{"id":1083,"date":"2024-01-27T04:42:56","date_gmt":"2024-01-27T04:42:56","guid":{"rendered":"https:\/\/tastycounter.net\/index.php\/2024\/01\/27\/pwn2own-automotive-2024-13-trieu-usd-trao-thuong-cho-49-lo-hong-bao-mat-tesla-bi-hack-toi-boi\/"},"modified":"2024-01-27T04:42:56","modified_gmt":"2024-01-27T04:42:56","slug":"pwn2own-automotive-2024-13-trieu-usd-trao-thuong-cho-49-lo-hong-bao-mat-tesla-bi-hack-toi-boi","status":"publish","type":"post","link":"https:\/\/tastycounter.net\/index.php\/2024\/01\/27\/pwn2own-automotive-2024-13-trieu-usd-trao-thuong-cho-49-lo-hong-bao-mat-tesla-bi-hack-toi-boi\/","title":{"rendered":"Pwn2Own Automotive 2024: 1,3 tri\u1ec7u USD trao th\u01b0\u1edfng cho 49 l\u1ed7 h\u1ed5ng b\u1ea3o m\u1eadt, Tesla b\u1ecb hack \u201ct\u01a1i b\u1eddi\u201d"},"content":{"rendered":"<\/p>\n<div class=\"content-detail textview\">\n<p>Pwn2Own l\u00e0 cu\u1ed9c thi hack \u0111\u01b0\u1ee3c t\u1ed5 ch\u1ee9c h\u00e0ng n\u0103m trong khu\u00f4n kh\u1ed5 h\u1ed9i ngh\u1ecb b\u1ea3o m\u1eadt CanSecWest b\u1eaft \u0111\u1ea7u t\u1eeb n\u0103m 2007. \u0110\u00e2y l\u00e0 d\u1ecbp \u0111\u1ec3 c\u00e1c th\u00ed sinh v\u00e0 chuy\u00ean gia an ninh m\u1ea1ng th\u1ec3 hi\u1ec7n k\u1ef9 n\u0103ng c\u1ee7a h\u1ecd trong vi\u1ec7c t\u00ecm ki\u1ebfm l\u1ed7i, khai th\u00e1c l\u1ed7 h\u1ed5ng zero-day v\u00e0 h\u00e0ng lo\u1ea1t v\u1ea5n \u0111\u1ec1 kh\u00e1c. Nh\u1eefng ng\u01b0\u1eddi tham gia s\u1ebd tho\u1ea3i m\u00e1i b\u1ebb kh\u00f3a h\u1ee3p ph\u00e1p v\u00e0o c\u00e1c ph\u1ea7n m\u1ec1m v\u00e0 thi\u1ebft b\u1ecb \u0111\u01b0\u1ee3c s\u1eed d\u1ee5ng r\u1ed9ng r\u00e3i tr\u00ean th\u1ecb tr\u01b0\u1eddng, v\u1edbi nh\u1eefng l\u1ed7 h\u1ed5ng ch\u01b0a t\u1eebng bi\u1ebft \u0111\u1ebfn tr\u01b0\u1edbc \u0111\u00f3. \u0110\u1ed5i l\u1ea1i l\u00e0 ph\u1ea7n th\u01b0\u1edfng v\u1eadt ch\u1ea5t c\u0169ng nh\u01b0 s\u1ef1 vinh danh t\u1eeb c\u1ed9ng \u0111\u1ed3ng.<\/p>\n<p>V\u1edbi xu h\u01b0\u1edbng ph\u00e1t tri\u1ec3n nhanh ch\u00f3ng c\u1ee7a l\u0129nh v\u1ef1c xe \u0111i\u1ec7n, 2024 l\u00e0 n\u0103m \u0111\u1ea7u ti\u00ean m\u1ed9t s\u1ef1 ki\u1ec7n Pwn2Own t\u00e1ch ri\u00eang cho m\u1ea3ng \u00f4 t\u00f4 \u0111\u01b0\u1ee3c t\u1ed5 ch\u1ee9c t\u1ea1i Tokyo, Nh\u1eadt B\u1ea3n. Sau hai ng\u00e0y di\u1ec5n ra s\u1ef1 ki\u1ec7n, t\u1eeb 24 \u0111\u1ebfn 26 th\u00e1ng 1, Pwn2Own Automotive \u0111\u00e3 k\u1ebft th\u00fac v\u1edbi t\u1ed5ng c\u1ed9ng 49 l\u1ed7i zero-day \u0111\u01b0\u1ee3c t\u00ecm th\u1ea5y trong nhi\u1ec1u h\u1ec7 th\u1ed1ng \u00f4 t\u00f4 \u0111i\u1ec7n, t\u01b0\u01a1ng \u0111\u01b0\u01a1ng 1.323.750 USD ti\u1ec1n th\u01b0\u1edfng \u0111\u00e3 \u0111\u01b0\u1ee3c trao. C\u00e1c l\u1ed7 h\u1ed5ng ch\u1ee7 y\u1ebfu \u0111\u01b0\u1ee3c t\u00ecm th\u1ea5y trong b\u1ed9 s\u1ea1c, h\u1ec7 th\u1ed1ng th\u00f4ng tin gi\u1ea3i tr\u00ed v\u00e0 h\u1ec7 \u0111i\u1ec1u h\u00e0nh c\u1ee7a \u00f4 t\u00f4, v\u00e0 \u0111a s\u1ed1 \u0111\u1ec1u \u0111\u01b0\u1ee3c cam k\u1ebft ph\u00e1t h\u00e0nh b\u1ea3n v\u00e1 \u0111\u1ea7y \u0111\u1ee7.