{"id":242,"date":"2025-02-12T17:02:31","date_gmt":"2025-02-12T09:02:31","guid":{"rendered":"https:\/\/dengbaoceping.org\/?p=242"},"modified":"2025-02-12T17:02:32","modified_gmt":"2025-02-12T09:02:32","slug":"2025%e5%b9%b4%e5%b8%b8%e8%a7%81%e9%ab%98%e5%8d%b1%e6%bc%8f%e6%b4%9e%e4%bb%8b%e7%bb%8d","status":"publish","type":"post","link":"https:\/\/dengbaoceping.org\/index.php\/2025%e5%b9%b4%e5%b8%b8%e8%a7%81%e9%ab%98%e5%8d%b1%e6%bc%8f%e6%b4%9e%e4%bb%8b%e7%bb%8d\/","title":{"rendered":"2025\u5e74\u5e38\u89c1\u9ad8\u5371\u6f0f\u6d1e\u4ecb\u7ecd"},"content":{"rendered":"\n<h1 class=\"wp-block-heading\">\u6f0f\u6d1e\u7b5b\u9009\u6807\u51c6<\/h1>\n\n\n\n<p class=\"wp-block-paragraph\">\u57fa\u4e8eMITRE CVE\u7edf\u8ba1\u3001NVD\u6f0f\u6d1e\u6570\u636e\u5e93\u53caFireEye\u4e8b\u4ef6\u54cd\u5e94\u62a5\u544a\uff0c\u9009\u53d6\u7b26\u5408\u4ee5\u4e0b\u7279\u5f81\u7684\u6f0f\u6d1e\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>CVSS v3\u8bc4\u5206\u22659.0<\/li>\n\n\n\n<li>\u5f71\u54cd\u8303\u56f4\u8986\u76d6\u5168\u7403\u8d8510\u4e07\u4f01\u4e1a<\/li>\n\n\n\n<li>\u5b58\u5728\u516c\u5f00\u5229\u7528\u4ee3\u7801\uff08PoC\/EXP\uff09<\/li>\n\n\n\n<li>\u6301\u7eed\u6d3b\u8dc3\u5468\u671f\u22653\u5e74<\/li>\n<\/ul>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">1. \u534f\u8bae\u6808\u5e7d\u7075\uff1a\u5fc3\u810f\u51fa\u8840\u6f0f\u6d1e\uff08CVE-2014-0160\uff09<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u6280\u672f\u6210\u56e0<\/strong>\uff1a<br>OpenSSL 1.0.1\u7248\u672cTLS\u5fc3\u8df3\u6269\u5c55\u534f\u8bae\u5b9e\u73b0\u7f3a\u9677\uff0c\u653b\u51fb\u8005\u901a\u8fc7\u6784\u9020\u7578\u5f62\u5fc3\u8df3\u8bf7\u6c42\u89e6\u53d164KB\u5185\u5b58\u6570\u636e\u6cc4\u9732<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u5173\u952e\u5371\u5bb3<\/strong>\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u76f4\u63a5\u8bfb\u53d6\u670d\u52a1\u5668\u5185\u5b58\u4e2d\u7684\u79c1\u94a5\u3001\u4f1a\u8bddCookie\u7b49\u654f\u611f\u4fe1\u606f<\/li>\n\n\n\n<li>\u5168\u7403\u7ea617%\u7684HTTPS\u670d\u52a1\u5668\u53d7\u5f71\u54cd\uff08Netcraft 2015\u7edf\u8ba1\uff09<\/li>\n\n\n\n<li>\u50ac\u751f\u5927\u89c4\u6a21\u4e2d\u95f4\u4eba\u653b\u51fb\u5de5\u5177\u5305\uff08\u5982Heartbleed Hunter\uff09<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u9632\u5fa1\u6f14\u8fdb<\/strong>\uff1a<br>\u25b8 \u7981\u7528TLS heartbeat\u6269\u5c55<br>\u25b8 OpenSSL\u5347\u7ea7\u81f31.0.1g+\u7248\u672c<br>\u25b8 \u5b9e\u65bd\u8bc1\u4e66\u5bc6\u94a5\u8f6e\u6362\u673a\u5236<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">2. \u6c38\u6052\u4e4b\u84dd\uff08EternalBlue\uff09\u6f0f\u6d1e\u94fe<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u6f0f\u6d1e\u96c6\u7fa4<\/strong>\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>CVE-2017-0144\uff08SMBv1\u534f\u8bae\u6808\u6ea2\u51fa\uff09<\/li>\n\n\n\n<li>CVE-2017-0145\uff08Windows\u5185\u6838\u6743\u9650\u63d0\u5347\uff09<\/li>\n\n\n\n<li>CVE-2017-0146\uff08SMB\u4f1a\u8bdd\u52ab\u6301\uff09<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