°ä²¼¹¦·ò£º2017-10-23
ʲôÊÇKRACK·ì϶(Key Reinstallation Attacks)£¿
KRACK ·ì϶£¬¼´ÃÜÔ¿³Á×°¹¥»÷·ì϶£¬ÊÇ2017Äê10ÔÂ16ÈÕÓɱÈÀûʱ×êÑÐÈËÔ±Mathy Vanhoef£¨ÂíµÙ·ÍòºÕ¸¥£©°ä²¼µÄWPA/WPA2ºÍ̸°²È«ÎÊÌâ¡£¸Ã·ì϶ͨ¹ýWPA/WPA2ºÍ̸ÔÚʵÏÖÉϵÄȱµã£¬´¥·¢ÃÜÔ¿µÄ³Á×°Ö㬿ÉÄÜʹÖÐÑëÈ˹¥ »÷Õß»ñµÃ½âÃÜÎÞÏßÊý¾Ý°üµÄÄÜÁ¦¡£
ͨÓ÷ì϶ÅûÂ¶ÍøÕ¾£¨CVE£©¼Í¼ÁË10¼¸¸öKRACK·ì϶¿ÉÄÜÒý·¢µÄÎÊÌ⣨CVE-2017-13077 ~ 13082£¬CVE-2017-13084 ~ 13088£©£¬ÏÖʵÉÏÕâÊ®¼¸¸ö·ì϶¾ùÖ¸Ïòͳһ¸öÎÊÌâ--ÃÜÔ¿³Á×°¡£
ÕâÀలȫȱµã´æÔÚÓÚ Wi-Fi ³ß¶È×ÔÉí£¬¶ø·ÇÌØ¶¨Ä³Ð©²úÆ·»òÕßʵÏֹ滮ÖС£ÐÔÖÊÉÏ£¬ÎªÁ˱£Õϰ²È«£¬Ò»¸öÃÜÔ¿Ö»Ó¦¸Ã×°ÖúÍʹÓÃÒ»´Î£¬¶øWPA2ȴûÓб£ÏÕÕâÒ»µã¡£
ÂÛÎÄ¡¶Key Reinstallation Attacks:Forcing Nonce Reuse in WPA2¡·ÄÚµÄPOC(Proof of Concept)£¬¶ÔÒ»²¿ Android ÊÖ»úÖ´ÐÐÁËÒ»´Î KRACK¡£ÔÚ±¾´ÎÑÝʾÖУ¬¹¥»÷ÕßÓÐÄÜÁ¦¶ÔÊܺ¦Õß´«ÊäµÄÈ«ÊýÊý¾Ý½øÐнâÃÜ¡£¶ÔÓÚ¹¥»÷·½¶øÑÔ£¬ÕâÒ»¹¥»÷·½Ê½¼«¶ÈÒ×ÓÚʵÏÖ£¬ÓÉÓÚAndroid ÒÔ¼° Linux »áÔÚ¹¥»÷ÕßµÄÊ赼ϣ¨³ÁУ©×°ÖÃÒ»ÌõÈ«Áã¼ÓÃÜÃÜÔ¿¡£
ÂÛÎÄÒ²Ö¸³ö£¬ÔÚ¹¥»÷ÆäËûÉ豸ʱ£¨ÎÞÈ«Áã¼ÓÃÜÃÜÔ¿·ì϶µÄÉ豸£©£¬¹ÌÈ»½âÃÜÈ«ÊýÊý¾Ý°üÄѶȼ«´ó£¬µ«¹¥»÷ÕßÒÀÈ»ÓÐÄÜÁ¦½âÃÜÏ൱һ²¿ÃÅÊý¾Ý°ü¡£ÏÖʵÉÏ£¬ÂÛÎÄ×÷ÕßÈϿɣ¬Ëû×Ô¼º»¹Ã»ÓÐÕⲿÃŹ¥»÷µÄPOC¡£
KRACK·ì϶µÄ¹¥»÷¶ÔÏóºÍ¹¥»÷·½Ê½
¸Ã·ìÏ¶ÖØÒªÊÇÕë¶Ô WiFi ½ÓÈëµÄ¿Í»§¶Ë£¨ÊÖ»ú¡¢±Ê¼Ç±¾¡¢padµÈÉ豸£©£¬ÓÕ·¢¿Í»§¶Ë½øÐÐÃÜÔ¿³Á×°£¬´Ó¶ø´øÀ´¿ÉÄܱ»½âÃܵÄÒþ»¼£¬±»¹¥»÷µÄÊ×ҪǰÌáÊǹ¥»÷ÕßÔÚÎïÀíµØÎ»ÉϷdz£¿¿½üÖ¸±ê Wi-Fi ÍøÂ磬²Å¿ÉÄܽøÐгÁ×°ÃÜÔ¿ÓÕµ¼¡£
¿ÉÄܵĹ¥»÷·½Ê½Ô̺¬£º

Wi-Fi ʹÓÃÕßÓ¦¸ÃÈôºÎ¶Ô´ý¸Ã·ì϶
·ì϶¶ÔAPÉ豸µÄÓ°Ïì
¶ÔGA»Æ½ð¼×APÓ°Ïì½ÏÓ×£¬Ö»ÓÐAPÔËÐÐÔÚÒÔϽÏÉÙʹÓõÄÁ½ÖÖ³¡¾°Ï£¬µ±Ç°µÄÈí¼þ°æ±¾²Å»áÊÜ´Ë·ì϶ӰÏ죬ÓйصĽâ¾ö¹æ»®ÈçÏ£º
>>>½»ÒêÌáÐÑ<<<
Ôڸ÷ì϶ϸ½ÚÆØ¹âÖ®ºó£¬Linux¡¢Î¢Èí¡¢Æ»¹ûÏà¼Ì¶¼°ä²¼Á˲¹¶¡£¬ÎÒÃÇÇ¿ÁÒ½¨Òé¸÷ÈËʵʱµÄ¸üÐÂ×Ô¼ºµÄϵͳ°æ±¾»òÕß×°Öò¹¶¡£¬½ØÖÁĿǰΪֹ£¬Ö÷Á÷Öն˵IJ¹¶¡½øÕ¹ÈçÏ£º
¶ÔÓÚ´Ë£¬¸÷ÈËÓÐÆäËûÒÉÄÑ£¬Ó½ÓÖµçGA»Æ½ð¼×ÍøÂç7*24Ó×ʱ·þÎñÈÈÏß¡£
