¾ÅÓÎÀϸç

¾ÅÓÎÀϸç

¾ÅÓÎÀÏ¸ç¿Æ¼¼

  • »ù´¡ÉèÊ©Çå¾²

    »ù´¡ÉèÊ©Çå¾²
  • Êý¾ÝÇå¾²

    Êý¾ÝÇå¾²
  • ÔÆÅÌËãÇå¾²

    ÔÆÅÌËãÇå¾²
  • ¹¤Òµ»¥ÁªÍøÇå¾²

    ¹¤Òµ»¥ÁªÍøÇå¾²
  • ÎïÁªÍøÇå¾²

    ÎïÁªÍøÇå¾²
  • ÐÅÏ¢ÊÖÒÕÓ¦ÓÃÁ¢Òì

    ÐÅÏ¢ÊÖÒÕÓ¦ÓÃÁ¢Òì
  • ËùÓвúÆ·

    ËùÓвúÆ·
  • ËùÓнâ¾ö¼Æ»®

    ËùÓнâ¾ö¼Æ»®

»ù´¡ÉèÊ©Çå¾²


  • Õþ¸®

    Õþ¸®
  • ÔËÓªÉÌ

    ÔËÓªÉÌ
  • ½ðÈÚ

    ½ðÈÚ
  • ÄÜÔ´

    ÄÜÔ´
  • ½»Í¨

    ½»Í¨
  • ÆóÒµ

    ÆóÒµ
  • ¿Æ½ÌÎÄÎÀ

    ¿Æ½ÌÎÄÎÀ

  • ¾ÅÓÎÀϸçÔÆ ¾ÅÓÎÀϸçÔÆ
  • ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI
  • TechWorldÊÖÒÕ¼ÎÄ껪 TechWorldÊÖÒÕ¼ÎÄ껪
  • ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á
  • ÊÖÒÕ²©¿Í ÊÖÒÕ²©¿Í
  • Àֳɰ¸Àý Àֳɰ¸Àý

  • ¾ÅÓÎÀϸçÔÆ ¾ÅÓÎÀϸçÔÆ
  • ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI
  • TechWorldÊÖÒÕ¼ÎÄ껪 TechWorldÊÖÒÕ¼ÎÄ껪
  • ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á
  • ÊÖÒÕ²©¿Í ÊÖÒÕ²©¿Í
  • Àֳɰ¸Àý Àֳɰ¸Àý

ÏàÖúͬ°éÉó²é¸ü¶à >

ÏàÖúͬ°é¶¯Ì¬

³ÉΪÏàÖúͬ°é

  • ¾ÅÓÎÀϸçÔÆ ¾ÅÓÎÀϸçÔÆ
  • ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI
  • TechWorldÊÖÒÕ¼ÎÄ껪 TechWorldÊÖÒÕ¼ÎÄ껪
  • ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á
  • ÊÖÒÕ²©¿Í ÊÖÒÕ²©¿Í
  • Àֳɰ¸Àý Àֳɰ¸Àý

ÊÖÒÕÖ§³ÖÉó²é¸ü¶à >

²úÆ·Ö§³Ö

  • ¾ÅÓÎÀϸçÔÆ ¾ÅÓÎÀϸçÔÆ
  • ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI ¾ÅÓÎÀϸçÍþвÇ鱨ÖÐÐÄNTI
  • TechWorldÊÖÒÕ¼ÎÄ껪 TechWorldÊÖÒÕ¼ÎÄ껪
  • ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á ±±¾©¾ÅÓÎÀÏ¸ç¹«Òæ»ù½ð»á
  • ÊÖÒÕ²©¿Í ÊÖÒÕ²©¿Í
  • Àֳɰ¸Àý Àֳɰ¸Àý

·µ»ØÁбí

FireEye ºì¶Ó¹¤¾ß±»µÁÊÂÎñ ·À»¤¼Æ»®

2020-12-11

Ò».  ×ÛÊö

ÍâµØÊ±¼ä12ÔÂ8ÈÕ £¬Çå¾²¹«Ë¾FireEyeÐû²¼²©¿ÍÌåÏÖ £¬ÆäÄÚ²¿ÍøÂçÔ⵽ij¸ß¼¶×éÖ¯¹¥»÷ £¬FireEyeºì¶Ó¹¤¾ßÏäÔâÇÔÈ¡¡£

