Go homepage(回首页)
Upload pictures (上传图片)
Write articles (发文字帖)

The author:(作者)aaa
published in(发表于) 2013/12/8 8:34:39
Alipay iOS end exposes unlock vulnerability: wrong 5 times then unlock,

Alipay iOS end exposes unlock vulnerability: wrong 5 times to unlock-iOS end Alipay, PayPal, PayPal vulnerability-IT information Aeration unlock iOS port Alipay vulnerabilities: mismatched 5 times to unlock

12,306 purchased train tickets available PayPal payments, 5,000 Beijing taxi available Alipay payment ... ... With Alipay, an increasingly wide range of applications, which frequently exposed safety hazards is also cause for concern.

Recently, iOS end unlock mobile payments was exposed vulnerabilities, journalist experience discovered this vulnerability does exist, within 2 minutes of operation, Alipay reporters easily from "brush" 50 dollars.

Rumored pay baocun unlock iOS port holes

Recently, the network exposed on Alipay mobile phone unlocked iOS end loopholes: the case of a cell phone without a network, wrong PayPal graphic code five times in a row, you can reset the graphics password, after which you can go directly to PayPal account.

In this regard, hands-on Labs, many netizens said, "Yes", and called for PayPal to fix vulnerabilities quickly. "I feel for those who master and want to take our money away too easily. "A Netizen said.

Recommendation without graphical password close key cover

In response to these vulnerabilities, and reporters were using An Zhuoduan and iOS end PayPal this morning experience. Mismatched five times in An Zhuoduan flight mode graphical password and cannot log on again after exiting the PayPal. Only after the turn off flight mode, re-enter the password to get into the PayPal graphic password interface, and draw graphical passwords again.

Here, journalists recommended that iOS mobile PayPal users, in front of the vulnerability has not yet been fixed, try not to use a graphical password; also, close the small key payment function, the set entered the Alipay payment payment password must be entered.

Experience as little as 2 minutes easy "brush" out of 50

Morning, this reporter with a iOS6 of installed phone test takes less than two minutes before and after, then PayPal graphic password is reset and successfully for mobile phone charging 50 dollars.

Then reporters to another installation iOS7 iPhone5 mobile phone testing, you are able to reset the graphics code, but since the PayPal account is not turned on the small secret payments, payment is not successful.

1th step: put phone into flight mode, shut down the network.

2nd step: open the PayPal APP, in the input gesture intentionally mismatched graphic password five times, and then exit the PayPal.

3rd step: open the PayPal APP again, at which point PayPal may ask users to set up a new graphical passwords.

4th step: setting is successful, turn off flight mode, reconnect to the network, go to PayPal interface.

5th step: in the experimental cell phone open small secret pay-free service (that is, no password is required direct payments) cases, directly to another phone into the 50 charges.


(

iOS端支付宝曝解锁漏洞:输错5次即可解锁 - iOS端支付宝,支付宝,支付宝漏洞 - IT资讯
iOS端支付宝曝解锁漏洞:输错5次即可解锁

12306购火车票可用支付宝支付、北京市5000辆出租车可用支付宝付款……随着支付宝的应用范围越来越广,其频频曝出的安全隐患也令人担忧。

近日,iOS端手机支付宝就被曝出存在解锁漏洞,记者体验发现该漏洞确实存在,经过短短2分钟的操作,记者轻松从支付宝“刷”出50元钱。

传言iOS端支付宝存解锁漏洞

近日,网络上曝出iOS端手机支付宝存在解锁漏洞:手机在没有网络的情况下,连续输错五次支付宝图形密码,就可以重新设置图形密码,之后就能直接进入支付宝账户。

对此,不少网友在动手实验后表示“确实如此”,并呼吁支付宝迅速修复漏洞。“我感觉对那些高手来说,想把我们的钱拿走太容易了。”一位网友说。

建议不用图形密码关闭免密支付

针对上述漏洞,记者上午分别使用安卓端和iOS端支付宝进行体验。在安卓端的飞行模式下输错五次图形密码,退出支付宝后无法再度登录。只有在关闭飞行模式后,重新输入登录密码,才能进入支付宝图形密码界面,并重新绘制图形密码。

在此,记者建议iOS手机支付宝用户,在该漏洞尚未来修复前,尽量不要使用图形密码;此外,最好关闭小额免密支付功能,设置进入支付宝付款时必须输入支付密码。

体验短短2分钟轻松“刷”出50元

上午,记者用一部安装了iOS6的iPhone4手机进行测试,前后用时不到两分钟,便重新设置了支付宝图形密码,并顺利为手机充值50元。

随后记者以另一部安装了iOS7的iPhone5手机测试,同样能够重置图形密码,但由于该支付宝账号未开启小额免密支付,所以支付不成功。

第1步:将手机调至飞行模式,关闭网络。

第2步:打开支付宝APP,在输入图形密码手势时故意输错五次,然后退出支付宝。

第3步:重新打开支付宝APP,此时支付宝会要求用户设置新的图形密码。

第4步:设置成功后,关闭飞行模式,重新联网,顺利进入支付宝界面。

第5步:在实验手机开启小额免密支付服务(即不需要密码直接支付)的情况下,直接为另一部手机充入50元话费。


)


If you have any requirements, please contact webmaster。(如果有什么要求,请联系站长)





QQ:154298438
QQ:417480759