{"id":198478,"date":"2022-06-24T12:38:00","date_gmt":"2022-06-24T09:38:00","guid":{"rendered":"https:\/\/howtogeek.inform.com.de\/?p=198478"},"modified":"2022-04-01T14:22:33","modified_gmt":"2022-04-01T11:22:33","slug":"fitbiti-galeriis-jagatud-privaatseid-rakendusi-ei-kontrollita-pahatahtliku-koodi-suhtes","status":"publish","type":"post","link":"https:\/\/howtogeek.inform.com.de\/et\/fitbiti-galeriis-jagatud-privaatseid-rakendusi-ei-kontrollita-pahatahtliku-koodi-suhtes\/","title":{"rendered":"Fitbiti galeriis jagatud privaatseid rakendusi ei kontrollita pahatahtliku koodi suhtes"},"content":{"rendered":"<p>Fitbiti <a href=\"https:\/\/redirect.viglink.com\/?key=204a528a336ede4177fff0d84a044482&#038;u=https%3A%2F%2Fgallery.fitbit.com%2F\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">galerii<\/a> on heakskiidetud Fitbiti rakenduste, nagu <a href=\"https:\/\/redirect.viglink.com\/?key=204a528a336ede4177fff0d84a044482&#038;u=https%3A%2F%2Fgallery.fitbit.com%2Fdetails\/dc411695-8f1e-4643-9881-b19d053fbc33\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">Spotify<\/a> v\u00f5i <a href=\"https:\/\/redirect.viglink.com\/?key=204a528a336ede4177fff0d84a044482&#038;u=https%3A%2F%2Fgallery.fitbit.com%2Fdetails\/00001401-0000-4000-8000-000000f17b17\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">Starbucks Card<\/a>, jaoks \u00fchest kohast. Ja kuigi Fitbit kontrollib k\u00e4sitsi k\u00f5iki avaldatud Galerii rakendusi pahavara suhtes, siis jagatavaid privaatseid rakendusi ei kohelda samamoodi. Kui keegi saadab teile meili teel Fitbiti rakenduse allalaadimislingi, ignoreerige seda!<\/p>\n<p>Fitbit v\u00f5imaldab arendajatel testimise abistamiseks galeriisse \u00fcles laadida privaatseid rakendusi. Kahjuks saab iga\u00fcks, kellel on allalaadimislink, installida privaatse rakenduse. Halvad n\u00e4itlejad saavad jagada privaatset allalaadimislinki <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/fitbit-gallery-can-be-used-to-distribute-malicious-apps\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">, et levitada andmeid koguvat pahavara<\/a> \u2013 ohtu, mille tuvastas Kevin Breen ja mille avalikustas <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/fitbit-gallery-can-be-used-to-distribute-malicious-apps\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">BleepingComputer<\/a>.<\/p>\n<p><a href=\"https:\/\/www.immersivelabs.com\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">Immersive Labsi ohuuuringute<\/a> direktor Kevin Breen laadis galeriisse edukalt \u00fcles pahatahtliku privaatrakenduse ja kasutas seda GPS-i asukoha, pulsi, pikkuse ja vanuse andmete varastamiseks testseadmetest. Androidis v\u00f5ib pahatahtlik rakendus lugeda ka k\u00f5iki Fitbitiga \u00fchendatud kalendreid. T\u00e4nu Fitbiti toomise API-le v\u00f5iks Breen isegi konfigureerida rakenduse v\u00f5rgut\u00f6\u00f6riistadele, nagu ruuterid ja tulem\u00fc\u00fcrid, skannima ja neile juurde p\u00e4\u00e4sema.<\/p>\n<p>\u00d5nneks esitas Kevin Breen oma uurimist\u00f6\u00f6 Fitbiti ettev\u00f5ttele, kes vastas, lisades hoiatused privaatsete rakenduste allalaadimistele. Fitbit kavatseb ka vaikimisi loobuda privaatsete rakenduste lubadest, andes kasutajatele v\u00f5imaluse anda k\u00e4sitsi juurdep\u00e4\u00e4s oma vanusele, kontaktidele ja muule teabele. Nagu alati, kontrollib Fitbit galerii rakendusi pahatahtliku koodi suhtes, enne kui need avaldatakse avalikul galerii lehel.<\/p>\n<p>Allikas: Kevin Breen <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/fitbit-gallery-can-be-used-to-distribute-malicious-apps\/\" target=\"_blank\" rel=\"noopener nofollow\" class=\"external external_icon\">BleepingComputeri kaudu<\/a><\/p>\n<p><div id=\"PostUnique_PostSource\" style=\"padding-top: 50px\">:  <a target=\"_blank\" rel=\"noopener nofollow\" href=\"\/\/www.reviewgeek.com\" class=\"external external_icon\">www.reviewgeek.com<\/a><\/div><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Fitbiti galerii on heakskiidetud Fitbiti rakenduste, nagu Spotify v\u00f5i Starbucks Card, jaoks \u00fchest kohast. Ja kuigi Fitbit skannib k\u00e4sitsi k\u00f5iki avaldatud Galerii rakendusi pahavara suhtes, siis jagatavaid privaatseid rakendusi ei k\u00e4sitleta samamoodi. Kui keegi saadab teile meili teel Fitbiti rakenduse allalaadimislingi, ignoreerige seda!<\/p>\n","protected":false},"author":1,"featured_media":180526,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","_wp_rev_ctl_limit":""},"categories":[],"tags":[],"class_list":["post-198478","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry"],"_links":{"self":[{"href":"https:\/\/howtogeek.inform.com.de\/et\/wp-json\/wp\/v2\/posts\/198478","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/howtogeek.inform.com.de\/et\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/howtogeek.inform.com.de\/et\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/howtogeek.inform.com.de\/et\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/howtogeek.inform.com.de\/et\/wp-json\/wp\/v2\/comments?post=198478"}],"version-history":[{"count":0,"href":"https:\/\/howtogeek.inform.com.de\/et\/wp-json\/wp\/v2\/posts\/198478\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/howtogeek.inform.com.de\/et\/wp-json\/wp\/v2\/media\/180526"}],"wp:attachment":[{"href":"https:\/\/howtogeek.inform.com.de\/et\/wp-json\/wp\/v2\/media?parent=198478"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/howtogeek.inform.com.de\/et\/wp-json\/wp\/v2\/categories?post=198478"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/howtogeek.inform.com.de\/et\/wp-json\/wp\/v2\/tags?post=198478"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}