您现在的位置是:焦點 >>正文
【】Potential damage is endless
焦點8人已围观
简介If you thought movie subtitles are just benign text files you can download to your computer and use ...
If you thought movie subtitles are just benign text files you can download to your computer and use without fear, think again. 。
A report from security company Check Point claims that subtitles can be extremely dangerous, potentially allowing malicious hackers to completely take over your computer. 。
SEE ALSO:It won't be easy for WannaCry hackers to get their cash。The subtitles come in many different forms -- over 25, according to the report -- and the way media files such as VLC or services such as Popcorn Time use them is often insecure. If a malicious user slips in a dangerous file instead of an actual subtitle, he can do a lot of damage to the victim's computer. Check out how an attacker can take control of the victim's machine in the video, below.。
These subtitles are typically found on specialized websites such as Opensubttiles.org, where they're ranked according to user scores, giving users a sense of security that they're downloading a tried and tested version of the subtitle. But these scores can easily be manipulated as to push a malicious files on top of the rankings. 。

Thanks for signing up! 。
People who are used to subscription services such as Netflix, and those who don't watch a lot of media in a foreign language, typically don't need to download subtitles online. But a lot of people do; Check Point claims affected users are in the hundreds of millions. 。
Potential damage is endless。
Check Point says it found vulnerabilities related to the way subtitles are handled in four popular media players and services: VLC, Kodi, Popcorn Time and Stremio. The company did not share details about the vulnerabilities, or what platforms are affected, but it did say that PCs, mobile devices and even Smart TVs are at risk. 。
"By conducting attacks through subtitles, hackers can take complete control over any device running them. From this point on, the attacker can do whatever he wants with the victim’s machine, whether it is a PC, a smart TV, or a mobile device. The potential damage the attacker can inflict is endless, ranging anywhere from stealing sensitive information, installing ransomware, mass Denial of Service attacks, and much more," the report claims. 。
All of the media players and services listed above have updated their software and fixed these exploits (though Kodi is currently only available as a source code release). Grab the new versions here: VLC, Kodi, Popcorn Time and Stremio.。
Featured Video For You。
Featured Video For You。
Tags:
转载:欢迎各位朋友分享到网络,但转载请说明文章出处“夫榮妻貴網”。http://www.new.maomao321.com/news/8c5899933.html
相关文章
Photos show the Blue Cut fire blazing a path of destruction in California
焦點A fast moving wildfire continued raging near San Bernadino, California, forcing the evacuation of at ...
【焦點】
阅读更多'Braided' eyebrows are the latest absurd beauty trend that truly anyone can try
焦點It's been just about a week since the Great Squiggle Brow Phase of 2017, but somehow there's already ...
【焦點】
阅读更多Former Mexican president slams Trump over DACA in brutal video
焦點Vicente Fox is not one to mince words when it comes to the U.S. president. SEE ALSO:Former Mexican p ...
【焦點】
阅读更多
热门文章
- 5 people Tim Cook calls for advice on running the biggest company in the world
- Man attempts to hide from TV camera, fails spectacularly
- Lenovo settles with the FTC over Superfish adware charges
- Fitbit partnership brings diabetes monitoring to the Ionic smartwatch
- Aly Raisman catches Simone Biles napping on a plane like a champion
- YouTube speeds up live streaming for creators with 'ultra
最新文章
Hiddleswift finally followed each other on Instagram after 3 excruciating days
Fitbit partnership brings diabetes monitoring to the Ionic smartwatch
Everything you need to know about using Instagram's archive feature
This dating app has figured out that where you went to school really does matter
Fake news reports from the Newseum are infinitely better than actual news
Everything you need to know about using Instagram's archive feature