Ungaphendula kanjani kubaduni 'abangochwepheshe'

Ngicabanga ukuthi ukungabikho okuncane bekukuzuzisile 🙂 Kulezi zinsuku ngijabule kakhulu kunakuqala ukuqala amaphrojekthi amasha futhi ngicabanga ukuthi kungekudala ngizokunikeza izindaba ezintsha mayelana nenqubekela phambili yami eGentoo that Kepha akusona isihloko sanamuhla.

I-Forensic Computing

Esikhathini esithile esidlule ngathenga isifundo se-Forensic Computing, ngikuthola kumnandi kakhulu ukwazi izinqubo ezidingekayo, izinyathelo nezinyathelo zokuphikisa ezenzelwe ukukwazi ukubhekana nobugebengu bedijithali kulezi zinsuku. Amazwe anemithetho echazwe kahle maqondana nalokhu abe yizilinganiso endabeni futhi eziningi zalezi zinqubo kufanele zisetshenziswe emhlabeni jikelele ukuqinisekisa ukuphathwa kolwazi olufanele.

Ukuntuleka kwezinqubo

Njengoba kunikezwe ubunzima bokuhlaselwa kulezi zinsuku, kubalulekile ukuthi ubheke ukuthi kungaletha miphi imiphumela ukungabi bikho kokuqapha kokuphepha kwemishini yethu. Lokhu kusebenza kuzo zombili izinkampani ezinkulu kanye nezinkampani ezincane noma eziphakathi nendawo, ngisho nasezingeni lomuntu siqu. Izinkampani ikakhulukazi ezincane noma eziphakathi nendawo lapho cha zikhona izinqubo ezichaziwe yokuphatha / ukugcina / ukuhambisa imininingwane ebucayi.

'Umgengeli' akasona isilima

Esinye isisusa esilinga kakhulu 'se-hacker' yimali encane, kepha ngani? Ake sicabange ngalesi simo umzuzwana: Uma ngikwazi 'ukugenca' i-akhawunti yasebhange, yiliphi inani eliteleka kakhulu: ukuhoxiswa kwezinkulungwane eziyishumi (imali yakho) noma eyodwa kwezingu-10? Ngokusobala uma ngibheka i-akhawunti yami futhi akukho lapho kuvela khona ukuhoxiswa / ukuthunyelwa / ukukhokhwa kwezinkulungwane eziyi-10 (imali yakho), ama-alamu ayavela, kepha uma kube enye yezingu-10, inganyamalala phakathi kwamakhulu ezinkokhelo ezincane ezenziwe. Ukulandela lo mqondo, umuntu angaphindaphinda 'i-hack' kuma-akhawunti angaba yikhulu ngokubekezela okuncane, futhi ngalokhu sinomphumela ofanayo we-10, ngaphandle kwama-alamu angazwakala lokho.

Izinkinga zebhizinisi

Manje, ake sithi le akhawunti ingeyenkampani yethu, phakathi kokukhokhelwa kwabasebenzi, okokusebenza, ukuqasha, lezi zinkokhelo zingalahleka ngendlela elula, zingathatha ngisho nesikhathi eside ukwenzeka ngaphandle kokubona ukuthi imali iya kuphi noma kanjani. Kepha le akuyona inkinga kuphela, ake sithi 'isigenge' singene kuseva yethu, futhi manje asikwazi ukufinyelela ama-akhawunti axhunywe kuyo kuphela, kepha kufayela ngalinye (elisesidlangalaleni noma elizimele), ekuxhumekeni ngakunye okukhona, lawula isikhathi izinhlelo ezisebenza ngaso noma imininingwane egeleza phakathi kwazo. Izwe elihle eliyingozi lapho sima ukucabanga ngakho.

Yiziphi izindlela zokuvimbela ezikhona?

Yebo, lesi yisihloko eside impela, futhi empeleni into ebaluleke kakhulu Siempre vimbela noma yikuphi okungenzeka, ngoba kungcono kakhulu ukugwema le nkinga ngaphambili kusukela ekwenzekeni kokukhokha imiphumela yokwehluleka kokuvimbela. Futhi ingabe izinkampani eziningi zikholelwa ukuthi ezokuphepha ziyindaba yokuhlolwa kwamabhuku ama-3 noma ama-4 unyaka. Lokhu akukhona kuphela okungenangqondo, kodwa kunjalo kuyingozi kakhulu ukwenza lutho, njengoba kukhona ifayela le- umqondo ongamanga 'wokuphepha'.