u653b\u51fb\u8303\u5f0f\u8f6c\u53d8<\/strong>\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u9996\u4e2aNSA\u6b66\u5668\u5e93\u6cc4\u9732\u6f0f\u6d1e\uff08\u5f71\u5b50\u7ecf\u7eaa\u4eba2017\u5e74\u516c\u5f00\uff09<\/li>\n\n\n\n<li>\u8815\u866b\u5f0f\u4f20\u64ad\u80fd\u529b\uff08WannaCry\u52d2\u7d22\u8f6f\u4ef6\u611f\u67d3\u8d8530\u4e07\u53f0\u8bbe\u5907\uff09<\/li>\n\n\n\n<li>\u7ed5\u8fc7NTLMv2\u8ba4\u8bc1\u673a\u5236\u76f4\u63a5\u83b7\u53d6SYSTEM\u6743\u9650<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u52a0\u56fa\u65b9\u6848<\/strong>\uff1a<br>```powershell<\/p>\n\n\n\n<h1 class=\"wp-block-heading\">\u4f01\u4e1a\u7ea7\u4fee\u590d\u547d\u4ee4\u793a\u4f8b<\/h1>\n\n\n\n<p class=\"wp-block-paragraph\">Stop-Service -Name LanmanServer -Force<br>Set-SmbServerConfiguration -EnableSMB1Protocol $false<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">3. \u4f9b\u5e94\u94fe\u6838\u5f39\uff1aSolarWinds Orion\u540e\u95e8\uff082020\uff09<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u653b\u51fb\u8def\u5f84<\/strong>\uff1a<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>\u5f00\u53d1\u73af\u5883\u88ab\u690d\u5165SUNBURST\u6076\u610f\u4ee3\u7801<\/li>\n\n\n\n<li>\u5408\u6cd5\u8f6f\u4ef6\u66f4\u65b0\u5305\u643a\u5e26DGA\u57df\u540d\u901a\u4fe1\u6a21\u5757<\/li>\n\n\n\n<li>\u5185\u5b58\u9a7b\u7559\u578b\u6076\u610f\u8f7d\u8377\uff08TEARDROP\uff09<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u6280\u672f\u7a81\u7834<\/strong>\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u7ed5\u8fc7\u4ee3\u7801\u7b7e\u540d\u9a8c\u8bc1\uff08\u4f2a\u9020\u5fae\u8f6fAuthenticode\u7b7e\u540d\uff09<\/li>\n\n\n\n<li>\u5229\u7528\u5408\u6cd5\u8fdb\u7a0b\uff08OrionImprovementBusinessLayer.dll\uff09\u52a0\u8f7d\u6076\u610f\u5e93<\/li>\n\n\n\n<li>\u5b58\u6d3b\u65f6\u95f4\u8d85\u8fc714\u4e2a\u6708\u672a\u88ab\u53d1\u73b0<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u68c0\u6d4b\u96be\u70b9<\/strong>\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-preformatted\">HTTPS\u52a0\u5bc6\u4f20\u8f93\u53cd\u5c04\u578bDLL\u6ce8\u5165\u5408\u6cd5\u66f4\u65b0\u670d\u52a1\u5668\u53d7\u4fe1\u8bc1\u4e66\u6570\u5b57\u7b7e\u540d\u9a8c\u8bc1\u901a\u8fc7\u5185\u5b58\u4e2d\u89e3\u5bc6\u6267\u884c\u6076\u610f\u4ee3\u7801\u5408\u6cd5\u7cfb\u7edf\u8fdb\u7a0b<\/pre>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">4. \u65e5\u5fd7\u7ec4\u4ef6\u584c\u9677\uff1aLog4j2\u6f0f\u6d1e\uff08CVE-2021-44228\uff09<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u6f0f\u6d1e\u672c\u8d28<\/strong>\uff1a<br>JNDI\u67e5\u627e\u529f\u80fd\u672a\u505a\u8f93\u5165\u8fc7\u6ee4\uff0c\u5141\u8bb8\u901a\u8fc7\u65e5\u5fd7\u5185\u5bb9\u89e6\u53d1\u8fdc\u7a0b\u7c7b\u52a0\u8f7d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u653b\u51fb\u98ce\u66b4<\/strong>\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>72\u5c0f\u65f6\u5185\u51fa\u73b0368\u79cd\u53d8\u79cd\u653b\u51fb\uff08Palo