真実

評価: 8.5/10

Coalition
C0195

主張

“COVIDSafeアプリの展開時にセキュリティのベストプラクティスを無視し、バグ報奨金プログラムの実施を行わず、約束にもかかわらずソースコードの迅速な公開も行わなかったため、複数の脆弱性が研究者によって本来よりも大幅に遅く発見される結果となった。”
元の出典: Matthew Davis

元の出典

事実検証

オーストラリア noun Australia 政府せいふ noun Seifu subject-marker Ga COVIDSafe noun COVIDSafe アプリ noun Application direction/target Ni おい verb Oi particle Te セキュリティ noun Security possessive No ベスト noun Best プラクティス noun Practice object-marker Wo 無視むし noun Mushi verb Shi auxiliary-verb Ta and/with To いう verb Iu 主張しゅちょう noun Shuchou topic-marker Wa , タイミング noun Timing and/with To 文脈ぶんみゃく noun Bunmyaku direction/target Ni 関するかんする verb Kansuru 重要じゅうよう Juuyou auxiliary-verb Na 説明せつめい noun Setsumei subject-marker Ga 必要ひつよう noun Hitsuyou auxiliary-verb Na もの noun Mono possessive No , 実質じっしつ noun Jisshitsu てき Mato auxiliary-verb Ni 正確せいかく noun Seikaku auxiliary-verb De ある verb Aru .
The claim that the Australian government ignored security best practices with the COVIDSafe app is **substantially accurate**, though it requires important clarification regarding timing and context. **Delayed Response to Vulnerabilities:** Within hours of COVIDSafe's release on April 26, 2020, security researcher Jim Mussared discovered multiple privacy issues in the Android version by 1:19am on April 27 [1].
* * * * 脆弱ぜいじゃく noun Zeijaku せい Sei direction E possessive No 対応たいおう noun Taiou 遅延ちえん noun Chien * * * * : : COVIDSafe noun COVIDSafe subject-marker Ga 2020 noun 2020 ねん noun Nen 4 noun 4 がつ noun Tsuki 26 noun 26 Hi direction/target Ni リリース noun Release verb Sa auxiliary-verb Re particle Te から from/because Kara すう noun Suu 時間じかん noun Jikan 以内いない noun Inai direction/target Ni , セキュリティ noun Security 研究けんきゅう noun Kenkyuu しゃ Mono possessive No Jim noun Jim Mussared noun Mussared Shi topic-marker Wa 4 noun 4 がつ noun Tsuki 27 noun 27 Hi 午前ごぜん noun Gozen 1 noun 1 noun Ji 19 noun 19 ふん noun Bun まで until Ma de direction/target Ni Android noun Android ばん noun Ban location/means De 複数ふくすう noun Fukusuu possessive No プライバシー noun Privacy 問題もんだい noun Mondai object-marker Wo 発見はっけん noun Hakken verb Shi auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
He detailed these vulnerabilities in a comprehensive report and emailed the Department of Health, Digital Transformation Agency (DTA), Australian Signals Directorate (ASD), and the Australian Cyber Security Centre (ACSC) on April 27-28 [1].
Mussared noun Mussared Shi topic-marker Wa 包括ほうかつ noun Houkatsu てき Mato auxiliary-verb Na 報告ほうこく noun Houkoku しょ Sho location/means De これ Kore Ra possessive No 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo 詳述しょうじゅつ noun Shoujutsu verb Shi , 4 noun 4 がつ noun Tsuki 27 noun 27 Hi 28 noun 28 Hi direction/target Ni かけ verb Kake particle Te 厚生こうせい noun Kousei しょう Shou , デジタル noun Digital トランスフォーメーション noun Transformation ちょう Chou ( DTA noun DTA ) , オーストラリア noun Australia 信号しんごう noun Shingou きょく noun Kyoku ( ASD noun ASD ) , および conjunction Oyobi オーストラリア noun Australia サイバー Cyber セキュリティ noun Security センター noun Center ( ACSC noun ACSC ) direction/target Ni メール noun Mail object-marker Wo 送信そうしん noun Soushin verb Shi auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
However, Mussared only received a single-line response from the DTA a week later on May 5, and this response came only after media began making inquiries [1].
しかし conjunction Shikashi , Mussared noun Mussared Shi subject-marker Ga DTA noun DTA から from/because Kara 受け取っうけとっ verb Uketo auxiliary-verb Ta possessive No topic-marker Wa , メディア noun Media subject-marker Ga 問い合わせといあわせ noun Toiawase object-marker Wo 開始かいし noun Kaishi verb Shi auxiliary-verb Ta あと noun Ato possessive No 5 noun 5 がつ noun Tsuki 5 noun 5 Hi possessive No 一行いっこう noun Ikkou possessive No 返信へんしん noun Henshin のみ particle Nomi だっ auxiliary-verb Da auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
In comparison, Mussared confirmed that he was able to reach Singapore's team (which developed TraceTogether, the app Australia modeled COVIDSafe on) within hours and had some issues fixed by them [1]. **No Formal Bug Bounty Program:** The government did not establish a formal bug bounty program for COVIDSafe.
比較ひかく noun Hikaku する verb Suru and/with To , Mussared noun Mussared Shi topic-marker Wa シンガポール noun Singapore possessive No チーム noun Team ( オーストラリア noun Australia subject-marker Ga COVIDSafe noun COVIDSafe possessive No モデル noun Model and/with To verb Shi auxiliary-verb Ta TraceTogether noun TraceTogether object-marker Wo 開発かいはつ noun Kaihatsu verb Shi auxiliary-verb Ta チーム noun Team ) direction/target Ni topic-marker Wa すう noun Suu 時間じかん noun Jikan 以内いない noun Inai direction/target Ni 連絡れんらく noun Renraku subject-marker Ga 取れとれ verb Tore , 一部いちぶ noun Ichibu possessive No 問題もんだい noun Mondai object-marker Wo 修正しゅうせい noun Shuusei verb Shi particle Te もらっ verb Mora auxiliary-verb Ta こと noun Koto object-marker Wo 確認かくにん noun Kakunin verb Shi particle Te いる verb Iru [ [ 1 noun 1 ]。 ??
According to cybersecurity experts quoted in authoritative sources, "the best practices would be a formal disclosure program and a bug bounty program, and a commitment to getting the bugs fixed" [1].
* * * * 正式せいしき Seishiki auxiliary-verb Na バグ noun Bug 報奨ほうしょう noun Houshou きん Kin プログラム noun Program possessive No 欠如けつじょ noun Ketsujo * * * * : : 政府せいふ noun Seifu topic-marker Wa COVIDSafe noun COVIDSafe possessive No 正式せいしき Seishiki auxiliary-verb Na バグ noun Bug 報奨ほうしょう noun Houshou きん Kin プログラム noun Program object-marker Wo 設立せつりつ noun Setsuritsu verb Shi なかっ auxiliary-verb Naka auxiliary-verb Ta .
This represents a significant departure from best practices.
信頼しんらい noun Shinrai できる verb Dekiru 情報じょうほう noun Jouhou げん Minamoto location/means De 引用いんよう noun In'you verb Sa auxiliary-verb Re particle Te いる verb Iru サイバー Cyber セキュリティ noun Security 専門せんもん noun Senmon Ie direction/target Ni よる verb Yoru and/with To , " ベスト noun Best プラクティス noun Practice topic-marker Wa 正式せいしき Seishiki auxiliary-verb Na 開示かいじ noun Kaiji プログラム noun Program and/with To バグ noun Bug 報奨ほうしょう noun Houshou きん Kin プログラム noun Program , そして conjunction Soshite バグ noun Bug 修正しゅうせい noun Shuusei direction E possessive No コミットメント noun Commitment auxiliary-verb De ある verb Aru 」[ ?? 1 noun 1 ]。 ??
For comparison, the UK government's approach to its NHS COVID-19 app included more structured vulnerability disclosure processes [1]. **Delayed Source Code Publication:** While Australia eventually released source code (app code was published on April 28, 2020), there were significant delays and transparency issues [1].
これ Kore topic-marker Wa ベスト noun Best プラクティス noun Practice から from/because Kara possessive No 大きなおおきな Ookina 逸脱いつだつ noun Itsudatsu object-marker Wo 表しあらわし verb Arawashi particle Te いる verb Iru .
Cryptographer Dr.
比較ひかく noun Hikaku and/with To verb Shi particle Te , 英国えいこく noun Eikoku 政府せいふ noun Seifu possessive No NHS noun NHS COVID noun COVID - - 19 noun 19 アプリ noun Application direction E possessive No アプローチ noun Approach topic-marker Wa , より adverb Yori 構造こうぞう noun Kouzou Bake verb Sa auxiliary-verb Re auxiliary-verb Ta 脆弱ぜいじゃく noun Zeijaku せい Sei 開示かいじ noun Kaiji プロセス noun Process object-marker Wo 含んふくん verb Fukun location/means De verb I auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
Vanessa Teague noted that "Singapore released app and server code weeks ago" while "Aus & the UK released app code, and no server code, within the last 24 hours" [1].
* * * * ソース noun Sauce コード noun Code 公開こうかい noun Koukai possessive No 遅延ちえん noun Chien * * * * : : オーストラリア noun Australia topic-marker Wa 最終さいしゅう noun Saishuu てき Mato auxiliary-verb Ni ソース noun Sauce コード noun Code object-marker Wo 公開こうかい noun Koukai verb Shi auxiliary-verb Ta subject-marker Ga ( アプリ noun Application コード noun Code topic-marker Wa 2020 noun 2020 ねん noun Nen 4 noun 4 がつ noun Tsuki 28 noun 28 Hi direction/target Ni 公開こうかい noun Koukai ) , 重大じゅうだい Juudai auxiliary-verb Na 遅延ちえん noun Chien and/with To 透明とうめい Toumei せい Sei possessive No 問題もんだい noun Mondai subject-marker Ga あっ verb A auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
