萍聚社区-德国热线-德国实用信息网

 找回密码
 注册

微信登录

微信扫一扫,快速登录

萍聚头条

查看: 2149|回复: 17

[国际新闻] 注意:外媒报道微信和QQ中藏有难以去除的木马病毒!

[复制链接]
发表于 2017-9-19 07:41 | 显示全部楼层 |阅读模式

马上注册,结交更多好友,享用更多功能,让你轻松玩转社区。

您需要 登录 才可以下载或查看,没有账号?注册 微信登录

x
中文内容我就不在这里转载了,大家自己搜索。
——————————————————————————

下文中给出的解决办法:卸载QQ和微信都没有用,必须将手机恢复到出厂设置。

What to Make of the Explosive New WeChat and QQ Spying Revelations?

A new report by a Lookout, a Cybersecurity company, has generated renewed interest in the security, or lack thereof, of WeChat and QQ (https://blog.lookout.com/xrat-mobile-threat). Despite this, there has been limited attention paid to this explosive new revelation.

It has long been known that due to WeChat keeping its servers inside China, the lack of legal protection of privacy data, and the control over companies by police, that WeChat data is not safe, and can, without protection, be accessed by police or other state actors more or less at will. This has naturally made people shy away from using WeChat for any more serious or political discussions. More and more court cases of people being prosecuted simply based on private chat messages to friends have further illustration this. At the same time, at the time of the Occupy Central movement in Hong Kong, it was shown that a ‘Trojan’ virus was being employed to surveil users remotely.

xRAT. That’s the name of the new discovery. Like the earlier virus found, it’s a ‘Trojan’ virus, meaning it masks itself as something else, for example a PDF file, and you will be unaware of if you have it on your phone by now. It specifically targets you through your WeChat or QQ account.

So what’s the big deal?

The ‘Trojan’ operates with administrator privileges. It means it can access and control any and all aspects of your phone. It also means it can do so without you noticing. In fact, it can remotely get ‘full control’. If you want to understand what this means it is this: it has as much access to your phone as if you were to give it to someone, and then tell them your PIN code. Full control.

This means that not only your WeChat or QQ use is exposed. All of your phone is exposed. Photos stored, downloads, documents, any Apps to other services installed, chat logs, phone records, contact lists, and of course, your browser and its entire browsing history, which may include credit card and password and login information to other service, for example encrypted emailing you use.

In short, any phone that has WeChat on it, and is also used to access work emails, or secure chat programs like Telegram or Signal, can now be in the hands of Chinese police or state security. For the community of supporters of human rights in China it moves from bad to terrible. You can now, if you communicate with human rights defenders in China through secure Apps or emailing on a phone that has WeChat or QQ installed, inadvertently be giving the Chinese police material that will incriminate those human rights defenders and land them in prison.

To make matters worse, administrator privilege means you microphone can be turned on, and stream whatever is heard to the Chinese police. Same with video camera and camera. It is a most sophisticated spying tool with far-reaching consequences. It can, it goes without saying, read you location, as well as the specific meta-data of your phone.

If that wasn’t enough, there is one last thing, which makes it such a sophisticated virus. It can auto destruct itself. And when doing so, it can not only delete itself from your phone, but wipe much of your phone log data, making it hard even for technically skilled people to know that the virus was ever there. In short, you might never know if your phone, your use, is the reason someone has landed in prison.

A number of control centers in China has been identified to where such data and traffic goes. The code is such that there is little doubt that this ‘Trojan’ comes from the same people behind the earlier ‘Trojan’ targeting Hong Kong Occupy Central people, just much more sophisticated.

Should I worry? What to do?

First off, there is still some lack of understanding how the infection spreads to your phone. At the same time, there is little reason to think resources would be spent to develop such a tool, and then not try to use it. An earlier, much less sophisticated version, was used extensively during the Occupy Central movement. Why would the police and state security organs not use a tool if it’s already been developed, and if it’s this powerful? It should go without saying that you need to operate as if it’s being used widely, and as if you were a target.

Most people with risk awareness will already have made sure to not use WeChat or QQ, or if they felt a strong need to have it, have it installed on a second phone which is not used for anything else. If you need WeChat, like many unfortunately feel they do, at the very least, install it on a blank, factory-reset second phone, like a super cheap android phone. Due to microphone remote control, make sure to never have it in your office or at any discussions.

Secondly, your current phone, if infected, will not be secure just by uninstalling WeChat and QQ. You will have no choice but to do a factory reset. This may be an inconvenience, but it is the only way. It goes without saying that any existing PIN codes, passwords to work emails, etc., will need be changed after you have done this factory reset.

