Security Bugs in Safari for Windows Windows ¿ë Safari¿¡¼­ º¸¾È ¹ö±×

It¡¯s been an interesting few days for Apple and their Safari web browser. ¾ÖÇÿ¡ ´ëÇÑ Èï¹Ì·Î¿î ¸î ÀÏ ÀÚ½ÅÀÇ »çÆÄ¸® À¥ ºê¶ó¿ìÀúµÇ¾ú½À´Ï´Ù. On Monday, Apple released a PC version of Safari 3 (beta) at the 2007 Worldwide Developers Conference. ÀÏ, 2007 ¿ùµå ¿ÍÀÌµå °³¹ßÀÚ ÄÁÆÛ·±½º¿¡¼­ ¾ÖÇÃÀÌ »çÆÄ¸® 3 (º£Å¸)ÀÇ PC ¹öÀüÀ» ¹ßÇ¥Çß´Ù. But within a few hours, Internet security specialists and hackers had uncovered several bugs capable of crashing the Windows operating system as well as a major security flaw making it possible to remotely take control a PC without the owners knowledge. ÇÏÁö¸¸ ¸î ½Ã°£ À̳»¿¡, ÀÎÅÍ³Ý º¸¾È Àü¹®°¡¿Í ÇØÄ¿°¡ ¿©·¯ ¹ö±×»Ó¸¸ ¾Æ´Ï¶ó ÁÖ¿ä º¸¾È °áÇÔÀº ¿ø°ÝÀ¸·Î PC¸¦ Á¦¾îÇϱâ À§ÇØ ¼ÒÀ¯ÀÚÀÇ Áö½Ä¾øÀÌ´Â °¡´ÉÇÏ°Ô ¹«³ÊÁö´Â Windows ¿î¿µ üÁ¦ÀÇ ´É·ÂÀ» ¹ß°ßÇß´Ù.

Just hours after Apple made Safari 3 available for Windows, David Maynor from Errata Security and independent expert Aviv Raff both blogged about the Safari security bugs they found. ±×³É ½Ã°£ ÀÌÈÄ¿¡ ¾ÖÇÃÀÌ »çÆÄ¸® 3 À©µµ¿ì, µ¥À̺ø ¸ÞÀÌ¿¡ ´ëÇÑ ¿¡¶óŸ º¸¾È ¹× µ¶¸³ÀûÀÎ Àü¹®°¡ Raff ¾Æºñºê¿¡¼­ ¸ðµÎ »ç¿ëÇÒ ¼ö »çÆÄ¸® º¸¾È ¹ö±×¿¡ ´ëÇÑ ºí·Î±×¸¦ ¹ß°ßÇß´Ù.

¡°I can¡¯t speak for anybody else, but the bugs [I] found in the beta copy of Safari on Windows work on the production copy on OS X as well¡¦ The exploit is robust mostly thanks to the lack of any kind of advanced security features in [Mac] OS X.¡± "³»°¡ ´Ù¸¥ »ç¶÷À» À§ÇØ,ÇÏÁö¸¸ ¸»ÇÒ ¼ö ¾ø´Ù»Ó ... ¾Ç¿ë ¹ö±× [³ª] À©µµ¿ì ÀÛ¾÷¿¡ »çÆÄ¸®ÀÇ º£Å¸ ¹öÀüÀ» º¹»ç¿¡¼­ OS X¿¡¼­ »ý»ê »çº»¿¡¼­ ¹ß°ßµÈ ´ëºÎºÐÀÇ ¾î¶² ºÎÁ· ´öºÐ¿¡ °ß°íÇÑ °í±Þ º¸¾È ±â´ÉÀÌ [¸Æ] OS XÀÇ " erratasec.blogspot.com

¡°A first glance at the debugger showed me that this memory corruption might be exploitable. "ù ´«¿¡ µð¹ö°Å¿¡¼­ÀÌ ¸Þ¸ð¸® ¼Õ»óÀÌ ¾Ç¿ëµÉ ¼öµµ¸¦ º¸¿©Áá¾î¿ä. Although, I¡¯ll have to dig more to be sure of that. ºñ·Ï, ³ª´Â ±× È®½ÅÀ» ´õ ¹ß±¼ÇؾßÇÕ´Ï´Ù. Again, this is just a beta version. ¶Ç,ÀÌ ´ÜÁö´Â º£Å¸ ¹öÀüÀÔ´Ï´Ù. But, don¡¯t you hate those pathetic claims?¡± ÇÏÁö¸¸ ´ç½ÅÀÌ ¾Æ´Ï¶ó ±× ÇѽÉÇÑ ÁÖÀåÀ» ½È¾îÇմϱî? " net-security.org ±×¹° - security.org