Critically, Australia only released application code—not the server code where "the server does all the crypto" [1].
暗号あんごう noun Angou がく Gaku しゃ Mono possessive No Vanessa noun Vanessa Teague noun Teague 博士はかせ noun Hakase topic-marker Wa , " シンガポール noun Singapore topic-marker Wa アプリ noun Application コード noun Code and/with To サーバー noun Server コード noun Code object-marker Wo すう noun Suu 週間しゅうかん noun Shuukan まえ noun Mae direction/target Ni 公開こうかい noun Koukai verb Shi auxiliary-verb Ta possessive No direction/target Ni 対したいし verb Taishi , オーストラリア noun Australia and/with To 英国えいこく noun Eikoku topic-marker Wa アプリ noun Application コード noun Code のみ particle Nomi object-marker Wo 公開こうかい noun Koukai verb Shi , サーバー noun Server コード noun Code topic-marker Wa 公開こうかい noun Koukai verb Shi particle Te verb I ない auxiliary-verb Nai " and/with To 指摘してき noun Shiteki verb Shi auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
The government also failed to publish whitepapers explaining the cryptographic design and security assumptions, unlike Singapore and the UK [1]. **Multiple Vulnerabilities Discovered Over Time:** Researchers identified at least four major vulnerabilities in COVIDSafe that were discovered at different times throughout 2020 [2]: - A bug in how COVIDSafe reads Bluetooth messages on iPhones, causing some encrypted messages to be garbled [2] - CVE-2020-14292: A vulnerability allowing long-term tracking of Android devices [2] - CVE-2020-12856: A flaw affecting Android versions 1.0.17 and earlier, allowing attackers to bond silently with Android phones [2] - A critical concurrency flaw in encryption code (versions 1.0.18 to 1.0.27) where a single Cipher instance was shared across threads without synchronization [2] These were not all discovered simultaneously, but rather identified as researchers examined the code over weeks and months [2]. **Lack of Engagement with Research Community:** The government did not adequately engage with researchers raising concerns.
重要じゅうよう Juuyou auxiliary-verb Na こと noun Koto direction/target Ni , オーストラリア noun Australia topic-marker Wa アプリケーション noun Application コード noun Code のみ particle Nomi object-marker Wo 公開こうかい noun Koukai verb Shi auxiliary-verb Ta " サーバー noun Server subject-marker Ga すべて noun Subete possessive No 暗号あんごう noun Angou Bake object-marker Wo 行うおこなう verb Okonau " サーバー noun Server コード noun Code topic-marker Wa 公開こうかい noun Koukai verb Shi なかっ auxiliary-verb Naka auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
Dr.
政府せいふ noun Seifu topic-marker Wa また conjunction Mata , シンガポール noun Singapore particle Ya 英国えいこく noun Eikoku and/with To topic-marker Wa 異なりことなり verb Kotonari , 暗号あんごう noun Angou 設計せっけい noun Sekkei and/with To セキュリティ noun Security 前提ぜんてい noun Zentei 条件じょうけん noun Jouken object-marker Wo 説明せつめい noun Setsumei する verb Suru ホワイト noun White ペーパー noun Paper also Mo 公開こうかい noun Koukai verb Shi なかっ auxiliary-verb Naka auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
Vanessa Teague and colleagues reported problems with the application, but communication was difficult [1].
* * * * 時間じかん noun Jikan object-marker Wo かけ verb Kake particle Te 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta 複数ふくすう noun Fukusuu possessive No 脆弱ぜいじゃく noun Zeijaku せい Sei * * * * : : 研究けんきゅう noun Kenkyuu しゃ Mono topic-marker Wa , 2020 noun 2020 ねん noun Nen object-marker Wo 通じつうじ verb Tsuuji particle Te 異なることなる verb Kotonaru 時期じき noun Jiki direction/target Ni 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta COVIDSafe noun COVIDSafe possessive No 少なくすくなく adjective Sukunaku とも particle Tomo 4 noun 4 Tsu possessive No 重大じゅうだい Juudai auxiliary-verb Na 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo 特定とくてい noun Tokutei verb Shi auxiliary-verb Ta [ [ 2 noun 2 ]: ]:
The Australian Digital Transformation Agency only published an email address where researchers "could provide feedback" rather than establishing a formal, responsive vulnerability disclosure program [1].
- - iPhone noun IPhone location/means De COVIDSafe noun COVIDSafe subject-marker Ga Bluetooth noun Bluetooth メッセージ noun Message object-marker Wo 読み取るよみとる verb Yomitoru 方法ほうほう noun Houhou possessive No バグ noun Bug direction/target Ni より verb Yori , 一部いちぶ noun Ichibu possessive No 暗号あんごう noun Angou Bake メッセージ noun Message subject-marker Ga 文字もじ noun Moji 化けばけ noun Bake verb Shi auxiliary-verb Ta [ [ 2 noun 2 ] ]
- - CVE noun CVE - - 2020 noun 2020 - - 14292 noun 14292 : : Android noun Android デバイス noun Device possessive No 長期ちょうき noun Chouki 追跡ついせき noun Tsuiseki object-marker Wo 可能かのう Kanou auxiliary-verb Ni する verb Suru 脆弱ぜいじゃく noun Zeijaku せい Sei [ [ 2 noun 2 ] ]
- - CVE noun CVE - - 2020 noun 2020 - - 12856 noun 12856 : : Android noun Android バージョン noun Version 1 noun 1 . . 0 noun 0 . . 17 noun 17 以前いぜん noun Izen direction/target Ni 影響えいきょう noun Eikyou verb Shi , 攻撃こうげき noun Kougeki しゃ Mono subject-marker Ga Android noun Android フォン noun Fond and/with To 静かしずか Shizuka auxiliary-verb Ni ペアリング noun Pairing できる verb Dekiru 欠陥けっかん noun Kekkan [ [ 2 noun 2 ] ]
- - 暗号あんごう noun Angou Bake コード noun Code possessive No 重大じゅうだい Juudai auxiliary-verb Na 同時どうじ noun Douji 実行じっこう noun Jikkou 欠陥けっかん noun Kekkan ( バージョン noun Version 1 noun 1 . . 0 noun 0 . . 18 noun 18 1 noun 1 . . 0 noun 0 . . 27 noun 27 ) location/means De , 単一たんいつ Tan'itsu possessive No Cipher noun Cipher インスタンス noun Instance subject-marker Ga 同期どうき noun Douki なし noun Nashi direction/target Ni スレッド noun Thread かん Ma location/means De 共有きょうゆう noun Kyouyuu verb Sa auxiliary-verb Re auxiliary-verb Ta [ [ 2 noun 2 ] ]
これ Kore Ra topic-marker Wa すべて noun Subete 同時どうじ noun Douji direction/target Ni 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta わけ noun Wake location/means De topic-marker Wa なく adjective Naku , 研究けんきゅう noun Kenkyuu しゃ Mono subject-marker Ga すう noun Suu 週間しゅうかん noun Shuukan すう noun Suu ヶ月かげつ noun Kagetsu direction/target Ni わたっ verb Wata particle Te コード noun Code object-marker Wo 調査ちょうさ noun Chousa する verb Suru なか noun Naka location/means De 特定とくてい noun Tokutei verb Sa auxiliary-verb Re auxiliary-verb Ta [ [ 2 noun 2 ]。 ??
* * * * 研究けんきゅう noun Kenkyuu しゃ Mono コミュニティ noun Community and/with To possessive No 関与かんよ noun Kan'yo 不足ふそく noun Fusoku * * * * : : 政府せいふ noun Seifu topic-marker Wa 懸念けねん noun Kenen object-marker Wo 提起ていき noun Teiki verb Shi auxiliary-verb Ta 研究けんきゅう noun Kenkyuu しゃ Mono and/with To 十分じゅうぶん Juu fun auxiliary-verb Ni 関与かんよ noun Kan'yo verb Shi なかっ auxiliary-verb Naka auxiliary-verb Ta .
Vanessa noun Vanessa Teague noun Teague 博士はかせ noun Hakase and/with To 同僚どうりょう noun Douryou topic-marker Wa アプリケーション noun Application possessive No 問題もんだい noun Mondai object-marker Wo 報告ほうこく noun Houkoku verb Shi auxiliary-verb Ta subject-marker Ga , コミュニケーション noun Communication topic-marker Wa 困難こんなん noun Konnan だっ auxiliary-verb Da auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
オーストラリア noun Australia デジタル noun Digital トランスフォーメーション noun Transformation ちょう Chou topic-marker Wa , 研究けんきゅう noun Kenkyuu しゃ Mono subject-marker Ga " フィードバック noun Feedback object-marker Wo 提供ていきょう noun Teikyou できる verb Dekiru " メール noun Mail アドレス noun Address のみ particle Nomi object-marker Wo 公開こうかい noun Koukai verb Shi , 正式せいしき Seishiki auxiliary-verb De 応答おうとう noun Outou せい Sei possessive No 高いたかい adjective Takai 脆弱ぜいじゃく noun Zeijaku せい Sei 開示かいじ noun Kaiji プログラム noun Program object-marker Wo 設立せつりつ noun Setsuritsu verb Shi なかっ auxiliary-verb Naka auxiliary-verb Ta [ [ 1 noun 1 ]。 ??

