Nuglaanta caalamiga ah ayaa laga helay marin-haweedka Cisco

Cilmi-baarayaal ka socda Red Balloon ayaa soo sheegay laba dayacan oo laga helay Cisco 1001-X router-yada taxanaha ah. Nuglaanta qalabka shabakadda Cisco ee firfircoon maaha war, laakiin waa xaqiiqo nololeed. Cisco waa mid ka mid ah soosaarayaasha hormuudka u ah router-yada iyo aaladaha kale ee shabakadaha, sidaa darteed waxaa jira xiiso kordhaysa ee la isku halleyn karo alaabteeda labadaba khubarada ilaalinta xogta iyo dhanka weerarka.

Nuglaanta caalamiga ah ayaa laga helay marin-haweedka Cisco

Horay u eegis, waxaanu ogaanay in khabiirada Red Balloon ay u sheegeen Cisco wax ku saabsan dayacanka cusub dhawr bilood ka hor, markaa dhibka si uun baa loo xaliyay, ama ugu yaraan Cisco wuu garanayaa sida loo xaliyo. Mid ka mid ah labada baylahda ayaa si fudud loo xidhi karaa iyadoo la cusbooneysiinayo firmware-ka, shirkadduna waxay sii daysay firmware-ka noocaas ah shalayto aagga dadweynaha, ayaa lagu sheegay daabacaadda internetka. banki. Waxaan ka hadlaynaa cayayaanka laga helay nidaamka hawlgalka Cisco IOS kaas oo siinaya xidid weerariyaha marin biyoodka ee taxanaha la cayimay.

Nuglaanta labaad waa shay gaar ah oo aad khatar u ah, ayay cilmi-baarayaashu sheegeen. Waxay taabataa aasaaska amniga ee boqolaal milyan oo aaladaha shabakadda shirkadda, laga bilaabo router ilaa beddelka dabka. Khabiirada Cas Balloon waxay awoodeen inay ka gudbaan ilaalinta qalabka sida qalabka Cisco sida Trust Anchor. "Trust Anchor," sida ereygan loo tarjumi karo, waa horumarinta qaybaha xaqiijinta hufnaanta qalabka lahaanshaha ee shirkadda (hore ACT). Module-ka ACT waxa loo soo bandhigay si uu uga ilaaliyo been-abuurka ka dibna waxa loo beddelay moduleka lagula soconayo hufnaanta qaybta software ee aaladaha shabakadda Cisco. Maanta, Trust Anchor waxay ku jirtaa dhammaan qalabka shabakada firfircoon ee shirkadda. Ma adka in la qiyaaso waxa tanaasulka Trust Anchor ka dhalan doono. Shabakadda qalabka Sisiko lama aamini doono.


Nuglaanta caalamiga ah ayaa laga helay marin-haweedka Cisco

Cilmi baadhayaashu waxay heleen hab lagu khiyaamo Trust Anchor. Qalabka la jabsaday ayaa sii waday inay ku wargaliyaan macaamiisha wax ku saabsan faragelinta la'aanta, halka kuwa takhasuska leh ay ku sameeyeen wax kasta oo ay rabaan. Tani, habka, waxay naga dhigaysaa inaan ka fikirno masiirka horumarka la midka ah ee ARM (TrustZone), Intel (SGX) iyo hababka kale ee qalabka la midka ah ee ilaalinta goobaha xisaabinta. Waxay u egtahay in tani ay tahay xalka xiritaanka godadka processor-yada. Chipset-ka la aamini karo ama moduleka Chipset-ka ayaa ka dhigi kara kombiyuutarada mid aad uga badbaadsan jabsiga. Ficil ahaan, dalool ama fursad lagu dhaafo ilaalinta ayaa la helay xitaa xalka halkaas oo gelitaanku aad u xaddidan yahay oo inta badan ay suurtagal tahay oo keliya deegaan wax soo saar la iska leeyahay.

Xaaladda dambe waxay muhiim u noqon doontaa xidhitaanka godadka la xidhiidha tanaasulka qaybaha Trust Anchor. In kasta oo Cisco ay ballan qaaday inay siidaynayso balastarrada si ay u hagaajiso u nuglaanta Aaminaadda Anchor ee dhammaan qalabkeeda, soo dejintu ma xallin karto dhibaatadan. Cisco ayaa leh tani waxay u baahan doontaa "dib-u-qaabayn maxalli ah," taasoo la macno ah inaysan suurtogal ahayn in meel fog laga cusboonaysiiyo qalabka. Hagaag, maalmo mashquul ah ayaa sugaya shabakadaha u adeegaya shaqaalaha iyagoo isticmaalaya qalabka Cisco. Xagaaga soo socdana shaqo kuma laha tan.



Source: 3dnews.ru

Add a comment