Izici zezibuyekezo ze-firmware zamadivayisi eselula

Ukuthi uzobuyekeza i-firmware ocingweni lomuntu siqu noma cha kukuwo wonke umuntu ukuthi azinqumele.
Abanye abantu bafaka i-CyanogenMod, abanye abazizwa njengomnikazi wedivayisi ngaphandle kwe-TWRP noma i-jailbreak.
Endabeni yokuvuselela amafoni omakhalekhukhwini ezinkampani, inqubo kufanele ifane, ngaphandle kwalokho ngisho neRagnarok izobonakala ijabulisa kubantu be-IT.

Funda ngezansi mayelana nokuthi lokhu kwenzeka kanjani emhlabeni "wezinkampani".

Izici zezibuyekezo ze-firmware zamadivayisi eselula

Ubuso Obufushane Ngaphandle

Amadivayisi eselula asekelwe ku-iOS athola izibuyekezo ezivamile ezifana namadivayisi we-Windows, kodwa ngesikhathi esifanayo:

  • izibuyekezo zikhishwa kancane kancane;
  • Amadivayisi amaningi athola izibuyekezo, kodwa hhayi wonke.

I-Apple ikhipha isibuyekezo se-iOS ngokushesha kumadivayisi ayo amaningi, ngaphandle kwalawo angasasekelwa. Ngasikhathi sinye, i-Apple isekela amadivaysi ayo isikhathi eside impela. Isibonelo, ngisho nama-iPhone 14s akhishwe ngo-6 azothola isibuyekezo se-iOS 2015. Yiqiniso, kunezinkinga ezithile, ezifana nokunciphisa okuphoqelekile kwamadivayisi amadala, okusolakala ukuthi, akwenziwanga ukukuphoqa ukuthi uthenge ifoni entsha, kodwa ukwandisa impilo yebhethri elidala ... Kodwa kunoma yikuphi, lokhu kungcono kunesimo nge-Android.

I-Android empeleni iyi-franchise. I-Android yoqobo ye-Google itholakala kuphela kumadivayisi e-Pixel nakumadivayisi ebhajethi abamba iqhaza kuhlelo lwe-Android One. Kwamanye amadivaysi kukhona kuphela okuphuma kokunye ku-Android - EMUI, Flyme OS, MIUI, One UI, njll. Ngokuvikeleka kwedivayisi yeselula, lokhu kwehluka kuyinkinga enkulu.
Isibonelo, "umphakathi" uthola okunye ubungozi ku-Android noma izingxenye zesistimu eziwusekelayo. Okulandelayo, ukuba sengozini kwabelwa inombolo kusizindalwazi se-CVE, isitholi sithola umklomelo ngolunye lwezinhlelo ze-Google ze-bouty, bese i-Google ikhipha isichibi futhi isifaka ekukhishweni okulandelayo kwe-Android.

Ingabe ifoni yakho izoyithola uma kungeyona i-Pixel noma ingxenye yohlelo lwe-Android One?
Uma uthenge idivayisi entsha ngonyaka odlule, cishe yebo, kodwa hhayi ngokushesha. Umkhiqizi wedivayisi yakho usazodinga ukufaka ipheshi ye-Google ekwakhiweni kwabo kwe-Android futhi akuhlole kumamodeli edivayisi asekelwayo. Amamodeli aphezulu asekela isikhathi eside. Wonke omunye umuntu kufanele akwamukele futhi angafundi i-database ye-CVE ekuseni ukuze angonakalisi isifiso sabo sokudla.

Isimo esinezibuyekezo ezinkulu ze-Android ngokuvamile sibi nakakhulu. Ngokwesilinganiso, inguqulo entsha enkulu ifinyelela kumadivayisi eselula ane-Android yangokwezifiso okungenani ngekota, noma nangaphezulu. Ngakho-ke isibuyekezo se-Android 10 esivela ku-Google sakhululwa ngoSepthemba 2019, futhi amadivayisi avela kubakhiqizi abahlukene ababe nenhlanhla yokuthola ithuba lokuvuselela wasithola kuze kube yihlobo lika-2020.

Abakhiqizi bangaqondwa. Ukukhishwa nokuhlolwa kwe-firmware entsha kuyindleko, hhayi encane. Futhi njengoba sesivele sithengile amadivayisi, ngeke sithole imali eyengeziwe.
Okusele nje ukuthi... ukusiphoqa ukuthi sithenge izisetshenziswa ezintsha.