At last count, 6 total bugs in Safari have been recorded despite this claim on the ¸¶Áö¸· Ä«¿îÆ®¿¡¼­ »çÆÄ¸®¿¡¼­ 6 °³ ¹ö±×¿¡µµ ºÒ±¸ÇϰíÀÌ ÁÖÀåÀ» ±â·ÏÇß½À´Ï´Ù Safari 3 download page »çÆÄ¸® 3 ´Ù¿î·Îµå ÆäÀÌÁö : ¡°Apple engineers designed Safari to be secure from day one.¡± : "¾ÖÇÃÀÇ ¿£Áö´Ï¾îµéÀº ÇÏ·ç¿¡ ÇÑ »çÆÄ¸®¿¡¼­ ¾ÈÀüÇÏ°Ô »ç¿ëÇÒ ¼ö ÀÖµµ·Ï ¼³°èÇß´Ù."

But hell, Safari 3 is just a beta version, it¡¯s supposed to have bugs, right? ÇÏÁö¸¸ Áö¿Á, »çÆÄ¸® 3ÀÇ º£Å¸ ¹öÀüÀÔ´Ï´Ù ±×³É, ¹ú·¹ÇØ¾ß ¸ÂÁÒ?


So why did Apple decide to make their Safari web browser Windows compatible in the first place? ±×·¡¼­ ¾ÖÇÃÀº óÀ½ºÎÅÍ ±×µéÀÇ »çÆÄ¸® À¥ ºê¶ó¿ìÀú À©µµ¿ì ȣȯµÇµµ·Ï °áÁ¤Çß½À´Ï±î? Three reasons come to mind: ¸¶À½¿¡ ¿Â ¼¼ °¡Áö ÀÌÀ¯ :

  • A cross platform web browser will encourage web developers to create web-based programs for the iPhone and make their sites more compatible for existing Safari (Mac) users. ±³Â÷ Ç÷§ÆûÀº À¥ ºê¶ó¿ìÀú´Â À¥ °³¹ßÀÚµéÀÌ À¥ »çÀÌÆ®¸¦ ¸¸µå´Â - ¾ÆÀÌÆù¿¡ ´ëÇÑ ´õ ¸¹Àº (Mac)¸¦ »ç¿ëÀÚ°¡ »çÆÄ¸®¸¦ ±â¹ÝÀ¸·Î ±âÁ¸¿¡ ´ëÇÑ È£È¯µÉ ¼ö ÀÖµµ·Ï ÇÁ·Î±×·¥À» Àå·ÁÇÑ´Ù.
  • A PC version of Safari is an opportunity to expose Windows users to another Apple product. »çÆÄ¸®ÀÇ PC ¹öÀüÀÇ ±âȸ¸¦ ´Ù¸¥ ¾ÖÇà Á¦Ç°À¸·Î À©µµ¿ì »ç¿ëÀÚ¸¦ ³ëÃâÇÏ´Â °ÍÀÔ´Ï´Ù. Apple hopes PC users will enjoy their Safari experience and think about getting a Mac the next time they get a new computer. ¾ÖÇÃÀº PC »ç¿ëÀÚµéÀº »çÆÄ¸® üÇèÀ» Áñ±æ °ÍÀ¸·Î ±â´ëÇÏ°í »ý°¢ÇÏ´Â »ç¶÷µéÀÌ »õ ÄÄÇ»Å͸¦ ¾òÀ» ¸Æ ´ÙÀ½ ¹ø¿¡Áö°íÀÖ´Ù. So far, they are off to a pretty bad start. Áö±Ý±îÁö, ±×µéÀº ¾ÆÁÖ ³ª»Û Ãâ¹ßÀ»ÇϰíÀÖ´Ù.
  • Search dollars. °Ë»ö ´Þ·¯. The little search box in the upper right corner of the Firefox web browser is a major revenue generator. ÆÄÀÌ¾î Æø½º À¥ ºê¶ó¿ìÀúÀÇ ¿À¸¥ÂÊ »ó´Ü ¸ð¼­¸®¿¡ÀÖ´Â ÀÛÀº °Ë»öâÀÇ ÁÖ¿ä ¼öÀÍ¿øÀÌ´Ù. Every time you use that little search box, the browser manufacturer makes money off the search ads you are exposed to when you are taken to the results page. ¸Å¹ø ´ç½ÅÀº ±× ÀÛÀº °Ë»öâ, ºê¶ó¿ìÀú Á¦Á¶ ¾÷ü¸¦ »ç¿ëÇÏ¸é °Ë»ö °á°ú ÆäÀÌÁö·Î À̵¿ÇÏ´Â ³ëÃâµÇ´Â °Ë»ö ±¤°í¿¡¼­ µ·À»ÇÕ´Ï´Ù. I¡¯ve seen reports that Firefox (an open source project) made around over $50 million dollars from that little search box in 2006 alone. ³»°¡º¸°í (ÆÄÀÌ¾î Æø½º´Â ¿ÀÇ ¼Ò½º ÇÁ·ÎÁ§Æ®) ¿Àõ¸¸´Þ·¯ È¥ÀÚ¿¡¼­ 2006 ´Þ·¯°¡ ³Ñ´Â ÀÛÀº °Ë»öâ¿¡¼­ ÁÖÀ§¸¦ ¸¸µé¾î ºÃ½À´Ï´Ù.