本文来源: https://commondatastorage.google ... ive/archives/123079

Die von den Nutzern eingestellten Information und Meinungen sind nicht eigene Informationen und Meinungen der DOLC GmbH.
头像被屏蔽

TA的专栏

发表于 2017-9-19 07:43 | 显示全部楼层
Die von den Nutzern eingestellten Information und Meinungen sind nicht eigene Informationen und Meinungen der DOLC GmbH.
 楼主| 发表于 2017-9-19 08:00 | 显示全部楼层
duoban 发表于 2017-9-19 08:43
用iPhone不是能自动屏蔽木马病毒感染吗

不清楚该消息真假。
但是腾讯公司做事不地道是确实的,本人亲身体验。
Die von den Nutzern eingestellten Information und Meinungen sind nicht eigene Informationen und Meinungen der DOLC GmbH.
发表于 2017-9-19 08:18 | 显示全部楼层
我觉得中国出品的软件都这样吧,没有一个不含这些乱七八糟东西的,但是看在微信啊QQ啊,金山词霸啊,搜狗输入法啊这些东西还好用的份上只能忍了,不用的话就彻底和国内中文世界切割了
Die von den Nutzern eingestellten Information und Meinungen sind nicht eigene Informationen und Meinungen der DOLC GmbH.
 楼主| 发表于 2017-9-19 08:21 | 显示全部楼层
jyqian 发表于 2017-9-19 09:18
我觉得中国出品的软件都这样吧,没有一个不含这些乱七八糟东西的,但是看在微信啊QQ啊,金山词霸啊,搜狗输 ...

他们要是敢在欧美干这事,老早就被罚死了。
Die von den Nutzern eingestellten Information und Meinungen sind nicht eigene Informationen und Meinungen der DOLC GmbH.
发表于 2017-9-19 08:35 | 显示全部楼层
病毒还是后门啊。美国都有明文规定美国注册的软硬件公司,必须为美国安全部门提供源代码及后门访问。苹果微软都在做的事,你以为腾讯阿里华为不做么。但这种"病毒"应该不会影响到你我小p民,除非你在政治上比较积极。。。让某些人不爽
Die von den Nutzern eingestellten Information und Meinungen sind nicht eigene Informationen und Meinungen der DOLC GmbH.
发表于 2017-9-19 08:38 | 显示全部楼层
看到这种文章就很敏感的人,是不是太把自己当回事了?
Die von den Nutzern eingestellten Information und Meinungen sind nicht eigene Informationen und Meinungen der DOLC GmbH.
发表于 2017-9-19 08:39 | 显示全部楼层
wjsnow 发表于 2017-9-19 09:35
病毒还是后门啊。美国都有明文规定美国注册的软硬件公司,必须为美国安全部门提供源代码及后门访问。苹果微 ...

nonono
在美国做这些事情你必须要有法律依据。而且必须公开。
在中国做这些事情,老领导一句话的事情,公开?做梦。

这就是最大的区别。
Die von den Nutzern eingestellten Information und Meinungen sind nicht eigene Informationen und Meinungen der DOLC GmbH.
发表于 2017-9-19 08:44 | 显示全部楼层
wjsnow 发表于 2017-9-19 09:35
病毒还是后门啊。美国都有明文规定美国注册的软硬件公司,必须为美国安全部门提供源代码及后门访问。苹果微 ...
美国都有明文规定美国注册的软硬件公司,必须为美国安全部门提供源代码及后门访问。


请问是哪条法律呢?WhatsApp等聊天软件卖点就是绝密。
Die von den Nutzern eingestellten Information und Meinungen sind nicht eigene Informationen und Meinungen der DOLC GmbH.
 楼主| 发表于 2017-9-19 09:01 | 显示全部楼层
wjsnow 发表于 2017-9-19 09:35
病毒还是后门啊。美国都有明文规定美国注册的软硬件公司,必须为美国安全部门提供源代码及后门访问。苹果微 ...

这个根本不可能,上次苹果还断然拒绝了FBI的解锁要求。
Die von den Nutzern eingestellten Information und Meinungen sind nicht eigene Informationen und Meinungen der DOLC GmbH.
您需要登录后才可以回帖 登录 | 注册 微信登录

本版积分规则

手机版|Archiver|AGB|Impressum|Datenschutzerklärung|萍聚社区-德国热线-德国实用信息网

GMT+1, 2025-2-28 14:26 , Processed in 0.067475 second(s), 17 queries , MemCached On.

Powered by Discuz! X3.4

© 2001-2023 Discuz! Team.

快速回复 返回顶部 返回列表