利用“短信嗅探”技术实施网络侵财犯罪刍议
详细信息    查看全文 | 推荐本文 |
  • 英文篇名:Discussion on the Internet Property Crimes by Using the Technology of "Short Message Sniffing"
  • 作者:熊纬辉 ; 付樱
  • 英文作者:XIONG Wei-hui;FU Ying;
  • 关键词:短信嗅探 ; 网络侵财犯罪 ; 网络支付 ; 网络安全
  • 英文关键词:short message sniffing;;internet property crimes;;network payment;;network security
  • 中文刊名:GAZK
  • 英文刊名:Journal of Jiangsu Police Institute
  • 机构:福建省三明市委政法委办公室;福建省建宁县公安局网安大队;
  • 出版日期:2019-05-20
  • 出版单位:江苏警官学院学报
  • 年:2019
  • 期:v.34;No.184
  • 语种:中文;
  • 页:GAZK201903008
  • 页数:7
  • CN:03
  • ISSN:32-1704/Z
  • 分类号:55-61
摘要
以非接触式"短信嗅探"技术实施的网络侵财犯罪具有作案手法隐蔽化、作案选择随机化、攻击过程全链条化、犯罪成员分工化、设备操作简单化等特点,并已形成由短信嗅探设备制造、"跑机"、个人信息兜售、盗刷、洗钱等环节组成的、全链条化的黑色产业链。该新型网络侵财犯罪一旦蔓延,不仅会严重侵害人民群众财产安全和个人信息安全,而且会影响网络支付行业健康、持续发展,甚至会造成一定程度的社会恐慌,犯罪危害性较大。深入分析研究此类犯罪模式及其作案特点,切实构建专业侦查办案机制,增强手机用户安全防范意识,健全完善运营商和第三方支付平台安全保障机制建设,是防范其发展蔓延的有效路径。
        Non-contact SMS property crimes have the characteristics of concealment of crime tactics,randomization of crime selection, full chain of attack process, division of labor among criminal members,simplification of equipment operation, etc. It has formed a full chain of SMS sniffing equipment manufacturing, "running machine", personal information peddling, fraudulent using of bank cards and money laundering. Once the new type of network crime of infringing property spreads, it will not only seriously infringe on the people's property security and personal information security, but also affect the healthy and sustainable development of the network payment industry, and even cause a certain degree of social panic,and the crime is more harmful. It is an effective way to prevent the development and spread of this new type of cybercrime by analyzing the mode and characteristics of the non-contact SMS sniffing cybercrime,building a professional investigation and case handling mechanism, enhancing the security awareness of mobile phone users, and improving the security guarantee mechanism of operators and third-party payment platforms.
引文
(1)“社工”是黑客界一种常用的词语,指通过社会工程学的手段,利用撞库或者某些漏洞来确定个人信息的方法。
    (1)邯郸市反电信网络诈骗中心:《三更半夜收到的短信》,http://www.sohu.com/a/271491004_800927.
    (2)“跑机”是指犯罪嫌疑人使用短信嗅探设备,前往作案地点监听并捕获基站发出的数据,并从中提取出明文短信数据的行为。
    (1)伟辰:《信息透明时代!手机支付短信不再安全,验证码何去何从?》,https://baijiahao.baidu.com/s?id=1615741385668122375&wfr=spider&for=pc.
    (1)许晴:《短信验证码漏洞多风险大需要加把安全锁》,https://tech.sina.com.cn/t/2018-08-16/doc-ihhvciiv6142185.shtml.
    (1)《国内3大运营商发力:将陆续关闭2G网络》,http://mobile.163.com/18/0331/10/DE7J382S0011819H.html.