Izici zezibuyekezo ze-firmware zamadivayisi eselula

Ukwakhiwa kwe-Android okuvuzayo okuvela kumkhiqizi ngamunye kubangele i-Google ukuthi iguqule i-architecture ye-Android ukuze ilethe izibuyekezo ezibalulekile iyodwa. Le phrojekthi yayibizwa ngokuthi i-Google Project Zero, cishe unyaka odlule babhala ngayo ku-HabrΓ©. Isici sisha, kodwa sakhelwe kuwo wonke amadivayisi kusukela ngo-2019 anamasevisi e-Google. Abantu abaningi bayazi ukuthi lezi zinsizakalo zikhokhelwa abakhiqizi bedivayisi, abakhokhela izikweletu zabo ku-Google, kodwa abambalwa abazi ukuthi akukhawulelwe kwezohwebo. Ukuze uthole imvume yokusebenzisa amasevisi e-Google kudivayisi ethile, umenzi kufanele athumele i-firmware yayo ku-Google ukuze ibuyekezwe. Ngesikhathi esifanayo, i-Google ayamukeli i-firmware enama-Android asendulo ukuze iqinisekiswe. Lokhu kuvumela i-Google ukuthi iphushe i-Project Zero emakethe, okuzokwenza ngethemba ukuthi amadivayisi we-Android avikeleke kakhulu.

Izincomo zabasebenzisi bezinkampani

Emhlabeni wezinkampani, akuzona kuphela izinhlelo zokusebenza ezisesidlangalaleni ezitholakala ku-Google Play ne-App Store ezisetshenziswayo, kodwa nezinhlelo zokusebenza ezithuthukiswe ekhaya. Kwesinye isikhathi umjikelezo wempilo wezicelo ezinjalo uphela ngesikhathi sokusayina isitifiketi sokwamukela kanye nenkokhelo yezinsizakalo zonjiniyela ngaphansi kwenkontileka.

Kulokhu, ukufaka isibuyekezo esisha esikhulu se-OS kuvame ukubangela ukuthi izinhlelo zokusebenza ezinjalo ezenziwayo ziyeke ukusebenza. Izinqubo zebhizinisi ziyamiswa, futhi abathuthukisi baqashwa kabusha kuze kube yilapho kuvela inkinga elandelayo. Kwenzeka okufanayo lapho abathuthukisi bezinkampani bengenaso isikhathi sokujwayela izinhlelo zabo zokusebenza ku-OS entsha ngesikhathi, noma inguqulo entsha yohlelo lokusebenza isivele iyatholakala, kodwa abasebenzisi abakakayifaki. Ikakhulukazi, izinhlelo zamakilasi zenzelwe ukuxazulula izinkinga ezinjalo EMU.

Amasistimu e-UEM ahlinzeka ngokuphathwa kokusebenza kwama-smartphones kanye namathebulethi, afake ngokushesha futhi abuyekeze izinhlelo zokusebenza kumadivayisi ezisebenzi eziphathwayo. Ngaphezu kwalokho, bangabuyisela inguqulo yohlelo lokusebenza kwedlule uma kunesidingo. Amandla okubuyisela emuva inguqulo isici esikhethekile sezinhlelo ze-UEM. I-Google Play noma Isitolo Sohlelo Lokusebenza azinikezi le nketho.

Izinhlelo ze-UEM zingavimba zikude noma zibambezele izibuyekezo ze-firmware zamadivayisi eselula. Ukuziphatha kuyahlukahluka ngenkundla nomkhiqizi wedivayisi. Ku-iOS kwimodi egadiwe (funda ngemodi yethu Imibuzo Evame Ukubuzwa) ungabambezela isibuyekezo kufikela kuzinsuku ezingama-90. Ukuze wenze lokhu, vele ulungiselele inqubomgomo yokuphepha efanele.

Kumadivayisi e-Android akhiqizwe i-Samsung, ungavimbela izibuyekezo ze-firmware mahhala noma usebenzise isevisi ekhokhelwayo eyengeziwe i-E-FOTA One, ongacacisa ngayo ukuthi yiziphi izibuyekezo ze-OS ongazifaka kudivayisi. Lokhu kunikeza abalawuli ithuba lokuhlola kuqala ukuziphatha kwezinhlelo zebhizinisi ku-firmware entsha yamadivayisi abo. Ukuqonda inkimbinkimbi yale nqubo, sinikeza amakhasimende ethu isevisi esekelwe ku-Samsung E-FOTA One, ehlanganisa amasevisi okuhlola ukusebenza kwezinhlelo zebhizinisi eziqondiwe kumamodeli wedivayisi asetshenziswa ikhasimende.

Ngeshwa, akukho ukusebenza okufanayo kumadivayisi we-Android avela kwabanye abakhiqizi.
Ungavimbela noma uhlehlise isibuyekezo sabo, ngaphandle kokuthi mhlawumbe ngosizo lwezindaba ezishaqisayo, njenge:
"Basebenzisi abathandekayo! Ungabuyekezi amadivayisi akho. Lokhu kungase kubangele ukuthi izinhlelo zokusebenza zingasebenzi. Uma lo mthetho wephulwa, izicelo zakho zesevisi yokusekelwa NGEKE ZINAKWA/ZILALELWE!”.