欠落した文脈

ただし conjunction Tadashi , この Kono 主張しゅちょう noun Shuchou direction/target Ni topic-marker Wa 解釈かいしゃく noun Kaishaku direction/target Ni 影響えいきょう noun Eikyou object-marker Wo 与えるあたえる verb Ataeru 重要じゅうよう Juuyou auxiliary-verb Na 文脈ぶんみゃく noun Bunmyaku subject-marker Ga 必要ひつよう noun Hitsuyou auxiliary-verb De ある verb Aru : :
However, the claim requires significant context that affects interpretation: **Rushed Timeline and Pandemic Response:** The COVIDSafe app was developed in response to an urgent pandemic crisis and was released quickly [3].
* * * * 急いいそい verb Isoi auxiliary-verb Da スケジュール noun Schedule and/with To パンデミック noun Pandemic 対応たいおう noun Taiou * * * * : : COVIDSafe noun COVIDSafe アプリ noun Application topic-marker Wa 緊急きんきゅう noun Kinkyuu possessive No パンデミック noun Pandemic 危機きき noun Kiki direction E possessive No 対応たいおう noun Taiou and/with To verb Shi particle Te 迅速じんそく Jinsoku auxiliary-verb Ni 開発かいはつ noun Kaihatsu verb Sa auxiliary-verb Re , 迅速じんそく Jinsoku auxiliary-verb Ni リリース noun Release verb Sa auxiliary-verb Re auxiliary-verb Ta [ [ 3 noun 3 ]。 ??
The government was developing technology at an unprecedented pace during a public health emergency.
政府せいふ noun Seifu topic-marker Wa 公衆こうしゅう noun Koushuu 衛生えいせい noun Eisei 緊急きんきゅう noun Kinkyuu 事態じたい noun Jitai direction/target Ni おい verb Oi particle Te 前例ぜんれい noun Zenrei possessive No ない adjective Nai ペース noun Pace location/means De 技術ぎじゅつ noun Gijutsu object-marker Wo 開発かいはつ noun Kaihatsu verb Shi particle Te verb I auxiliary-verb Ta .
While this explains the urgency, it does not excuse the failure to implement industry-standard security practices—in fact, it makes them more important, not less [3]. **Government Accountability vs.
この Kono 緊急きんきゅう noun Kinkyuu せい Sei topic-marker Wa 状況じょうきょう noun Joukyou object-marker Wo 説明せつめい noun Setsumei する verb Suru subject-marker Ga , 業界ぎょうかい noun Gyoukai 標準ひょうじゅん noun Hyoujun possessive No セキュリティ noun Security プラクティス noun Practice possessive No 不備ふび noun Fubi object-marker Wo 弁解べんかい noun Benkai する verb Suru もの noun Mono auxiliary-verb De topic-marker Wa ない adjective Nai 実際じっさい noun Jissai direction/target Ni , それ Sore Ra object-marker Wo より adverb Yori 重要じゅうよう Juuyou auxiliary-verb Ni verb Su べき auxiliary-verb Beki auxiliary-verb De あり verb Ari , 重要じゅうよう Juuyou auxiliary-verb De なく adjective Naku なる verb Naru べき auxiliary-verb Beki auxiliary-verb De topic-marker Wa ない adjective Nai [ [ 3 noun 3 ]。 ??
Comparative Analysis:** The government did eventually respond to some issues.
* * * * 政府せいふ noun Seifu possessive No 説明せつめい noun Setsumei 責任せきにん noun Sekinin and/with To 比較ひかく noun Hikaku 分析ぶんせき noun Bunseki * * * * : : 政府せいふ noun Seifu topic-marker Wa 最終さいしゅう noun Saishuu てき Mato auxiliary-verb Ni いく noun Iku Tsu question Ka possessive No 問題もんだい noun Mondai direction/target Ni 対応たいおう noun Taiou verb Shi auxiliary-verb Ta .
After the research community identified vulnerabilities, the DTA and Australian Signals Directorate did patch the encryption concurrency flaw, which researchers thanked them for addressing [2].
研究けんきゅう noun Kenkyuu しゃ Mono コミュニティ noun Community subject-marker Ga 脆弱ぜいじゃく noun Zeijaku せい Sei object-marker Wo 特定とくてい noun Tokutei verb Shi auxiliary-verb Ta あと noun Ato , DTA noun DTA and/with To オーストラリア noun Australia 信号しんごう noun Shingou きょく noun Kyoku topic-marker Wa 暗号あんごう noun Angou Bake possessive No 同時どうじ noun Douji 実行じっこう noun Jikkou 欠陥けっかん noun Kekkan object-marker Wo 修正しゅうせい noun Shuusei verb Shi , 研究けんきゅう noun Kenkyuu しゃ Mono topic-marker Wa これ Kore direction/target Ni 感謝かんしゃ noun Kansha object-marker Wo 表明ひょうめい noun Hyoumei verb Shi auxiliary-verb Ta [ [ 2 noun 2 ]。 ??
However, the government's initial failure to establish proactive vulnerability disclosure mechanisms meant fixes came reactively rather than systematically. **Comparison to International Standards:** Singapore's contact tracing app (TraceTogether), which Australia modeled COVIDSafe after, demonstrated that faster vulnerability disclosure and more transparent security practices were feasible even in a pandemic context.
しかし conjunction Shikashi , 政府せいふ noun Seifu subject-marker Ga 積極せっきょく noun Sekkyoku てき Mato auxiliary-verb Na 脆弱ぜいじゃく noun Zeijaku せい Sei 開示かいじ noun Kaiji メカニズム noun Mechanism object-marker Wo 設立せつりつ noun Setsuritsu verb Shi なかっ auxiliary-verb Naka auxiliary-verb Ta こと noun Koto direction/target Ni より verb Yori , 修正しゅうせい noun Shuusei topic-marker Wa 体系たいけい noun Taikei てき Mato auxiliary-verb De topic-marker Wa なく adjective Naku 反応はんのう noun Hannou てき Mato auxiliary-verb Ni 実装じっそう noun Jissou verb Sa auxiliary-verb Re auxiliary-verb Ta .