Sebevele 'bangigqekeza', manje kwenzenjani?

Yebo, uma ngabe uhlupheke nje nge ukuhlaselwa ngempumelelo ohlangothini lwe-hacker, oluzimele noma olunenkontileka, kuyadingeka ukwazi inqubo ephansi yezenzo. Lokhu kuncane kakhulu, kepha kuzokuvumela ukuthi uphendule ngendlela ebonakalayo ebonakalayo uma yenziwe kahle.

Izinhlobo zobufakazi

Isinyathelo sokuqala ukwazi amakhompyutha athintekile, futhi uwaphathe kanjalo, ubufakazi bedijithali isuka kumaseva iye kumaphrinta ahlelwe ngaphakathi kwenethiwekhi. 'Umgengezi' wangempela angazungeza amanethiwekhi wakho esebenzisa amaphrinta asengozini, yebo, ufunda lelo lungelo. Lokhu kungenxa yokuthi i-firmware enjalo ayivuselelwa kakhulu, ngakho-ke ungaba nemishini esengozini ngaphandle kokuyibona iminyaka.

Njengoba kunje, kuyadingeka lapho kuhlaselwa ukuze kucatshangelwe lokho izinto zobuciko ezengeziwe zokwehliswa engozini bangaba ubufakazi obubalulekile.

Umphenduli wokuqala

Angikwazi ukuthola ukuhumusha okulungile kwethemu, kepha i- umphenduli wokuqala empeleni ungumuntu wokuqala ohlangana namaqembu. Izikhathi eziningi lo muntu ngeke kube umuntu okhethekile futhi kungaba yi umphathi wezinhlelo, unjiniyela umphathi, noma imenenja okhona endaweni yesigameko okwamanje futhi akanaye omunye ongaphendula esimweni esiphuthumayo. Ngenxa yalokhu, kubalulekile ukuqaphela lokho ayikho neyodwa ekufanele, kepha kufanele wazi ukuthi ungaqhubeka kanjani.

Kukhona izifunda ezi-2 zokuthi iqembu lingangena ngemuva kwe- ukuhlaselwa ngempumelelo, futhi manje kusele ukugcizelela ukuthi a ukuhlaselwa ngempumelelo, kuvame ukuvela ngemuva abaningi ukuhlaselwa okungaphumelelanga. Ngakho-ke uma sebevele sebebile imininingwane yakho, kungenxa yokuthi ayikho inqubo yokuvikela nokuphendula. Uyakhumbula ngokuvimbela? Manje yilapho leyo ngxenye yenza umqondo nesisindo kakhulu. Kepha hheyi, angizukukhuhla lokho kakhulu. Asiqhubeke.

Iqembu lingaba ezifundazweni ezimbili ngemuva kokuhlaselwa, exhunywe kwi-inthanethi Ngaphandle kokuxhuma. Lokhu kulula kakhulu kepha kubalulekile, uma ikhompyutha ixhunywe kwi-inthanethi UKUNQOBA yinqamule NGOKUSHESHA. Ngikunqamula kanjani? Udinga ukuthola i-router yokuqala yokufinyelela i-inthanethi bese ususa ikhebula lenethiwekhi, ungayicishi.

Ukube iqembu belikhona NGAPHANDLE KOKUXHUMANA, sibhekene nomhlaseli oyekethisile ngokomzimba izakhiwo, kulokhu yonke inethiwekhi yendawo ifakwa ebucayini futhi kuyadingeka seal Izitolo ze-inthanethi ngaphandle kokushintsha noma iyiphi imishini.

Hlola okokusebenza

Lokhu kulula, UNGALOKOTHI, PHAKADE, NGAPHANSI KWESINYE ISIMO, UMphenduli wokuqala kufanele ahlole okokusebenza okuthintekayo. Ukuphela kwesimo lapho lokhu kungashiywa khona (cishe akwenzeki) ukuthi uMphenduli Wokuqala ungumuntu onokuqeqeshwa okukhethekile okufanele akwenze ngalezo zikhathi. Kepha ukukunikeza umbono wokuthi yini engenzeka kulezi zimo.

Ngaphansi kwezindawo zeLinux

Ake sithi i- umhlaseli Wenze ushintsho oluncane nolungabalulekile kuzimvume azitholile ekuhlaselweni kwakhe. Kushintshwe umyalo ls etholakala /bin/ls ngombhalo olandelayo:

#!/bin/bash
rm -rf /

Manje uma singahlosile sisebenzisa okulula ls kwikhompyutha ethintekile, izoqala ukuzilimaza zonke izinhlobo zobufakazi, ihlanze yonke iminonjana yemishini futhi ichithe yonke amathuba okuthola isigebengu.