¾ÝFireEye³Æ £¬´Ë´Î±»µÁµÄºì¶Ó¹¤¾ßÖ÷ÒªÓÃÀ´ÎªÆä¿Í»§Ìṩ»ù±¾µÄÉøÍ¸²âÊÔ·þÎñ £¬ÆäÖв¢²»°üÀ¨ 0day Îó²îµÄʹÓúÍδ¹ûÕæÊÖÒÕ¡£ËùÉæ¼°¹¤¾ß°üÀ¨¿ªÔ´¹¤¾ß¡¢¿ªÔ´¹¤¾ßµÄ¶þ´Î¿ª·¢°æ±¾ÒÔ¼°²¿·Ö×ÔÑÐÎäÆ÷»¯¹¤¾ß¡£´Ó¹¤¾ßÓÃ;¿´»ù±¾ÁýÕÖÁ˰üÀ¨³¤ÆÚ»¯¡¢È¨ÏÞÌáÉý¡¢·ÀÓùÈÆ¹ý¡¢Æ¾Ö¤»ñÈ¡¡¢ÓòÄÚÐÅÏ¢ÍøÂç¡¢ºáÏòÒÆ¶¯µÈ¹¥»÷ÉúÃüÖÜÆÚµÄ¸÷¸ö½×¶Î¡£ÆäÖв¿·Ö¹¤¾ß´ËǰÒѱ»Ðû²¼µ½ÉçÇøºÍ¿ªÔ´ÐéÄâ»úCommandoVMÖС£

±»ÇԵĺì¶Ó¹¤¾ßÏä¾ÍÏñÒ»¸ö׼ʱըµ¯ £¬ÎÞÂÛ¹¥»÷ÕßÊÇ×Ô¼ºÊ¹Óñ»µÁ¹¤¾ßÕվɹûÕæÅû¶¶¼½«³ÉÎªÖØ´óÍþв £¬ÒÔÊÇΪÁËʹ¸÷×éÖ¯ÄÜÌáǰ½ÓÄÉÓ¦¶Ô²½·¥ £¬FireEyeÒÑÐû²¼¶Ô²ß¡£¾ÅÓÎÀÏ¸ç¿Æ¼¼Ò²ÔÚµÚһʱ¼ä¶ÔFireEye¹ûÕæµÄ¶Ô²ß¾ÙÐÐÁËÆÊÎö £¬ÏÖÒÑÄÜÕë¶Ô±»µÁ¹¤¾ßºÍÆäÉæ¼°µÄÎó²îÌṩ¼ì²â¼°·À»¤ÄÜÁ¦¡£

²Î¿¼Á´½Ó£º

https://www.fireeye.com/blog/threat-research/2020/12/unauthorized-access-of-fireeye-red-team-tools.html

¶þ.  ÊÖÒÕ·À»¤¼Æ»®

2.1  FireEye¹Ù·½¶Ô²ß

2.1.1  ±»ÇÔ¹¤¾ß¼ì²â¹æÔò

ΪÁË×ÊÖú×éÖ¯Äܹ»Ê¶±ðµ½±»ÇÔ¹¤¾ßµÄ¶ñÒâʹÓà £¬FireEye Òѽ«±»ÇÔ¹¤¾ßµÄ¼ì²â¹æÔòÐû²¼µ½ Github¡£ÏÖÔÚ311¸ö¼ì²â¹æÔòÖаüÀ¨YARA¹æÔò165¸ö £¬SNORT¹æÔò34¸ö £¬IOC¹æÔò88¸ö £¬CLAMAV¹æÔò24¸ö¡£Github¿ÍÕ»»¹»áÒ»Á¬¸üР£¬Ïê¼û£ºhttps://github.com/fireeye/red_team_tool_countermeasures

2.1.2  ±»ÇÔ¹¤¾ßÉæ¼°Îó²î

ÔÚFireEye¹ûÕæµÄGithub¿ÍÕ»ÖÐ £¬»¹Ðû²¼ÁËÓë±»ÇÔ¹¤¾ßÏà¹ØµÄ16¸öÒÑÖªÎó²î £¬Îó²îÓ°Ïì²Ù×÷ϵͳ £¬ÆóÒµ³£ÓÃÓ¦ÓÃÈí¼þ¡¢ÍøÂç×°±¸µÈ¡£¾¡¿ìÐÞ¸´ÕâЩÎó²îÄÜÓÐÓÃÏÞÖÆºì¶Ó¹¤¾ßʩչ×÷Óá£