Alto\u7edf\u8ba1\uff09<\/li>\n\n\n\n<li>\u5229\u7528\u8f7d\u8377\u4ece\u52a0\u5bc6\u8d27\u5e01\u6316\u77ff\u6269\u5c55\u5230APT\u7ec4\u7ec7\u653b\u51fb<\/li>\n\n\n\n<li>\u5f71\u54cd\u8303\u56f4\u6db5\u76d6\u4eceIoT\u8bbe\u5907\u5230\u4e91\u539f\u751f\u7cfb\u7edf\u7684\u5168\u751f\u6001<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u5e94\u6025\u54cd\u5e94\u77e9\u9635<\/strong>\uff1a<\/p>\n\n\n\n<figure class=\"wp-block-table\"><table class=\"has-fixed-layout\"><thead><tr><th>\u4fee\u590d\u9636\u6bb5<\/th><th>\u64cd\u4f5c\u65b9\u6848<\/th><th>\u6709\u6548\u6027<\/th><\/tr><\/thead><tbody><tr><td>\u9ec4\u91d14\u5c0f\u65f6<\/td><td>\u7981\u7528JNDI\u67e5\u627e\u529f\u80fd<\/td><td>\u4e34\u65f6\u7f13\u89e3<\/td><\/tr><tr><td>24\u5c0f\u65f6<\/td><td>\u5347\u7ea7\u81f32.15.0\u7248\u672c<\/td><td>\u90e8\u5206\u4fee\u590d<\/td><\/tr><tr><td>72\u5c0f\u65f6<\/td><td>\u90e8\u7f72WAF\u89c4\u5219\u96c6LJ001-2021<\/td><td>\u6df1\u5ea6\u9632\u5fa1<\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">5. \u90ae\u4ef6\u670d\u52a1\u5668\u6ca6\u9677\uff1aProxyLogon\uff08CVE-2021-26855\uff09<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u6f0f\u6d1e\u7ec4\u5408\u62f3<\/strong>\uff1a<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>\u8eab\u4efd\u9a8c\u8bc1\u7ed5\u8fc7\uff08SSRF\u6f0f\u6d1e\uff09<\/li>\n\n\n\n<li>\u53cd\u5e8f\u5217\u5316\u6f0f\u6d1e\u5b9e\u73b0\u4efb\u610f\u6587\u4ef6\u5199\u5165<\/li>\n\n\n\n<li>Exchange Powershell\u540e\u95e8\u6301\u4e45\u5316<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u653b\u51fb\u7279\u5f81<\/strong>\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u4ece\u5916\u7f51\u76f4\u63a5\u7a7f\u900fExchange OWA\u63a5\u53e3<\/li>\n\n\n\n<li>\u81ea\u52a8\u751f\u6210Webshell\u8def\u5f84\uff1a\/autodiscover\/autodiscover.json<\/li>\n\n\n\n<li>30\u5929\u5185\u6355\u83b7\u8d8510\u4e07\u6b21\u5229\u7528\u5c1d\u8bd5\uff08Volexity\u6570\u636e\uff09<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u53d6\u8bc1\u8981\u70b9<\/strong>\uff1a<br>\u25b8 \u68c0\u67e5IIS\u65e5\u5fd7\u4e2d\u7684\u5f02\u5e38POST\u8bf7\u6c42\uff08Content-Length: 0\uff09<br>\u25b8 \u6392\u67e5%PROGRAMFILES%\\Microsoft\\Exchange Server\\V15\\FrontEnd\\HttpProxy\\owa\\auth\\\u76ee\u5f55<br>\u25b8 \u5ba1\u8ba1ECP\u865a\u62df\u76ee\u5f55\u914d\u7f6e\u53d8\u66f4\u8bb0\u5f55<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">6. \u786c\u4ef6\u7ea7\u707e\u96be\uff1a\u7194\u65ad\u4e0e\u5e7d\u7075\uff08Meltdown\/Spectre\uff09<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u5904\u7406\u5668\u67b6\u6784\u7f3a\u9677<\/strong>\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>CVE-2017-5754\uff08\u8d8a\u6743\u6570\u636e\u7f13\u5b58\u52a0\u8f7d\uff09<\/li>\n\n\n\n<li>CVE-2017-5715\uff08\u5206\u652f\u9884\u6d4b\u6ce8\u5165\uff09<\/li>\n\n\n\n<li>CVE-2017-5753\uff08\u8fb9\u754c\u68c0\u67e5\u7ed5\u8fc7\uff09<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u8de8\u7ef4\u5ea6\u5f71\u54cd<\/strong>\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u7a81\u7834\u8fdb\u7a0b\u9694\u79bb\u3001\u865a\u62df\u673a\u9003\u9038\u