97¹ú¼Ê

¹¤³§ÑÐѧ Ø­ 97¹ú¼ÊÍøÂçÊý×Ö»¯ÖÇÄܹ¤³§¡°ºÚ¿Æ¼¼¡±´ó½ÒÃØ
Ô¤Ô¼Ö±²¥
ÀÖÏíÓªÒµ°ü¹Ü·þÎñ Ø­ ÊØ»¤Ò½ÁÆÓªÒµÒ»Á¬ÎȹÌ
Ô¤Ô¼Ö±²¥
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
²úÆ·
< ·µ»ØÖ÷²Ëµ¥
²úÆ·ÖÐÐÄ
²úÆ·
½â¾ö¼Æ»®
< ·µ»ØÖ÷²Ëµ¥
½â¾ö¼Æ»®ÖÐÐÄ
ÐÐÒµ
ºÏ×÷»ï°é
·µ»ØÖ÷²Ëµ¥
Ñ¡ÔñÇøÓò/ÓïÑÔ
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾

Wi-Fi WPA2Îó²îÆÊÎöºÍÔ¤·ÀÖ¸ÄÏ

97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾ Ðû²¼Ê±¼ä£º2017-10-23
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾

ʲôÊÇKRACKÎó²î(Key Reinstallation Attacks)£¿

KRACK Îó²î £¬¼´ÃÜÔ¿ÖØ×°¹¥»÷Îó²î £¬ÊÇ2017Äê10ÔÂ16ÈÕÓɱÈÀûʱÑо¿Ö°Ô±Mathy Vanhoef£¨ÂíµÙ·ÍòºÕ¸¥£©Ðû²¼µÄWPA/WPA2ЭÒéÇå¾²ÎÊÌâ¡£¸ÃÎó²îͨ¹ýWPA/WPA2ЭÒéÔÚʵÏÖÉϵÄȱÏÝ £¬´¥·¢ÃÜÔ¿µÄ֨װÖà £¬¿ÉÄÜʹÖÐÐÄÈ˹¥ »÷Õß»ñµÃ½âÃÜÎÞÏßÊý¾Ý°üµÄÄÜÁ¦¡£

ͨÓÃÎó²îÅûÂ¶ÍøÕ¾£¨CVE£©¼Í¼ÁË10¼¸¸öKRACKÎó²î¿ÉÄÜÒý·¢µÄÎÊÌ⣨CVE-2017-13077 ~ 13082 £¬CVE-2017-13084 ~ 13088£© £¬ÏÖʵÉÏÕâÊ®¼¸¸öÎó²î¾ùÖ¸Ïòͳһ¸öÎÊÌâ--ÃÜÔ¿ÖØ×°¡£

ÕâÀàÇ徲ȱÏݱ£´æÓÚ Wi-Fi ±ê×¼×Ô¼º £¬¶ø·ÇÌØ¶¨Ä³Ð©²úÆ·»òÕßʵÏּƻ®ÖС£ÊµÖÊÉÏ £¬ÎªÁ˰ü¹ÜÇå¾² £¬Ò»¸öÃÜÔ¿Ö»Ó¦¸Ã×°ÖúÍʹÓÃÒ»´Î £¬¶øWPA2ȴûÓаü¹ÜÕâÒ»µã¡£

ÂÛÎÄ¡¶Key Reinstallation Attacks:Forcing Nonce Reuse in WPA2¡·ÄÚµÄPOC(Proof of Concept) £¬¶ÔÒ»²¿ Android ÊÖ»úÖ´ÐÐÁËÒ»´Î KRACK¡£ÔÚ±¾´ÎÑÝʾÖÐ £¬¹¥»÷ÕßÓÐÄÜÁ¦¶ÔÊܺ¦Õß´«ÊäµÄËùÓÐÊý¾Ý¾ÙÐнâÃÜ¡£¹ØÓÚ¹¥»÷·½¶øÑÔ £¬ÕâÒ»¹¥»÷·½·¨ºÜÊÇÒ×ÓÚʵÏÖ £¬ÓÉÓÚAndroid ÒÔ¼° Linux »áÔÚ¹¥»÷ÕßµÄÖ¸µ¼Ï£¨ÖØÐ£©×°ÖÃÒ»ÌõÈ«Áã¼ÓÃÜÃÜÔ¿¡£

ÂÛÎÄÒ²Ö¸³ö £¬ÔÚ¹¥»÷ÆäËû×°±¸Ê±£¨ÎÞÈ«Áã¼ÓÃÜÃÜÔ¿Îó²îµÄ×°±¸£© £¬ËäÈ»½âÃÜËùÓÐÊý¾Ý°üÄѶȼ«´ó £¬µ«¹¥»÷ÕßÈÔÈ»ÓÐÄÜÁ¦½âÃÜÏ൱һ²¿·ÖÊý¾Ý°ü¡£ÏÖʵÉÏ £¬ÂÛÎÄ×÷ÕßÈÏ¿É £¬Ëû×Ô¼º»¹Ã»ÓÐÕⲿ·Ö¹¥»÷µÄPOC¡£