Îó²îÁбíÈçÏ£º

Îó²î±àºÅ

Îó²îÃû³Æ

CVE-2014-1812

Windows ÍâµØÌáȨ

CVE-2016-0167

Microsoft Windows Àϰ汾ÍâµØÌáȨ

CVE-2017-11774

Microsoft OutlookÖÐͨ¹ýÓÕµ¼Óû§ÊÖ¶¯Ö´ÐÐÎĵµ£¨´¹ÂÚ£©ÊµÏÖRCE

CVE-2018-13379

Fortinet Fortigate SSL VPNÔ¤ÊÚȨí§ÒâÎļþ¶ÁÈ¡

CVE-2018-15961

Adobe ColdFusion RCE£¨¿ÉÓÃÓÚÉÏ´«JSP Web shell£©

CVE-2018-8581

Microsoft Exchange Server ÌØÈ¨ÌáÉý

CVE-2019-0604

Microsoft Sharepoint RCE

CVE-2019-0708

Windows Ô¶³Ì×ÀÃæ·þÎñ£¨RDS£©RCE

CVE-2019-11510

Pulse Secure SSL VPNs Ô¤ÊÚȨí§ÒâÎļþ¶ÁÈ¡

CVE-2019-11580

Atlassian Crowd RCE

CVE-2019-19781

CitrixÓ¦Óý»¸¶¿ØÖÆÆ÷ºÍCitrixÍø¹ØµÄRCE

CVE-2019-3398

ConfluenceÐè¾­ÈÏÖ¤µÄ RCE

CVE-2019-8394

ZoHo ManageEngine ServiceDesk Plus Ô¤ÊÚȨí§ÒâÎļþÉÏ´«

CVE-2020-0688

Microsoft Exchange RCE

CVE-2020-10189

ZoHo ManageEngine Desktop Central RCE

CVE-2020-1472

Microsoft Active Directory ÌØÈ¨ÌáÉý

 

½¨ÒéϵͳÖÎÀíԱʵʱÅŲé×ÔÉí×ʲúÊÇ·ñÒ×ÊÜÕâ16¸öÎó²îµÄÓ°Ïì £¬ÈôÓÐÓ°ÏìӦʵʱװÖò¹¶¡ÐÞ¸´¡£

https://github.com/fireeye/red_team_tool_countermeasures/blob/master/CVEs_red_team_tools.md

2.2  ÔÝʱ½â¾ö¼Æ»®

½¨ÒéϵͳÖÎÀíԱ͎á×ÔÉí×ʲúÇéÐÎ £¬ÅжÏӪҵϵͳÊÇ·ñÊܵ½ºì¶Ó¹¤¾ßÏäÖÐÉæ¼°µÄ16¸öÎó²îÓ°Ïì £¬²¢ÊµÊ±×°ÖÃÏìÓ¦²¹¶¡¾ÙÐзÀ»¤¡£

FireEye»¹Ðû²¼ÁËÓÃÓÚ¼ì²âй¶ºì¶Ó¹¤¾ßµÄ¶à¸ö¼ì²â¹æÔò £¬ÖÎÀíÔ±¿ÉÒÔÆ¾Ö¤×ÔÉíÇéÐÎʹÓÃFireEyeÌṩµÄYARA,SNORT»òÕßCLAMAV¹æÔòÀ´¼ì²âÓë·À»¤¡£Ïêϸ²Ù×÷¿É´Ó²Î¿¼¹Ù·½Ö¸µ¼Îĵµ£º

YARA£ºhttps://yara.readthedocs.io/en/stable/yarapython.html

SNORT£ºhttps://snort.org/documents

ClamAV: http://www.clamav.net/documents/clam-antivirus-user-manual

 

2.3  ¾ÅÓÎÀÏ¸ç¿Æ¼¼¼ì²â·À»¤½¨Òé

¾ÅÓÎÀÏ¸ç¿Æ¼¼ÒѾ­Æ¾Ö¤ÏÖÓÐÐÅÏ¢ £¬Õë¶Ô±¾´Îй¶µÄºì¶Ó¹¥»÷¹¤¾ß¾ÙÐÐÁËÓ¦¼±´¦Öóͷ£¡£

Ëæ×ÅFireEyeµÄ¹æÔò¸üР£¬¾ÅÓÎÀÏ¸ç¿Æ¼¼Ò²»áÒ»Á¬¸ú½ø £¬Ìṩ¼ì²âÓë·À»¤ÄÜÁ¦ £¬ÇëÓû§¼á³Ö¹Ø×¢¡£

