市值: $2.715T 1.22%
體積(24小時): $64.8723B -29.98%
  • 市值: $2.715T 1.22%
  • 體積(24小時): $64.8723B -29.98%
  • 恐懼與貪婪指數:
  • 市值: $2.715T 1.22%
加密
主題
加密植物
資訊
加密術
影片
頭號新聞
加密
主題
加密植物
資訊
加密術
影片
bitcoin
bitcoin

$79682.575102 USD

-0.03%

ethereum
ethereum

$2490.172756 USD

1.43%

tether
tether

$1.000097 USD

0.00%

bnb
bnb

$758.919331 USD

4.05%

xrp
xrp

$1.415673 USD

0.85%

usd-coin
usd-coin

$0.999889 USD

0.00%

solana
solana

$105.086144 USD

2.66%

tron
tron

$0.333691 USD

0.18%

hyperliquid
hyperliquid

$86.230964 USD

2.23%

zcash
zcash

$1166.274465 USD

15.31%

dogecoin
dogecoin

$0.090913 USD

6.10%

monero
monero

$546.504739 USD

2.51%

chainlink
chainlink

$12.208472 USD

4.10%

unus-sed-leo
unus-sed-leo

$9.345592 USD

1.02%

cardano
cardano

$0.219039 USD

2.76%

加密貨幣新聞文章

CertiK 在平台關閉期間加倍打擊 Telegram 漏洞

2024/04/13 03:00

儘管 Telegram 平台最初被駁回,但區塊鏈安全公司 CertiK Alert 仍堅持認為 Telegram 平台有漏洞。 CertiK 敦促 Telegram 用戶謹慎行事,直到問題完全解決為止。該漏洞被稱為「遠端執行程式碼」漏洞,允許攻擊者透過與用戶共享受損的媒體檔案來執行惡意命令。

CertiK 在平台關閉期間加倍打擊 Telegram 漏洞

Blockchain Security Firm CertiK Doubles Down on Identified Telegram Vulnerability

區塊鏈安全公司 CertiK 加倍努力修復已發現的 Telegram 漏洞

Washington, D.C. - April 14, 2024 - Blockchain security firm CertiK Alert has reiterated its concerns regarding a vulnerability within Telegram's social media platform, despite the platform's initial dismissal of the warning.

華盛頓特區 - 2024 年 4 月 14 日 - 區塊鏈安全公司 CertiK Alert 重申了對 Telegram 社群媒體平台漏洞的擔憂,儘管該平台最初駁回了這一警告。

CertiK, renowned for its comprehensive security analysis and threat detection capabilities, initially alerted the industry to the vulnerability on April 9, sparking a wave of concern. However, Telegram swiftly refuted the claims, alleging inaccuracies in CertiK's findings.

以其全面的安全分析和威脅偵測能力而聞名的CertiK最初於4月9日向業界通報了該漏洞,引發了一波關注。然而,Telegram 很快就駁斥了這一說法,聲稱 CertiK 的調查結果不準確。

Undeterred by Telegram's response, CertiK conducted a thorough reinvestigation, leading to the discovery of substantial evidence supporting the initial assessment. On April 12, the firm reaffirmed its stance, asserting that the Telegram threat remains a genuine concern.

CertiK 沒有被 Telegram 的回應嚇倒,並進行了徹底的重新調查,發現了支持初步評估的大量證據。 4 月 12 日,該公司重申了其立場,聲稱 Telegram 威脅仍然是一個真正令人擔憂的問題。

"Our investigation confirms the risk is real, and users should exercise caution until the issue is fully resolved," CertiK Alert tweeted.

CertiK Alert 在推特上寫道:“我們的調查證實風險確實存在,用戶應謹慎行事,直到問題完全解決。”

Telegram's dismissal of the vulnerability stems from its inability to corroborate CertiK's findings independently. Nonetheless, CertiK maintains its conviction, emphasizing the severe consequences that could arise from exploiting the flaw.

Telegram 對此漏洞的否認源自於其無法獨立證實 CertiK 的調查結果。儘管如此,CertiK 仍堅持其信念,強調利用該缺陷可能產生嚴重後果。

Details of the Telegram Vulnerability

Telegram 漏洞詳情

The vulnerability lies within Telegram's automatic media download feature, which allows media files to be downloaded onto a user's device without requiring manual authentication. This feature provides convenience but also presents a potential avenue for attackers.