KRACKÎó²îµÄ¹¥»÷¹¤¾ßºÍ¹¥»÷·½·¨

¸ÃÎó²îÖ÷ÒªÊÇÕë¶Ô WiFi ½ÓÈëµÄ¿Í»§¶Ë£¨ÊÖ»ú¡¢Ìõ¼Ç±¾¡¢padµÈ×°±¸£© £¬ÓÕ·¢¿Í»§¶Ë¾ÙÐÐÃÜÔ¿ÖØ×° £¬´Ó¶ø´øÀ´¿ÉÄܱ»½âÃܵÄÒþ»¼ £¬±»¹¥»÷µÄÖ÷ÒªÌõ¼þÊǹ¥»÷ÕßÔÚÎïÀíλÖÃÉϷdz£¿¿½üÄ¿µÄ Wi-Fi ÍøÂç £¬²Å¿ÉÄܾÙÐÐ֨װÃÜÔ¿ÓÕµ¼¡£

¿ÉÄܵĹ¥»÷·½·¨°üÀ¨£º

  • ͨ¹ýKRACKÎó²î½ÏÁ¿ÈÝÒ×´¥·¢LinuxºÍAndroid 6.0ÒÑÖªµÄÈ«ÁãÃÜÔ¿×°ÖÃÎó²î £¬Ôì³ÉËùÓб¨ÎÄÈÝÒ×±»½âÃÜ£»
  • KRACKÎó²î¹¥»÷Ï÷ÈõÁËWPA2¼ÓÃܶÔÖØ·Å¹¥»÷µÄ·ÀÓù £¬ÔöÌíÁËÖÕ¶ËÊܵ½ÖطŹ¥»÷µÄΣº¦£»
  • ÈôÊÇÒѾ­»ñÈ¡²¿·Ö±¨ÎĵÄÃ÷ÎĺÍÃÜÎÄ £¬Ôò¿ÉÄÜͨ¹ýKRACKÎó²î½âÃܸü¶à±¨ÎÄ £¬µ«²»¿É½âÃÜËùÓб¨ÎÄ£»
  • Èô²»¿É»ñÈ¡Ã÷ÎĺÍÃÜÎÄ £¬ÀíÂÛÉϱ£´æ½âÃÜÉÙÁ¿±¨ÎĵĿÉÄÜÐÔ £¬µ«ÄѶȼ«´ó¡£

97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾

Wi-Fi ʹÓÃÕßÓ¦¸ÃÔõÑù¿´´ý¸ÃÎó²î

  • ¸Ã¹¥»÷ÊÇËùÓÐÖն˳§É̶¼ÓÐÄÜÁ¦½â¾öµÄÎó²î £¬Çë×Éѯ»òÕßÅÌÎʹٷ½Éý¼¶°æ±¾ £¬Éý¼¶ÖÕ¶Ëϵͳ°æ±¾ºó¾Í¿ÉÒÔÔ¤·À¸ÃÎó²î¡£
  • LinuxºÍAndroid6.0ÒÔÉϰ汾 £¬Ç뾡¿ì¸üа汾 £¬Õë¶Ô´Ë°æ±¾µÄ¹¥»÷½ÏÁ¿ÈÝÒס£
  • ¹ØÓÚÆäËü×°±¸¶øÑÔ £¬¸ÃÎó²îµÄ¹¥»÷³ÉÄÚÇé¶Ô½ÏÁ¿¸ß £¬ÒÔÊÇÇëÀä¾²¿´´ý £¬×èÖ¹²»ÐëÒªµÄ¿Ö»Å¡£
  • Îó²îÖ÷ÒªÊÇÕë¶Ô¿Í»§¶Ë £¬ÒÔÊǽö½öÉý¼¶AP»òÕß¼ÒÓ÷ÓÉÆ÷ £¬ÎÞ·¨×èÖ¹¸ÃÎó²î¡£
  • KRACKÎó²î²»»áÔì³ÉÃÜÂëй¶ £¬ÒÔÊÇÎÞÐèÐÞ¸ÄÍøÂçÃÜÂë¡£

Îó²î¶ÔAP×°±¸µÄÓ°Ïì

¶Ô97¹ú¼ÊAPÓ°Ïì½ÏС £¬Ö»ÓÐAPÔËÐÐÔÚÒÔϽÏÉÙʹÓõÄÁ½ÖÖ³¡¾°Ï £¬Ä¿½ñµÄÈí¼þ°æ±¾²Å»áÊÜ´ËÎó²îÓ°Ïì £¬Ïà¹ØµÄ½â¾ö¼Æ»®ÈçÏ£º

