Blog

19 Jan 2017

Tus tshiab Gmail phaib kws txuj ci dag yog dag tshaj txawm tias cov neeg tau paub zoo: Ntawm no yog daim zais kom pom txiaj ntsig nws

Cov kws tshawb fawb ruaj ruaj ntawm WordFence tus naas maum designer ntawm kev ruaj ntseg seev tau pom qhov lawv hu yog ib tus "profoundly compelling" phishing kws txuj ci dag uas tau raug tricking Google cov neeg Gmail hauv uncovering lawv tus ID nkag mus tsis pom kev. Cov kws txuj ci dag tau hais tias tau tuaj yeem tuaj yeem tuaj yeem ua haujlwm txog cov neeg siv kev siv email thiab muaj kev ncaj nraim hauv lub ntsej muag ncaj nraim tias txawm tias lub qhov muag npaj tau tshaj plaws yuav xav tias nws nyuaj rau kev ceeb toom. Tom qab qhov txawv ntawm qhov kev phem, WordFence tau tshaj tawm ib yam ntawm lawv cov blog thiab ceeb toom ntawm kev quab yuam.

Yuav ua li cas nws functions

Tus kws khib nyiab phaj yog ib qho kev npaj ua tsis tshua muaj tseeb. Cov kev pabcuam lossis tus neeg xa khoom siv Gmail yuav xub tau txais email los ntawm qhov kev pabcuam pom los ua kev sib tham. Ntxiv rau tus email yog qhov tshaj plaws uas muaj tag nrho cov kev ua ntawm kev ua qauv ntaub ntawv hauv .pdf tsim. Suspicious cov neeg uas muaj lub propensity rau daus kev twb kev txuas yuav nrhiav tau ib yam dab tsi anomalous hnyuj hnyo nyob rau hauv cov nram qab no stride.

Tapping rau ntawm qhov chaw ua hauj lwm archive rau feem ntau cov neeg muab cov neeg tuaj xyuas cov ntaub ntawv. Tapping ntawm no kev twb kev txuas tab txawm, yuav coj koj mus rau qhov kev kos npe nrog Google nplooj ntawv mus rau qhov archive. Cov neeg tsis muaj peev xwm yuav suav nrog lawv tus email ID thiab cov lus tseem ceeb thiab ntxiv mus.

Gmail Cov Ntaub Ntawv URI

Qhov kos npe rau ntawm nplooj ntawv yog qhov thib ob lub sij hawm ntawm tus kws txuj ci dag. Nws yeej yuav siv cov neeg kom muaj dab tsi muaj tag nrho cov kev nkag siab ntawm kev ncaj ncees rau kev zoo siab 'Kos npe hauv Google' nplooj ntawv. Cov neeg ua hauj lwm clueless yuav muaj xws li lawv cov accreditations tsis paub txog tias cov ntsiab lus hloov maj mam yog to taub xa crosswise mus rau lub database.

Cov kauj ruam yog qhia kom paub qhov txawv

Lub ntsiab lus ntawm cov lus qhia ntawm no yog qhov URL ntawm nplooj ntawv. Nws peruses "data.text / html.https ..." nyob rau hauv kev muaj tiag raws li cov blog coj nws cov lus qhia URI thiab tsis muaj URL. Cov ntaub ntawv "URI" tau muab coj los ua ib feem ntawm txoj kev npaj khomob no muaj cov ntaub ntawv sau tseg hauv cheeb tsam chaw khomob.

Nyob rau hauv lub ntsiab lus thaum tus neeg txais kev pabcuam tawm nws qhov kev sib txuas mus rau daim ntawv txheeb xyuas hauv email, nws yeej qhib tau ib daim ntawv rau lwm tab (nrog rau kev sib tw ntawm cov 'Kos npe hauv Google phab') tsuas yog qhov no yog fake thiab xa koj cov ntaub ntawv mus rau tus neeg ua phem.

