What we know about the 50 million Facebook that were exposed

我们所知晓的大约有5000万脸书用户的数据遭泄露


 ▌ 部分素材来源于《今日美国》,世界播团队翻译


 

Facebook hasn’t revealed a ton about the data breach in which hackers exploited code that could let them take over around 50 million user accounts. CEO Mark Zuckerberg explained that the company’s investigation is still in its early stages. But this latest rupture is another bruise for a company that has already been hammered by a series of privacy and security violations, leading to a Zuckerberg grilling before Congress back in April.

脸书还没有透露黑客利用代码窃取大量数据的有关信息,不过据传这次泄露大约波及了5000万个用户的帐户。公司首席执行官马克·扎克伯格解释称,目前公司针对此事的调查仍处于初期阶段。但这一最新的披露对一家已经受到一系列隐私和安全侵犯行为打击的公司来说又是一次重创,此前的事件曾导致扎克伯格于今年的4月在国会接受质询。

 

Here’s what we know about this latest attack and what you should do about it:

以下是我们对这次最新的黑客入侵事件的了解,以及你应该如何应对:

 

Facebook says hackers exploited a vulnerability in the “View As” feature, which lets you see what your profile looks like to other people. Attackers were able to steal Facebook “access tokens” or the digital keys that keep you logged into Facebook so that you don’t need to reenter your password every time you use the app.

脸书表示,黑客利用了“视像”功能中的一个漏洞,让你可以看到你的个人资料在其他人眼中的样子。攻击者能够窃取脸书的“访问令牌”或着让您直接登录脸书的数字密钥,这样您就不必在每次使用该应用程序时都重新输入您的密码。

 

The vulnerability apparently stemmed from a change made in July 2017 in the way video was uploaded on the site, which the social network says impacted “View As.” Having obtained such access tokens, the bad guys were able to steal more tokens.

这个漏洞显然源于2017年7月视频上传方式的改变,该社交网站称这种改变同时也影响了“视像”功能。在获得了这样的访问令牌之后,坏蛋们就能偷到更多的令牌了。

 

Should I not use View As?

我不应该使用“视像”功能?

 

Actually, for now, you won’t be able to use it. While it investigates what happened here and who was responsible, Facebook has temporarily turned off the feature.

实际上,就目前而言,你已经无法使用它了。在调查了这里发生的事情以及谁应该对此负责的同时,脸书暂时关闭了这一功能。

 

Is my own account safe?

我自己的账户安全吗?

 

The short answer is you can’t know for sure, but Facebook has taken precautionary steps. On Friday, it forced some 90 million people to log out of their accounts –representing the 50 million it knows were affected, plus 40 million other accounts that took advantage of the View As feature in the last year.

最直接地回答是你不能确定,但脸书已经采取了预防措施。周五,它迫使大约9000万人注销了自己的账户-这意味着它知道有5000万用户受到了影响,另外还有4000万个账户在去年利用了这项功能。

 

Can I trust Facebook?

我还能继续信任脸书吗?

 

That’s a question many among Facebook’s 2.2 billion monthly active users are undoubtedly asking, and it is hard to blame anyone who doesn’t.

在脸书每月22亿活跃用户中,很多人都在问这个问题,这很难怪那些不这么做的人。

 

After all, this latest breach follows Facebook's disclosure earlier in the year of an estimated 87 million people who had their profiles scraped and improperly shared with Cambridge Analytica, a political ad-targeting firm. During his testimony before Congress, Zuckerberg acknowledged that Facebook can amass data to construct what are being referred to as “shadow profiles” of you, even if you never opted in or joined Facebook.

毕竟,今年早些时候,脸书披露了约8700万人的个人资料,利用这些人的个人数据与以政治广告定位的公司剑桥分析公司进行了不当交易,并私自分享了他们的个人资料。在国会作证期间,扎克伯格承认,脸书可以收集数据,构建所谓的“影子档案”,即使你从未选择或加入脸书。

 

That's going to wig some of you out for sure.

这肯定会让你们中的一些人大吃一惊。

 

Facebook did go to great pains to explain how and why it tracks non-users. You can read about such policies in this blog post from April, which privacy advocate Marc Rotenberg of the Electronic Privacy Information Center called at the time, “a giant surveillance warning label.”