  • ͨ¹ý¼ÓÃÜÐźžÙÐÐWDSÇŽÓʱ £¬·Ç¸ùÇÅAP·¢¸ø¸ùÇÅAPµÄ±¨ÎÄ¿ÉÄܱ»½âÃÜ¡£½â¾öÒªÁ죺ÇëÁªÏµTACºÍ400 £¬»ñȡеIJ¹¶¡°æ±¾¡£
  • ¿ªÆô802.11R FT¹¦Ð§ºó £¬ÖÕ¶ËÖÜÓÎʱ £¬AP·¢¸øÖն˵ı¨ÎÄ¿ÉÄܱ»½âÃÜ¡£ÏÖʵÉÏ97¹ú¼ÊAPĬÈϹرոù¦Ð§ £¬ÒÔÊDz»ÐèÒªÌØÊâ´¦Öóͷ£¡£

>>>ÓÑÇéÌáÐÑ<<<

ÔÚ¸ÃÎó²îϸ½ÚÆØ¹âÖ®ºó £¬Linux¡¢Î¢Èí¡¢Æ»¹ûÏà¼Ì¶¼Ðû²¼Á˲¹¶¡ £¬ÎÒÃÇÇ¿ÁÒ½¨Òé¸÷ÈËʵʱµÄ¸üÐÂ×Ô¼ºµÄϵͳ°æ±¾»òÕß×°Öò¹¶¡ £¬×èÖ¹ÏÖÔÚΪֹ £¬Ö÷Á÷Öն˵IJ¹¶¡Ï£ÍûÈçÏ£º

  • WindowsÖÕ¶Ë£ºÎ¢ÈíÒÑÓÚ10ÔÂ10ÈÕµÄÇå¾²ÀÛ»ý¸üÐÂÖÐÐÞ¸´KRACKÎó²î¡£Ç뿪ÆôWindows 10µÄ×Ô¶¯¸üР£¬¾É°æ±¾WindowsÇëʵʱÉý¼¶µ½Windows 10¡£
  • iOSÖÕ¶Ë£ºÆ»¹ûÒÑÓÚ10ÔÂ16ÈÕÐû²¼ÐÞ¸´´ËÎó²î £¬ÇëÎüÊÕiOSÍÆË͸üС£
  • AndroidÖÕ¶Ë£ºGoogle½«ÓÚ11ÔÂÐÞ¸´´ËÎó²î¡£º£ÄÚ³§É̵ÄAndroidϵͳ²¢·ÇÔ­Éú £¬ÇëÏò¸÷³§ÉÌÏàʶÇå¾²¸üÐÂÊÂÒË¡£
  • Linux£ºwpa_supplicantÒÑÐû²¼Ò»¸ö¸üÐÂÐÞ¸´´ËÎó²î £¬Çëͨ¹ý°ü¹ÜÀíÆ÷¸üÐÂ×é¼þ¡£

¹ØÓÚ´Ë £¬¸÷ÈËÓÐÆäËûÒÉÎÊ £¬»¶Ó­Öµç97¹ú¼ÊÍøÂç7*24Сʱ·þÎñÈÈÏß¡£

¹Ø×¢97¹ú¼Ê
¹Ø×¢97¹ú¼Ê¹ÙÍøÎ¢ÐÅ
ËæÊ±Ïàʶ¹«Ë¾×îж¯Ì¬
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾ 97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾

·µ»Ø¶¥²¿

ÊÕÆð
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
ÎĵµÆÀ¼Û
¸Ã×ÊÁÏÊÇ·ñ½â¾öÁËÄúµÄÎÊÌ⣿
Äú¶ÔÄ¿½ñÒ³ÃæµÄÖª×ã¶ÈÔõÑù£¿
²»Õ¦µÎ
ºÜÊǺÃ
ÄúÖª×ãµÄÔµ¹ÊÔ­ÓÉÊÇ£¨¶àÑ¡£©£¿
Äú²»Öª×ãµÄÔµ¹ÊÔ­ÓÉÊÇ£¨¶àÑ¡£©£¿
ÄúÊÇ·ñÉÐÓÐÆäËûÎÊÌâ»ò½¨Ò飿
ΪÁË¿ìËÙ½â¾ö²¢»Ø¸´ÄúµÄÎÊÌâ £¬Äú¿ÉÒÔÁôÏÂÁªÏµ·½·¨
ÓÊÏä
ÊÖ»úºÅ
ллÄúµÄ·´À¡£¡
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
97¹ú¼Ê¡¤(ÖйúÇø)¼¯ÍŹٷ½ÍøÕ¾
ÇëÑ¡Ôñ·þÎñÏîÄ¿
¹Ø±Õ×Éѯҳ
ÊÛǰ×Éѯ ÊÛǰ×Éѯ
ÊÛǰ×Éѯ
ÊÛºó·þÎñ ÊÛºó·þÎñ
ÊÛºó·þÎñ
Òâ¼û·´Ïì Òâ¼û·´Ïì
Òâ¼û·´Ïì
¸ü¶àÁªÏµ·½·¨
ÍøÕ¾µØÍ¼