2.3.1  Õë¶Ô±»ÇÔºì¶Ó¹¤¾ßµÄ¼ì²âÓë·À»¤

ΪÁËÓ¦¶ÔDZÔÚµÄʹÓñ¾´Îй¶¹¥»÷¹¤¾ß¾ÙÐеĹ¥»÷ £¬¾ÅÓÎÀÏ¸ç¿Æ¼¼ÒÑÆ¾Ö¤ FireEye¹ûÕæµÄ¹æÔòÐÅÏ¢ÔÚ¾ÅÓÎÀÏ¸ç¿Æ¼¼ÍþвÆÊÎöϵͳ(TAC) ÖиüР£¬ÎªÓû§Ìṩ¼ì²âÓë·À»¤ÄÜÁ¦¡£

http://update.nsfocus.com/update/listTacDetail/v/ruleV2.0.2

ͬʱ £¬¾ÅÓÎÀÏ¸ç¿Æ¼¼Ç鱨ÖÐÐÄ£¨NTI£©ÒѾ­ÊÕ¼ºÍÖ§³Ö´Ë´Îй¶¹¤¾ßµÄioc¡£

https://nti.nsfocus.com/

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

¶þ.3.2  Õë¶Ô±»ÇÔ¹¤¾ßÏà¹ØÎó²îµÄ¼ì²âÓë·À»¤

±ÈÕÕFireEye¹Ù·½Ðû²¼µÄ±»ÇÔ¹¤¾ßÏà¹ØÎó²îÁбí £¬¾ÅÓÎÀÏ¸ç¿Æ¼¼¾­È·ÈÏ £¬Éæ¼°µÄ16¸öÎó²î¾ù¿É±»¼ì²âÓë·À»¤ £¬½¨Òé°²ÅÅÁËÒÔÏÂ×°±¸µÄÓû§¾¡¿ìÉý¼¶µ½×îа汾¡£

¼ì²âÀà²úÆ·£ºÔ¶³ÌÇå¾²ÆÀ¹Àϵͳ£¨RSAS V6£©¡¢ÈëÇÖ¼ì²âϵͳ(IDS) ¡¢Í³Ò»Íþв̽Õ루UTS£©¡£

l Ô¶³ÌÇå¾²ÆÀ¹Àϵͳ£¨RSAS V6£©http://update.nsfocus.com/update/listRsas

l ÈëÇÖ¼ì²âϵͳ(IDS)

http://update.nsfocus.com/update/listIds

l Í³Ò»Íþв̽Õ루UTS£©

http://update.nsfocus.com/update/bsaUtsIndex

·À»¤Àà²úÆ·£ºÈëÇÖ·À»¤ÏµÍ³£¨IPS£©¡¢WebÓ¦Ó÷À»¤ÏµÍ³£¨WAF£©¡£

l ÈëÇÖ·À»¤ÏµÍ³£¨IPS£©

http://update.nsfocus.com/update/listIps

l WebÓ¦Ó÷À»¤ÏµÍ³£¨WAF£©

http://update.nsfocus.com/update/wafIndex

ƽ̨Àà²úÆ·£º

l ¾ÅÓÎÀϸçÈ«Á÷Á¿ÍþвÆÊÎöƽ̨£¨TAM£©

/html/2019/210_1009/63.html

l ¾ÅÓÎÀϸçÆóÒµÇ徲ƽ̨ £¨ESP-H£©

/html/2019/209_1230/96.html

ÒÔÉϲúÆ·Õë¶Ô¸÷Îó²îµÄ¼ì²â·À»¤Éý¼¶°üÇéÐÎÏê¼û“¸½Â¼A Ïà¹ØÎó²î¼ì²â·À»¤ÏêÇ锡£

Èý.  ÊÂÎñÆôʾ

ÓÉFireEyeµÄºì¶Ó¹¤¾ßÏä±»ÇÔÒ»°¸ £¬ºÜÈÝÒ×¾ÍåÚÏ뵽ǰЩÄê“·½³Ìʽ×éÖ¯”ÎäÆ÷¿â¶à´Î±»ÆØ¹âÊÂÎñ £¬ºóÕßÎôʱÔÚÍøÂçÇå¾²ÁìÓòÒ²ÊÇÒýÆðÁËÐùÈ»´ó²¨¡£Ò²ÊÇ´ÓÄÇʱÆð £¬ÍøÂç¾üÆ÷й¶¡¢À©É¢ËùÄÜÔì³ÉµÄÓ°ÏìºÍΣº¦±»È«ÇòÕæÕý¼ûʶµ½ £¬ÊÂʵÓÐÏ൱һ²¿·ÖÈ˶¼ÌåÑé¹ý±»WannaCryÖ§ÅäµÄ¿Ö¾å¡£