脸书的确煞费苦心地解释了它是如何以及为什么跟踪非用户的。你可以在4月份的这篇博客文章中读到这类政策,电子隐私信息中心的隐私倡导者马克·罗滕伯格在文章中称之为,“一个巨大的监视警告标签”。

 

What steps should I take right away?

我应该立即采取哪些步骤?

 

Facebook claims you won’t need to change your password because of what has happened, but in my view better safe than sorry.

脸书声称你不必因为所发生的事情而更改你的密码,但在我看来,这比道歉更安全。

 

Gary Davis, Chief Consumer Security Evangelist, at McAfee recommends certainly recommend changing your password – and not only at Facebook, but at Instagram, Twitter and other social media accounts as well.

迈克菲公司首席消费者安全专员加里·戴维斯给出了非常坚定的建议,不仅要在脸书上,而且还要在Instagram、推特和其他社交媒体账户上,修改密码。

 

You hear this all time, but don’t use the same passwords at each place, either, something all too many folks do. McAfee research reveals a third of people rely on the same three passwords for every account they’re signed up to.

尽管你经常听到这样的话,不要在每个地方使用相同的密码,然而很多人依旧会这么做。迈克菲公司的研究显示,三分之一的人在注册的每个账户上都使用相同的三个密码。

 

Follow other longstanding cybersecurity best practices. For Tyler Moffitt, senior threat research analyst at threat intelligence provider Webroot, such practices include “disconnecting any unnecessary apps or games in social media platforms, making sure two-factor authentication is enabled and never giving out personal or financial information in your profile or private messenger conversations.”

遵循其他长期存在的网络安全隐患的最佳做法。在威胁情报提供商Webroot的高级威胁研究分析师泰勒·莫菲特看来,这种做法包括“在社交媒体平台上断开任何不必要的应用程序或游戏,确保启用双因素认证,并且绝不在你的个人资料或私人信使对话中泄露个人或财务信息。”

 

Visit Facebook’s Help Center – click the circled question mark near the top of the screen to get there – near to change your password, implement two-factor authentication (Facebook will ask for a security code if it notices a log-in from an unusual device), or take other steps. Meanwhile, in the Security and Login settings, you’ll see a list of all the places that you log into with your Facebook account; Facebook lets you log out of those places with a single click.

访问脸书的帮助中心-点击屏幕顶部附近的圈形问号,就可以到达修改密码那里,设置并实现双因素认证(如果脸书注意到来自不寻常设备的登录,它会要求提供一个安全代码),或者采取其他步骤。同时,在安全和登录设置中,您将看到一个列表,这个列表显示的是您使用脸书帐户登录的所有位置的列表;脸书让你只需单击一下就可以从这些地方登录。



What we know about the 50 million Facebook that were exposed ,我们所知道的大约有5000万脸书用户的数据遭泄露, ▌ 部分素材来源于《今日美国》,世界播团队翻译, ,Facebook hasn’t revealed a ton about the data breach in which hackers exploited code that could let them take over around 50 million user accounts. CEO Mark Zuckerberg explained that the company’s investigation is still in its early stages. But this latest rupture is another bruise for a company that has already been hammered by a series of privacy and security violations, leading to a Zuckerberg grilling before Congress back in April.脸书还没有透露黑客利用代码窃取大量数据的有关信息,但据传这次泄露大约波及了5000万个用户的帐户。 ,Here’s what we know about this latest attack and what you should do about it:,以下是我们对这次最新的黑客入侵事件的了解,与你应该如何应对: ,Facebook says hackers exploited a vulnerability in the “View As” feature, which lets you see what your profile looks like to other people. Attackers were able