3001SGX\u98de\u5730\u6e17\u900f<\/li>\n\n\n\n<li>\u6027\u80fd\u4fee\u590d\u8865\u4e01\u5bfc\u81f4\u4e91\u8ba1\u7b97\u5e73\u53f0CPU\u5f00\u9500\u589e\u52a05-30%<\/li>\n\n\n\n<li>\u50ac\u751f\u65b0\u578b\u4fa7\u4fe1\u9053\u653b\u51fb\u5de5\u5177\uff08\u5982SpecuCheck\uff09<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u5f02\u6784\u8ba1\u7b97\u9632\u5fa1<\/strong>\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-preformatted\">&lt;CPP&gt;<code><em>\/\/ \u5185\u6838\u9875\u8868\u9694\u79bb\u8865\u4e01\u793a\u4f8b\uff08KPTI\uff09<\/em>\nvoid __switch_to_extra_pgd(struct mm_struct *mm)\n{\n    write_cr3(__pa(mm-&gt;pgd) | CR3_PCID_USER);\n}\n<\/code><\/pre>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">7. TLS\u534f\u8bae\u964d\u7ea7\u653b\u51fb\uff08CVE-2017-3732\uff09<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u5bc6\u7801\u5b66\u5371\u673a<\/strong>\uff1a<br>OpenSSL 1.1.0\u7248\u672c\u5b58\u5728RSA\u5bc6\u94a5\u534f\u5546\u6f0f\u6d1e\uff0c\u5141\u8bb8\u4e2d\u95f4\u4eba\u5f3a\u5236\u964d\u7ea7\u81f3\u5f31\u52a0\u5bc6\u7b97\u6cd5<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u884c\u4e1a\u51b2\u51fb<\/strong>\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u91d1\u878d\u884c\u4e1aSSL VPN\u8bbe\u5907\u5927\u89c4\u6a21\u6f0f\u6d1e\u66b4\u9732\uff08Fortinet\u3001Pulse Secure\u7b49\uff09<\/li>\n\n\n\n<li>\u50ac\u751f\u81ea\u52a8\u5316\u5de5\u5177\uff08\u5982TLS-Attacker\u6846\u67b6\uff09<\/li>\n\n\n\n<li>PCI DSS 3.2\u6807\u51c6\u7d27\u6025\u8865\u5145\u52a0\u5bc6\u5f3a\u5ea6\u8981\u6c42<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u5bc6\u7801\u7b56\u7565\u91cd\u6784<\/strong>\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-preformatted\">&lt;NGINX&gt;<code><em># Nginx\u5f3a\u5236\u52a0\u5bc6\u5957\u4ef6\u914d\u7f6e\u793a\u4f8b<\/em>\nssl_ciphers 'TLS_AES_256_GCM_SHA384:TLS_CHACHA20_POLY1305_SHA256';\nssl_prefer_server_ciphers on;\nssl_protocols TLSv1.3;\n<\/code><\/pre>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">8. CMS\u6838\u7206\u6f0f\u6d1e\uff1aDrupalgeddon\uff08CVE-2018-7600\uff09<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u6f0f\u6d1e\u673a\u7406<\/strong>\uff1a<br>Drupal\u8868\u5355API\u672a\u8fc7\u6ee4#\u53c2\u6570\uff0c\u5bfc\u81f4\u8fdc\u7a0b\u4ee3\u7801\u6267\u884c<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u4f20\u64ad\u7279\u70b9<\/strong>\uff1a<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>\u653b\u51fb\u8005\u901a\u8fc7\u626b\u63cf\/public\/core\/CHANGELOG.txt\u786e\u5b9a\u6f0f\u6d1e\u7248\u672c<\/li>\n\n\n\n<li>\u8815\u866b\u5f0f\u4f20\u64ad\u52a0\u5bc6\u77ff\u673a\uff08\u5982Kitty\u6316\u77ff\u50f5\u5c38\u7f51\u7edc\uff09<\/li>\n\n\n\n<li>\u653f\u5e9c\u673a\u6784\u7f51\u7ad9\u53d7\u5f71\u54cd\u7387\u8fbe34%\uff08CISA\u62a5\u544a\uff09<\/li>\n<\/ul>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>\u52a8\u6001\u6c99\u7bb1\u68c0\u6d4b<\/strong>\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-preformatted\">&lt;PYTHON&gt;<code><em># \u6f0f\u6d1e\u68c0\u6d4bPoC\u7247\u6bb5<\/em>\npayload = {\n    'form_id': 'user_register_form',\n    '_drupal_ajax': '1',\n    'mail[#post_render][]': 'exec',\n    'mail[#type]': 'markup',\n    'mail[#markup]': 'echo vulnerable &gt; \/tmp\/drupalcheck'\n}\nrequests.post(target, data=payload)\n<\/code><\/pre>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h2 class=\"wp-block-heading\">\u9632\u5fa1\u4f53\u7cfb\u6784\u5efa\u5efa\u8bae<\/h2>\n\n\n\n<ol class=\"wp-block-list\">\n<li><strong>\u4e09\u7ef4\u6f0f\u6d1e\u7ba1\u7406<\/strong>\n<ul class=\"wp-block-list\">\n<li>\u8d44\u4ea7\u6d4b\u7ed8\uff1a\u81ea\u52a8\u8bc6\u522bShadow IT\u7ec4\u4ef6<\/li>\n\n\n\n<li>\u5a01\u80c1\u60c5\u62a5\uff1a\u8ba2\u9605CISA Known Exploited\u6f0f\u6d1e\u76ee\u5f55<\/li>\n\n\n\n<li>\u653b\u51fb\u6a21\u62df\uff1a\u5b9a\u671f\u6267\u884c\u7ea2\u961f\u6f14\u7ec3\uff08\u5982Caldera\u6846\u67b6\uff09<\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>\u96f6\u4fe1\u4efb\u5b9e\u8df5<\/strong>\n<ul class=\"wp-block-list\">\n<li>\u5b9e\u65bdJIT\uff08Just-In-Time\uff09\u7279\u6743\u8bbf\u95ee<\/li>\n\n\n\n<li>\u90e8\u7f72\u6301\u7eed\u8eab\u4efd\u9a8c\u8bc1\uff08\u751f\u7269\u7279\u5f81+\u8bbe\u5907\u6307\u7eb9\uff09<\/li>\n\n\n\n<li>\u6784\u5efa\u5fae\u5206\u6bb5\u7f51\u7edc\u67b6\u6784<\/li>\n<\/ul>\n<\/li>\n\n\n\n<li><strong>\u5a01\u80c1\u72e9\u730e\u589e\u5f3a<\/strong>\n<ul class=\"wp-block-list\">\n<li>EDR\u7cfb\u7edf\u96c6\u6210YARA\u89c4\u5219\uff08\u68c0\u6d4b\u5185\u5b58\u9a7b\u7559\u653b\u51fb\uff09<\/li>\n\n\n\n<li>\u7f51\u7edc\u6d41\u91cf\u5143\u6570\u636e\u5206\u6790\uff08Zeek\/Suricata\uff09<\/li>\n\n\n\n<li>\u53ef\u7591DNS\u8bf7\u6c42\u56fe\u8c31\u8ffd\u8e2a<\/li>\n<\/ul>\n<\/li>\n<\/ol>\n","protected":false},"excerpt":{"rendered":"<p>\u6f0f\u6d1e\u7b5b\u9009\u6807\u51c6 \u57fa\u4e8eMITRE CVE\u7edf\u8ba1\u3001NVD\u6f0f\u6d1e\u6570\u636e\u5e93\u53ca...<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[15],"tags":[20,19],"class_list":["post-242","post","type-post","status-publish","format-standard","hentry","category-cybersecurity","tag-20","tag-19"],"_links":{"self":[{"href":"https:\/\/dengbaoceping.org\/index.php\/wp-json\/wp\/v2\/posts\/242","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dengbaoceping.org\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dengbaoceping.org\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dengbaoceping.org\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/dengbaoceping.org\/index.php\/wp-json\/wp\/v2\/comments?post=242"}],"version-history":[{"count":0,"href":"https:\/\/dengbaoceping.org\/index.php\/wp-json\/wp\/v2\/posts\/242\/revisions"}],"wp:attachment":[{"href":"https:\/\/dengbaoceping.org\/index.php\/wp-json\/wp\/v2\/media?parent=242"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dengbaoceping.org\/index.php\/wp-json\/wp\/v2\/categories?post=242"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dengbaoceping.org\/index.php\/wp-json\/wp\/v2\/tags?post=242"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}