile stars, including Jennifer Lawrence, Ariana Grande, Victoria Justice, Kate Upton, Kim Kardashian, Rihanna, Kirsten Dunst and Selena Gomez, were posted on 4chan, an online image sharing forum, in an apparent hacking leak linked to the Apple iCloud service.

Although the involvement of iCloud has not been confirmed, anonymous users on 4chan (the image-sharing forum where the photos were first posted) claimed on Sunday to have taken them from the service.

If activated, iCloud automatically stores photos, email, contacts and other information online, allowing users to sync this data across different devices (for example iPhones and iPads) or access it from any internet-connected computer using a log-in and password.

Although Apple’s encryption on the data itself is considered robust, access could have been gained through more indirect means - such as guessing users' passwords or simply resetting their accounts by finding their email address and then answering traditional ‘security questions’.

(Worried iCloud users can turn off photo syncing through Settings > iCloud on their iPhone or iPad, or, for additional security, set up two-step verification by following these instructions.)
  Steve Jobs discussing iCloud in 2011.

Jennifer Lawrence, who confirmed via her publicist that the photos were genuine, has previously said: "My iCloud keeps telling me to back it up, and I'm like, I don't know how to back you up. Do it yourself,” while metadata retrieved from the images shows that the vast majority were taken using Apple devices.

However, this doesn't confirm that iCloud itself was hacked - it might simply be down to individual users’ poor password choices - and other theories as to how the pictures were obtained are also circulating online.

Security experts have suggested that a second cloud service, Dropbox, might be involved and that the massive scope of the leak (posters on 4chan claimed that close to 100 celebrities are affected) implies that “an employee with access to data somewhere made a private stash” and was subsequently hacked by another opportunistic individual.

The anonymous user who first posted the images online claimed to have additional leaks including explicit videos of Lawrence and requested donations via PayPal and Bitcoin in exchange for posting them.

Since the images were first posted online, tech site The Next Web has discovered the code for an iCloud-focused hacking program posted to the open-source website GitHub.

The program apparently exploits a flaw (now fixed) in Apple's 'Find my iPhone' service to guess passwords over and over again without being locked out. This method of hacking known as a 'brute force' attack uses a database of commonly uses words and phrases to guess passwords.

The program's creator told The Next Web that although they had not seen any evidence that the software had been used in the celebrity hacks, they admitted "that someone could use this tool".
----------------------------------------------------------------------------------------------------------------
评论:古有陈冠希,今有KATE UPTON. 陈冠希先生可以含笑九泉了。云储存本身并不安全。就像EMAIL邮箱一样,很多的提供商拥有权限扫描你的邮箱。GOOGLE在这么做,微软也在这么做。

附泄漏名单:
The biggest names on the list of alleged victims of the iCloud leak are

Aly and AJ Michalka, Jennifer Lawrence, Aubrey Plaza, Abby Elliott, Victoria
Justice, Emily Browning, Kate Bosworth, Jenny McCarthy and Kate Upton,
Avril Lavigne, Amber Heard, Brie Larson, Candice Swanepoel, Cara Delevigne,
Emily Ratjakowski, Farrah Abraham, Gabrielle Union, Hayden Pannettiere, Hope
Solo, Hillary Duff, Jenny McCarthy, Kayley Cuoco, Kate Upton, Kate Bosworth
, Keke Palmer, Kim Kardashian, Kirsten Dunst, Krysten Ritter, Lea Michele,
Lizzy Caplan, Mary Kate Olsen, Mary Elizabeth Winstead, Rihanna, Scarlet
Johansson, Selena Gomez, Vanessa Hudgens, Wynona Ryder, Alison Brie and Dave
Franco.链接:http://www.independent.co.uk/life-style/gadgets-and-tech/is-apples-icloud-safe-after-leak-of-jennifer-lawrence-and-other-celebrities-nude-photos-9703142.html
正文:-----------------------
The apparent leak of hundreds of naked photos purportedly belonging to more than 100 high-profile singers, actors and celebrities has raised questions of the safety and security of digital services.

