17歲少年因找黑客攻擊航司系統獲刑4年,曾自學AI、大數據技術

{"type":"doc","content":[{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"blockquote","content":[{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"據17歲的小陳供述,其上完小學三年級後便輟學打工,自15歲起自學數字貨幣開發、大數據、區塊鏈技術、人工智能。"}]}]},{"type":"heading","attrs":{"align":null,"level":3},"content":[{"type":"text","text":"因疫情買不到回國機票,17歲小夥攻擊航司系統"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"受疫情影響,國際航線機票緊張,買票成了大難題,即便是高價找黃牛買,也是一票難求。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"買票難的情況就令一位17歲的小夥小陳感到十分暴躁,他甚至因一時衝動走上了犯罪歧途。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"據媒體報道,2020年6月初,小陳因疫情被留滯在國外疫情重區,因爲買不到回國的機票,"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"一氣之下,他打算買黑客軟件攻擊某航空公司的計算機系統。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"小陳在境外網站購買了攻擊套餐,利用DDOS(黑客通過遠程控制服務器或計算機等資源,對目標發動高頻服務請求,使目標服務器因來不及處理海量請求而癱瘓)等攻擊手段,多次、持續攻擊某航空公司客票等計算機系統。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"小陳惡意攻擊航司系統,致使該航空公司對外服務網絡全面癱瘓近四小時,包括客票業務、微信直播平臺銷售、機場旅客服務、飛行、運控等系統無法正常運作,導致爲5000餘萬用戶提供服務的客票等計算機系統不能正常運行累計四小時,給該航空公司造成巨大經濟損失和負面輿論影響。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"2020年7月,小陳回國後在廣州一家酒店辦理解除隔離手續時,被公安機關抓獲。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"據小陳本人供述,他當時人在國外疫情嚴重區,自己年紀小,當時又發燒了,他害怕被感染。加上女朋友懷孕了,壓力特別大,因此特別想回國。但又到處買不到機票,心情非常焦慮,於是一時衝動決定充值購買境外網站攻擊套餐攻擊航司系統。當時沒想到會造成如此嚴重的後果。"}]},{"type":"heading","attrs":{"align":null,"level":3},"content":[{"type":"text","text":"小陳行爲構成破壞計算機信息系統罪,獲刑4年"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"廣州白雲法院一審認爲小陳無視國家法律,"},{"type":"text","marks":[{"type":"strong"}],"text":"違反國家規定,對計算機信息系統功能進行干擾,造成計算機信息系統不能正常運行,後果特別嚴重,其行爲已構成破壞計算機信息系統罪。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"《中華人民共和國刑法》第二百八十六條規定,違反國家規定,對計算機信息系統功能進行刪除、修改、增加、干擾,造成計算機信息系統不能正常運行,後果嚴重的,處五年以下有期徒刑或者拘役;**後果特別嚴重的,處五年以上有期徒刑。**違反國家規定,對計算機信息系統中存儲、處理或者傳輸的數據和應用程序進行刪除、修改、增加的操作,後果嚴重的,依照前款的規定處罰。故意製作、傳播計算機病毒等破壞性程序,影響計算機系統正常運行,後果嚴重的,依照第一款的規定處罰。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"根據《最高人民法院、最高人民檢察院關於辦理危害計算機信息系統安全刑事案件應用法律若干問題的解釋》第四條規定,破壞計算機信息系統功能、數據或者應用程序,具有下列情形之一的,應當認定爲刑法第二百八十六條第一款和第二款規定的“後果嚴重”:"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"(一)造成十臺以上計算機信息系統的主要軟件或者硬件不能正常運行的;"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"(二)對二十臺以上計算機信息系統中存儲、處理或者傳輸的數據進行刪除、修改、增加操作的;"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"(三)違法所得五千元以上或者造成經濟損失一萬元以上的;"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"(四)造成爲一百臺以上計算機信息系統提供域名解析、身份認證、計費等基礎服務或者爲一萬以上用戶提供服務的計算機信息系統不能正常運行累計一小時以上的;"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"(五)造成其他嚴重後果的。"},{"type":"text","marks":[{"type":"strong"}],"text":" 實施前款規定行爲,具有下列情形之一的,應當認定爲破壞計算機信息系統“後果特別嚴重”:"},{"type":"text","text":" "}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"(一)數量或者數額達到前款第(一)項至第(三)項規定標準五倍以上的;"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"(二)造成爲五百臺以上計算機信息系統提供"},{"type":"link","attrs":{"href":"https:\/\/baike.baidu.com\/item\/%E5%9F%9F%E5%90%8D%E8%A7%A3%E6%9E%90","title":"","type":null},"content":[{"type":"text","text":"域名解析"}]},{"type":"text","text":",身份認證、計費等基礎服務或者爲五萬以上用戶提供服務的計算機信息系統不能正常運行累計一小時以上的;"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"(三)破壞國家機關或者金融、電信、交通、教育、醫療、能源等領域提供公共服務的計算機信息系統的功能、數據或者應用程序,致使生產、生活受到嚴重影響或者造成惡劣社會影響的;"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"在量刑上,考慮到小陳實施犯罪時未成年,案發時情境特殊,其主觀惡性較小,犯罪後也能夠如實供述自己的罪行,結合未成年人對犯罪的認知能力,實施犯罪行爲的動機和目的、年齡是否是初犯、偶犯、悔罪表現、個人成長的一貫情況等方面,法院決定對小陳予以從寬處罰。