Alibaba Security Lab's first show reveals how public Wi-Fi can make you a "transparent person" in seconds

In the sound of exclamation, a female audience fell sideways due to the sudden violent shaking of the balance bike, and the staff quickly stepped forward to help. "I didn't expect that the ultrasonic wave could make the balance car lose its balance. Fortunately, someone helped it, otherwise it would be miserable." An audience sighed after experiencing Alibaba's black technology demonstration.

This is the "thrilling" scene that took place at the Alibaba Pavilion on the "Capital Cyber ​​Security Day" on April 27. On the same day, Alibaba launched the security technology capabilities of the eight laboratories through case demonstrations.

1
Caption: On April 27, the Capital Network Security Day, Alibaba security technology experts demonstrated public Wi-Fi attack technology to the exhibitors, introduced public Wi-Fi risks, and hoped users to increase their network security awareness

In the morning, on the side of the exhibition area of ​​Hall 1 of the Beijing Exhibition Center, the crowd gathered more and more. The public Wi-Fi security attack and defense demonstration presented by Ali Security Orion for the first time also attracted many people eager to try and queuing up to experience it.

An experiencer was guided by a security expert to connect to a simulated public Wi-Fi on site. Afterwards, the security expert opened an attack device and turned the experiencer’s mobile device into a device for monitoring the user without any prompt from the experiencer’s mobile phone page. The page the experiencer originally intended to browse was quietly redirected to The browsing page specified by the "hacker".

Hou Ke, a senior security expert from Ali Security Orion Lab, explained on the scene that the principle of this technology is actually to use the defects of the Wi-Fi protocol to inject encrypted data to deceive the terminal without connecting to the target network, so that the user becomes his eyelids. The "transparent person" underneath can't even find the trace of being monitored in the system, and the attack cost is extremely low.

"In this case, the user has no perception at all, the user's mobile phone will become a monitor, and the traffic of the user's terminal device will be monitored and hijacked. What the user sees is actually a virtual world constructed by hackers." Hou Ke explained.

Hou Ke said that public encrypted Wi-Fi networks have many unknown risks. Alibaba Security hopes to use this technology to promote public awareness of public Wi-Fi security, and then promote the International Wi-Fi Alliance to draft a more secure draft protocol. Nip this risk in the bud, and make it easier and more secure for hundreds of millions of users to use public Wi-Fi.

"The essence of security is actually the confrontation between people, organizations and organizations. Whoever has the more advanced technology will have the advantage in the game of offense and defense. Alibaba launched eight security laboratory technical capabilities on the Capital Cyber ​​Security Day. It shows our determination to fight against black and gray production through stronger technical capabilities." said Zhang Yudong, senior director of Alibaba's security department.

It is reported that Alibaba’s eight security labs are composed of Gemini Lab, Orion Lab, Pandora Lab, Zero Lab, Qiandun Anti-Fraud Lab, Minos Lab, Turing Lab and Ant Financial Lightyear Lab , covering technologies such as AI cutting-edge technology, IoT security, system security, application security, data security and privacy protection, anti-fraud and other technologies, and has established a comprehensive and in-depth security matrix. , Xianyu, Youku Tudou and other business segments of Alibaba provide security technical support.

Guess you like

Origin http://43.154.161.224:23101/article/api/json?id=325077438&siteId=291194637