On Sunday night, images of 101 high-profile stars, including Jennifer Lawrence, Ariana Grande, Victoria Justice, Kate Upton, Kim Kardashian, Rihanna, Kirsten Dunst and Selena Gomez, were posted on 4chan, an online image sharing forum, in an apparent hacking leak linked to the Apple iCloud service.

Although the involvement of iCloud has not been confirmed, anonymous users on 4chan (the image-sharing forum where the photos were first posted) claimed on Sunday to have taken them from the service.

If activated, iCloud automatically stores photos, email, contacts and other information online, allowing users to sync this data across different devices (for example iPhones and iPads) or access it from any internet-connected computer using a log-in and password.

Although Apple’s encryption on the data itself is considered robust, access could have been gained through more indirect means - such as guessing users' passwords or simply resetting their accounts by finding their email address and then answering traditional ‘security questions’.

(Worried iCloud users can turn off photo syncing through Settings > iCloud on their iPhone or iPad, or, for additional security, set up two-step verification by following these instructions.)
  Steve Jobs discussing iCloud in 2011.

Jennifer Lawrence, who confirmed via her publicist that the photos were genuine, has previously said: "My iCloud keeps telling me to back it up, and I'm like, I don't know how to back you up. Do it yourself,” while metadata retrieved from the images shows that the vast majority were taken using Apple devices.

However, this doesn't confirm that iCloud itself was hacked - it might simply be down to individual users’ poor password choices - and other theories as to how the pictures were obtained are also circulating online.

Security experts have suggested that a second cloud service, Dropbox, might be involved and that the massive scope of the leak (posters on 4chan claimed that close to 100 celebrities are affected) implies that “an employee with access to data somewhere made a private stash” and was subsequently hacked by another opportunistic individual.

The anonymous user who first posted the images online claimed to have additional leaks including explicit videos of Lawrence and requested donations via PayPal and Bitcoin in exchange for posting them.

Since the images were first posted online, tech site The Next Web has discovered the code for an iCloud-focused hacking program posted to the open-source website GitHub.

The program apparently exploits a flaw (now fixed) in Apple's 'Find my iPhone' service to guess passwords over and over again without being locked out. This method of hacking known as a 'brute force' attack uses a database of commonly uses words and phrases to guess passwords.

The program's creator told The Next Web that although they had not seen any evidence that the software had been used in the celebrity hacks, they admitted "that someone could use this tool".
----------------------------------------------------------------------------------------------------------------
评论:古有陈冠希,今有KATE UPTON. 陈冠希先生可以含笑九泉了。云储存本身并不安全。就像EMAIL邮箱一样,很多的提供商拥有权限扫描你的邮箱。GOOGLE在这么做,微软也在这么做。

附泄漏名单:
The biggest names on the list of alleged victims of the iCloud leak are

Aly and AJ Michalka, Jennifer Lawrence, Aubrey Plaza, Abby Elliott, Victoria
Justice, Emily Browning, Kate Bosworth, Jenny McCarthy and Kate Upton,
Avril Lavigne, Amber Heard, Brie Larson, Candice Swanepoel, Cara Delevigne,
Emily Ratjakowski, Farrah Abraham, Gabrielle Union, Hayden Pannettiere, Hope
Solo, Hillary Duff, Jenny McCarthy, Kayley Cuoco, Kate Upton, Kate Bosworth
, Keke Palmer, Kim Kardashian, Kirsten Dunst, Krysten Ritter, Lea Michele,
Lizzy Caplan, Mary Kate Olsen, Mary Elizabeth Winstead, Rihanna, Scarlet
Johansson, Selena Gomez, Vanessa Hudgens, Wynona Ryder, Alison Brie and Dave
Franco.
2014-9-1 23:51 上传



