Usuku lweZero

IGrail engcwele yeHacker Hacker

Enye yeemantras zokhuseleko yolwazi kukugcina iinkqubo zakho zilandelwe kwaye zihlaziywa. Njengabathengi bafunda ngokutsha kwamatye kwimveliso yabo, mhlawumbi abaphandi benkampani ye-3 okanye ngokuzifumanisa zabo, badala ama-hotfixes, ama-patches, iipakethi zenkonzo kunye neendlela zokukhusela ukulungisa izimbobo.

I-Grail Engcwele kwinkqubo enobungozi kunye nabalobi be- virus "yi-zero day exploit". Usuku lwentsuku luxhaphaza xa ukuxhaphazwa kwintlekeleko kudalwe ngaphambili, okanye ngosuku olufanayo njengoko ukufunyanwa kwintlekele kufundiswa ngumthengisi. Ngokudala i-virus okanye imbungu esetyenziselwa ubungozi umthengisi engazange akwaziyo kwaye apho kungabikho iqela elikhoyo khona umhlaseli angabangela ukuphazamiseka okukhulu.

Eminye intsingiselo ibizwa ngokuba yi-zero suku ixhaphaza ubungozi ngamaphephandaba, kodwa umbuzo ungumhla wexesha? Amaxesha amaninzi umthengisi kunye nabanikezeli beetheknoloji abalulekileyo bayayazi iiveki ezikhuselekileyo okanye iinyanga ngaphambi kokuba kuqhutywe kakubi okanye phambi kokuba ubungozi buchazwe esidlangalaleni.

Umzekelo omhle weli yi-SNMP (Inkqubo yokuSebenziswa kweNethiwekhi elula) eyabhengezwa ngoFebhuwari ka-2002. Abafundi baseYunivesithi yase-Oulu eFinland bafumanisa iimpazamo ehlobo zase-2001 ngelixa besebenza kwiprojekthi ye-PROTOS, i-suite yokuvavanya eyenzelwe ukuvavanya i-SNMPv1 (inguqulelo 1).

I-SNMP yinkqubo elula yezixhobo zokuthetha omnye nomnye. Isetyenziswe kwisixhobo kwintetho yonxibelelwano kunye nokubeka esweni kude kunye nokucwangciswa kwezixhobo zenethiwekhi ngabalawuli. I-SNMP ikhona kwi-hardware yenethiwekhi (i-routers, switches, hubs, njl.), Iiprinta, iipopiers, iikhompysi zefeksi, izixhobo zokusebenza zezobugcisa eziphezulu-phantsi kunye phantse yonke inkqubo yokusebenza.

Emva kokufumanisa ukuba bangakwazi ukuphazamisa okanye ukukhubaza amadivayisi ngokusebenzisa i-PROTOS yabo yokuvavanywa, abafundi baseYunivesithi yase-Oulu baqaphele ngokucacileyo amandla kwaye igama laphuma kubathengisi. Wonke umntu wahlala kuloo ngcaciso kwaye wayigcina imfihlelo kwaze kwaba ngandlela-thile ehambelana nehlabathi ukuba i-suite ye-PROTOS yokuhlola, ngokwayo ngokukhululekileyo nangokubonakalayo esidlangalaleni, ingasetyenziswa njengekhowudi yokuxhaphaza ukuzisa izixhobo ze-SNMP. Ngaloo ndlela ke ngaba abathengisi kunye nehlabathi baqhayisa ukudala nokukhulula iipatches ukulungisa imeko.

Ihlabathi lixhatywe kwaye laliphathwe njengentsuku ye-zero xa kuqhutywe iinyanga ezingaphezulu kweenyanga ezili-6 ukusuka kwimeko yokungabikho kokungabikho kokufunyanwa ekuqaleni. Ngokufanayo, iMicrosoft ithola imingxuma emitsha okanye ikwaziswa ngemibhobho emitsha kwimveliso yazo rhoqo. Ezinye zazo ziyinkcazo yokuchazwa kwaye iMicrosoft inokwenza okanye engavumelani ukuba ngokwenene ilahleko okanye inobungozi. Kodwa, kwabaninzi abo bavumelanayo kukungabikho kwintlungu okanye iinyanga ezihamba phambili ngaphambi kokuba iMicrosoft ikhishwe ukuhlaziywa kwokhuseleko okanye ipakethi yesevisi ejongene nombandela.

Elinye inhlangano yokukhusela (i-PivX Solutions) esetyenziselwa ukugcina uluhlu olusebenzayo lweMicrosoft Internet Explorer engozini yokuba iMicrosoft ibikwazisiwe kodwa yayingabonakali. Kukho ezinye iisayithi kwiwebhu eziqhutyelwa ngabagculi abagcina uluhlu lweentengo ezikhoyo eziziwayo kunye nalapho abahlaseli kunye nabaphuhlisi bekhowudi ezinobungozi beenkcukacha zorhwebo ngokunjalo.

Oku akuthethi ukuba ukusetyenziswa kosuku lwe-zero alukho. Ngelishwa oko kwenzeka njalo ukuba okokuqala ukuba abathengisi okanye ihlabathi baqaphele umngxuma xa besenza uphando lobunzima ukuze bafumene indlela inkqubo eyahlukileyo ngayo okanye xa ihlalutya intsholongwane esele isasazeka kwintlango fumana ukuba isebenza njani.

Ingaba ngaba bathengi bazi malunga nokukhuseleka kunyaka odlulileyo okanye bafunyanwe ngalo ngoku kusasa, ukuba ikhowudi yokuxhaphaza ikhoyo xa ubuthathaka bubekwe uluntu luyinto yokusetyenziswa kwimihla ngemihla kwikhalenda.

Into efanelekileyo ongayenza ukukhusela ekusebenziseni iintsuku zentsuku kukulandela imigaqo-nkqubo yokukhusela yokuqala kwindawo yokuqala. Ngokufaka kunye nokugcina isofti yakho yokulwa ne-virus kuze kube yimanje, ukuvimba iifayile ezifakwe kwii-imeyile ezinokuyingozi kunye nokugcina inkqubo yakho yokubambisa ngokuchasene nawe sele uyakwazi ukuba unokukhusela inkqubo yakho okanye inethwekhi malunga ne 99% .

Enye yeendlela ezintle zokukhusela ngokusisongela engazange zikwazi ukusebenzisa i-hardware okanye isofthiwe (okanye zombini) i- firewall . Ungakwazi kwakhona ukukhangela okukodwa (iteknoloji esetyenziswe ukuzama ukuvimba ii-virus okanye iimbungu ezingaziwayo malunga) kwisofthiwe yakho yokulwa ne-virus. Ngokuthintela i-traffic engadingekile kwindawo yokuqala kunye ne-firewall ye-hardware, ukuvimba ukufikelela kwiinkqubo zenkqubo kunye neenkonzo kunye ne-firewall yesofthiwe okanye ukusebenzisa isofthiwe yakho yintsholongwane ukuze uncede ukubona ukuziphatha okungathandekiyo unokuzikhusela ngokubhekiselele kwizinto ezixhaphakileyo zentsuku.