Google 文件可能擁有安全性漏洞

2009/03/09

一位可愛的小學弟 xSimon..

最近來訊給我說..

國外有人指出 Google 文件服務

可能會擁有安全性上面的問題



詳細內容在這網站 ..

大家可以點這去看看 點此連結

我幫大家簡單翻譯一下內容 ..





在一切基於雲端基礎服務下有一些錯誤,谷歌已通知了一些用戶的文件和試算表產品說明,它可能無意中分擔他們的一些文件,從來沒有接觸誰授予與他們接觸。
According to the notice, this sharing was limited to people 「with whom you, or a collaborator with sharing rights, had previously shared a document」 - a vague statement that sounds like it could add up to quite a few people.根據通知,這種交流僅限於人「的人你,或與合作者共享權利,原先的文件共享」 -一個模糊的聲明,聽起來像可以添加最多不少人。 The notice states that only text documents and presentations are affected, not spreadsheets, and provides links to each of the user's documents that may have been shared in error.通知指出,只有文本文件和介紹的影響,而不是電子表格,並提供鏈接到每個用戶的文件可能已共享錯誤。
I've contacted Google for confirmation and haven't heard back, but this seems to be legit - our tipster says that he had previously shared the document listed in his notice, but now it has been reset to show 0 collaborators (one of the precautionary measures mentioned in the note).我已經聯繫谷歌確認,也沒有聽到,但是這似乎是合法的-我們的匿名說,他曾共同文件中列出他的通知,但現在已重置為顯示0合作者(之一預防措施中所提到的注) 。
Update: Google has confirmed that the note is real, and says that it was an isolated incident affecting less than .05% of all documents. 更新:谷歌已經確認,該說明是真實的,並說這是一個孤立的事件影響小於0.05 %的所有文件。 The damage may not be widespread, but it's still an unsettling lapse in security.造成的損害可能不普遍,但它仍然是一個令人不安的失效安全。
Here's the letter in full:以下是該信全文:

Dear Google Docs user,親愛的谷歌文件的用戶,
We wanted to let you know about a recent issue with your Google Docs account.我們想讓您知道最近的問題,您的谷歌文件帳戶。 We've identified and fixed a bug which may have caused you to share some of your documents without your knowledge.我們已經確定並修正了一個可能造成您分享您的某些文件在您不知情。 This inadvertent sharing was limited to people with whom you, or a collaborator with sharing rights, had previously shared a document.這無意中交流僅限於人民與您,或與合作者共享權利,原先的文件共享。 The issue only occurred if you, or a collaborator with sharing rights, selected multiple documents and presentations from the documents list and changed the sharing permissions.這個問題只發生如果你,或與合作者共享權利,選擇了多個文件和介紹的文件清單,並改變了共享權限。 This issue affected documents and presentations, but not spreadsheets.這個問題影響的文件和演示文稿,但不試算表。
To help remedy this issue, we have used an automated process to remove collaborators and viewers from the documents that we identified as being affected.為了幫助糾正這一問題,我們已經使用了自動化進程,刪除協作者和瀏覽者的文件,我們被確定為受影響。 Since the impacted documents are now accessible only to you, you will need to re-share the documents manually.由於影響的文件現在可只有你,你將需要重新共享文件手動。 For your reference, we've listed below the documents identified as being affected.供您參考,我們列出了以下文件被確定為受影響。
We apologize for the inconvenience that this issue may have caused.我們很抱歉給您帶來的不便,這個問題可能造成的。 We want to assure you that we are treating this issue with the highest priority.我們想向你們保證,我們正在處理這個問題,最優先的考慮。
The Google Docs Team在谷歌文件組
In short, this is a massive blunder on Google's part.總之,這是一個巨大的失誤就谷歌的一部分。 I fully appreciate the lengths Google has gone to to offer a wide array of helpful online services, many of which are free of charge.我是完全理解的長度已經向谷歌提供一系列有用的在線服務,其中有許多是免費的。 But this error highlights why cloud-based services scare many people.但這個錯誤突出為什麼雲端基礎的服務嚇跑許多人。 Regardless of what a site's posted rules and policies are, a technical glitch is all it takes to expose your sensitive data.不管網站的張貼規則和政策,技術故障就可以使您的敏感數據。
Update: An affected user posted his story and the exchange he had with Google support over the issue on Slashdot .
更新:受影響的信息,他的故事和他的交流與谷歌支持的問題Slashdot
Update 2: A Google spokesperson has confirmed that the note is real:

更新2 :谷歌的發言人證實,說明是真實的:
We fixed the bug, which affected less than 0.05% of documents, and removed any collaborators.我們固定的錯誤,從而影響到小於0.05 %的文件,並刪除任何合作者。 We also contacted the users who were affected to notify them of the bug and to identify which of their documents may have been affected.我們還接觸了受影響的用戶誰通知他們的錯誤,並找出其中的文件可能受到影響。 We have extensive safeguards in place to protect all documents, and are confident this was an isolated incident.我們有豐富的保障措施來保護所有文件,並相信這是一個孤立的事件。





ps.翻得太爛別怪我我是用google翻譯後..在小修改的


0 意見:

程式 . 生活 . D小調.@2010 | Binary Design: One Winged Angel.