methodshop

IMPORTANT : This is a machine translated page which is provided "as is" without warranty. Áß¿ä :ÀÌ ±â°è´Â "º¸Áõµµ¾øÀÌÀÖ´Â ±×´ë·Î"Á¦°øµË´Ï´Ù ÆäÀÌÁö¸¦ ¹ø¿ªÇß´Ù. Machine translation may be difficult to understand. ±â°è ¹ø¿ªÀ» ÀÌÇØÇϱ⠾î·Á¿ï ¼öÀÖ½À´Ï´Ù. Please refer to À» ÂüÁ¶ÇϽñ⠹ٶø´Ï´Ù original English article ¿ø·¡ ¿µ¾î ¹®¼­ whenever possible. ¾ðÁ¦µç °¡´ÉÇÕ´Ï´Ù.

Share and contribute or get technical support and help at °øÀ¯¿Í ±â¿©Çϰųª ±â¼ú Áö¿ø°ú¿¡ µµ¿òÀÌ My Digital Life Forums ³» µðÁöÅÐ »ýȰ Æ÷·³ .



One Response to ¡°Security Bugs in Safari for Windows¡± â¹®À» ÇϳªÀÇ ´ëÀÀÃ¥ "º¸¾È ¹ö±× Safari¿¡¼­"¿ë

  1. bingo king ºù°í ¿Õ
    February 4th, 2008 00:28 2 ¿ù 4 ÀÏ 2008 0½Ã 28ºÐ
    1

    Warm greetings! µû¶æÇÑ Àλ縦! Thanks for all the information, a very nice and well done site! ¸ðµç Á¤º¸°¡, ¾ÆÁÖ ÀßÇϰí ÁÁÀº »çÀÌÆ®¸¦ ´Ù Áּż­ °¨»çÇÕ´Ï´Ù! Cheers. ȯȣ.

Leave a Reply ȸ½ÅÀ» ³²°ÜÁÖ¼¼¿ä

You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong> ÀÌ·¯ÇÑ ÅÂ±× : title="">Àº <a href="" »ç¿ëÇÒ ¼öÀÖ½À´Ï´Ù <abbr title=""> <acronym title="">ÀÇ <b> <blockquote cite=""> <cite>ÀÇ <code> <¹ã ³¯Â¥ = "">Àº <em>°¡ <i> <q cite=""> <strike>ÀÇ <strong>

Subscribe to comments feature has been disabled. ÄÚ¸àÆ®¸¦ ±¸µ¶ ±â´ÉÀÌ ÁßÁöµÇ¾ú½À´Ï´Ù. To receive notification of latest comments posted, subscribe to °Ô½Ã ÃֽŠÄÚ¸àÆ®ÀÇ ¾Ë¸²À» ¼ö½ÅÇÏ·Á¸é °¡ÀÔ My Digital Life Comments RSS feed ³» µðÁöÅÐ »ýȰ ÄÚ¸àÆ® RSS Çǵå or ¶Ç´Â register to receive µî·ÏÀ»¹ÞÀ» new comments in daily email digest. ¸ÅÀÏ À̸ÞÀÏ¿¡ »õ·Î¿î ÀǰßÀ» ¼ÒÈ­Çß´Ù.
Custom Search

New Articles »õ ¹®¼­

Incoming Search Terms for the Article ¿¡ ´ëÇÑ °Ë»ö ¾à°ü¹Þ´Â Á¦

segurança de banco de dados windows º¸¾È µå Å©¸®½ºÅäÆÛ ½ÃÆ® â¹® - -