中新网9月日电 9月1日,有境外媒体报道,多位好莱坞女星艳照在社交网络疯传。新闻报道之后,相关照片、视频的传播迅速漫延至国内。金山毒霸安全中心监测发现,已有多个病毒伪装成“劳伦斯艳照、奥斯卡影后艳照、好莱坞女星艳照等”相关文件传播。安全专家建议网民控制猎奇心理,小心中毒。


http://news.ifeng.com/a/20140901/41817540_0.shtml
因为做云存储的和做云安全都没有形成紧密的产业链,需要一定的时日
我已经下好了,随便封吧。
果粉会说别的更不安全……
Ps:欣赏不来欧美的硅胶奶,就没有中国明星的被破解么?大陆黑客耻辱之夜…中国恐成最大书架…
momoranshi 发表于 2014-9-2 01:11
我已经下好了,随便封吧。
兄台,请PM链接什么的,谢谢
我已经下好了,随便封吧。
兄台好人啊!!!
裤子都脱了,让我看这个……
不关心云漏洞,只关心图,楼主交出
人造奶有个啥看头,不如我喜欢的小馒头
momoranshi 发表于 2014-9-2 01:11
我已经下好了,随便封吧。
兄台好人,求私信,谢谢。好人一生平安
我已经下好了,随便封吧。
私信,三克油。
好些都不认识,没什么看头,有个美鲍看的心痒痒。
胆有多肥敢把重要数据传到云上
看了,不仅有图还有OOXX的视频,感觉好莱坞也不过尔尔,不见得有毛妹漂亮
我已经下好了,随便封吧。
兄弟,给个种子呗。来自: Android客户端
他胡搅。他咋会有那些听楼主说。
百度云安全吗?
人造奶有个啥看头,不如我喜欢的小馒头
旺仔小馒头?
嘿嘿,开个玩笑撒
人造奶有个啥看头,不如我喜欢的小馒头
旺仔小馒头?
嘿嘿,开个玩笑撒
好人一身平安
momoranshi 发表于 2014-9-2 01:11
我已经下好了,随便封吧。
好人一身平安
种子呢?              
我已经下好了,随便封吧。
么么嗒 你懂的
我已经下好了,随便封吧。
求地址呀,让我批判一下
胆有多肥敢把重要数据传到云上
苹果自动上传,坑你没商量!
我都已经看过了,老实说,身材和皮肤确实还不错!!!
momoranshi 发表于 2014-9-2 01:11
我已经下好了,随便封吧。
这里是军网,你懂的……
放到网上你还想要什么安全来自: Android客户端
种子呢?
只知道有图,原来还有视频的阿!同求种子
momoranshi 发表于 2014-9-2 01:11
我已经下好了,随便封吧。
求私信,万分感谢
看了,不仅有图还有OOXX的视频,感觉好莱坞也不过尔尔,不见得有毛妹漂亮
战友。给个链接
momoranshi 发表于 2014-9-2 01:11
我已经下好了,随便封吧。
传一份过来,要不检举你
其实放上云之前就把资料加密一遍,就算泄漏了你得到的也是一堆乱码。当然最好是发明一种软件,在你上传的时就把资料同步加密(不适合共享的资料,因为别人无法解码,不过能共享的东西也就不用加密了)。
徽谰 发表于 2014-9-2 11:17
百度云安全吗?
安全都是相对的
momoranshi 发表于 2014-9-2 01:11
我已经下好了,随便封吧。
私信,三克油
jiafeidemao 发表于 2014-9-2 15:10
其实放上云之前就把资料加密一遍,就算泄漏了你得到的也是一堆乱码。当然最好是发明一种软件,在你上传的时 ...
这次的问题可能出在密码太简单,直接被用字典破了。如果是这样,怎么加密都没有用的,设了太简单的密码,再好的加密方式也等于零。
我已经下好了,随便封吧。
不要那么自私么。
momoranshi 发表于 2014-9-2 01:11
我已经下好了,随便封吧。
求种了。exe
求种了~楼主好人一生平安