Similarly, the UK's approach, while not perfect, was significantly more transparent with whitepaper documentation and faster engagement with researchers [1]. **Scale of Impact:** While COVIDSafe's security issues were real, the app ultimately failed to deliver epidemiological value.
* * * * 国際こくさい noun Kokusai 標準ひょうじゅん noun Hyoujun and/with To possessive No 比較ひかく noun Hikaku * * * * : : オーストラリア noun Australia subject-marker Ga COVIDSafe noun COVIDSafe possessive No モデル noun Model and/with To verb Shi auxiliary-verb Ta シンガポール noun Singapore possessive No 接触せっしょく noun Sesshoku 追跡ついせき noun Tsuiseki アプリ noun Application ( TraceTogether noun TraceTogether ) topic-marker Wa , パンデミック noun Pandemic possessive No 文脈ぶんみゃく noun Bunmyaku location/means De also Mo より adverb Yori 迅速じんそく Jinsoku auxiliary-verb Na 脆弱ぜいじゃく noun Zeijaku せい Sei 開示かいじ noun Kaiji and/with To より particle Yori 透明とうめい Toumei せい Sei possessive No 高いたかい adjective Takai セキュリティ noun Security プラクティス noun Practice subject-marker Ga 実現じつげん noun Jitsugen 可能かのう Kanou auxiliary-verb De あっ verb A auxiliary-verb Ta こと noun Koto object-marker Wo 示ししめし verb Shimeshi auxiliary-verb Ta .
A confidential government report by independent consultants found that "the utilisation of COVIDSafe...resulted in high transaction costs for state contact tracing teams and produced few benefits" [3].
同様どうよう Douyou auxiliary-verb Ni , 英国えいこく noun Eikoku possessive No アプローチ noun Approach also Mo 完璧かんぺき noun Kanpeki auxiliary-verb De topic-marker Wa なかっ adjective Naka auxiliary-verb Ta subject-marker Ga , ホワイト noun White ペーパー noun Paper 文書ぶんしょ noun Bunsho and/with To 研究けんきゅう noun Kenkyuu しゃ Mono and/with To possessive No より adverb Yori 迅速じんそく Jinsoku auxiliary-verb Na 関与かんよ noun Kan'yo direction/target Ni より verb Yori 大幅おおはば Oohaba auxiliary-verb Ni 透明とうめい Toumei せい Sei subject-marker Ga 高かったかかっ adjective Takaka auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
By the time the app was decommissioned, it had discovered only two positive cases and 17 close-contacts during its entire period of activity [3].
* * * * 影響えいきょう noun Eikyou possessive No 規模きぼ noun Kibo * * * * : : COVIDSafe noun COVIDSafe possessive No セキュリティ noun Security 問題もんだい noun Mondai topic-marker Wa 実在じつざい noun Jitsuzai verb Shi auxiliary-verb Ta subject-marker Ga , この Kono アプリ noun Application topic-marker Wa 最終さいしゅう noun Saishuu てき Mato auxiliary-verb Ni 疫学えきがく noun Ekigaku てき Mato 価値かち noun Kachi object-marker Wo 提供ていきょう noun Teikyou でき verb Deki なかっ auxiliary-verb Naka auxiliary-verb Ta .
The security vulnerabilities, therefore, occurred in an application that was already fundamentally ineffective for its stated purpose.
独立どくりつ noun Dokuritsu verb Shi auxiliary-verb Ta コンサルタント noun Consultant direction/target Ni よる verb Yoru 機密きみつ noun Kimitsu 政府せいふ noun Seifu 報告ほうこく noun Houkoku しょ Sho topic-marker Wa , " COVIDSafe noun COVIDSafe possessive No 利用りよう noun Riyou topic-marker Wa しゅう noun Shuu possessive No 接触せっしょく noun Sesshoku 追跡ついせき noun Tsuiseki チーム noun Team direction/target Ni 高いたかい adjective Takai 取引とりひき noun Torihiki コスト noun Cost object-marker Wo もたらし verb Motarashi , 利益りえき noun Rieki topic-marker Wa 限らかぎら verb Kagira auxiliary-verb Re particle Te verb I auxiliary-verb Ta " and/with To 発見はっけん noun Hakken verb Shi auxiliary-verb Ta [ [ 3 noun 3 ]。 ??
アプリ noun Application subject-marker Ga 運用うんよう noun Un'you 停止ていし noun Teishi verb Sa れる auxiliary-verb Reru まで until Ma de direction/target Ni , 活動かつどう noun Katsudou 期間きかん noun Kikan ちゅう Naka わずか adverb Wazuka 2 noun 2 けん noun Ken possessive No 陽性ようせい noun Yousei 症例しょうれい noun Shourei and/with To 17 noun 17 にん Hito possessive No 濃厚のうこう Noukou 接触せっしょく noun Sesshoku しゃ Mono object-marker Wo 発見はっけん noun Hakken verb Shi auxiliary-verb Ta direction/target Ni 過ぎすぎ verb Sugi なかっ auxiliary-verb Naka auxiliary-verb Ta [ [ 3 noun 3 ]。 ??
したがっ verb Shitaga particle Te , セキュリティ noun Security 脆弱ぜいじゃく noun Zeijaku せい Sei topic-marker Wa , 既にすでに adverb Sudeni 基本きほん noun Kihon てき Mato auxiliary-verb Ni 機能きのう noun Kinou 不全ふぜん noun Fuzen auxiliary-verb De あっ verb A auxiliary-verb Ta アプリケーション noun Application location/means De 発生はっせい noun Hassei verb Shi auxiliary-verb Ta もの noun Mono auxiliary-verb De あっ verb A auxiliary-verb Ta .