Ngaphansi kwezindawo zeWindows

Ngoba umqondo ulandela izinyathelo ezifanayo, ukushintsha amagama wamafayela ku-system32 noma amarekhodi afanayo ekhompyutha kungenza uhlelo lungasebenziseki, kubangele ukuthi ulwazi lonakaliswe noma lilahleke, kuphela ukulimala okuyingozi kakhulu okusalayo kubuciko bomhlaseli.

Ungadlali iqhawe

Lo mthetho olula ungagwema izinkinga eziningi, futhi uvule namathuba ophenyo olunzulu nolungokoqobo ngale ndaba. Ayikho indlela yokuqala ukuphenya inethiwekhi noma uhlelo uma yonke imikhondo ekhona isuliwe, kepha kusobala ukuthi le mikhondo kufanele ishiywe ngemuva. okulungiselelwe ngaphambili, lokhu kusho ukuthi kufanele sibe nezinqubo ze- ukuphephaisipele. Kepha uma iphuzu lifinyelelwa lapho kufanele sibhekane nokuhlaselwa real, kuyadingeka UNGADLALI IQHAWE, ngoba isenzo esisodwa esingalungile singadala ukubhujiswa okuphelele kwazo zonke izinhlobo zobufakazi. Uxolo ngokuphinda kaningi, kepha ngingenze kanjani uma le nto eyodwa ingenza umehluko ezimweni eziningi?

Imicabango yokugcina

Ngiyethemba lo mbhalo omncane ukukusiza ukuba ube nomqondo ongcono wokuthi uyini umvikela izinto zabo 🙂 Isifundo sithakazelisa kakhulu futhi ngifunda okuningi ngalokhu nezinye izihloko eziningi, kepha sengivele ngibhala okuningi ngakho-ke sizokuyekela kwanamuhla 😛 Maduze ngizokulethela izindaba ezintsha ngemisebenzi yami yakamuva. Halala,


Shiya umbono wakho

Ikheli lakho le ngeke ishicilelwe. Ezidingekayo ibhalwe nge *

*

*

  1. Ubhekele imininingwane: Miguel Ángel Gatón
  2. Inhloso yedatha: Lawula Ugaxekile, ukuphathwa kwamazwana.
  3. Ukusemthethweni: Imvume yakho
  4. Ukuxhumana kwemininingwane: Imininingwane ngeke idluliselwe kubantu besithathu ngaphandle kwesibopho esisemthethweni.
  5. Isitoreji sedatha: Idatabase ebanjwe yi-Occentus Networks (EU)
  6. Amalungelo: Nganoma yisiphi isikhathi ungakhawulela, uthole futhi ususe imininingwane yakho.

  1.   I-Kra kusho

    Lokho engikuthatha njengokubaluleke kakhulu ngemuva kokuhlaselwa, kunokuba ngiqale ukwenza imiyalo akuyona ukuqala kabusha noma ukucisha ikhompyutha, ngoba ngaphandle kokuthi i-ransomware konke ukutheleleka kwamanje kugcina idatha kwimemori ye-RAM,

    Futhi ukushintsha umyalo we-ls ku-GNU / Linux kuya ku- "rm -rf /" ngeke kube nzima ngoba noma ubani onolwazi oluncane angalulama idatha kudiski esuliwe, kungcono ngiyishintshe ibe yi- "shred -f / dev / sdX" okuchwepheshe kakhudlwana futhi okungadingi ukuqinisekiswa njengomyalo we-rm osetshenzisiwe empandeni

    1.    UChrisADR kusho

      Sawubona Kra you ngiyabonga kakhulu ngokuphawula, futhi kuyiqiniso impela, ukuhlaselwa okuningi kuklanyelwe ukugcina idatha ku-RAM ngenkathi isebenza. Kungakho isici esibaluleke kakhulu ukushiya imishini isesimeni esifanayo naleso etholakale kuso, kuvuliwe noma kuvaliwe.

