Self-portrait fans must watch learning points cloud safety knowledge prevention icloud "Yan Zhao Door"

Source: Internet
Author: User
Keywords Church
Tags account password apple cloud cloud service cloud services crack data data leakage
These days icloud loopholes lead to a number of female photos of the uproar, although the specific reasons have not yet been determined, but now the biggest possibility is that hackers use the GitHub published a script program, the user account for brute force. The leak is now fixed and Apple said it would investigate further. But after this incident, we also have a better understanding of cloud service security. Violence to crack this incident is likely to take advantage of Apple Find My iphone service a loophole, the launch of the attack program is called Ibrute, the account password can be violently cracked. The method used for brute force cracking is also very simple, which is to extract information from the two files containing the email address and password, and try each one individually. Because of the vulnerability found my iphone, multiple password errors will not allow the account to be locked, so you can constantly try and error until the right. After the password is found, the hacker can connect to the icloud and get the data such as backup and picture of the phone. icloud services have been attacked before, but most are done through social engineering or publicly available information. In 2011, a man obtained the privacy data of actress Christina Aguilera and Scarlett Johansson by guessing passwords and restoring passwords with personal data. The service provider is not responsible for the Apple iOS system automatically backs up photos in the icloud by default, and Google +, Flickr and so on will automatically sync photos to the cloud. Even after reading like Snapchat and glimpse, you can't stop the other person from intercepting the image after receiving it, and if the other person uses the iphone, the photo will sync to each other's cloud. Cloud services, especially the public cloud services, are basically connected to the network, whether it is personal error or service loopholes, will lead to personal data leakage. Privacy data and shared data are not differentiated on storage. After the user data leakage, according to the general terms of use, cloud service providers will not assume too much responsibility. Security experts say there are two ways to avoid this kind of scandal, one is not to take this private photo, because one day will spread out, and the second is to pay attention to the company and the individual is not right, the company will be free of the basic punishment. No pornographic photos are the best way to prevent the disclosure of pornographic photos. The iOS user's remedy is to check the cloud, not just the device. Deleting photos on your phone does not mean removing them from the cloud. Cloud services can back up the user's various content on the device. If there's really something you don't want others to see, delete it everywhere. Or you can stop the cloud service directly. In addition, when the photo is deleted on the icloud, the original photo is also available on the device where the original photo was taken, and if you want to completely clear it, you need to delete it on the device. Use two-step validation to answer two questions before logging in. One problem is to provide the correct password, and the other is to receive the authentication code via SMS or mail. Even hackers can crack passwords, which can effectively prevent intrusions because they are difficult to obtain authentication codes. icloud has two steps to verify, but requires the user to manually open it. Use different passwords on services and devices. Using the same password everywhere will increase the probability of hacking, but many lazy people do not. In the age of more and more intelligent mobile phones and more frequent use, it is necessary to think twice before you take a portrait. No matter what system you use, being cracked is just a matter of sooner or later.
Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.