ºì¶Ó¹¤¾ßÒ»µ©±»À©É¢ £¬»áΪDZÔڵĹ¥»÷ÕßÌṩ¼«´óµÄ±ãµ± £¬ÑÏÖØÆÆËð¹¥·Àƽºâ¡£Òò´ËÀàËÆ¹¤¾ß¿âµÄ³ÖÓÐÕßÓ¦Ô½·¢×¢ÖØ£º

1. ºÏÀí´æ·ÅºÍ±£¹Ü

³ýÁËÎïÀí´æ·ÅÇå¾² £¬»¹¿ÉÒÔͨ¹ýÀàËÆPGPµÈÓ²¼ÓÃÜ·½·¨½«¹¤¾ß¾ÙÐмÓÃÜ £¬×ÝȻй¶ £¬Ò²ÎÞ·¨½âÃÜʹÓà £¬¿ÉÒÔÓÐÓýµµÍ¹¤¾ßй¶ºóÔì³ÉµÄΣº¦¡£

2. ÔöÇ¿ÖÎÀí

¶ÔÕâЩ¹¤¾ßµÄ»á¼û¿ØÖÆÑÏ¿áÖÎÀí £¬Í¨¹ýÉèÖÃȨÏÞ¼¶±ðÀ´ÏÞÖÆ»á¼ûµÄÖ°Ô±¡£Í¬Ê±Ê¹ÓÃÈÕÖ¾¼Í¼ £¬ÒÔ±ãËæÊ±ÅÌÎÊ»á¼û¼Í¼ £¬·¢Ã÷Òì³£»á¼ûÓë²Ù×÷¡£

3. ÔöǿְԱ²Ù×÷¹æ·¶

ÉèÖÃÁËÈí¼þ²ãÃæµÄ´æ·ÅºÍÖÎÀí¹æ·¶ºó £¬»¹ÒªÔöǿְԱÅàѵ £¬×èÖ¹²»¶Ô¹æºÍÎó²Ù×÷ £¬µ¼ÖÂÀàËÆÃô¸Ð¹¤¾ßµÄй¶¡£

±¾´Îй¶ÊÂÎñÔÙ´ÎΪÇå¾²³§ÉÌÇÃÏìÁ˾¯ÖÓ £¬¸÷È˶¼Ó¦Ô½·¢ÖØÊÓÀàËÆ“ÎäÆ÷¿â”ÔÚ¹¥·À²©ÞÄÖеÄ×÷Óà £¬Í¬Ê±ÔöÇ¿Ïà¹ØÄÚ²¿ÖÎÀí £¬Ìá¸ßÏìÓ¦´¦Öóͷ£ÄÜÁ¦ £¬×èÖ¹´ËÀàÊÂÎñµÄ±¬·¢²¢½µµÍʺóÔì³ÉµÄÓ°Ïì¡£

 

 

