{"id":1947,"date":"2020-04-16T12:53:23","date_gmt":"2020-04-16T12:53:23","guid":{"rendered":"https:\/\/www.affinite.fr\/index.php\/2020\/04\/16\/des-hackers-vendent-une-faille-zero-day-pour-500-000-dollars\/"},"modified":"2020-04-16T12:53:23","modified_gmt":"2020-04-16T12:53:23","slug":"des-hackers-vendent-une-faille-zero-day-pour-500-000-dollars","status":"publish","type":"post","link":"http:\/\/www.affinite.fr\/index.php\/2020\/04\/16\/des-hackers-vendent-une-faille-zero-day-pour-500-000-dollars\/","title":{"rendered":"des hackers vendent une faille zero-day pour 500\u00a0000\u00a0dollars"},"content":{"rendered":"<p> [ad_1]<br \/>\n<br \/><img decoding=\"async\" src=\"https:\/\/img.bfmtv.com\/i\/0\/0\/6403e061f\/03aec097213485424fab23c.jpg\" \/><\/p>\n<div itemprop=\"articleBody\">\n<p>D\u00e9cid\u00e9ment, le service de visioconf\u00e9rence Zoom stimule \u00e9norm\u00e9ment l\u2019activit\u00e9 des hackers. Apr\u00e8s le <a href=\"https:\/\/www.01net.com\/actualites\/zoom-le-service-de-videoconference-ultra-populaire-attire-aussi-les-trolls-et-les-pirates-1885158.html\" target=\"_blank\" rel=\"noopener noreferrer\">\u00ab\u00a0zoombombing\u00a0\u00bb<\/a> et la vente d\u2019identifiants pour moins d\u2019un cent <a href=\"https:\/\/www.01net.com\/actualites\/des-centaines-de-milliers-de-comptes-zoom-sont-brades-sur-le-dark-web-1892902.html\" target=\"_blank\" rel=\"noopener noreferrer\">dans le dark web<\/a>, certains se tournent maintenant vers le commerce de failles zero-day. Selon Vice, deux vuln\u00e9rabilit\u00e9s de ce type seraient actuellement sur le march\u00e9, l\u2019une pour Windows et l\u2019autre pour macOS.<\/p>\n<p>La premi\u00e8re serait propos\u00e9e pour un prix de 500\u00a0000\u00a0dollars. Elle permettrait d\u2019ex\u00e9cuter du code \u00e0 distance et de prendre le contr\u00f4le total du syst\u00e8me. En revanche, le pirate ne peut l\u2019exploiter que s\u2019il participe \u00e0 une r\u00e9union, ce qui rend l\u2019op\u00e9ration un peu trop visible pour faire de l\u2019espionnage industriel. Du coup, le prix demand\u00e9 serait finalement tr\u00e8s exag\u00e9r\u00e9. Selon une source de Vice, cette faille ne vaudrait en r\u00e9alit\u00e9 que 250\u00a0000\u00a0dollars.<\/p>\n<aside class=\"bg-color-0 padding-inside-all-s bloc border-s\">\n<h4 class=\"box-txt-normal\">\n<p><b>A d\u00e9couvrir aussi en vid\u00e9o<\/b><\/p>\n<\/h4>\n<\/aside>\n<p>Peu d\u2019informations ont fuit\u00e9 \u00e0 propos de la faille sur macOS. Tout ce qu\u2019on sait, c\u2019est qu\u2019elle ne permet pas l\u2019ex\u00e9cution de code \u00e0 distance, et serait donc nettement moins dangereuse. L\u2019\u00e9diteur, pour sa part, a d\u00e9marr\u00e9 une enqu\u00eate pour v\u00e9rifier ces rumeurs de failles zero-day. En tous cas, \u00e9tant donn\u00e9 la <a href=\"https:\/\/www.01net.com\/actualites\/zoom-le-service-de-videoconference-ultra-populaire-est-tres-efficace-mais-tres-mal-securise-1886342.html\" target=\"_blank\" rel=\"noopener noreferrer\">qualit\u00e9 s\u00e9curitaire<\/a> du code de Zoom, les hackers ne seront probablement pas confront\u00e9s \u00e0 une p\u00e9nurie en la mati\u00e8re.<\/p>\n<p><strong>Source\u00a0<\/strong>: <a href=\"https:\/\/www.vice.com\/en_us\/article\/qjdqgv\/hackers-selling-critical-zoom-zero-day-exploit-for-500000\" target=\"_blank\" rel=\"noopener noreferrer\">Vice<\/a><\/p>\n<\/p><\/div>\n<p><script>\n         !function(f,b,e,v,n,t,s){if(f.fbq)return;n=f.fbq=function()\n         {n.callMethod? n.callMethod.apply(n,arguments):n.queue.push(arguments)}\n         ;if(!f._fbq)f._fbq=n;\n             n.push=n;n.loaded=!0;n.version='2.0';n.queue=[];t=b.createElement(e);t.async=!0;\n             t.src=v;s=b.getElementsByTagName(e)[0];s.parentNode.insertBefore(t,s)}(window,\n                 document,'script','https:\/\/connect.facebook.net\/en_US\/fbevents.js');\n         fbq('init', '1065890633454496');\n         fbq('track', 'PageView');\n     <\/script><br \/>\n<br \/>[ad_2]<br \/>\n<br \/><a href=\"https:\/\/www.01net.com\/actualites\/zoom-des-hackers-vendent-une-faille-zero-day-pour-500000dollars-1893915.html\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>[ad_1] D\u00e9cid\u00e9ment, le service de visioconf\u00e9rence Zoom stimule \u00e9norm\u00e9ment l\u2019activit\u00e9 des hackers. Apr\u00e8s le \u00ab\u00a0zoombombing\u00a0\u00bb et la vente d\u2019identifiants pour &hellip; <a href=\"http:\/\/www.affinite.fr\/index.php\/2020\/04\/16\/des-hackers-vendent-une-faille-zero-day-pour-500-000-dollars\/\" class=\"more-link\">Plus <span class=\"screen-reader-text\">des hackers vendent une faille zero-day pour 500\u00a0000\u00a0dollars<\/span> <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":1948,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_sitemap_exclude":false,"_sitemap_priority":"","_sitemap_frequency":"","footnotes":""},"categories":[1],"tags":[],"class_list":["post-1947","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-tous"],"_links":{"self":[{"href":"http:\/\/www.affinite.fr\/index.php\/wp-json\/wp\/v2\/posts\/1947"}],"collection":[{"href":"http:\/\/www.affinite.fr\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.affinite.fr\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.affinite.fr\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/www.affinite.fr\/index.php\/wp-json\/wp\/v2\/comments?post=1947"}],"version-history":[{"count":0,"href":"http:\/\/www.affinite.fr\/index.php\/wp-json\/wp\/v2\/posts\/1947\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.affinite.fr\/index.php\/wp-json\/wp\/v2\/media\/1948"}],"wp:attachment":[{"href":"http:\/\/www.affinite.fr\/index.php\/wp-json\/wp\/v2\/media?parent=1947"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.affinite.fr\/index.php\/wp-json\/wp\/v2\/categories?post=1947"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.affinite.fr\/index.php\/wp-json\/wp\/v2\/tags?post=1947"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}