Forum Posts

sanzida aktar
Jul 06, 2022
In TV& Film Forum
The 360 ​​children's watch produced by Qihoo Technology is not particularly popular in Taiwan, but perhaps thanks to the strong recommendation of the Beijing Sina News Taiwan website, this product is also quite often mentioned in the Facebook community of children's watches, and Shopee, Taobao, and Yahoo Qimo auctions can all be bought. Its international version is distributed by Xplora, and it sells well in Europe; from September 2020, it will also be sold in the United States. To date, the consignment version of Xplora has 400,000 users worldwide. Interestingly, this watch has a backdoor: Qihoo and Xplora have the ability to activate the monitoring mode from the remote, and start the camera to take pictures and send them back to Its cloud, and other monitoring such as remove background from image querying the current location... Be careful! Apps you and your kids are using are being secretly monitored Xplora is particularly popular in northern Europe, and this backdoor was also exposed by the Norwegian security company Mnemonic. The researchers reverse-engineered the code of the 360 ​​Children's Watch and found (and successfully tested) that simply sending an encrypted text message to the watch could silently trigger the candid camera. The watch uses the Android 7 Nougat operating system, and a suspicious custom program called "Persistent Connection Service" will be launched when it is turned on. In the field of information security attack and defense, there is a common type of "Advanced Persistent Threat (APT) (Note)", and in the victim's computer or mobile phone and other devices, there needs to be a device on standby to receive attacks. The key program of the party command, the name and function of the Persistent Connection Service are in line with the role of APT. It checks all the apps (Apps) on the watch one by one to see which ones can accept commands from afar. (Author's note: Does this mean that in the future, Qihoo can launch more apps with more advanced remote voyeur monitoring through the normal Apps market channel, and directly upgrade the monitoring function?) ​​ Note: It generally refers to a type of advanced computer intrusion, which persists stubbornly on the victim's device through various hidden methods, and the purpose is to collect information on us
0
0
2
 

sanzida aktar

More actions