本帖最后由 aaa839 于 2013-10-11 01:09 编辑
各位Avira用戶
今日 2013年10月8日 12:15分(CET歐洲中部時間+2) 我們因為DNS服務問題令官網無法上線,包括Avira在內等多間企業網站被一個名為KDMS的黑客組織影響.注意:Avira的伺服器並沒有受到任何威脅或被黑情況
這次攻擊是發生於我們使用的ISP"Network Solutions"被黑客DNS攻擊引致
發生甚麼事?
在DNS紀錄內的多間網站包括Avira.com,域名被引導致非Avira網站.此問題發生於我們在Networks Soultions註冊並用於管理的帳戶遭受虛假密碼重設的要求,而此通知並不屬於任何Avira員工所發出.不過Networks Solution是接受此要求並允許第三方可以控制我們的DNS 域名.並且使用一個由網絡犯罪組織全新的認證去允許更改DNS伺服器的接入點.
我們的內部網絡並沒有受此問題影響.由於事件嚴重,因此我們決定暫時停止所有官網網站進階/延伸服務
直至我們能順利取回所有被更改的DNS位置
下一步動作?
我們正在與ISP聯絡以便取回域名的控制權,並且當問題解決後,Avira服務才會回復正常
在這點上,我們並沒有意識到這樣可能影響到我們的客戶
我們會持續更新有關問題最新消息
更新消息
Avira 宣佈在CET+2 所有官網應該可以重新連線,如果未能連線,請等待你的ISP DNS快取更新
Avira各網站狀態列表
更新時間:(09/10/2013 20:10 GMT+8)
網站名稱 | 服務狀態(正常/關閉/局部恢復) | Avira.com Offical Site | 正常 | MyAvira | 正常 | Avira Android Security | 正常 | Secure Backup | 正常 | Avira TechBlog | 正常 | Avira Support Forum | 正常 | Avira Answer/Experts Market | 關閉 | Avira Support Portal | 正常 | Avira Beta Center | 正常 |
原文
Dear fans,
today, October 8th 2013, 12:15 CET+2, we have experienced a major disruption in our DNS service.
It appears that several websites of Avira as well as other companies have been compromised by a group called KDMS. The websites of Avira have not been hacked, the attack happened at our Internet Service Provider “Network Solutions”.
What happened?
The DNS records of various websites, including those of Avira.com, were changed to point to other domains that do not belong to Avira.
It appears that our account used to manage the DNS records registered at Network Solutions has received a fake password-reset request not being initiated by anyone at Avira. Network Solutions appears to have honored this request and allowed a 3rd party to assume control of our DNS. Using the new credentials the cybercriminals have been able to change the entries to point to their DNS servers.
Our internal network has not has not been compromised in any way. As a measure of security we have shut down all exterior services until we have all DNS entries in our possession again.
What are the next steps?
We are working with the ISP to receive control on the domain name and only when we have solved the problem we will restore the access to the Avira services.
At this point we are not aware of any effect to our customers.
Of course, we will keep you updated on the matter! |