¸½Â¼A Ïà¹ØÎó²î¼ì²â·À»¤ÏêÇé

Îó²î±àºÅ

¾ÅÓÎÀϸç²úÆ·¹æÔò

Éý¼¶°ü°æ±¾ºÅ

CVE-2014-1812

RSAS

ϵͳ²å¼þV6.0R02F01.2012

CVE-2016-0167

RSAS

ϵͳ²å¼þV6.0R02F01.2011

CVE-2017-11774

RSAS

ϵͳ²å¼þV6.0R02F01.2011

IPS

5.6.10.20655

UTS

5.6.10.20655

CVE-2018-13379

RSAS

ϵͳ²å¼þ V6.0R02F01.1812

WAF

6.0.7.0.46716/6.0.7.1.46716
¹æÔòID27004981 fortios_lang_ptravel

CVE-2018-15961

RSAS

ϵͳ²å¼þV6.0R02F01.2011

IPS

5.6.10.24166

WAF

“Îļþ²»·¨ÉÏ´«·À»¤”Õ½ÂÔ¼´¿É·À»¤

UTS

5.6.10.24166

CVE-2018-8581

RSAS

ϵͳ²å¼þV6.0R02F01.2011

IPS

5.6.10.21152

WAF

6.0.7.0.46716/6.0.7.1.46716
¹æÔòID27004964 exchange_privilege_elevation

UTS

5.6.10.23542

CVE-2019-0604

RSAS

ϵͳ²å¼þV6.0R02F01.2011

IPS

5.6.10.23040

UTS

5.6.10.23040

CVE-2019-0708

RSAS

ϵͳ²å¼þ V6.0R02F01.1411

IPS

5.6.10.20383

UTS

5.6.10.23542

CVE-2019-11510

RSAS

ϵͳ²å¼þ V6.0R02F01.1812

IPS

5.6.10.21238

WAF

6.0.7.0.46716/6.0.7.1.46716
¹æÔòID27004979 pulse_abfile_read

CVE-2019-11580

RSAS

ϵͳ²å¼þ V6.0R02F01.1505

IPS

5.6.10.24166

WAF

“Îļþ²»·¨ÉÏ´«·À»¤”Õ½ÂÔ¼´¿É·À»¤

UTS

5.6.10.24166

CVE-2019-19781

RSAS

ϵͳ²å¼þ V6.0R02F01.1812

IPS

5.6.10.22558

WAF

6.0.7.0.46716/6.0.7.1.46716
¹æÔòID27004971 citrix_gateway_ptravel

UTS

5.6.10.23542

CVE-2019-3398

RSAS

ϵͳ²å¼þV6.0R02F01.2011

IPS

5.6.10.24166

WAF

6.0.7.0.46716/6.0.7.1.46716
¹æÔòID27004887 confluence_upload_path_travel

UTS

5.6.10.24166

IPS

5.6.10.19741

WAF

“Îļþ²»·¨ÉÏ´«·À»¤”Õ½ÂÔ¼´¿É·À»¤

UTS

5.6.10.19741

CVE-2020-0688

RSAS

ϵͳ²å¼þV6.0R02F01.2011

IPS

5.6.10.22068

WAF

6.0.7.0.46716/6.0.7.1.46716
¹æÔòID27004936 exchange_deserialization_rce

UTS

5.6.10.23542

CVE-2020-10189

RSAS

ϵͳ²å¼þV6.0R02F01.2011

IPS

5.6.10.22284

WAF

6.0.7.0.46716/6.0.7.1.46716
¹æÔòID27004940 zoho_central_deserialization

UTS

5.6.10.23542

CVE-2020-1472

RSAS

RSAS£ºÏµÍ³²å¼þ V6.0R02F01.1917

IPS

5.6.10.23542

UTS

5.6.10.23542

 

¸½Â¼B ²úƷʹÓÃÖ¸ÄÏ

ËÄ.  

4.1  RSASɨÃèÉèÖÃ

ÔÚϵͳÉý¼¶ÖÐ £¬µã»÷ÏÂͼºì¿òλÖÃÑ¡ÔñÎļþ¡£

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

Ñ¡ÔñÏÂÔØºÃµÄÏìÓ¦Éý¼¶°ü £¬µã»÷Éý¼¶°´Å¥¾ÙÐÐÊÖ¶¯Éý¼¶¡£ÆÚ´ýÉý¼¶Íê³Éºó £¬¿Éͨ¹ý¶¨ÖÆÉ¨ÃèÄ£°å £¬Õë¶Ô´Ë´ÎÎó²î¾ÙÐÐɨÃè¡£

4.2  UTS¼ì²âÉèÖÃ

ÔÚϵͳÉý¼¶Öеã»÷ÀëÏßÉý¼¶ £¬Ñ¡Ôñ¹æÔòÉý¼¶Îļþ £¬Ñ¡Ôñ¶ÔÓ¦µÄÉý¼¶°üÎļþ £¬µã»÷ÉÏ´« £¬ÆÚ´ýÉý¼¶Àֳɼ´¿É¡£

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

4.3  IPS·À»¤ÉèÖÃ

ÔÚϵͳÉý¼¶Öеã»÷ÀëÏßÉý¼¶ £¬Ñ¡Ôñϵͳ¹æÔò¿â £¬Ñ¡Ôñ¶ÔÓ¦µÄÎļþ £¬µã»÷ÉÏ´«¡£

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

¸üÐÂÀֳɺó £¬ÔÚϵͳĬÈϹæÔò¿âÖвéÕÒ¹æÔò±àºÅ £¬¼´¿ÉÅÌÎʵ½¶ÔÓ¦µÄ¹æÔòÏêÇé¡£

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

×¢ÖØ£º¸ÃÉý¼¶°üÉý¼¶ºóÒýÇæ×Ô¶¯ÖØÆôÉúЧ £¬²»»áÔì³É»á»°ÖÐÖ¹ £¬µ«ping°ü»á¶ª3~5¸ö £¬ÇëÑ¡ÔñºÏÊʵÄʱ¼äÉý¼¶¡£