<\/p>\n<p>Sau khi l\u1ed7 h\u1ed5ng zero-day b\u1ecb khai th\u00e1c v\u00e0 b\u00e1o c\u00e1o cho c\u00e1c nh\u00e0 cung c\u1ea5p trong Pwn2Own, h\u1ecd c\u00f3 90 ng\u00e0y \u0111\u1ec3 ph\u00e1t h\u00e0nh c\u00e1c b\u1ea3n v\u00e1 b\u1ea3o m\u1eadt tr\u01b0\u1edbc khi Trend Micro &#8211; \u0111\u01a1n v\u1ecb t\u1ed5 ch\u1ee9c s\u1ef1 ki\u1ec7n &#8211; ti\u1ebft l\u1ed9 ch\u00fang c\u00f4ng khai.<\/p>\n<p>\u0110\u01a1n v\u1ecb gi\u00e0nh chi\u1ebfn th\u1eafng t\u1ea1i Pwn2Own Automotive n\u0103m nay \u0111\u00e3 thu\u1ed9c v\u1ec1 Team Synacktiv v\u1edbi 450.000 USD ti\u1ec1n th\u01b0\u1edfng, ti\u1ebfp theo l\u00e0 fuzzware.io v\u1edbi 177.500 USD v\u00e0 Midnight Blue\/PHP Hooligans v\u1edbi 80.000 USD. \u0110\u00e2y \u0111\u1ec1u l\u00e0 nh\u1eefng nh\u00f3m hacker t\u00e0i n\u0103ng, th\u01b0\u1eddng xuy\u00ean g\u00f3p m\u1eb7t t\u1ea1i c\u00e1c m\u00f9a Pwn2Own th\u01b0\u1eddng ni\u00ean.<\/p>\n<div id=\"articleads\" class=\"adbox adsense in-article\"><ins class=\"adsbygoogle\" style=\"text-align:center\" data-ad-format=\"fluid\" data-ad-layout=\"in-article\" data-ad-client=\"ca-pub-9275417305531302\" data-ad-slot=\"2079243249\"><\/ins><\/div>\n<figure><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/st.quantrimang.com\/photos\/image\/holder.png\" alt=\"B\u1ea3ng x\u1ebfp h\u1ea1ng Pwn2Own\" width=\"673\" height=\"429\" class=\"lazy\" data-src=\"https:\/\/st.quantrimang.com\/photos\/image\/2024\/01\/27\/pwn2own-automotive-20241.jpg\"><figcaption>B\u1ea3ng x\u1ebfp h\u1ea1ng Pwn2Own<\/figcaption><\/figure>\n<p>\u0110\u00e1ng ch\u00fa \u00fd, Synacktiv \u0111\u00e3 hack th\u00e0nh c\u00f4ng chi\u1ebfc xe Tesla hai l\u1ea7n, gi\u00e0nh \u0111\u01b0\u1ee3c quy\u1ec1n root tr\u00ean Modem Tesla b\u1eb1ng c\u00e1ch x\u00e2u chu\u1ed7i ba l\u1ed7 h\u1ed5ng trong ng\u00e0y \u0111\u1ea7u ti\u00ean v\u00e0 th\u1eed nghi\u1ec7m l\u1ed1i tho\u00e1t sandbox c\u1ee7a Tesla Infotainment System th\u00f4ng qua chu\u1ed7i khai th\u00e1c zero-day trong ng\u00e0y th\u1ee9 hai.<\/p>\n<p>Nh\u00f3m c\u0169ng \u0111\u00e3 demo th\u00e0nh c\u00f4ng hai chu\u1ed7i l\u1ed7i \u0111\u1ed9c \u0111\u00e1o ph\u00e1t hi\u1ec7n trong c\u00e1c h\u1ec7 th\u1ed1ng tr\u1ea1m s\u1ea1c xe \u0111i\u1ec7n th\u00f4ng minh Ubiquiti Connect EV Station v\u00e0 JuiceBox 40 Smart EV Charging Station, c\u0169ng nh\u01b0 khai th\u00e1c ba l\u1ed7i nh\u1eafm v\u00e0o h\u1ec7 \u0111i\u1ec1u h\u00e0nh Linux d\u00e0nh cho \u00f4 t\u00f4.<\/p>\n<p>Tr\u01b0\u1edbc \u0111\u00f3 v\u00e0o n\u0103m 2023, Synactiv c\u0169ng l\u00e0 \u0111\u1ed9i ng\u0169 \u201cth\u1ed1ng tr\u1ecb\u201d s\u1ef1 ki\u1ec7n Pwn2Own t\u1ed5 ch\u1ee9c t\u1ea1i Vancouver v\u00e0o th\u00e1ng 3, ki\u1ebfm \u0111\u01b0\u1ee3c 530.000 USD v\u00e0 m\u1ed9t chi\u1ebfc Tesla cho hai chu\u1ed7i khai th\u00e1c nh\u1eafm m\u1ee5c ti\u00eau v\u00e0o Root Gateway v\u00e0 Infotainment Unconfined Root.