該漏洞存在於 Telegram 的自動媒體下載功能中,該功能允許將媒體檔案下載到使用者的裝置上,而無需手動身份驗證。此功能提供了便利,但也為攻擊者提供了潛在的途徑。

CertiK identified the vulnerability as a "Remote Code Execution" (RCE), a type of security flaw that enables unauthorized access to user accounts. By crafting malicious media files, such as compromised images, videos, or GIFs, attackers could exploit this vulnerability to execute arbitrary commands or run malicious programs remotely.

CertiK 將漏洞識別為「遠端程式碼執行」(RCE),這是一種允許未經授權存取使用者帳戶的安全漏洞。透過製作惡意媒體檔案(例如受損的映像、影片或 GIF),攻擊者可以利用此漏洞執行任意命令或遠端執行惡意程式。

This exploit primarily affects Telegram's desktop application, but users should exercise vigilance across all devices. To mitigate potential risks, it is advisable to disable the automatic download feature and implement additional security measures, such as two-factor authentication and strong passwords.

此漏洞主要影響 Telegram 的桌面應用程序,但用戶應對所有裝置保持警惕。為了降低潛在風險,建議停用自動下載功能並實施額外的安全措施,例如雙重認證和強密碼。

Importance of Cybersecurity in the Cryptocurrency Industry

網路安全在加密貨幣產業的重要性

The cryptocurrency industry has become increasingly vulnerable to cyber attacks and scams, resulting in significant financial losses. In March 2024 alone, the industry lost approximately $79 million to such malicious activities.

加密貨幣產業越來越容易受到網路攻擊和詐騙,造成重大財務損失。光是 2024 年 3 月,該產業就因此類惡意活動損失了約 7,900 萬美元。

Telegram users have also been targeted by previous hacks and scams. In October 2023, a SHIB scam exploited the platform, resulting in the theft of user funds.

Telegram 用戶也曾成為先前駭客和詐騙的目標。 2023年10月,SHIB詐騙利用該平台,導致用戶資金被竊。

CertiK's reaffirmation of concerns regarding Telegram underscores the importance of cybersecurity practices for users. By understanding the risks associated with specific vulnerabilities, individuals can take proactive steps to protect their devices and assets.

CertiK 重申對 Telegram 的擔憂,強調了網路安全實踐對使用者的重要性。透過了解與特定漏洞相關的風險,個人可以採取主動措施來保護其設備和資產。

Additional Security Measures

額外的安全措施

In addition to disabling the automatic download feature, users should consider implementing the following security measures:

除了停用自動下載功能外,使用者還應考慮實施以下安全措施:

  • Use strong and unique passwords
  • Enable two-factor authentication
  • Install a reputable antivirus software
  • Regularly update operating systems and applications
  • Be cautious when opening links or downloading files from untrustworthy sources
  • Report any suspicious activities to Telegram's support team

By adhering to these practices, users can significantly reduce their exposure to potential cyber attacks and protect their sensitive information.

使用強大而獨特的密碼啟用雙重認證安裝信譽良好的防毒軟體定期更新作業系統和應用程式開啟連結或從不可信來源下載檔案時要小心向Telegram 的支援團隊報告任何可疑活動透過遵守這些做法,用戶可以顯著減少遭受潛在網路攻擊的風險並保護他們的敏感資訊。

Conclusion

結論

CertiK's unwavering stance on the Telegram vulnerability highlights the importance of vigilance and proactive security measures. The cryptocurrency industry is constantly evolving, and it is essential that users remain informed about emerging threats and take appropriate steps to safeguard their devices and assets.

CertiK 對 Telegram 漏洞的堅定立場凸顯了警覺和主動安全措施的重要性。加密貨幣產業不斷發展,用戶必須隨時了解新出現的威脅並採取適當措施保護其設備和資產。

免責聲明:info@kdj.com

所提供的資訊並非交易建議。 kDJ.com對任何基於本文提供的資訊進行的投資不承擔任何責任。加密貨幣波動性較大,建議您充分研究後謹慎投資!

如果您認為本網站使用的內容侵犯了您的版權,請立即聯絡我們(info@kdj.com),我們將及時刪除。

2026年09月07日 其他文章發表於