{"id":334933,"date":"2024-06-26T15:28:31","date_gmt":"2024-06-26T13:28:31","guid":{"rendered":"https:\/\/sftarticles.wpenginepowered.com\/es\/?p=334933"},"modified":"2025-06-12T16:49:56","modified_gmt":"2025-06-12T14:49:56","slug":"asi-funciona-snailload-un-nuevo-metodo-de-espionaje-capaz-de-averiguar-que-videos-y-webs-ves","status":"publish","type":"post","link":"https:\/\/cms-articles.softonic.io\/es\/asi-funciona-snailload-un-nuevo-metodo-de-espionaje-capaz-de-averiguar-que-videos-y-webs-ves\/","title":{"rendered":"As\u00ed funciona SnailLoad: un nuevo m\u00e9todo de espionaje capaz de averiguar que v\u00eddeos y webs ves"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Un grupo de investigadores de la Universidad Tecnol\u00f3gica de Graz ha desarrollado un nuevo m\u00e9todo de espionaje en Internet llamado <strong>SnailLoad<\/strong>, que <strong>puede determinar con un 98% de precisi\u00f3n el v\u00eddeo que est\u00e1 viendo un usuario<\/strong> y con un 63% las webs que visita.<\/p>\n\n\n<div class=\"sc-card-program\">\r\n  <div class=\"sc-card-program__body\">\r\n    <div class=\"sc-card-program__row clearfix\">\r\n      <div class=\"sc-card-program__col-logo\">\r\n        <img decoding=\"async\" class=\"sc-card-program__img\" src=\"https:\/\/images.sftcdn.net\/images\/t_app-icon-s\/p\/9de631e4-96d2-11e6-be3c-00163ec9f5fa\/1794891465\/kaspersky-kaspersky.png\" alt=\"Kaspersky Anti-Virus\" width=\"100px\" height=\"100px\">\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-title\">\r\n        <span class=\"sc-card-program__title\">Kaspersky Anti-Virus<\/span>\r\n        <a class=\"sc-card-program__button sc-card-program-internal\" href=\"https:\/\/kaspersky.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\">DESCARGAR<\/a>\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-rating\">\r\n        <svg class=\"rating-score__content\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" version=\"1.1\" x=\"0\" y=\"0\" viewbox=\"0 0 50 50\" enable-background=\"new 0 0 50 50\" xml:space=\"preserve\"><path class=\"rating-score__background rating-score--good\" fill=\"none\" stroke-width=\"6\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><path class=\"rating-score__value rating-score__value--0\" fill=\"none\" stroke-width=\"6\" stroke-dashoffset=\"0\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><text class=\"rating-score__number\" content=\"\" text-anchor=\"middle\" transform=\"matrix(1 0 0 1 25 31.0837)\" data-auto=\"app-user-score\"><\/text><\/svg>\r\n      <\/div>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <span class=\"sc-card-program__description\"><\/span>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <img decoding=\"async\" class=\"sc-card-program__bigpic\" src=\"\" onerror=\"this.style.display='none'\">\r\n    <\/div>\r\n    <a class=\"sc-card-program__link track-link sc-card-program-internal\" href=\"https:\/\/kaspersky.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\"><\/a>\r\n  <\/div>\r\n<\/div>\n\n\n\n<p class=\"wp-block-paragraph\">Titulado <strong>&#8220;SnailLoad: Exploiting Remote Network Latency Measurements without JavaScript&#8221;<\/strong>, el <a href=\"https:\/\/snailload.com\/snailload.pdf\" target=\"_blank\" rel=\"noopener nofollow\" title=\"\">paper<\/a> es obra de Stefan Gast, Roland Czerny, Jonas Juffinger, Fabian Rauscher, Simone Franza y Daniel Gruss, quienes explican c\u00f3mo esta t\u00e9cnica <strong>no requiere la instalaci\u00f3n de malware<\/strong> ni la observaci\u00f3n del tr\u00e1fico de red mediante un ataque de tipo \u201cperson-in the-middle\u201d. Es m\u00e1s, <a