BadPower bụ ọgụ na ihe nkwụnye ọkụ ngwa ngwa nke nwere ike ime ka ngwaọrụ ahụ nweta ọkụ

Ndị nyocha nchekwa sitere na ụlọ ọrụ China Tencent ọkọnọ (Ajụjụ ọnụ) klas ọhụrụ nke mwakpo BadPower iji merie chaja maka smartphones na laptọọpụ na-akwado ngwa ngwa odori protocol. Mwakpo ahụ na-enye ohere ka chaja na-ebunye ike dị ukwuu nke na-emeghị ka akụrụngwa na-arụ ọrụ, nke nwere ike iduga ọdịda, agbaze akụkụ, ma ọ bụ ọbụna ọkụ nke ngwaọrụ ahụ.

BadPower - mbuso agha na ihe nkwụnye ọkụ ngwa ngwa nke nwere ike ime ka ngwaọrụ ahụ nweta ọkụ

A na-eme mwakpo ahụ site na ekwentị onye ahụ metụtara, njikwa nke onye mwakpo ahụ na-ejide ya, dịka ọmụmaatụ, site na nrigbu adịghị ike ma ọ bụ iwebata malware (ngwaọrụ ahụ n'otu oge na-eme dị ka isi mmalite na ebumnuche nke mbuso agha ahụ). Enwere ike iji usoro a mebie ngwaọrụ emebiela n'ụzọ anụ ahụ ma mee sabotage nke nwere ike ibute ọkụ. Mwakpo a na-adabara chaja na-akwado mmelite firmware na anaghị eji nkwenye koodu nbudata site na iji mbinye aka dijitalụ. Chaja na-akwadoghị ọkụ anaghị enwe ike ibuso ya ọgụ. Ogo nke mmebi nwere ike ịdabere na ụdị chaja, mmepụta ike na ọnụnọ nke usoro nchebe oke na ngwaọrụ ndị a na-ebubo.

Usoro nchaji ngwa ngwa USB na-egosi usoro nke jikọtara paramita nchaji na chaja ngwaọrụ. Ngwaọrụ a na-ebubo na-ebufe ozi na chaja gbasara ụdịdị akwadoro yana voltaji ekwere (dịka ọmụmaatụ, kama 5 volts, a na-akọ na ọ nwere ike ịnara 9, 12 ma ọ bụ 20 volts). Chaja nwere ike nyochaa parameters n'oge ịchaji, gbanwee ọnụego ụgwọ ma gbanwee voltaji dabere na okpomọkụ.

Ọ bụrụ na chaja na-amata n'ụzọ doro anya oke oke ma ọ bụ mee mgbanwe na koodu njikwa chaja, chaja nwere ike mepụta paramita chaja nke emeghị ngwaọrụ ahụ. Usoro mbuso agha BadPower gụnyere imebi ngwa ngwa ma ọ bụ na-ebunye ngwa ngwa emezigharịrị na chaja, nke na-edobe voltaji kachasị ike. Ike nke chaja na-eto ngwa ngwa na, dịka ọmụmaatụ, Xiaomi atụmatụ ọnwa na-abịa ịhapụ ngwaọrụ na-akwado teknụzụ chaja ngwa ngwa 100W na 125W.

N'ime ihe nkwụnye ọkụ ngwa ngwa 35 na batrị mpụga (Power Banks) nke ndị nyocha nyochara, nke a họọrọ site na ụdị 234 dị na ahịa, ọgụ ahụ metụtara ngwaọrụ 18 nke ndị nrụpụta 8 mepụtara. Mwakpo a na 11 n'ime ngwaọrụ 18 nwere nsogbu ga-ekwe omume na ọnọdụ akpaka zuru oke. Ịgbanwe firmware na ngwaọrụ 7 chọrọ nhazi anụ ahụ nke chaja. Ndị nyocha ahụ bịara na nkwubi okwu na ogo nke nchekwa anaghị adabere na usoro nchaji ngwa ngwa ejiri, mana ọ jikọtara ya na ikike imelite firmware site na USB yana iji usoro cryptographic iji nyochaa arụmọrụ na ngwa ngwa.

A na-agbanye ụfọdụ chaja site na ọdụ ụgbọ USB ọkọlọtọ ma nye gị ohere ịgbanwe firmware site na ama ma ọ bụ laptọọpụ a wakporo na-ejighi ngwa pụrụ iche ma zoo ya n'aka onye nwe ngwaọrụ ahụ. Dị ka ndị nchọpụta si kwuo, ihe dị ka 60% nke ngwa ngwa chaja na ahịa na-enye ohere mmelite firmware site na ọdụ ụgbọ USB na ngwaahịa ikpeazụ.

Ọtụtụ nsogbu ndị metụtara teknụzụ ọgụ BadPower nwere ike idozi na ọkwa firmware. Iji gbochie mwakpo ahụ, a gwara ndị na-emepụta chaja nwere nsogbu ka ha wusie ike nchebe megide mgbanwe nke firmware na-akwadoghị, yana ndị na-emepụta ngwaọrụ ndị na-ere ahịa ka ha tinyekwuo usoro nchịkwa ibufe. A naghị atụ aro ndị ọrụ ka ha jiri ihe nkwụnye nwere Ụdị-C jikọọ ngwaọrụ chaja ngwa ngwa na smartphones na-akwadoghị ọnọdụ a, ebe ọ bụ na ụdị dị otú ahụ anaghị echebe ya pụọ ​​​​na ibu ibu.



isi: opennet.ru

Tinye a comment