Ongororo yekuvapo kweiyo yakaipa kodhi mune zvakaburitswa zvakaburitswa paGitHub

Vatsvagiri kubva kuLeiden University kuNetherlands vakaongorora nyaya yekutumira dummy exploit prototypes paGitHub, ine hutsinye kodhi yekurwisa vashandisi vakaedza kushandisa iyo kuyedza kuyedza. Huwandu hunosvika makumi mana nenomwe nemazana matatu nemazana matatu nemazana matatu emakumi matatu nemazana matatu nemazana matatu nemazana matatu nemazana matatu nematatu (47313). Ongororo yezvakashandiswa yakaratidza kuti 2017 (2021%) yavo ine kodhi inoita zviito zvakaipa. Vashandisi vanosarudza kushandisa zvakaburitswa zvakaburitswa vanokurudzirwa kuti vatange vazviongorora nekuda kwekuvapo kwekufungirwa kwekuisa uye kumhanyisa zviwanikwa chete mumakina chaiwo akaparadzaniswa neiyo huru system.

Mapoka maviri makuru ekushandisa kwakashata akaonekwa: zviitiko zvine hutsinye kodhi, semuenzaniso, kusiya backdoor muhurongwa, kurodha Trojan, kana kubatanidza muchina kune botnet, uye zviitiko zvinounganidza uye kutumira zvakavanzika zvemushandisi. . Pamusoro pezvo, kirasi yakaparadzana yezvisingakuvadzi zvibodzwa zvakaonekwa zvakare zvisingaite zviito zvakashata, asi zvakare hazvina basa rinotarisirwa, semuenzaniso, rakagadzirwa kutsausa kana kunyevera vashandisi vanomhanyisa kodhi isina kusimbiswa kubva kunetiweki.

Macheki akati wandei akashandiswa kuona mabasa akashata:

  • Iyo kodhi yekubiridzira yakaongororwa kuvepo kweakamisikidzwa kero yeruzhinji IP, mushure mezvo kero dzakaonekwa dzakazotariswa zvakare dzichipesana nedhatabhesi ine blacklists yevatambi vanoshandiswa kubata botnet uye kugovera mafaera akashata.
  • Izvo zvinoshandiswa zvakapihwa mufomu rakabatanidzwa zvakatariswa muanti-virus software.
  • Iyo kodhi yakacherechedzwa kuvepo kweasina kujairika hexadecimal dumps kana kuisirwa mu base64 fomati, mushure maizvozvo aya akaiswa akadzikwa nekuongororwa.

Ongororo yekuvapo kweiyo yakaipa kodhi mune zvakaburitswa zvakaburitswa paGitHub


Source: opennet.ru

Voeg