What we know about the 50 million Facebook that were exposed

我们所知晓的大约有5000万脸书用户的数据遭泄露


 ▌ 部分素材来源于《今日美国》,世界播团队翻译


 

Facebook hasn’t revealed a ton about the data breach in which hackers exploited code that could let them take over around 50 million user accounts. CEO Mark Zuckerberg explained that the company’s investigation is still in its early stages. But this latest rupture is another bruise for a company that has already been hammered by a series of privacy and security violations, leading to a Zuckerberg grilling before Congress back in April.

脸书还没有透露黑客利用代码窃取大量数据的有关信息,不过据传这次泄露大约波及了5000万个用户的帐户。公司首席执行官马克·扎克伯格解释称,目前公司针对此事的调查仍处于初期阶段。但这一最新的披露对一家已经受到一系列隐私和安全侵犯行为打击的公司来说又是一次重创,此前的事件曾导致扎克伯格于今年的4月在国会接受质询。

 

Here’s what we know about this latest attack and what you should do about it:

以下是我们对这次最新的黑客入侵事件的了解,以及你应该如何应对:

 

Facebook says hackers exploited a vulnerability in the “View As” feature, which lets you see what your profile looks like to other people. Attackers were able to steal Facebook “access tokens” or the digital keys that keep you logged into Facebook so that you don’t need to reenter your password every time you use the app.

脸书表示,黑客利用了“视像”功能中的一个漏洞,让你可以看到你的个人资料在其他人眼中的样子。攻击者能够窃取脸书的“访问令牌”或着让您直接登录脸书的数字密钥,这样您就不必在每次使用该应用程序时都重新输入您的密码。

 

The vulnerability apparently stemmed from a change made in July 2017 in the way video was uploaded on the site, which the social network says impacted “View As.” Having obtained such access tokens, the bad guys were able to steal more tokens.

这个漏洞显然源于2017年7月视频上传方式的改变,该社交网站称这种改变同时也影响了“视像”功能。在获得了这样的访问令牌之后,坏蛋们就能偷到更多的令牌了。

 

Should I not use View As?

我不应该使用“视像”功能?

 

Actually, for now, you won’t be able to use it. While it investigates what happened here and who was responsible, Facebook has temporarily turned off the feature.

实际上,就目前而言,你已经无法使用它了。在调查了这里发生的事情以及谁应该对此负责的同时,脸书暂时关闭了这一功能。

 

Is my own account safe?

我自己的账户安全吗?

 

The short answer is you can’t know for sure, but Facebook has taken precautionary steps. On Friday, it forced some 90 million people to log out of their accounts –representing the 50 million it knows were affected, plus 40 million other accounts that took advantage of the View As feature in the last year.

最直接地回答是你不能确定,但脸书已经采取了预防措施。周五,它迫使大约9000万人注销了自己的账户-这意味着它知道有5000万用户受到了影响,另外还有4000万个账户在去年利用了这项功能。

 

Can I trust Facebook?

我还能继续信任脸书吗?

 

That’s a question many among Facebook’s 2.2 billion monthly active users are undoubtedly asking, and it is hard to blame anyone who doesn’t.

在脸书每月22亿活跃用户中,很多人都在问这个问题,这很难怪那些不这么做的人。

 

After all, this latest breach follows Facebook's disclosure earlier in the year of an estimated 87 million people who had their profiles scraped and improperly shared with Cambridge Analytica, a political ad-targeting firm. During his testimony before Congress, Zuckerberg acknowledged that Facebook can amass data to construct what are being referred to as “shadow profiles” of you, even if you never opted in or joined Facebook.

毕竟,今年早些时候,脸书披露了约8700万人的个人资料,利用这些人的个人数据与以政治广告定位的公司剑桥分析公司进行了不当交易,并私自分享了他们的个人资料。在国会作证期间,扎克伯格承认,脸书可以收集数据,构建所谓的“影子档案”,即使你从未选择或加入脸书。

 

That's going to wig some of you out for sure.

这肯定会让你们中的一些人大吃一惊。

 

Facebook did go to great pains to explain how and why it tracks non-users. You can read about such policies in this blog post from April, which privacy advocate Marc Rotenberg of the Electronic Privacy Information Center called at the time, “a giant surveillance warning label.”