情報源の信頼性評価

提供ていきょう noun Teikyou verb Sa auxiliary-verb Re auxiliary-verb Ta 情報じょうほう noun Jouhou げん Minamoto topic-marker Wa 信頼しんらい noun Shinrai でき verb Deki , よく adverb Yoku 文書ぶんしょ noun Bunsho Bake verb Sa auxiliary-verb Re particle Te いる verb Iru : :
The original sources provided are credible and well-documented: **ZDNET Article [1]:** ZDNET is a mainstream technology publication owned by Ziff Davis Media and is widely recognized as a credible source for technology reporting.
* * * * ZDNET noun ZDNET 記事きじ noun Kiji [ [ 1 noun 1 ]**: ]**: ZDNET noun ZDNET topic-marker Wa Ziff noun Ziff Davis noun Davis Media noun Media subject-marker Ga 所有しょゆう noun Shoyuu する verb Suru 主流しゅりゅう noun Shuryuu 技術ぎじゅつ noun Gijutsu 出版しゅっぱん noun Shuppan ぶつ Mono auxiliary-verb De あり verb Ari , 技術ぎじゅつ noun Gijutsu 報道ほうどう noun Houdou direction/target Ni おい verb Oi particle Te 広くひろく adjective Hiroku 信頼しんらい noun Shinrai できる verb Dekiru 情報じょうほう noun Jouhou げん Minamoto and/with To verb Shi particle Te 認識にんしき noun Ninshiki verb Sa auxiliary-verb Re particle Te いる verb Iru .
The article by Stilgherrian, a noted technology journalist, is based on direct reporting from Jim Mussared (a security researcher) and Dr.
Stilgherrian noun Stilgherrian direction/target Ni よる verb Yoru 記事きじ noun Kiji topic-marker Wa , 注目ちゅうもく noun Chuumoku verb Su べき auxiliary-verb Beki 技術ぎじゅつ noun Gijutsu ジャーナリスト noun Journalist auxiliary-verb De あり verb Ari , セキュリティ noun Security 研究けんきゅう noun Kenkyuu しゃ Mono possessive No Jim noun Jim Mussared noun Mussared Shi and/with To 尊敬そんけい noun Sonkei verb Sa れる auxiliary-verb Reru 暗号あんごう noun Angou がく Gaku しゃ Mono possessive No Vanessa noun Vanessa Teague noun Teague 博士はかせ noun Hakase から from/because Kara possessive No 直接ちょくせつ noun Chokusetsu possessive No 報道ほうどう noun Houdou direction/target Ni 基づいもとづい verb Motozui particle Te いる verb Iru .
Vanessa Teague (a respected cryptographer).
記事きじ noun Kiji topic-marker Wa 事実じじつ noun Jijitsu direction/target Ni 基づきもとづき verb Motozuki , 文書ぶんしょ noun Bunsho Bake verb Sa auxiliary-verb Re particle Te いる verb Iru [ [ 1 noun 1 ]。 ??
The article is fact-based and documented [1]. **ITNews Article [2]:** ITNews.com.au is an Australian technology news publication with a solid reputation for accurate reporting.
* * * * ITNews noun ITNews 記事きじ noun Kiji [ [ 2 noun 2 ]**: ]**: ITNews noun ITNews . . com noun Com . . au noun Au topic-marker Wa , 正確せいかく noun Seikaku auxiliary-verb Na 報道ほうどう noun Houdou direction/target Ni おい verb Oi particle Te 健全けんぜん Kenzen auxiliary-verb Na 評価ひょうか noun Hyouka object-marker Wo verb Toku particle Te いる verb Iru オーストラリア noun Australia possessive No 技術ぎじゅつ noun Gijutsu ニュース noun News 出版しゅっぱん noun Shuppan ぶつ Mono auxiliary-verb De ある verb Aru .
The article documents vulnerabilities identified by multiple respected researchers (Chris Culnane, Ben Frengley, Eleanor McMurtry, Jim Mussared, Yaakov Smith, Vanessa Teague, and Alwen Tiu) and is based on their detailed GitHub documentation [2]. **GitHub Documentation [3]:** The GitHub repository maintained by Vanessa Teague and others contains technical analysis and timeline documentation.
この Kono 記事きじ noun Kiji topic-marker Wa 複数ふくすう noun Fukusuu possessive No 尊敬そんけい noun Sonkei verb Sa れる auxiliary-verb Reru 研究けんきゅう noun Kenkyuu しゃ Mono ( Chris noun Chris Culnane noun Culnane , Ben noun Ben Frengley noun Frengley , Eleanor noun Eleanor McMurtry noun McMurtry , Jim noun Jim Mussared noun Mussared , Yaakov noun Yaakov Smith noun Smith , Vanessa noun Vanessa Teague noun Teague , および conjunction Oyobi Alwen noun Alwen Tiu noun Tiu ) direction/target Ni よっ verb Yo particle Te 特定とくてい noun Tokutei verb Sa auxiliary-verb Re auxiliary-verb Ta 脆弱ぜいじゃく noun Zeijaku せい Sei direction/target Ni 関するかんする verb Kansuru もの noun Mono auxiliary-verb De あり verb Ari , かれ Kare Ra possessive No 詳細しょうさい noun Shousai auxiliary-verb Na GitHub noun GitHub 文書ぶんしょ noun Bunsho direction/target Ni 基づいもとづい verb Motozui particle Te いる verb Iru [ [ 2 noun 2 ]。 ??
This is a primary source authored by security researchers themselves and is highly credible for understanding what was discovered and when [3].
* * * * GitHub noun GitHub 文書ぶんしょ noun Bunsho [ [ 3 noun 3 ]**: ]**: Vanessa noun Vanessa Teague noun Teague and/with To ほか noun Hoka possessive No 人々ひとびと noun Hitobito direction/target Ni よっ verb Yo particle Te 維持いじ noun Iji verb Sa auxiliary-verb Re particle Te いる verb Iru GitHub noun GitHub リポジトリ noun Repository direction/target Ni topic-marker Wa , 技術ぎじゅつ noun Gijutsu てき Mato 分析ぶんせき noun Bunseki and/with To タイム noun Time ライン noun Line 文書ぶんしょ noun Bunsho subject-marker Ga 含まふくま verb Fukuma auxiliary-verb Re particle Te いる verb Iru .
These sources are not partisan advocacy; they are factual reporting by respected technology journalists and cryptography experts documenting security issues in a government application.
これ Kore topic-marker Wa 研究けんきゅう noun Kenkyuu しゃ Mono 自身じしん noun Jishin direction/target Ni よっ verb Yo particle Te 作成さくせい noun Sakusei verb Sa auxiliary-verb Re auxiliary-verb Ta いち noun Ichi Tsugi 情報じょうほう noun Jouhou げん Minamoto auxiliary-verb De あり verb Ari , なん Nan subject-marker Ga いつ Itsu 発見はっけん noun Hakken verb Sa auxiliary-verb Re auxiliary-verb Ta question Ka object-marker Wo 理解りかい noun Rikai する verb Suru うえ noun Ue location/means De 非常ひじょう Hijou auxiliary-verb Ni 信頼しんらい noun Shinrai できる verb Dekiru .
これ Kore Ra possessive No 情報じょうほう noun Jouhou げん Minamoto topic-marker Wa 党派とうは noun Touha てき Mato auxiliary-verb Na 提唱ていしょう noun Teishou location/means De topic-marker Wa なく adjective Naku , 政府せいふ noun Seifu アプリケーション noun Application possessive No セキュリティ noun Security 問題もんだい noun Mondai object-marker Wo 文書ぶんしょ noun Bunsho Bake する verb Suru 尊敬そんけい noun Sonkei verb Sa れる auxiliary-verb Reru 技術ぎじゅつ noun Gijutsu ジャーナリスト noun Journalist and/with To 暗号あんごう noun Angou 専門せんもん noun Senmon Ie direction/target Ni よる verb Yoru 事実じじつ noun Jijitsu direction/target Ni 基づいもとづい verb Motozui auxiliary-verb Ta 報道ほうどう noun Houdou auxiliary-verb De ある verb Aru .
⚖️