Qhov thib ob ntawm cov ntaub ntawv kom paub qhov txawv phaib qhov txuj ci dag no yog los ntawm ib lub tweet uas tau pom zoo raws li nram no. Nws coj tuaj, tias txoj kev zoo tshaj los paub txog qhov no yog seb koj puas tau muaj qhov kev txiav txim siab siab uas yuav qhia tau tias qhov kev txuas mus rau qhov kev tshawb xyuas archive yog tiag tiag duab txig (vim nws tsis teev) uas qhib daim ntawv. Nyob rau hauv lub caij nyoog tias nws yog ib qhov zoo tshaj plaws txuas, nws yuav scale paab, qhov no dua yog ib yam ntawm ob peb cov neeg yuav paub thiab ntau yuav kis tau ib lub sijhawm rau.

Nyob rau hauv lub caij nyoog uas koj tseem nug, lub blog hu mloog mus rau koj tias koj muaj peev xwm mus rau haveibeenpwned.com thiab tshawb xyuas nrog koj tus email ntawm no qhov chaw uas txhim khu kev qha.

Yuav ua li cas qhov kev lag luam no tawm ntawm qhov ntawd?

Raws li ib qho taw tes los ntawm point Blog los ntawm WordFence CEO Mark Maunder, tus kws txuj ci dag tau raug lees paub rau hauv chav kawm ntawm lub lis piam tsis ntev los no. Dab tsi yog qhov tseem nyuab siab tias nws tau raug suav los ntawm cov neeg tsis paub tab, tab sis yog tshwj xeeb los yog ntsib cov neeg uas tau tsoo txog kev raug ntaus los ntawm nws. Qhov tseeb yuav hais, muaj tsawg heev txawm Google yuav ua tau los tiv thaiv xws li kev tsim txom raws li qhov kev tshaj tawm los ntawm Google coj tuaj:

"Peb xav txog qhov teebmeem no thiab ua kom peb muaj zog tiv thaiv peb txojkev tiv thaiv. Peb yuav pab tiv thaiv cov neeg tau txais kev pab los ntawm kev phom sij ntawm cov khoom muaj nqis, xws li: kev kawm tshuab raws li cov cim phishing, Cov ntawv ceeb toom kev nyab xeeb uas ceeb toom cov neeg tau txais kev phom sij hauv cov lus thiab cov kev pab cuam, tsis txhob muaj cov neeg paub cov npe, los ntawm muaj. Cov neeg tuaj ua lag luam tuaj yeem kho tau ob-theem kev lees paub rau cov ntaub ntawv ntxiv txog kev ruaj ntseg. "

Koj yuav pov hwm koj tus kheej li cas ntawm qhov kev ntaus nqi no?

Yog tias koj xav hais tias koj yog casualty, qhov zoo tshaj plaws yuav ua yog hloov koj qhov tseem ceeb zais cia, qhov no tau muab qhov kev txhaum muaj li ntawm tam sim no tsis cia koj tawm ntawm koj tus kheej cov ntaub ntawv los ntawm kev ua tau ib yam ntawm nws kawg. Koj tuaj yeem ua ib tug beeline rau koj daim ntawv sau npe ua pov thawj seb lwm tus neeg tau khij rau hauv koj cov ntaub ntawv. Koj tuaj yeem ua li no los ntawm qhib koj cov ntawv sau Gmail thiab tom qab ntawd rau ntawm txoj cai los ntawm lub hauv paus, coj mus rhaub rau cov lus.

Yog tias koj tsis raug ntaus, thiab xav tias koj yuav tau txais kev sib txuas ntawm cov kev sib txuas lus nyob rau hauv lub lis piam dhau los, tom qab ntawd tam sim no yuav yog lub sijhawm zoo los hloov qhov tseem ceeb zais cia.

Raws li Google hu mus rau, qhov zoo tshaj plaws txoj kev zoo rau kev nyob ruaj ntseg, yog los txhawb ob theem kev pom zoo lossis tshawb xyuas cov ntaub ntawv ntxiv kev ruaj ntseg.

Nrog tus neeg siv email ID thiab lo lus zais cia, tus neeg muaj cai ua tau txhua yam uas nws nyiam nrog cov ntaub ntawv pov thawj. Li ntawd nws nyob hauv kev muaj tiag zoo rau kev hloov koj Gmail lus zais cia txhua zaus tam sim no thiab ces kom nyob ruaj ntseg.

&bsp

GTranslate Your license is inactive or expired, please subscribe again!