脸书的确煞费苦心地解释了它是如何以及为什么跟踪非用户的。你可以在4月份的这篇博客文章中读到这类政策,电子隐私信息中心的隐私倡导者马克·罗滕伯格在文章中称之为,“一个巨大的监视警告标签”。

 

What steps should I take right away?

我应该立即采取哪些步骤?

 

Facebook claims you won’t need to change your password because of what has happened, but in my view better safe than sorry.

脸书声称你不必因为所发生的事情而更改你的密码,但在我看来,这比道歉更安全。

 

Gary Davis, Chief Consumer Security Evangelist, at McAfee recommends certainly recommend changing your password – and not only at Facebook, but at Instagram, Twitter and other social media accounts as well.

迈克菲公司首席消费者安全专员加里·戴维斯给出了非常坚定的建议,不仅要在脸书上,而且还要在Instagram、推特和其他社交媒体账户上,修改密码。

 

You hear this all time, but don’t use the same passwords at each place, either, something all too many folks do. McAfee research reveals a third of people rely on the same three passwords for every account they’re signed up to.

尽管你经常听到这样的话,不要在每个地方使用相同的密码,然而很多人依旧会这么做。迈克菲公司的研究显示,三分之一的人在注册的每个账户上都使用相同的三个密码。

 

Follow other longstanding cybersecurity best practices. For Tyler Moffitt, senior threat research analyst at threat intelligence provider Webroot, such practices include “disconnecting any unnecessary apps or games in social media platforms, making sure two-factor authentication is enabled and never giving out personal or financial information in your profile or private messenger conversations.”

遵循其他长期存在的网络安全隐患的最佳做法。在威胁情报提供商Webroot的高级威胁研究分析师泰勒·莫菲特看来,这种做法包括“在社交媒体平台上断开任何不必要的应用程序或游戏,确保启用双因素认证,并且绝不在你的个人资料或私人信使对话中泄露个人或财务信息。”

 

Visit Facebook’s Help Center – click the circled question mark near the top of the screen to get there – near to change your password, implement two-factor authentication (Facebook will ask for a security code if it notices a log-in from an unusual device), or take other steps. Meanwhile, in the Security and Login settings, you’ll see a list of all the places that you log into with your Facebook account; Facebook lets you log out of those places with a single click.

访问脸书的帮助中心-点击屏幕顶部附近的圈形问号,就可以到达修改密码那里,设置并实现双因素认证(如果脸书注意到来自不寻常设备的登录,它会要求提供一个安全代码),或者采取其他步骤。同时,在安全和登录设置中,您将看到一个列表,这个列表显示的是您使用脸书帐户登录的所有位置的列表;脸书让你只需单击一下就可以从这些地方登录。



What we know about the 50 million Facebook that were exposed ,我们所知道的大约有5000万脸书用户的数据遭泄露, ▌ 部分素材来源于《今日美国》,世界播团队翻译, ,Facebook hasn’t revealed a ton about the data breach in which hackers exploited code that could let them take over around 50 million user accounts. CEO Mark Zuckerberg explained that the company’s investigation is still in its early stages. But this latest rupture is another bruise for a company that has already been hammered by a series of privacy and security violations, leading to a Zuckerberg grilling before Congress back in April.脸书还没有透露黑客利用代码窃取大量数据的有关信息,但据传这次泄露大约波及了5000万个用户的帐户。 ,Here’s what we know about this latest attack and what you should do about it:,以下是我们对这次最新的黑客入侵事件的了解,与你应该如何应对: ,Facebook says hackers exploited a vulnerability in the “View As” feature, which lets you see what your profile looks like to other people. Attackers were able