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"綜合考慮小陳犯罪行爲的性質、情節、危害後果及認罪態度,判決小陳犯破壞計算機信息系統罪,判處有期徒刑四年;繳獲的作案工具筆記本電腦一臺予以沒收。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"一審宣判後,小陳不服判決,提起上訴。廣州中院經審理後裁定駁回上訴,維持原判。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"小陳供述,其上完小學三年級後便輟學打工,自15歲起自學數字貨幣開發、大數據、區塊鏈技術、人工智能。原本是一個求上進的有爲青年,前途光明,但卻因爲一時衝動鋃鐺入獄,自毀前程,實在唏噓。"}]},{"type":"heading","attrs":{"align":null,"level":3},"content":[{"type":"text","text":"因疫情相關的數據泄露、數據安全事件猛增"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"小陳攻擊航司系統案件也透視出了新冠疫情全球蔓延給人們的生活帶來的負面影響。但一定要謹記的是,疫情並不是違法犯罪的藉口,每個人都要爲自己的行爲承擔責任。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"實際上,新冠疫情也爲數據安全、數據泄露帶來了更嚴峻的挑戰和變化。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"回顧 2020 年,數據泄露現狀依然嚴峻,讓人擔憂。據《IBM 2020 年數據泄露報告》顯示,數據泄露的平均總成本爲 386 萬美元(約合人民幣 2521 萬元)。對企業來說,數據泄露的後果越來越嚴重。對個人消費者而言,數據泄露的後果雖然短期不是很明顯,但是從長期看,影響非常壞。一旦個人數據遭泄露,這些數據可能會在網上流傳,並且被不法分子利用,比如黑客、黑灰產等等。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"2020年,數據泄露有2個重大的新變化:第一,與新冠疫情有關的數據泄露事件非常多;"},{"type":"text","marks":[{"type":"strong"}],"text":"第二,由勒索軟件引發的數據泄露事件快速增加。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"基於統計數據,我們發現與2019年相比,2020 年與新冠疫情有關的數據泄露事件非常多。這些數據泄露大致可以分爲三類:"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"第一類,公衆對他人隱私信息的泄露,比如武漢返鄉人員信息被泄露、12月成都確診女孩信息泄露等。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"第二類,疫情中掌握大量個人信息的公共衛生機構和政府機構泄露數據,比如 11 月,巴西一名醫院員工因操作不當導致超 1600 萬巴西 COVID-19 患者的個人信息被泄露,包括患者姓名、地址、ID 信息和醫療記錄等。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","marks":[{"type":"strong"}],"text":"第三類,爲竊取新冠情報,黑客攻擊導致的數據泄露事件"},{"type":"text","text":",比如政府機構、醫藥公司、疫苗研究機構等。例如,4 月,FireEye 發佈一份研究報告稱爲收集 COVID-19(新型冠狀病毒肺炎)的相關情報,至少從 2020 年 1 月至 4 月,越南黑客組織 APT32 針對中國目標開展持續的入侵活動。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","marks":[{"type":"strong"}],"text":"此外,勒索軟件帶來的數據泄露快速增加"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"除了新冠疫情有關的數據泄露,勒索軟件帶來的數據泄露事件快速增加。勒索軟件是一種惡意軟件,存在有幾十年,它能獲取文件或系統的控制權限,並阻止用戶控制它們。然後,用戶的電腦文件乃至整個設備都會被加密,除非受害者支付贖金換取解密密鑰。密鑰允許用戶恢復被加密的文件或系統。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"與以前不同的是,網絡犯罪分子不僅加密數據,而且還竊取數據並威脅受害組織要在互聯網上發佈數據。這種勒索策略被稱爲“雙重勒索”。泄露數據極大提高了受害組織承受的壓力,因爲一旦泄露數據,受害組織將面臨更多的複雜事件,比如監管機構調查、處罰、客戶壓力和社會輿論。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"隨着新冠病毒在全球範圍內肆虐,一些惡意軟件開發者也蠢蠢欲動,有些惡意軟件可以通過擦除文件或重寫計算機的主引導記錄(Master Boot Record,MBR)來破壞計算機系統,有些則通過攻擊社保、醫療等網站獲取經濟利益。這些軟件的設計初衷雖各有不同,但都造成了惡劣影響。去年4月,繼世衛組織遭到不明黑客攻擊後,意大利社保系統也遭遇攻擊而關閉。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"在愛加密技術副總裁程智力看來,當今,各種 APT 攻擊和勒索軟件即服務(RaaS)的流行使攻擊者對數據的竊取更加方便。同時,體系化或武器化的方式,也讓其攻擊更成體系。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"“換句話說,黑客的攻擊變得像正規軍一樣,形成體系。它的目標性更強,攻擊者可能花費一個月或數月時間去竊取它需要的目標數據。並且,疫情帶來的影響,讓企業的網絡全部打開,而在對員工的安全教育和網絡架構沒有到位的情況下可能導致大量的數據泄露。”他說。"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"text","text":"參考文章:"}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"link","attrs":{"href":"https:\/\/m.thepaper.cn\/baijiahao_14077309","title":"","type":null},"content":[{"type":"text","text":"https:\/\/m.thepaper.cn\/baijiahao_14077309"}]}]},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null}},{"type":"paragraph","attrs":{"indent":0,"number":0,"align":null,"origin":null},"content":[{"type":"link","attrs":{"href":"https:\/\/www.infoq.cn\/article\/izKzdFNyqQcDTvOJfsUP","title":"","type":null},"content":[{"type":"text","text":"https:\/\/www.infoq.cn\/article\/izKzdFNyqQcDTvOJfsUP"}]}]}]}
發表評論
所有評論
還沒有人評論,想成為第一個評論的人麼? 請在上方評論欄輸入並且點擊發布.
相關文章