href=\"https:\/\/www.softonic.com\/articulos\/actualiza-tu-ordenador-cuanto-antes-los-hackers-pueden-infectarlo-a-traves-de-tu-red-wi-fi\">ni siquiera es necesario que el atacante est\u00e9 f\u00edsicamente cerca para monitorizar los paquetes Wi-Fi<\/a>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">SnailLoad aprovecha las &#8220;sutiles variaciones en los tiempos de ida y vuelta de los paquetes de red&#8221;, que llevan una se\u00f1al de canal lateral influida por la actividad de la v\u00edctima. Al hacer que el usuario descargue un peque\u00f1o archivo, <strong>el atacante puede medir la latencia y los cambios en la velocidad de la conexi\u00f3n a Internet para deducir la actividad del usuario<\/strong>. El nombre de este nuevo tipo de ataque se debe a la <strong>lenta velocidad de la descarga<\/strong>, comparada con la de un caracol. &#8220;Aparte de ser lento&#8221;, explican los investigadores, &#8220;SnailLoad, al igual que un caracol, deja rastros y es un poco espeluznante&#8221;.<\/p>\n\n\n<div class=\"wp-block-image\">\n<figure class=\"aligncenter size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"767\" height=\"236\" src=\"https:\/\/articles-img.sftcdn.net\/sft\/articles\/auto-mapping-folder\/sites\/2\/2024\/06\/Funcionamiento-SnailLoad.jpg\" alt=\"\" class=\"wp-image-334937\" srcset=\"https:\/\/articles-img.sftcdn.net\/auto-mapping-folder\/sites\/2\/2024\/06\/Funcionamiento-SnailLoad.jpg 767w, https:\/\/articles-img.sftcdn.net\/auto-mapping-folder\/sites\/2\/2024\/06\/Funcionamiento-SnailLoad-300x92.jpg 300w\" sizes=\"auto, (max-width: 767px) 100vw, 767px\" \/><\/figure>\n<\/div>\n\n\n<p class=\"wp-block-paragraph\">El ataque es <strong>totalmente pasivo y remoto<\/strong>, y es capaz de determinar con precisi\u00f3n qu\u00e9 v\u00eddeo est\u00e1 viendo un usuario o en qu\u00e9 actividad de la web est\u00e1 inmerso. Por si fuera poco, <strong>la \u00fanica forma de mitigarlo es degradando la conexi\u00f3n a Internet<\/strong>, algo que la mayor\u00eda de los usuarios no estar\u00edan dispuestos a hacer. Los investigadores advierten que &#8220;la causa ra\u00edz no puede eliminarse y es necesario seguir investigando para encontrar soluciones satisfactorias&#8221;.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Aunque <strong>esta amenaza se basa \u00fanicamente en investigaciones de laboratorio<\/strong> y es poco probable que se <a href=\"https:\/\/www.softonic.com\/articulos\/asi-funciona-rafel-rat-la-nueva-herramienta-de-los-ciberdelincuentes-que-ataca-dispositivos-android\">explote en el mundo real<\/a>, de momento, este nuevo m\u00e9todo \u201cdemuestra la amplia gama de posibles vectores de ataque\u201d que podr\u00edan \u201cestresar significativamente al personal de seguridad\u201d, seg\u00fan <strong>Boris Cipot<\/strong>, ingeniero de seguridad en el Grupo de Integridad de Software de <strong>Synopsys<\/strong>, quien tambi\u00e9n advirti\u00f3 que <strong>&#8220;es posible que ya se est\u00e9n utilizando vectores de ataque similares sin que lo sepamos&#8221;<\/strong>.<\/p>\n\n\n<div class=\"sc-card-program\">\r\n  <div class=\"sc-card-program__body\">\r\n    <div class=\"sc-card-program__row clearfix\">\r\n      <div class=\"sc-card-program__col-logo\">\r\n        <img decoding=\"async\" class=\"sc-card-program__img\" src=\"https:\/\/images.sftcdn.net\/images\/t_app-icon-s\/p\/9de631e4-96d2-11e6-be3c-00163ec9f5fa\/1794891465\/kaspersky-kaspersky.png\" alt=\"Kaspersky Anti-Virus\" width=\"100px\" height=\"100px\">\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-title\">\r\n        <span class=\"sc-card-program__title\">Kaspersky Anti-Virus<\/span>\r\n        <a class=\"sc-card-program__button sc-card-program-internal\" href=\"https:\/\/kaspersky.