      Ngokuqondene nomunye, angithembi kangako 😛 ikakhulukazi uma lowo oqaphelayo engumphathi, noma elinye ilungu le-IT elisendaweni exubile (iWindows neLinux) kanye "nomphathi" we Amaseva we-linux awatholakali, lapho ngike ngabona ukuthi ihhovisi lonke likhubazeke kanjani ngoba akekho umuntu ngaphandle kuka "uchwepheshe" owayazi ukuthi angaqala kanjani ummeleli we-Debian server ... amahora amathathu alahlekile ngenxa yokuqala isevisi 🙂

      Ngakho-ke benginethemba lokushiya isibonelo esilula ngokwanele ukuthi noma ngubani asiqonde, kepha ngokusho kwakho, kunezinto eziningi eziyinkimbinkimbi ezingenziwa ukucasula abahlaselwe 😛

      Phendula ngokucaphuna

      1.    I-Chichero kusho

        Kuthiwani uma iqala kabusha ngokunye ngaphandle kwe -hlengware?

        1.    UChrisADR kusho

          Yebo, ubufakazi obuningi bulahlekile i-chichero, kulezi zimo, njengoba siphawulile, ingxenye enkulu yemiyalo noma 'ama-virus' ahlala ku-RAM ngenkathi ikhompyutha ivuliwe, ngesikhathi sokuqala kabusha lonke lolo lwazi lulahlekile kubalulekile. Enye into elahlekile izingodo eziyindilinga, zombili i-kernel ne-systemd, eziqukethe imininingwane engachaza ukuthi umhlaseli uhambe kanjani kwikhompyutha. Kungaba nemikhuba eqeda izikhala zesikhashana ezinjenge / tmp, futhi uma ngabe ifayili elibi lalitholakala lapho, ngeke kwenzeke ukulibuyisa. Ngamafuphi, izinketho eziyinkulungwane neyodwa ongazicabanga, ngakho-ke kungcono kakhulu ukungahambisi lutho ngaphandle kokuthi wazi kahle okufanele ukwenze. Ukubingelela nokubonga ngokwabelana 🙂

    2.    Gonzalo kusho

      Uma othile engaba nokufinyelela okuningi ohlelweni lwe-linux njengokushintsha umyalo weskripthi, endaweni edinga amalungelo ezimpande, esikhundleni sokwenza, into ekhathazayo ukuthi izindlela zishiywe zivulekile ukuze umuntu akwenze lokho .

      1.    UChrisADR kusho

        Sawubona Gonzalo, nakho lokhu kuyiqiniso impela, kepha ngikushiya isixhumanisi ngakho,
        [1] https://www.owasp.org/index.php/Top_10_2017-Top_10

        Njengoba ukwazi ukubona, amazinga aphezulu afaka ukukhubazeka komjovo, ukufinyelela kolawulo olubuthakathaka, futhi okubaluleke kunakho konke, UKULUNGISELEKA OKUBI.

        Manje kulokhu kulandela okulandelayo, okujwayelekile "kulezi zinsuku, abantu abaningi abazilungisi kahle izinhlelo zabo, abaningi bashiya izimvume ngokwakhona (impande) kuzo, futhi uma sezitholakele, kulula kakhulu ukuxhaphaza izinto" okuthiwa " sebevele "bagwenyiwe." 🙂

        Hhayi-ke, kulezi zinsuku bambalwa kakhulu abantu abakhathalelayo ngohlelo uqobo lapho izinhlelo zokusebenza zikunikeza ukufinyelela ku-database (ngokungaqondile) noma ukufinyelela ohlelweni (ngisho nolungeyona impande) ngoba uhlala uthola indlela ukuphakamisa amalungelo lapho ukufinyelela okuncane kutholakala.

        Ukubingelela nokubonga ngokwabelana 🙂

  2.   UJavilondo kusho

    IChrisADR ethakazelisa kakhulu, by the way: Iyiphi leyo nkambo yezokuphepha oyithengile futhi ungayithenga kuphi?

    1.    UChrisADR kusho

      Sawubona Javilondo,

      Ngithenge okunikezwayo ku-Stackskills [1], izifundo eziningi zangena ephaketheni lokwenyusa lapho ngilithenga ezinyangeni ezimbalwa ezedlule, phakathi kwazo engikwenzayo manje enye evela ku-cybertraining365 interesting Kuyathakazelisa kakhulu empeleni. Jabulela

      [1] https://stackskills.com

  3.   UGuillermo Fernandez kusho

    Sanibonani, nginilandele isikhashana futhi ngiyanihalalisela nge-blog. Ngenhlonipho, ngicabanga ukuthi isihloko salesi sihloko asilungile. Kubaduni akubona abalimaza amasistimu, kubonakala kubalulekile ukuyeka ukuhlanganisa igama le-hacker ne-cyber-crime noma umuntu olimazayo. Abaduni baphambene. Umbono nje. Ukubingelela nokubonga. UGuillermo wase-Uruguay.