4.4  WAF·À»¤ÉèÖÃ

ÔÚWAFµÄ¹æÔòÉý¼¶½çÃæ¾ÙÐÐÉý¼¶£º

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

ÊÖ¶¯Ñ¡Ôñ¹æÔò°ü £¬Ìá½»¼´¿ÉÍê³É¸üС£

4.5  TAMÉèÖÃ

½øÈëÈ«Á÷Á¿²úÆ·£º

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

 

½øÈë¹æÔòÉý¼¶Ò³Ãæ £¬µã»÷³¡¾°ÖÎÀí-³¡¾°ÉèÖÃ-ÉÏ´« £¬ÉÏ´«Îļþ¡£

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

ÎļþÉÏ´«ÀֳɺóЧ¹ûÈçÏÂͼËùʾ£º

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

4.6  ESP-HÉèÖÃ

µÚÒ»²½£ºµÇ¼ESP/ESP-Hƽ̨

µÚ¶þ²½£º½øÈëÇå¾²ÆÊÎö-ÊÂÎñ¹æÔò

µÚÈý²¿£ºÈçÏÂͼ £¬µã»÷µ¼Èë¹æÔò¡£

¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

 

Éù Ã÷

±¾Ç徲ͨ¸æ½öÓÃÀ´ÐÎò¿ÉÄܱ£´æµÄÇå¾²ÎÊÌâ £¬¾ÅÓÎÀÏ¸ç¿Æ¼¼²»Îª´ËÇ徲ͨ¸æÌṩÈκΰü¹Ü»òÔÊÐí¡£ÓÉÓÚÈö²¥¡¢Ê¹ÓôËÇ徲ͨ¸æËùÌṩµÄÐÅÏ¢¶øÔì³ÉµÄÈκÎÖ±½Ó»òÕß¼ä½ÓµÄЧ¹û¼°Ëðʧ £¬¾ùÓÉʹÓÃÕß×Ô¼ºÈÏÕæ £¬¾ÅÓÎÀÏ¸ç¿Æ¼¼ÒÔ¼°Ç徲ͨ¸æ×÷Õß²»Îª´Ë¼ç¸ºÈκÎÔðÈΡ£¾ÅÓÎÀÏ¸ç¿Æ¼¼ÓµÓжԴËÇ徲ͨ¸æµÄÐÞ¸ÄÏ¢ÕùÊÍȨ¡£ÈçÓû×ªÔØ»òÈö²¥´ËÇ徲ͨ¸æ £¬±ØÐè°ü¹Ü´ËÇ徲ͨ¸æµÄÍêÕûÐÔ £¬°üÀ¨°æÈ¨ÉùÃ÷µÈËùÓÐÄÚÈÝ¡£Î´¾­¾ÅÓÎÀÏ¸ç¿Æ¼¼ÔÊÐí £¬²»µÃí§ÒâÐ޸ĻòÕßÔö¼õ´ËÇ徲ͨ¸æÄÚÈÝ £¬²»µÃÒÔÈκη½·¨½«ÆäÓÃÓÚÉÌҵĿµÄ¡£

¹ØÓÚ¾ÅÓÎÀÏ¸ç¿Æ¼¼

¾ÅÓÎÀϸ磨¼ò³Æ¾ÅÓÎÀÏ¸ç¿Æ¼¼£©½¨ÉèÓÚ2000Äê4Ô £¬×ܲ¿Î»ÓÚ±±¾©¡£ÔÚº£ÄÚÍâÉèÓÐ30¶à¸ö·ÖÖ§»ú¹¹ £¬ÎªÕþ¸®¡¢ÔËÓªÉÌ¡¢½ðÈÚ¡¢ÄÜÔ´¡¢»¥ÁªÍøÒÔ¼°½ÌÓý¡¢Ò½ÁƵÈÐÐÒµÓû§ £¬Ìṩ¾ßÓн¹µã¾ºÕùÁ¦µÄÇå¾²²úÆ·¼°½â¾ö¼Æ»® £¬×ÊÖú¿Í»§ÊµÏÖÓªÒµµÄÇ徲˳³©ÔËÐС£

