Inenge 5.5% yehutera hwakaonekwa hunoshandiswa kurwisa

Chikwata chevaongorori kubva kuVirginia Tech, Cyentia neRAND, yakabudiswa mhedzisiro yekuongorora njodzi paunenge uchishandisa nzira dzakasiyana dzekugadzirisa njodzi. Mushure mekudzidza zviuru makumi manomwe nenomwe zvekushaya simba zvakawanikwa kubva 76 kusvika 2009, zvakaratidzwa kuti chete 2018 vavo (4183%) vakashandiswa kuita kurwiswa chaiko. Huwandu hunokonzeresa hwakakwira zvakapetwa kashanu pane zvakafanotaurwa zvakamboburitswa, izvo zvinofungidzira huwandu hwematambudziko anogona kushandiswa paanenge 5.5%.

Nekudaro, hapana kuwirirana kwakawanikwa pakati pekuburitswa kwekushandisa prototypes munharaunda yeruzhinji uye kuedza kushandisa kusazvibata. Pamusoro pezvinhu zvese zvekushandiswa kwehutera hunozivikanwa kune vaongorori, muhafu chete yenyaya dzedambudziko yaive prototype yekushandiswa yakabudiswa munzvimbo dzakavhurika kare. Kushaikwa kweiyo prototype yekubiridzira hakumise varwisi, avo, kana zvichidikanwa, vanogadzira zviito zvavo.

Dzimwe mhedziso dzinosanganisira kudiwa kwekushandiswa kunyanya kwekusagadzikana uko kune yakakwira mwero wenjodzi zvinoenderana neiyo CVSS classification. Inenge hafu yekurwisa kwakashandisa kusasimba nehuremu hunosvika 9.

Huwandu hwese hwekushandisa prototypes hwakaburitswa mukati menguva iri kuongororwa hwakafungidzirwa pa9726 XNUMX. Iyo data pamusoro pezvakashandiswa zvakashandiswa muchidzidzo chakawanikwa kubva.
kuunganidza Shandisa DB, Metasploit, D2 Security's Elliot Kit, Canvas Exploitation Framework, Contagio, Reversing Labs uye Secureworks CTU.
Ruzivo rwekusagadzikana rwakawanikwa kubva mudhatabhesi Nhoroondo ye NIST NVD (National Vulnerability Database). Yekushandisa data yakaunganidzwa pachishandiswa ruzivo kubva kuFortiGuard Labs, SANS Internet Storm Center, Secureworks CTU, Alienvault's OSSIM uye ReversingLabs.

Chidzidzo ichi chakaitwa kuti chitarise chiyero chakakwana pakati pekushandisa zvigadziriso kuona chero kusagadzikana uye kubvisa chete matambudziko ane njodzi. Muchiitiko chekutanga, kuchengetedzwa kwepamusoro kunovimbiswa, asi zviwanikwa zvakakura zvinotarisirwa kuchengetedza zvivakoti, izvo zvinoshandiswa kunyanya pakugadzirisa matambudziko asina kukosha. Muchiitiko chechipiri, kune njodzi huru yekushayikwa kwekusagadzikana kunogona kushandiswa pakurwisa. Chidzidzo ichi chakaratidza kuti kana uchifunga kuisa imwe update inobvisa kusagadzikana, haufanirwe kuvimba nekushaikwa kweiyo yakadhindwa prototype uye mukana wekushandisa wakananga zvinoenderana nekuoma kwedanho rekusagadzikana.

Source: opennet.ru

Voeg