    1.    UChrisADR kusho

      Sawubona uGuillermo 🙂

      Ngiyabonga kakhulu ngokuphawula kwakho, nangokubongela. Hhayi-ke, ngabelana ngombono wakho ngakho, futhi ngaphezu kwalokho, ngicabanga ukuthi ngizozama ukubhala i-athikili ngalesi sihloko, ngoba njengoba ushilo, isigebengu akudingeki ukuthi sibe yisigebengu, kepha qaphela i-NECESSARY, ngicabanga ukuthi lokhu isihloko sendatshana yonke 🙂 Ngibeka isihloko esinjengalesi ngoba noma abantu abaningi lapha bevele bevele benolwazi lwangaphambilini lwendaba, kunengxenye enhle engenayo, futhi mhlawumbe bahlobanisa kangcono igama elithi hacker nalokho (yize kungafanele ube njalo) kepha kungekudala sizoyicacisa kancane le ndaba 🙂

      Ukubingelela nokubonga ngokwabelana

      1.    UGuillermo Fernandez kusho

        Ngiyabonga kakhulu ngempendulo yakho. Ukwanga futhi kuqhubeke. UWilliam.

  4.   i-aspros kusho

    Isigebengu asisona isigebengu, kunalokho, ngabantu abakutshela ukuthi izinhlelo zakho zinezimbungulu futhi yingakho bengena ezinhlelweni zakho ukukuxwayisa ukuthi basengozini futhi bakutshele ukuthi ungazithuthukisa kanjani.

    1.    UChrisADR kusho

      Sawubona aspros, ungacabangi ukuthi isigebenga siyafana nokuthi "umhlaziyi wezokuphepha", isihloko esivamile kubantu abazinikele ekwaziseni uma amasistimu enezimbungulu, bafaka izinhlelo zakho ukukutshela ukuthi basengozini nokunye njll ... UHacker udlulela ngale “kokuhweba” ahlala kukho usuku nosuku, kunalokho ubizo olunxusa ukuba wazi izinto iningi labantu ezingasoze zaziqonda, nokuthi lolo lwazi lunikeza amandla, futhi lokhu kuzosetshenziswa ukwenza zombili izenzo ezinhle nezimbi, kuya ngomgengezi.

      Uma usesha ku-inthanethi izindaba zabaduni abadumile emhlabeni, uzothola ukuthi iningi labo lenze "ubugebengu bamakhompiyutha" kukho konke ukuphila kwabo, kepha lokhu, kunokuba kudale umbono ongaqondile walokho umgqekezi angakwazi noma angeke abe yikho , kufanele isenze sicabange ngokuthi sithemba kangakanani futhi sizinikela kangakanani kwikhompyutha. Abaduni bangempela ngabantu abafunde ukungayethembi ikhompyutha ejwayelekile, ngoba bayayazi imingcele namaphutha ayo, futhi ngalolo lwazi bangakwazi "ukuphusha" ngomoya ophansi imingcele yezinhlelo ukuze bathole abakufunayo, okuhle noma okubi. . Futhi abantu "abajwayelekile" bayabesaba abantu / izinhlelo (amagciwane) abangakwazi ukuzilawula.

      Futhi ukukhuluma iqiniso, abaduni abaningi banomqondo omubi wokuthi "abahlaziyi bezokuphepha" ngoba bazinikele ekusebenziseni amathuluzi abawenzayo ukuthola imali, ngaphandle kokudala amathuluzi amasha, noma ukuphenya ngempela, noma ukufaka isandla emuva emphakathini … Ukuphila nje usuku nosuku usho ukuthi uhlelo X lusengozini yokuba sengozini X lokho UHacker X utholakele… Isitayela se-Script-kiddie…

  5.   Jazz kusho

    Noma iyiphi inkambo yamahhala? Ngaphezu kwanoma yini yabaqalayo, ngithi, ngaphandle kwalokhu (QAPHELA, ngisanda kuthola DesdeLinux, ngakho-ke angikabheki okunye okuthunyelwe kokuphepha kwekhompuyutha, ngakho-ke angazi ukuthi izihloko abazikhulumayo ziqala noma zithuthuke kangakanani 😛)
    Phendula ngokucaphuna

  6.   i-nuria martines kusho

    Leli khasi lihle linokuqukethwe okuningi, mayelana nesigebengu kumele ube ne-antivirus enamandla ukugwema ukugqekezwa

    https://www.hackersmexico.com/