»ùÓÚ¶àÄêµÄÇå¾²¹¥·ÀÑо¿ £¬¾ÅÓÎÀÏ¸ç¿Æ¼¼ÔÚÍøÂç¼°ÖÕ¶ËÇå¾²¡¢»¥ÁªÍø»ù´¡Çå¾²¡¢ºÏ¹æ¼°Çå¾²ÖÎÀíµÈÁìÓò £¬Îª¿Í»§ÌṩÈëÇÖ¼ì²â/·À»¤¡¢¿¹¾Ü¾ø·þÎñ¹¥»÷¡¢Ô¶³ÌÇå¾²ÆÀ¹ÀÒÔ¼°WebÇå¾²·À»¤µÈ²úÆ·ÒÔ¼°×¨ÒµÇå¾²·þÎñ¡£

¾ÅÓÎÀϸçÓÚ2014Äê1ÔÂ29ÈÕÆðÔÚÉîÛÚ֤ȯÉúÒâËù´´Òµ°åÉÏÊÐ £¬¹ÉƱ¼ò³Æ£º¾ÅÓÎÀÏ¸ç¿Æ¼¼ £¬¹ÉƱ´úÂ룺300369¡£

?

ÄúµÄÁªÏµ·½·¨

*ÐÕÃû
*µ¥Î»Ãû³Æ
*ÁªÏµ·½·¨
*ÑéÖ¤Âë ¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾
Ìá½»µ½ÓÊÏä

¹ºÖÃÈÈÏß

  • ¹ºÖÃ×Éѯ:

    400-818-6868-1

Ìá½»ÏîÄ¿ÐèÇó

½Ó´ý¼ÓÈë¾ÅÓÎÀÏ¸ç¿Æ¼¼ £¬³ÉΪÎÒÃǵÄÏàÖúͬ°é£¡
  • *ÇëÐÎòÄúµÄÐèÇó
  • *×îÖÕ¿Í»§Ãû³Æ
  • *ÏîÄ¿Ãû³Æ
  • Äú¸ÐÐËȤµÄ²úÆ·
  • ÏîĿԤËã
ÄúµÄÁªÏµ·½·¨
  • *ÐÕÃû
  • *ÁªÏµµç»°
  • *ÓÊÏä
  • *Ö°Îñ
  • *¹«Ë¾
  • *¶¼»á
  • *ÐÐÒµ
  • *ÑéÖ¤Âë ¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾
  • Ìá½»µ½ÓÊÏä
¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾
¾ÅÓÎÀϸ硤(Öйú)¾ãÀÖ²¿¹Ù·½ÍøÕ¾

·þÎñÖ§³Ö

ÖÇÄܿͷþ
ÖÇÄܿͷþ
¹ºÖÃ/ÊÛºóÊÖÒÕÎÊÌâ
Ã˹ܼÒ-ÊÛºó·þÎñϵͳ
Ã˹ܼÒ-ÊÛºó·þÎñϵͳ
ÔÚÏßÌáµ¥|ÖÇÄÜÎÊ´ð|֪ʶ¿â
Ö§³ÖÈÈÏß
Ö§³ÖÈÈÏß
400-818-6868
¾ÅÓÎÀÏ¸ç¿Æ¼¼ÉçÇø
¾ÅÓÎÀÏ¸ç¿Æ¼¼ÉçÇø
×ÊÁÏÏÂÔØ|ÔÚÏßÎÊ´ð|ÊÖÒÕ½»Á÷
΢²©
΢²©

΢²©

΢ÐÅ
΢ÐÅ

΢ÐÅ

BÕ¾
BÕ¾

BÕ¾

¶¶Òô
¶¶Òô

¶¶Òô

ÊÓÆµºÅ
ÊÓÆµºÅ

ÊÓÆµºÅ

·þÎñÈÈÏß

400-818-6868

·þÎñʱ¼ä

7*24Сʱ

? 2026 NSFOCUS ¾ÅÓÎÀÏ¸ç¿Æ¼¼ www.nsfocus.com All Rights Reserved . ¾©¹«Íø°²±¸ 11010802021605ºÅ ¾©ICP±¸14004349ºÅ ¾©ICPÖ¤110355ºÅ

ÍøÕ¾µØÍ¼