
The annual membership of a video website of nearly two hundred yuan can be purchased for only a few yuan; and monthly membership worth ten yuan or even just a few cents...
Earlier, Hubei user Liu Dong (a pseudonym) never realized that these QQ groups and Taobao stores selling video website member accounts at ultra-low prices were related to their own; until an occasional incident occurred, he discovered that - the original His own account is also a prey for hackers in this industry chain.
Liu Dong had previously been given a two-year membership when he purchased LeTV. At that time, his family was also aware of the username and password, so when he logged in, he did not pay much attention even if he occasionally saw strange movie records. Until December 2015, Liu Dong purchased a LeEr mobile phone for her mother-in-law. After she entered her LeTV account and password, she suddenly saw a lot of videos and photos downloaded synchronously in the cloud, including a large number of female nudity photos.
"I was particularly embarrassed at the time. My wife still wondered if I had problems with my style of living." In the face of these "down from the sky" pictures, Liu Dong is still arguing. He began to suspect that his account had been stolen, he quickly revise the account password, and at the same time want to find out the ins and outs of the matter.
At this time, Liu Dong’s own Weibo (Liu Lele’s account number and Weibo account number, all of which are e-mail accounts) received a private letter from a netizen. The other party claimed that he had used this account to view the music video phone. The video, because Liu Dong changed the password, resulting in his music as the phone is locked, so ask him the changed password.
Liu Dong asked why the other party had his own account name and password, and the other party said that he purchased it online. At the same time, the other party also sent a screenshot of the current transaction, showing its account number and password. In this screenshot, the seller also specifically said, "Do not modify the account password, otherwise it can not be used."
At this point, Liu Dong knew that his LeTV account was not only stolen by others, but also used to trade and profit.
Hacking sales has become an industry chain
The account was stolen and Liu Dong was not a special case. The reporter searched on the Internet and found that many users have encountered similar things. Many users have reported that their account has been stolen, causing their viewing obstruction.
The reporter joined a number of video members to share QQ groups, and found that from time to time there are users who publish low-cost sales of member account information. On January 23, the reporter contacted a seller and learned that if he paid 5 yuan, he could obtain a one-year gold membership for Iqiyi and a year (3 months for the member) on Iqiyi official website. It's 195 yuan.
After the reporter paid 5 yuan, the other party sent a group of account numbers and passwords; although the page prompts for "different login", the reporter still enters smoothly. The page shows that the account is valid until February 23, 2016. The seller said that if the account expires, it can automatically renew.
The reporter asked: Where does the account originate from? The seller stated that it was "brushed out." As for the specific details of the operation, the seller did not wish to talk about it, but said that as long as the agency fee of 30 yuan was paid, it would be possible to get a large amount of goods at a low price. 3 yuan a year for the account and password."
In a group called "Lokshi Member Wholesale", there is a seller named "Source Scalar Collector" who often publishes information in the group "Youku, Leshi, Sohu, Thunder account wholesale." The reporter contacted the seller with an intention to engage in wholesale.
The seller told the reporter that the account number is divided into a black number (referring to the stolen account number) and a white number (referring to their own recharge to buy the re-sale account number), taking LeTV members as an example, the use of black number as long as 0.5 yuan per month, can give up to 3 people use; if you use the white number, you need to pay 2 yuan per month and you can use it for up to 20 people.
The seller also told reporters that even if it is a black number, it is also divided into a black (that is, has just been stolen to enter the market for sale account) and second-hand black. Compared with second-hand black numbers that have been circulated on the market for many times and have been accounted for by many people, the viewing effect of a black hand is undoubtedly more stable.
On January 18th, the reporter found on Taobao that some stores sold video company member accounts at prices that were significantly lower than the market price. The video sites involved included Sohu, Thunder, iQiyi, LeTV, etc., with sales records from three. There are hundreds of articles ranging from five articles to thousands.
In these comments, there are users who said "cheap can also buy good goods." Some users report a login account prompts, saying that the member account has been used by more than one person, temporarily unable to play; there are users who call it directly, said the account number. If it is not yet expired, the password is incorrect and you cannot log in.
The aforementioned sellers told reporters that users who reflected “unable to play†might buy a second-hand black number, and if the password was wrong, it might be because the number of users logging in at the same time is too many, and it may be that the hacking behavior has been the original user. Found that the password was changed in time.
Zhang Zuyou, the leader of the vulnerability community of the Internet security company “Know Chuangyuâ€, told the Rule of Law Weekend reporter that the user’s account had been stolen. First, it may be due to the fact that the video website itself has encountered a drag library (ie, hacking is valuable). Website, stole user database).
In addition, according to Tencent’s latest research report on mobile payment network black industry chain, more than 70% of respondents stated that they use the same username and password for multiple network accounts, especially for teenagers and multiple accounts using the same password. The proportion is as high as 82.39%.
Qiao Congjun, deputy director of the online transaction protection center, told reporters that such password setting habits allow hackers or other criminals to try to log in to other websites, such as video websites, once they have obtained a group of account information, causing black production companies to drag on the database. The success rate of crashing the library is higher; therefore, as a user, it is necessary to improve their safety awareness.
Li Tiejun, a cheetah mobile security expert, told reporters that the so-called "brush numbers" and "sweep numbers" of these sellers were hit by an account obtained from an existing database. If the library was successful, even if the "sweep number" was successful, then it would be Selling.
Yu Guofu, a member of the China Internet Association’s Policy and Resources Committee and a lawyer at Beijing’s Shengfeng Law Firm, told the Nomo Weekend reporter that early hackers did not involve economic benefits, but showed off their skills through breakthroughs in other people’s technological safety measures. Superb technology; However, in recent years, hacking has become more industrialized, and some even form an entire "industrial chain."