<\/p>\n<p>V\u00e0o th\u00e1ng 10, t\u1ea1i Pwn2Own Toronto 2023, nh\u00f3m \u0111\u00e3 gi\u00e0nh \u0111\u01b0\u1ee3c h\u01a1n 1 tri\u1ec7u USD nh\u1edd 58 l\u1ea7n khai th\u00e1c zero-day v\u00e0 nhi\u1ec1u l\u1ed7 h\u1ed5ng kh\u00e1c nh\u1eafm v\u00e0o c\u00e1c s\u1ea3n ph\u1ea9m ti\u00eau d\u00f9ng, bao g\u1ed3m \u0111i\u1ec7n tho\u1ea1i th\u00f4ng minh Samsung Galaxy S23, nhi\u1ec1u m\u1eabu m\u00e1y in, h\u1ec7 th\u1ed1ng gi\u00e1m s\u00e1t v\u00e0 thi\u1ebft b\u1ecb l\u01b0u tr\u1eef g\u1eafn m\u1ea1ng (NAS).<\/p>\n<p>Pwn2Own Vancouver 2024 s\u1eafp t\u1edbi d\u1ef1 ki\u1ebfn s\u1ebd di\u1ec5n ra b\u1eaft \u0111\u1ea7u t\u1eeb ng\u00e0y 20 th\u00e1ng 3 trong khu\u00f4n kh\u1ed5 H\u1ed9i ngh\u1ecb CanSecWest 2024. S\u1ef1 ki\u1ec7n n\u0103m nay s\u1ebd c\u00f3 t\u1ed5ng gi\u1ea3i th\u01b0\u1edfng l\u00ean t\u1edbi h\u01a1n 1.000.000 USD cho vi\u1ec7c khai th\u00e1c c\u00e1c danh m\u1ee5c ph\u1ea7n m\u1ec1m v\u00e0 h\u1ec7 th\u1ed1ng \u00f4 t\u00f4 kh\u00e1c nhau \u0111\u01b0\u1ee3c t\u00ecm th\u1ea5y trong xe Tesla Model 3 v\u00e0 Model S.<\/p>\n<div id=\"articleads2\" class=\"adbox in-article adsense\"><ins class=\"adsbygoogle\" style=\"text-align:center\" data-ad-format=\"fluid\" data-ad-layout=\"in-article\" data-ad-client=\"ca-pub-9275417305531302\" data-ad-slot=\"4889239415\"><\/ins><\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Pwn2Own l\u00e0 cu\u1ed9c thi hack \u0111\u01b0\u1ee3c t\u1ed5 ch\u1ee9c h\u00e0ng n\u0103m trong khu\u00f4n kh\u1ed5 h\u1ed9i ngh\u1ecb b\u1ea3o m\u1eadt CanSecWest b\u1eaft \u0111\u1ea7u t\u1eeb n\u0103m 2007. \u0110\u00e2y l\u00e0 d\u1ecbp \u0111\u1ec3 c\u00e1c th\u00ed sinh v\u00e0 chuy\u00ean gia an ninh m\u1ea1ng th\u1ec3 hi\u1ec7n k\u1ef9 n\u0103ng c\u1ee7a h\u1ecd trong vi\u1ec7c t\u00ecm ki\u1ebfm l\u1ed7i, khai th\u00e1c l\u1ed7 h\u1ed5ng zero-day v\u00e0 h\u00e0ng lo\u1ea1t [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-1083","post","type-post","status-publish","format-standard","hentry","category-khong-phan-loai"],"_links":{"self":[{"href":"https:\/\/tastycounter.net\/index.php\/wp-json\/wp\/v2\/posts\/1083","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/tastycounter.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/tastycounter.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/tastycounter.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/tastycounter.net\/index.php\/wp-json\/wp\/v2\/comments?post=1083"}],"version-history":[{"count":0,"href":"https:\/\/tastycounter.net\/index.php\/wp-json\/wp\/v2\/posts\/1083\/revisions"}],"wp:attachment":[{"href":"https:\/\/tastycounter.net\/index.php\/wp-json\/wp\/v2\/media?parent=1083"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/tastycounter.net\/index.php\/wp-json\/wp\/v2\/categories?post=1083"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/tastycounter.net\/index.php\/wp-json\/wp\/v2\/tags?post=1083"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}