労働党比較

* * * * 労働ろうどう noun Roudou とう Tou topic-marker Wa 同様どうよう Douyou possessive No 技術ぎじゅつ noun Gijutsu セキュリティ noun Security プラクティス noun Practice location/means De なん Nan question Ka object-marker Wo verb Shi auxiliary-verb Ta question Ka ?
**Did Labor do something similar with technology security practices?** This question is somewhat difficult to assess directly because Labor was not in power during the COVID-19 pandemic (the Coalition governed 2013-2022, while Labor won the 2022 election).
* * * *
However, some relevant historical context exists: **Prior Labor Government Technology Initiatives:** During Labor's 2007-2013 period in government, it pursued various technology initiatives with mixed results, including the National Broadband Network (NBN).
この Kono 質問しつもん noun Shitsumon topic-marker Wa 直接ちょくせつ noun Chokusetsu てき Mato auxiliary-verb Ni topic-marker Wa 評価ひょうか noun Hyouka subject-marker Ga 難しいむずかしい adjective Muzukashii .
The NBN project faced criticism for cost overruns and implementation challenges, but these were more related to project management and infrastructure deployment rather than security practices in specific applications [4]. **Proposed Opposition Cyber Security Policies:** During the pandemic, Labor's Shadow Assistant Cyber Security Minister Tim Watts pointed to the UK's model of a "central vulnerability disclosure platform" operated by HackerOne as a better approach [1].
なぜ adverb Naze なら auxiliary-verb Nara , 労働ろうどう noun Roudou とう Tou topic-marker Wa COVID noun COVID - - 19 noun 19 パンデミック noun Pandemic noun Ji direction/target Ni 政権せいけん noun Seiken object-marker Wo 握っにぎっ verb Nigi particle Te verb I なかっ auxiliary-verb Naka auxiliary-verb Ta から from/because Kara auxiliary-verb De ある verb Aru ( 連立れんりつ noun Renritsu 政権せいけん noun Seiken subject-marker Ga 2013 noun 2013 ねん noun Nen 2022 noun 2022 ねん noun Nen direction/target Ni 統治とうち noun Touchi verb Shi , 労働ろうどう noun Roudou とう Tou topic-marker Wa 2022 noun 2022 ねん noun Nen possessive No 選挙せんきょ noun Senkyo location/means De 勝利しょうり noun Shouri verb Shi auxiliary-verb Ta ) .
Labor was proposing such measures as policy, suggesting the opposition recognized that the Coalition's approach was deficient [1].
ただし conjunction Tadashi , 関連かんれん noun Kanren する verb Suru 歴史れきし noun Rekishi てき Mato 文脈ぶんみゃく noun Bunmyaku subject-marker Ga 存在そんざい noun Sonzai する verb Suru : :
This implies Labor would likely have implemented better practices, but this is a proposed alternative rather than a demonstrated track record. **Government-Wide Security Culture:** There is no evidence that Labor under Albanese government (2022-present) has implemented fundamentally different security practices for critical applications.
* * * * まえ noun Mae possessive No 労働ろうどう noun Roudou とう Tou 政権せいけん noun Seiken possessive No 技術ぎじゅつ noun Gijutsu イニシアチブ noun Initiative * * * * : : 労働ろうどう noun Roudou とう Tou subject-marker Ga 2007 noun 2007 ねん noun Nen 2013 noun 2013 ねん noun Nen possessive No 政権せいけん noun Seiken 期間きかん noun Kikan ちゅう Naka , 国家こっか noun Kokka ブロードバンド noun Broadband ネットワーク noun Network ( NBN noun NBN ) object-marker Wo 含むふくむ verb Fukumu さまざま Samazama auxiliary-verb Na 技術ぎじゅつ noun Gijutsu イニシアチブ noun Initiative object-marker Wo 追求ついきゅう noun Tsuikyuu verb Shi auxiliary-verb Ta .
The issue appears to be more systemic across Australian government rather than partisan.
NBN noun NBN プロジェクト noun Project topic-marker Wa コスト noun Cost 超過ちょうか noun Chouka and/with To 実装じっそう noun Jissou 課題かだい noun Kadai location/means De 批判ひはん noun Hihan object-marker Wo 受けうけ verb Uke auxiliary-verb Ta subject-marker Ga , これ Kore Ra topic-marker Wa 特定とくてい noun Tokutei possessive No アプリケーション noun Application direction/target Ni おけ verb Oke auxiliary-verb Ru セキュリティ noun Security プラクティス noun Practice and/with To いう verb Iu より particle Yori , プロジェクト noun Project 管理かんり noun Kanri and/with To インフラ noun Infrastructure 展開てんかい noun Tenkai direction/target Ni 関連かんれん noun Kanren verb Shi particle Te verb I auxiliary-verb Ta [ [ 4 noun 4 ]。 ??
* * * * 提案ていあん noun Teian verb Sa auxiliary-verb Re auxiliary-verb Ta 野党やとう noun Yatou サイバー Cyber セキュリティ noun Security 政策せいさく noun Seisaku * * * * : : パンデミック noun Pandemic ちゅう Naka , 労働ろうどう noun Roudou とう Tou possessive No かげ noun Kage サイバー Cyber セキュリティ noun Security 担当たんとう noun Tantou 相補そうほ noun Souho Suke Tim noun Tim Watts noun Watts Shi topic-marker Wa , HackerOne noun HackerOne subject-marker Ga 運営うんえい noun Un'ei する verb Suru 英国えいこく noun Eikoku possessive No " 中央ちゅうおう noun Chuuou 脆弱ぜいじゃく noun Zeijaku せい Sei 開示かいじ noun Kaiji プラットフォーム noun Platform " モデル noun Model object-marker Wo より adverb Yori 良いよい adjective Yoi アプローチ noun Approach and/with To verb Shi particle Te 指摘してき noun Shiteki verb Shi auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
労働ろうどう noun Roudou とう Tou topic-marker Wa その Sono よう You auxiliary-verb Na 措置そち noun Sochi object-marker Wo 政策せいさく noun Seisaku and/with To verb Shi particle Te 提案ていあん noun Teian verb Shi particle Te おり verb Ori , 野党やとう noun Yatou subject-marker Ga 連立れんりつ noun Renritsu 政権せいけん noun Seiken possessive No アプローチ noun Approach subject-marker Ga Fu 十分じゅうぶん Juu fun auxiliary-verb De ある verb Aru こと noun Koto object-marker Wo 認識にんしき noun Ninshiki verb Shi particle Te verb I auxiliary-verb Ta こと noun Koto object-marker Wo 示唆しさ noun Shisa verb Shi particle Te いる verb Iru [ [ 1 noun 1 ]。 ??
これ Kore topic-marker Wa 労働ろうどう noun Roudou とう Tou subject-marker Ga おそらく adverb Osoraku より adverb Yori 良いよい adjective Yoi プラクティス noun Practice object-marker Wo 実施じっし noun Jisshi verb Shi auxiliary-verb Ta だろう auxiliary-verb Darou こと noun Koto object-marker Wo 示唆しさ noun Shisa する verb Suru subject-marker Ga , これ Kore topic-marker Wa 実績じっせき noun Jisseki location/means De topic-marker Wa なく adjective Naku 提案ていあん noun Teian verb Sa auxiliary-verb Re auxiliary-verb Ta 代替だいたい noun Daitai あん noun An auxiliary-verb De ある verb Aru .
* * * * 政府せいふ noun Seifu 全体ぜんたい noun Zentai possessive No セキュリティ noun Security 文化ぶんか noun Bunka * * * * : : アルバニージェ noun Arubanii je 政権せいけん noun Seiken Shita possessive No 労働ろうどう noun Roudou とう Tou ( 2022 noun 2022 ねん noun Nen 現在げんざい noun Genzai ) subject-marker Ga 重要じゅうよう Juuyou auxiliary-verb Na アプリケーション noun Application direction/target Ni 対したいし verb Taishi particle Te 根本こんぽん noun Konpon てき Mato auxiliary-verb Ni 異なることなる verb Kotonaru セキュリティ noun Security プラクティス noun Practice object-marker Wo 実施じっし noun Jisshi verb Shi auxiliary-verb Ta and/with To いう verb Iu 証拠しょうこ noun Shouko topic-marker Wa ない adjective Nai .
この Kono 問題もんだい noun Mondai topic-marker Wa , 党派とうは noun Touha てき Mato and/with To いう verb Iu より particle Yori topic-marker Wa オーストラリア noun Australia 政府せいふ noun Seifu 全体ぜんたい noun Zentai location/means De より adverb Yori 体系たいけい noun Taikei てき Mato auxiliary-verb Na もの noun Mono auxiliary-verb De ある verb Aru よう You auxiliary-verb Da .
🌐