Esinye isincomo

Landela izindaba namabhulogi ezinkampani avela kubakhiqizi bezinhlelo zokusebenza, amadivaysi kanye nezinkundla ze-UEM. Kulo nyaka nje i-Google inqume yenqaba kusukela ekusekeleni elinye lamaqhinga eselula angaba khona, okuyidivayisi ephethwe ngokugcwele enephrofayela yomsebenzi.

Ngemuva kwalesi sihloko eside kukhona lesi simo esilandelayo:

Ngaphambi kwe-Android 10, amasistimu e-UEM ayephethwe ngokugcwele idivayisi И abasebenzi iphrofayili (isitsha), equkethe izinhlelo zokusebenza zebhizinisi nedatha.
Ukuqala nge-Android 11, ukusebenza kokulawula okugcwele kungenzeka kuphela OK idivayisi OK iphrofayili yokusebenza (isitsha).

I-Google ichaza izinto ezintsha ngokunakekela ubumfihlo bedatha yomsebenzisi kanye nesikhwama sayo semali. Uma kukhona isiqukathi, idatha yomsebenzisi kufanele ibe ngaphandle kokubonakala nokulawula komqashi.

Empeleni, lokhu kusho ukuthi manje akunakwenzeka ukuthola indawo yamadivayisi ezinkampani noma ukufaka izinhlelo zokusebenza ezidingwa ngumsebenzisi emsebenzini, kodwa akudingi ukubekwa esitsheni ukuze kuqinisekiswe ukuvikelwa kwedatha yenkampani. Noma ngenxa yalokhu kuzomele ulahle isitsha...

I-Google ithi lokhu kufinyelela esikhaleni somuntu siqu kuvimbele u-38% wabasebenzisi ukuthi bafake i-UEM. Manje abathengisi be-UEM basalelwe ukuthi "badle lokho abakunikezayo."

Izici zezibuyekezo ze-firmware zamadivayisi eselula

Silungiselele izinto ezintsha kusenesikhathi futhi sizohlinzeka ngenguqulo entsha kulo nyaka I-SafePhone, okuzocabangela izidingo ezintsha ze-Google.

Amaqiniso amancane awaziwa

Sengiphetha, amaqiniso ambalwa awaziwa kancane mayelana nokubuyekeza ama-OS eselula.

  1. I-Firmware kumadivayisi eselula kwesinye isikhathi ingabuyiselwa emuva. Njengoba ukuhlaziya imishwana yosesho kubonisa, inkulumo ethi "indlela yokubuyisela i-Android" iseshwa kaningi kunokuthi "isibuyekezo se-Android." Kubonakala sengathi ukugxusha akukwazi ukubuyiselwa emuva, kodwa ngezinye izikhathi kusengenzeka. Ngokobuchwepheshe, ukuvikela ukubuyisela emuva kusekelwe kwikhawunta yangaphakathi, engakhuli ngayo yonke inguqulo ye-firmware. Ngaphakathi kwevelu eyodwa yalesi sibali, ukuhlehlisa kungenzeka. Yilokhu okumayelana ne-Android. Ku-iOS isimo sihluke kancane. Kusukela kuwebhusayithi yomkhiqizi (noma izibuko ezingenakubalwa) ungalanda isithombe se-iOS senguqulo ethile yemodeli ethile. Ukuze uyifake ngocingo usebenzisa i-iTunes, i-Apple kufanele isayine i-firmware. Ngokuvamile, emasontweni ambalwa okuqala ngemva kokukhishwa kwenguqulo entsha ye-iOS, i-Apple isayina izinguqulo zangaphambilini ze-firmware ukuze abasebenzisi abamadivayisi abo axakeke ngemva kokubuyekezwa bakwazi ukubuyela esakhiweni esizinze kakhudlwana.
  2. Ngesikhathi lapho umphakathi we-jailbreak wawungakahlakazeka uye ezinkampanini ezinkulu, kwakungenzeka ukushintsha inguqulo yenguqulo ye-iOS ebonisiwe kolunye lohlu lwesistimu. Ngakho-ke kwakungenzeka, isibonelo, ukwenza i-iOS 6.2 kusuka ku-iOS 6.3 nangemuva. Sizokutshela ukuthi kungani lokhu kwakudingeka kwesinye sezihloko ezilandelayo.
  3. Uthando lomhlaba wonke lwabakhiqizi bohlelo lwe-firmware ye-Odin smartphone lusobala. Ithuluzi elingcono kakhulu lokukhanyisa alikenziwa.

Bhala, sixoxe...mhlawumbe singasiza.

Source: www.habr.com

Engeza amazwana