发布     👍 0 举报 写留言 🖊   
✋热门推荐
  • #刘宇宁巴黎欧莱雅品牌代言人# | #刘宇宁一念关山# | #摩登兄弟[超话]# 刘宇宁宁远舟[给力]刘宇宁燕子京˙ᵕ˙ . * . * . * . * ☄️
  • 正如莫言所说:“你要明白,等你过了三十岁,没有稳定的工作,没有存款,亲人遇到事你拿不出钱,你就会明白,脸不脸的,情啊爱的,原来都是浮云。正如莫言所说:“你要明白
  • 天呐谁懂我就好像救了研一的我我跟研一师妹2月轮到icu然后都想请假做实验但是两边都还没通知刚刚突然那个教秘都把我们拉到群里问下个月来不来我果敢发出要请假带着我师
  • 但浓墨的重彩下难掩悲情的底调,相较于其余三子踏上仙途时的少年意气风发,相信人定胜天有着无限可能,韩菱纱却注定背道而驰,她的命运是巨大的沙漏,指间沙终会漏尽,她也
  • 【职场杂谈】(517)体制内上班十点忠告 作为一名凭借实力考入体制内的新人,没有财富,没有权势,没有靠山,以下是一些我想分享的关于如何在体制内工作的建议:
  • 新的一年,把工作音樂從classic 改頻道到hiphop✨✨愉快☕️天气在短短一个月就经历了春夏秋冬,然后今天又是很像样的冬了,还带南方独有的冷雨,新购入懒人
  • 13. 圈子:圈层、能力都远超你的人,就别试图去讨好了,没用。23. 辩论:在没有利益冲突的情况下,不要试图去说服别人,你只需要表达你的观点就可以,尤其是
  • 這是我們在挑戰自己的極限,挑戰我們的身體,幷且每滴汗水都在變得更强大的標志。而且还有很多打折活动的东西~QUEEN长裙 和NUDIST SONG高跟鞋 不得不说
  • 肯尼亚总统表示,如果成功从我国获得这笔10亿美元的贷款,将用来继续修建未完成的道路等基础设施。肯尼亚总统表示,如果成功从我国获得这笔10亿美元的贷款,将用来继续
  • 后来我想:人常说“乐极生悲”没错,只有到达极点了,才能有不一样的东西滋长出来。”瞧,福贵还是笑着的,还是活着的。
  • 接下来,我会开始认真卖货和带团队,也希望能得到在看这段文字的你你你的支持,和我下单买东西,一单也是支持,再或者加入到这个项目中来就更好。接下来,我会开始认真卖货
  • (它笔刷逻辑跟其他软件完全不同,我根本不会调,都是乱搞……)英语好的小伙伴,应该会收获不少。只盼着作者能继续完善做下去……Realistic paint stu
  • #HODL 拿稳现货 #ORDI, #SATS, 蚂蚁 $.ANT,耐心等待,与时间做朋友,该吃吃该睡睡,等待暴富@BRCAntArmy#Brc20蚂蚁军团丶a
  • 脾胃受损不能运化水液代谢;肺能通调水路,是水在上的源头;肾主水,是水在下的源头,肾受损津液输布和排泄有障碍;这三个脏腑,哪一环节出问题,体内水液的运行都会异常,
  • 但律师都站得很紧绷,而我是猫背,又是罗圈腿,矫正起来非常非常困难…ふふ(´・∀・`):(初次作为多拉马主演)拍电视剧好难啊。电视剧的采访和平时的采访,又是两回事
  • 如果用户发现了这样的“乱扣费”行为,就将所谓的点播功能关闭,或者将之前的"乱扣费“的费用退还于客户。随着运营商的计费系统不断的成熟,越来越多消费者对于
  • 6.每一位大爱助学捐款人的荣誉信息(每人60字左右介绍和照片)永远并随时公布,万世留名。人间大爱,福报深厚……真正的长寿是精神永存是对世人有益是永远被人想起是永
  • 愚以为宫中之事,事无大小,悉以咨之,然后施行,必能裨补阙漏,有所广益。先帝在时,每与臣论此事,未尝不叹息痛恨于桓、灵也。
  • 如遇到特殊情况也可以私信我帮忙沟通[抱抱]#转发接龙开新年##这个好物闭眼入##2024地方两会#【云南曲靖市委书记与委员共话云南副中心城市发展蓝图】“大家的发
  • 面对其他的小动物,小兔子说:“迷宫真的好难哦,但是我不是瞎走出来的,我是靠着自己的智慧和勇气才走出来的。面对其他的小动物,小兔子说:“迷宫真的好难哦,但是我不是