发布     👍 0 举报 写留言 🖊   
✋热门推荐
  • 有些事,只适合烂在心底,不适合揭开伤疤,让众人参观;有些路,还是需要自己走,不需要有人相伴;有些场景,只感动得了自己,感动不了别人。人生中,不需要太盲目,太快地
  • (四)通过买西瓜这件事我感悟到了蛮多 比如我妹妹还挺好的,听话的时候没那么嫌弃她了 比如现在她每天负责我们家的蒸饭工作我已经完全忘记怎么用电饭煲蒸饭了 [二哈]
  • ⃰你的好友上传了两张假照⑤☀️▹. H⃰a⃰v⃰e⃰ a⃰ n⃰i⃰c⃰e⃰ d⃰a⃰y⃰!⃰保̥ 持̥ 美̥ 丽̥ 的̥ 秘̥ 诀̥以̥ 前̥ 是̥ 睡̥ 觉
  • 【古典系列.Gilda】 如取了皇族梦幻花园的一角作为你身上的小尤物 蜿蜒的金色花藤 盛开的娇柔花朵 又让人想起了欧洲童话故事中仙女的神秘圆一般的气息从制模到点
  • 突然贵英的意外离世,给了马有铁致命的打击,他没有像《活着》里的福贵那样陪着老牛活到最后,而是放走自己的驴和偿还自己的债务后也选择了离去。贵英和马有铁,在命运中带
  • 不要给生命太多的束缚,不要给人生太快的定论,让它们单纯的自生自长,就是对自己的好,就是讨好自己,让自己幸福的最深情的厚待。每个人都需要坍缩一次,需要瓦解一次,那
  • #杉果商城每日动态# 在位于奥地利山间的一个偏辟旅游小镇里,镇长的女儿因为在附近景区遭遇事故而陷入昏迷状态。这位精神科医生据说有进入他人梦境的独特能力,被称为梦
  • 越吃越过瘾~我们还煮了泡面也很好次~和朋友一起来吃人均几十 不仅好吃 拍照也好看喔嘻嘻-我们餐前点了捞汁小海鲜,在重庆很少吃到,有虾、鲍鱼这些很新鲜,就是吃完了
  • 忘了有多久再没听到你 对我说你最爱的故事 我想了很久我开始慌了 是不是我又做错了什么 你哭着对我说 童话里都是骗人的 我不可能是你的王子 也许你不会懂 从你说爱
  • 正本清源,宇宙最高能量频率,爱可以化解一切,只有先天一炁才能打开我们的执念、执着、看破假相,回归本源!自己还执着于红尘假相,自己还有心结于怨气,自己还有仇恨和自
  • [汗]首先来看一下老年人缺失牙的危害忽视牙齿缺失,或造成心脑血管疾病俗话说“家有一老,如有一宝”家中老人身体出了什么问题,立即处理才算是核心。[太开心]再来看老
  • (悄眯说一声,这里面真的让我看多了更多面的你,不再是那种阳光男孩,而是那种坏孩子,虽然内心还是很温暖,真的很适合二刷)[赢牛奶][赢牛奶][赢牛奶]#断桥票房大
  • ——《孙子兵法•军形篇》善于防守的人,像隐藏于深不可知的地下一样,使敌人无处可窥;善于进攻的人,像动作于高不可测的天上一样,使敌人无从防备。——《孙子兵法•九地
  • 她们有着可以战胜困难、勇敢做自己的尖锐,却也在温暖来临时,露出柔软的肚皮。《刺猬》传递给我们的不是一定要做刺猬,而是对每一位怀揣着梦想,有棱角做自己的人说:你可
  • 改めて、最後まで観てくださりありがとうございました!この作品が更に多くの方に愛してもらえますように#日剧美丽的他[超话]##美しい彼# 主演萩原利久ins202
  • 但是现在你能买到一下这些东西中的其中一样[doge]仅限【J.东新用户】以下东西任选一样只要【0.01】 ✨春竹四层加厚卷纸14卷 ✨懒人印花抹布2卷共10
  • #强省会 我们在行动# #遇见最美南昌# 【南昌2716家医疗机构为百姓筑起健康屏障】#这里是南昌# 93所乡镇卫生院、1160个村卫生室实现标准化建设;城镇居
  • 此外他还表示虚拟人是元宇宙里的一个应用场景,其具备的能力和工具需要有能力的厂商来不断探索,推进虚拟人的发展。他还表示未来更看好UGC模式的元宇宙,就是大家共建元
  • 但这也就使得我相处时间够久的朋友都是那种有话直说,一旦我在旁边忙活她也绝对不会摊着看电视剧的人。还有包括今天日料这件事,实话我觉得钓子对于食物没有很高的欲望,补
  • 他既是我最知心的朋友也是我最贴心的伴侣,在偌大的北京我们相互依靠。只想要你所认为的“好”不想要你所认为的“不好”没有平常心,只会让你的内在越来越分裂,越来越拉扯