Uber hais tias Nws teb rau 'Cybersecurity Incident' Tom qab liam Hack ntawm Internal Databases

Tojsiab

Uber rau hnub Thursday hais tias nws tau tshawb xyuas qhov "kev nyab xeeb hauv cybersecurity" thiab tau ceeb toom rau tub ceev xwm tom qab ib tus neeg nyiag nkas raug liam tias tau ua txhaum lub tuam txhab cov ntaub ntawv sab hauv, kev txhim kho uas muaj feem cuam tshuam rau kev nthuav tawm cov ntaub ntawv tseem ceeb, suav nrog cov neeg siv cov ntaub ntawv.

Cov Lus Tseem Ceeb

Qhov kev ua txhaum cai tau tshwm sim thawj zaug hauv cov lus sab hauv rau Uber cov neeg ua haujlwm ntawm kev xa xov platform Slack, qhov twg tus account tsis paub sau ntawv "Kuv yog hacker thiab uber tau raug kev tsim txom cov ntaub ntawv."

Tus neeg raug liam liam tau sib koom cov duab ntawm "email, huab cia thiab code repositories" nrog rau cov New York Times thiab qee tus kws tshawb fawb cybersecurity.

Ib qho screenshot ntawm lub ntsiab lus ntawm hacker cov lus ntawm Slack zoo li thaum xub thawj pom tias yog kev tso dag, nrog Uber cov neeg ua haujlwm tau hnov ​​​​mob nrog ntau ntawm emojis raws li ib tug screenshot qhia los ntawm online malware database VX-Underground.

Raws li cov lub sij hawm, Uber cov neeg ua haujlwm tau raug thov kom tsis txhob siv Slack thaum lwm cov kev sib txuas lus sab hauv kuj zoo li raug kaw.

Sam Curry, tus kws tshaj lij kev ruaj ntseg ntawm Yuga Labs thiab ib tus ntawm cov neeg tau hu los ntawm tus neeg raug liam nyiag khoom, hais tias screenshots tshwm sim los qhia tias Uber cov ntaub ntawv khaws cia ntawm Amazon thiab Google cov kev pabcuam huab zoo li tau "ua txhaum tag nrho."

Lub hacker tau liam tias tau nkag mus rau Uber cov txheej txheem sab hauv los ntawm kev siv ib txoj hauv kev hu ua social engineering qhov chaw uas lawv tau ua ib lub tuam txhab IT tus neeg thiab ntxias ib tus neeg ua haujlwm los qhia lawv cov ntawv pov thawj nkag, lub sij hawm tsab ntawv ceeb toom ntxiv.

Txaus Ntshai Qhov Tseeb

Raws li ib feem ntawm kev ua txhaum cai, tus hacker zoo li muaj tau txais kev tswj hwm ntawm Uber's HackerOne tus account uas lub tuam txhab siv rau nws qhov kev pab cuam bug bounty. Qhov kev zov me nyuam them nyiaj rau cov kws tshawb fawb txog kev nyab xeeb los qhia rau lub tuam txhab txog txhua qhov tsis zoo hauv lawv cov software lossis databases.

Tau qhov twg los: https://www.forbes.com/sites/siladityaray/2022/09/16/uber-say-its-responding-to-cybersecurity-incident-after-alleged-hack-of-internal-databases/