バランスの取れた視点

* * * * 政府せいふ noun Seifu possessive No 立場たちば noun Tachiba * * * * : : DTA noun DTA topic-marker Wa パンデミック noun Pandemic ちゅう Naka possessive No 異例いれい noun Irei possessive No 時間じかん noun Jikan てき Mato 圧力あつりょく noun Atsuryoku possessive No もと noun Shita location/means De 行動こうどう noun Koudou verb Shi auxiliary-verb Ta .
**The Government's Position:** The DTA acted under extraordinary time pressure during a pandemic.
正式せいしき Seishiki auxiliary-verb Na バグ noun Bug 報奨ほうしょう noun Houshou きん Kin プログラム noun Program object-marker Wo 設立せつりつ noun Setsuritsu verb Shi , 包括ほうかつ noun Houkatsu てき Mato auxiliary-verb Na セキュリティ noun Security 文書ぶんしょ noun Bunsho object-marker Wo 公開こうかい noun Koukai する verb Suru こと noun Koto topic-marker Wa , 通常つうじょう noun Tsuujou すう noun Suu 週間しゅうかん noun Shuukan すう noun Suu ヶ月かげつ noun Kagetsu かかる verb Kakaru プロセス noun Process object-marker Wo 必要ひつよう noun Hitsuyou and/with To する verb Suru .
Establishing formal bug bounty programs and publishing comprehensive security documentation requires processes that typically take weeks or months.
政府せいふ noun Seifu topic-marker Wa 理想りそう noun Risou てき Mato auxiliary-verb Na 状況じょうきょう noun Joukyou location/means De topic-marker Wa そう noun Sou Bake verb Sa auxiliary-verb Re auxiliary-verb Ta セキュリティ noun Security プラクティス noun Practice object-marker Wo 優先ゆうせん noun Yuusen する verb Suru より particle Yori also Mo , 迅速じんそく Jinsoku auxiliary-verb Na 展開てんかい noun Tenkai object-marker Wo 優先ゆうせん noun Yuusen verb Shi auxiliary-verb Ta .
The government prioritized rapid deployment over the layered security practices that would have been ideal under normal circumstances. **However, This Does Not Excuse the Approach:** International comparison shows that transparent security practices are not incompatible with rapid deployment.
* * * * しかし conjunction Shikashi , これ Kore topic-marker Wa アプローチ noun Approach object-marker Wo 弁解べんかい noun Benkai する verb Suru もの noun Mono auxiliary-verb De topic-marker Wa ない adjective Nai * * * * : : 国際こくさい noun Kokusai 比較ひかく noun Hikaku topic-marker Wa , 透明とうめい Toumei せい Sei possessive No 高いたかい adjective Takai セキュリティ noun Security プラクティス noun Practice subject-marker Ga 迅速じんそく Jinsoku auxiliary-verb Na 展開てんかい noun Tenkai and/with To 両立りょうりつ noun Ryouritsu verb Shi ない auxiliary-verb Nai わけ noun Wake location/means De topic-marker Wa ない adjective Nai こと noun Koto object-marker Wo 示ししめし verb Shimeshi particle Te いる verb Iru .
Singapore and the UK both released more comprehensive documentation and established faster communication channels with researchers, even during the same pandemic emergency [1].
シンガポール noun Singapore and/with To 英国えいこく noun Eikoku topic-marker Wa , 同じおなじ Onaji パンデミック noun Pandemic 緊急きんきゅう noun Kinkyuu 事態じたい noun Jitai possessive No なか noun Naka location/means De より adverb Yori 包括ほうかつ noun Houkatsu てき Mato auxiliary-verb Na 文書ぶんしょ noun Bunsho object-marker Wo 公開こうかい noun Koukai verb Shi , 研究けんきゅう noun Kenkyuu しゃ Mono and/with To possessive No より adverb Yori 迅速じんそく Jinsoku auxiliary-verb Na コミュニケーション noun Communication チャネル noun Channel object-marker Wo 設立せつりつ noun Setsuritsu verb Shi auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
The "it was urgent" explanation provides context but does not justify abandoning industry-standard security practices entirely. **The Broader Systemic Issue:** The academic analysis of Australia's COVID technology ecosystem suggests this was part of a broader problem: "Australia's choice to advertise and design visual indicators of security—e.g., a 'green tick' for check ins—persistently came at the cost of strong cryptographic protections" [3].
" 急いいそい verb Isoi location/means De verb I auxiliary-verb Ta " and/with To いう verb Iu 説明せつめい noun Setsumei topic-marker Wa 文脈ぶんみゃく noun Bunmyaku object-marker Wo 提供ていきょう noun Teikyou する verb Suru subject-marker Ga , 業界ぎょうかい noun Gyoukai 標準ひょうじゅん noun Hyoujun possessive No セキュリティ noun Security プラクティス noun Practice object-marker Wo 完全かんぜん Kanzen auxiliary-verb Ni 放棄ほうき noun Houki する verb Suru こと noun Koto object-marker Wo 正当せいとう noun Seitou Bake する verb Suru もの noun Mono auxiliary-verb De topic-marker Wa ない adjective Nai .
This represents not just a matter of timeline pressure but a fundamental philosophical difference in approaching security. **Key Distinction:** Choosing security best practices is not a luxury add-on; it's foundational.
* * * * より adverb Yori 広範こうはん Kouhan auxiliary-verb Na 体系たいけい noun Taikei てき Mato 問題もんだい noun Mondai * * * * : : オーストラリア noun Australia possessive No COVID noun COVID 技術ぎじゅつ noun Gijutsu エコシステム noun Ecosystem direction/target Ni 関するかんする verb Kansuru 学術がくじゅつ noun Gakujutsu 分析ぶんせき noun Bunseki topic-marker Wa , これ Kore subject-marker Ga より adverb Yori 広範こうはん Kouhan auxiliary-verb Na 問題もんだい noun Mondai possessive No 一部いちぶ noun Ichibu auxiliary-verb De あっ verb A auxiliary-verb Ta こと noun Koto object-marker Wo 示唆しさ noun Shisa verb Shi particle Te いる verb Iru : : " オーストラリア noun Australia subject-marker Ga セキュリティ noun Security possessive No 視覚しかく noun Shikaku てき Mato 指標しひょう noun Shihyou 例えばたとえば adverb Tatoeba チェック noun Check イン noun In よう You possessive No " みどり noun Midori possessive No チェック noun Check マーク noun Mark " object-marker Wo 宣伝せんでん noun Senden verb Shi 設計せっけい noun Sekkei する verb Suru 選択せんたく noun Sentaku topic-marker Wa , 一貫いっかん noun Ikkan verb Shi particle Te 強力きょうりょく Kyouryoku auxiliary-verb Na 暗号あんごう noun Angou 保護ほご noun Hogo possessive No 犠牲ぎせい noun Gisei and/with To なっ verb Na particle Te verb Ki auxiliary-verb Ta 」[ ?? 3 noun 3 ]。 ??
The government's failure to implement formal vulnerability disclosure, publish complete code, or establish bug bounty programs meant that: - Security issues were discovered by external researchers and reported to unresponsive government agencies - Fixes were implemented reactively rather than proactively - The government didn't benefit from crowdsourced security auditing - Public trust was eroded by poor security practices
これ Kore topic-marker Wa タイム noun Time ライン noun Line プレッシャー noun Pressure possessive No 問題もんだい noun Mondai and/with To いう verb Iu より particle Yori also Mo , セキュリティ noun Security direction E possessive No アプローチ noun Approach direction/target Ni おけ verb Oke auxiliary-verb Ru 基本きほん noun Kihon てき Mato auxiliary-verb Na 哲学てつがく noun Tetsugaku てき Mato 違いちがい noun Chigai object-marker Wo 表しあらわし verb Arawashi particle Te いる verb Iru .
* * * * 重要じゅうよう Juuyou auxiliary-verb Na 区別くべつ noun Kubetsu * * * * : : セキュリティ noun Security possessive No ベスト noun Best プラクティス noun Practice object-marker Wo 選ぶえらぶ verb Erabu こと noun Koto topic-marker Wa , 贅沢ぜいたく noun Zeitaku auxiliary-verb Na 付加ふか noun Fuka location/means De topic-marker Wa ない adjective Nai それ Sore topic-marker Wa 基礎きそ noun Kiso auxiliary-verb De ある verb Aru .
政府せいふ noun Seifu subject-marker Ga 正式せいしき Seishiki auxiliary-verb Na 脆弱ぜいじゃく noun Zeijaku せい Sei 開示かいじ noun Kaiji , 完全かんぜん Kanzen auxiliary-verb Na コード noun Code possessive No 公開こうかい noun Koukai , また conjunction Mata topic-marker Wa バグ noun Bug 報奨ほうしょう noun Houshou きん Kin プログラム noun Program object-marker Wo 設立せつりつ noun Setsuritsu verb Shi なかっ auxiliary-verb Naka auxiliary-verb Ta こと noun Koto topic-marker Wa : :
- - セキュリティ noun Security 問題もんだい noun Mondai subject-marker Ga 外部がいぶ noun Gaibu possessive No 研究けんきゅう noun Kenkyuu しゃ Mono direction/target Ni よっ verb Yo particle Te 発見はっけん noun Hakken verb Sa auxiliary-verb Re , 応答おうとう noun Outou せい Sei possessive No 低いひくい adjective Hikui 政府せいふ noun Seifu 機関きかん noun Kikan direction/target Ni 報告ほうこく noun Houkoku verb Sa auxiliary-verb Re auxiliary-verb Ta
- - 修正しゅうせい noun Shuusei topic-marker Wa 積極せっきょく noun Sekkyoku てき Mato auxiliary-verb De topic-marker Wa なく adjective Naku 反応はんのう noun Hannou てき Mato auxiliary-verb Ni 実装じっそう noun Jissou verb Sa auxiliary-verb Re auxiliary-verb Ta
- - 政府せいふ noun Seifu topic-marker Wa クラウド noun Crowd ソース noun Sauce possessive No セキュリティ noun Security 監査かんさ noun Kansa possessive No メリット noun Merit object-marker Wo verb Toku られ auxiliary-verb Rare なかっ auxiliary-verb Naka auxiliary-verb Ta
- - Fu 十分じゅうぶん Juu fun auxiliary-verb Na セキュリティ noun Security プラクティス noun Practice direction/target Ni よっ verb Yo particle Te 公衆こうしゅう noun Koushuu possessive No 信頼しんらい noun Shinrai subject-marker Ga 損なわそこなわ verb Sokonawa auxiliary-verb Re auxiliary-verb Ta