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\">DESCARGAR<\/a>\r\n      <\/div>\r\n      <div class=\"sc-card-program__col-rating\">\r\n        <svg class=\"rating-score__content\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" version=\"1.1\" x=\"0\" y=\"0\" viewbox=\"0 0 50 50\" enable-background=\"new 0 0 50 50\" xml:space=\"preserve\"><path class=\"rating-score__background rating-score--good\" fill=\"none\" stroke-width=\"6\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><path class=\"rating-score__value rating-score__value--0\" fill=\"none\" stroke-width=\"6\" stroke-dashoffset=\"0\" stroke-miterlimit=\"10\" d=\"M40 40c8.3-8.3 8.3-21.7 0-30s-21.7-8.3-30 0 -8.3 21.7 0 30\"><\/path><text class=\"rating-score__number\" content=\"\" text-anchor=\"middle\" transform=\"matrix(1 0 0 1 25 31.0837)\" data-auto=\"app-user-score\"><\/text><\/svg>\r\n      <\/div>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <span class=\"sc-card-program__description\"><\/span>\r\n    <\/div>\r\n    <div class=\"sc-card-program__row\">\r\n      <img decoding=\"async\" class=\"sc-card-program__bigpic\" src=\"\" onerror=\"this.style.display='none'\">\r\n    <\/div>\r\n    <a class=\"sc-card-program__link track-link sc-card-program-internal\" href=\"https:\/\/kaspersky.softonic.com\/\" target=\"_self\" rel=\"noopener noreferrer\"><\/a>\r\n  <\/div>\r\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Un grupo de investigadores de la Universidad Tecnol\u00f3gica de Graz ha desarrollado un nuevo m\u00e9todo de espionaje en Internet llamado SnailLoad, que puede determinar con un 98% de precisi\u00f3n el v\u00eddeo que est\u00e1 viendo un usuario y con un 63% las webs que visita. Titulado &#8220;SnailLoad: Exploiting Remote Network Latency Measurements without JavaScript&#8221;, el paper &hellip; <a href=\"https:\/\/cms-articles.softonic.io\/es\/asi-funciona-snailload-un-nuevo-metodo-de-espionaje-capaz-de-averiguar-que-videos-y-webs-ves\/\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\"> &#8220;As\u00ed funciona SnailLoad: un nuevo m\u00e9todo de espionaje capaz de averiguar que v\u00eddeos y webs ves&#8221;<\/span><\/a><\/p>\n","protected":false},"author":9256,"featured_media":334938,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","wpcf-pageviews":1},"categories":[9317],"tags":[],"usertag":[],"vertical":[],"content-category":[],"class_list":["post-334933","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/posts\/334933","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/users\/9256"}],"replies":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/comments?post=334933"}],"version-history":[{"count":1,"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/posts\/334933\/revisions"}],"predecessor-version":[{"id":359283,"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/posts\/334933\/revisions\/359283"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/media\/334938"}],"wp:attachment":[{"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/media?parent=334933"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/categories?post=334933"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/tags?post=334933"},{"taxonomy":"usertag","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/usertag?post=334933"},{"taxonomy":"vertical","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/vertical?post=334933"},{"taxonomy":"content-category","embeddable":true,"href":"https:\/\/cms-articles.softonic.io\/es\/wp-json\/wp\/v2\/content-category?post=334933"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}