The number of hacking sales is serious enough to recover criminal responsibility
In the network black production chain, the division of labor between hackers and distributors who steal account passwords not only seriously harms the rights of the website party, but also damages the legitimate rights and interests of the original holder of the account. Yu Guofu stated that due to its serious social harm, any link in the industry chain should be severely cracked down.
"For the seller's behavior of obtaining other people's account numbers and passwords through hacking, he may be held accountable for hacking, hacking, and controlling the computer information system according to different circumstances. If the relevant account has obvious money rights, he or she may be held accountable for hacking responsibilities. "Yu Guofu said.
However, Guo Fu believes that if the social harm has reached the level of criminal prosecution, the perpetrator must be investigated as an accomplice.
For the holders of stolen account passwords, Yu Guofu believes that they are not without losses. “On the one hand, the new holder may change the password and cause the original holder to lose its membership service rights; on the other hand, the personal information, viewing records, and property rights in the member’s account are illegally obtained and controlled by others. The holder is bound to be exposed to loss of personal information, property loss, etc.†Wang Hao, deputy director of the Information Security Law Research Center of Xi’an Jiaotong University, told the Rule of Law Weekend reporter that in most of the judicial cases, “invade citizens’ personal information†“Personal information†refers to information that can identify individual citizens; in the user account of a video site, there may be records of users purchasing video website services, viewing records, etc. Such purchase records can be considered personal. information.
"Even if sellers obtain user accounts and information through open channels and then sell them, as long as the number of hacking sales is large and the circumstances are serious, it may infringe the criminal law on the infringement of citizens' personal information," said Wang Xi.
“Before selling goods, merchants should take responsibility for the legitimacy of the goods. This is undoubted.†Yu Guofu stated that QQ Group is a relatively closed space, and e-commerce websites are more open to physical goods and virtual goods on the platform. Commodities and websites should increase monitoring efforts.
In response, Taobao staff said that Taobao has been regularly clearing the shops that sell video corporate member accounts illegally and illegally based on clues provided by video sites and Ali’s own keyword search and big data technologies. In the interview, Taobao’s practice has also been confirmed by the staff of video sites such as iQiyi.
Video companies have already pushed countermeasures
In order to protect the company's normal income and to ensure that members have a good viewing effect, the reporter learned that video companies have clearly stipulated in the membership agreement that they are not allowed to transfer or sell membership.
If iQIQI stipulates in the user agreement, VIP member service is limited to those who apply for the account and it is forbidden to give, borrow, lease, transfer or sell it. Otherwise, iQiyi has the right to cancel the transfer of the account without notice. Transferee account's VIP membership service qualification.
At the same time, iQIYI has made clear its own technical countermeasures: the same iQIYI VIP account can only be used on a maximum of 5 devices, and at the same time, on the same account, only two devices can be registered for viewing. For use in the above range, the iQIYI system will automatically ban the account.
On the evening of January 25th, the reporter tried to log in with the aforementioned iQiyi member account. As a result, he found that he could not log in. The following words appeared: “Your member account is being used by multiple devices at the same time, according to the iQIYI Member Service. Agreement, we will stop providing member services on the current device. If you want to watch on this device, please close other devices that are playing on this account or change your password immediately."
Youku also stipulates in the user agreement that it is forbidden to provide the Youku.com account to any third party, paid or unpaid, and prohibits it from watching the paid video of the fee-based purchase through the account. If the same account has more than 4 IP accesses within 15 minutes, Youku will close the account for 30 minutes.
Yu Guofu stated that the online membership service agreement should be a valid contract without violating laws and regulations, and all parties should perform the contract, account number and password in accordance with the contract. The website is provided to the registrant to provide Internet information service to the registrant. The use of credentials.
Even if it is the so-called "white number", Yu Guofu also stated that in the case that the contract clearly stated that the service account could not be transferred or transferred, the initial registrant transferred and leased the account number and password to others, and violated the relevant stipulations in the contract.
The iQIYI staff told the Rule of Law Weekend reporter that such hacking sales and malicious sharing of “white numbers†will not only affect the company’s revenue, but more importantly, it will also affect the initial user’s viewing experience.
The reporter learned that many video companies have big data technology and can push videos and services with personalized features that suit the user's interests and hobbies according to the user's viewing history. "If an account is stolen or shared by others, then the viewing record will be very confusing and the company will not be able to provide users with good services," the staff member said.
Wang Hao believes that for the phenomenon of hacking sales and malicious sharing of accounts in the video industry, the “law, management, technology, and user education†should be governed by the four in one: the legislation on personal information protection should be further followed, and law enforcement agencies should also increase Law enforcement, and video sites should also innovate technology and management tools to prevent the occurrence of crashes, hacking, etc.; for users, it should also strengthen security and contract education; only four linkages can prevent such behavior from the root occur.
Turn from the web.
iQiyi TV Edition free download:
Http://apps.sfcdn.org/apk/com.gitvdemo.video
More member resources can also be seen in other powerful software:
The fastest updated movie software free download:
Http://apps.sfcdn.org/apk/com.moretv.android.
All are HD movie resource software downloads:
Http://apps.sfcdn.org/apk/net.myvst.
Next:A large sum of live on-demand software in 2015, one can not be less
encapsulated power transformer,EI low frequency transformer,Industrial transformer,power supply transformer,alarm system transformer
IHUA INDUSTRIES CO.,LTD. , https://www.ihuagroup.com