真実

8.5

/ 10

連立れんりつ noun Renritsu 政府せいふ noun Seifu topic-marker Wa COVIDSafe noun COVIDSafe アプリ noun Application possessive No 展開てんかい noun Tenkai noun Ji direction/target Ni セキュリティ noun Security possessive No ベスト noun Best プラクティス noun Practice object-marker Wo 無視むし noun Mushi verb Shi auxiliary-verb Ta .
The Coalition government did ignore security best practices when deploying the COVIDSafe app.
政府せいふ noun Seifu topic-marker Wa 正式せいしき Seishiki auxiliary-verb Na バグ noun Bug 報奨ほうしょう noun Houshou きん Kin プログラム noun Program object-marker Wo 設立せつりつ noun Setsuritsu する verb Suru こと noun Koto object-marker Wo 選ばえらば verb Eraba auxiliary-verb Zu [ [ 1 noun 1 ]、 ?? ソース noun Sauce コード noun Code ( アプリ noun Application コード noun Code のみ particle Nomi location/means De サーバー noun Server コード noun Code topic-marker Wa 公開こうかい noun Koukai verb Se auxiliary-verb Zu ) possessive No 迅速じんそく Jinsoku auxiliary-verb Na 公開こうかい noun Koukai also Mo 行わおこなわ verb Okonawa auxiliary-verb Zu [ [ 1 noun 1 ]、 ?? また conjunction Mata 応答おうとう noun Outou せい Sei possessive No 高いたかい adjective Takai 脆弱ぜいじゃく noun Zeijaku せい Sei 開示かいじ noun Kaiji プロセス noun Process also Mo 設立せつりつ noun Setsuritsu verb Shi なかっ auxiliary-verb Naka auxiliary-verb Ta [ [ 1 noun 1 ]。 ??
The government chose not to establish a formal bug bounty program [1], did not promptly publish complete source code (only app code, not server code) [1], and failed to establish responsive vulnerability disclosure processes [1].
これ Kore Ra possessive No 脆弱ぜいじゃく noun Zeijaku せい Sei CVE noun CVE - - 2020 noun 2020 - - 14292 noun 14292 , CVE noun CVE - - 2020 noun 2020 - - 12856 noun 12856 , Bluetooth noun Bluetooth メッセージ noun Message possessive No 文字もじ noun Moji 化けばけ noun Bake , および conjunction Oyobi 暗号あんごう noun Angou Bake possessive No 同時どうじ noun Douji 実行じっこう noun Jikkou 欠陥けっかん noun Kekkan object-marker Wo 含むふくむ verb Fukumu topic-marker Wa , 時間じかん noun Jikan object-marker Wo かけ verb Kake particle Te 研究けんきゅう noun Kenkyuu しゃ Mono direction/target Ni よっ verb Yo particle Te 発見はっけん noun Hakken verb Sa auxiliary-verb Re , 応答おうとう noun Outou せい Sei possessive No 低いひくい adjective Hikui 政府せいふ noun Seifu 機関きかん noun Kikan direction/target Ni 報告ほうこく noun Houkoku verb Sa auxiliary-verb Re auxiliary-verb Ta [ [ 1 noun 1 ][ ][ 2 noun 2 ]。 ??
These vulnerabilities—including CVE-2020-14292, CVE-2020-12856, Bluetooth message garbling, and encryption concurrency flaws—were discovered by researchers over time and reported to an unresponsive government apparatus [1][2].
国際こくさい noun Kokusai 比較ひかく noun Hikaku ( シンガポール noun Singapore , 英国えいこく noun Eikoku ) topic-marker Wa , これ Kore Ra subject-marker Ga 必要ひつよう noun Hitsuyou auxiliary-verb De topic-marker Wa なく adjective Naku 選択せんたく noun Sentaku direction/target Ni よる verb Yoru 失敗しっぱい noun Shippai auxiliary-verb De あっ verb A auxiliary-verb Ta こと noun Koto object-marker Wo 示ししめし verb Shimeshi particle Te いる verb Iru [ [ 1 noun 1 ][ ][ 3 noun 3 ]。 ??
International comparisons (Singapore, UK) demonstrate these were failures of choice, not necessity [1][3].

📚 出典と引用 (6)

  1. 1
    zdnet.com

    zdnet.com

    Best practice would suggest that making source code available and responding quickly to reported vulnerabilities is a given for government apps, but not yet in Australia.

    ZDNET
  2. 2
    itwire.com

    itwire.com

    A number of researchers have detailed four major vulnerabilities in the Australian Government's COVIDSafe application for the iPhone and Android systems, and advised users to upgrade at once. The main patches issued were to fix: A bug in the way COVIDSafe reads Bluetooth messages on iPhones. Thi...

    Researchers outline flaws in COVIDSafe app, urge users to upgrade
  3. 3
    arxiv.org

    arxiv.org

    Arxiv

  4. 4
    PDF

    report on the operation and effectiveness of covidsafe and the national covidsafe data store 0

    Health Gov • PDF Document
  5. 5
    ncbi.nlm.nih.gov

    ncbi.nlm.nih.gov

    Timely and effective contact tracing is an essential public health measure for curbing the transmission of COVID-19. App-based contact tracing has the potential to optimize the resources of overstretched public health departments. However, its ...

    PubMed Central (PMC)
  6. 6
    pmc.ncbi.nlm.nih.gov

    pmc.ncbi.nlm.nih.gov

    The global and national response to the COVID-19 pandemic has been inadequate due to a collective lack of preparation and a shortage of available tools for responding to a large-scale pandemic. By applying lessons learned to create better ...

    PubMed Central (PMC)

評価スケールの方法論

1-3: 虚偽

事実に反する、または悪意のある捏造。

4-6: 部分的

一部は真実だが、文脈が欠如または歪曲されている。

7-9: ほぼ真実

軽微な技術的問題または表現上の問題。

10: 正確

完全に検証済みで、文脈的に公正。

方法論: 評価は、公式の政府記録、独立したファクトチェック機関、および一次資料の相互参照を通じて決定されます。