·¢²¼Ê±¼ä£º2017-10-23
ʲôÊÇKRACK©¶´(Key Reinstallation Attacks)£¿
KRACK ©¶´£¬¼´ÃÜÔ¿ÖØ×°¹¥»÷©¶´£¬ÊÇ2017Äê10ÔÂ16ÈÕÓɱÈÀûʱÑо¿ÈËÔ±Mathy Vanhoef£¨ÂíµÙ·ÍòºÕ¸¥£©·¢²¼µÄWPA/WPA2ÐÒ鰲ȫÎÊÌâ¡£¸Ã©¶´Í¨¹ýWPA/WPA2ÐÒéÔÚʵÏÖÉϵÄȱÏÝ£¬´¥·¢ÃÜÔ¿µÄÖØ°²×°£¬¿ÉÄÜʹÖмäÈ˹¥ »÷Õß»ñµÃ½âÃÜÎÞÏßÊý¾Ý°üµÄÄÜÁ¦¡£
ͨÓé¶´ÅûÂ¶ÍøÕ¾£¨CVE£©¼Ç¼ÁË10¼¸¸öKRACK©¶´¿ÉÄÜÒý·¢µÄÎÊÌ⣨CVE-2017-13077 ~ 13082£¬CVE-2017-13084 ~ 13088£©£¬Êµ¼ÊÉÏÕâÊ®¼¸¸ö©¶´¾ùÖ¸Ïòͬһ¸öÎÊÌâ--ÃÜÔ¿ÖØ×°¡£
ÕâÀలȫȱÏÝ´æÔÚÓÚ Wi-Fi ±ê×¼±¾Éí£¬¶ø·ÇÌØ¶¨Ä³Ð©²úÆ·»òÕßʵÏÖ¹«º£²Ê´¬¡¤6600¹ÙÍøÖС£±¾ÖÊÉÏ£¬ÎªÁ˱£Ö¤°²È«£¬Ò»¸öÃÜÔ¿Ö»Ó¦¸Ã°²×°ºÍʹÓÃÒ»´Î£¬¶øWPA2ȴûÓб£ÕÏÕâÒ»µã¡£
ÂÛÎÄ¡¶Key Reinstallation Attacks:Forcing Nonce Reuse in WPA2¡·ÄÚµÄPOC(Proof of Concept)£¬¶ÔÒ»²¿ Android ÊÖ»úÖ´ÐÐÁËÒ»´Î KRACK¡£ÔÚ±¾´ÎÑÝʾÖУ¬¹¥»÷ÕßÓÐÄÜÁ¦¶ÔÊܺ¦Õß´«ÊäµÄÈ«²¿Êý¾Ý½øÐнâÃÜ¡£¶ÔÓÚ¹¥»÷·½¶øÑÔ£¬ÕâÒ»¹¥»÷·½Ê½·Ç³£Ò×ÓÚʵÏÖ£¬ÒòΪAndroid ÒÔ¼° Linux »áÔÚ¹¥»÷ÕßµÄÒýµ¼Ï£¨ÖØÐ£©°²×°Ò»ÌõÈ«Áã¼ÓÃÜÃÜÔ¿¡£
ÂÛÎÄÒ²Ö¸³ö£¬ÔÚ¹¥»÷ÆäËûÉ豸ʱ£¨ÎÞÈ«Áã¼ÓÃÜÃÜԿ©¶´µÄÉ豸£©£¬ËäÈ»½âÃÜÈ«²¿Êý¾Ý°üÄѶȼ«´ó£¬µ«¹¥»÷ÕßÈÔÈ»ÓÐÄÜÁ¦½âÃÜÏ൱һ²¿·ÖÊý¾Ý°ü¡£Êµ¼ÊÉÏ£¬ÂÛÎÄ×÷Õß³ÐÈÏ£¬Ëû×Ô¼º»¹Ã»ÓÐÕⲿ·Ö¹¥»÷µÄPOC¡£
KRACK©¶´µÄ¹¥»÷¶ÔÏóºÍ¹¥»÷·½Ê½
¸Ã©¶´Ö÷ÒªÊÇÕë¶Ô WiFi ½ÓÈëµÄ¿Í»§¶Ë£¨ÊÖ»ú¡¢±Ê¼Ç±¾¡¢padµÈÉ豸£©£¬ÓÕ·¢¿Í»§¶Ë½øÐÐÃÜÔ¿ÖØ×°£¬´Ó¶ø´øÀ´¿ÉÄܱ»½âÃܵÄÒþ»¼£¬±»¹¥»÷µÄÊ×ÒªÌõ¼þÊǹ¥»÷ÕßÔÚÎïÀíλÖÃÉϷdz£¿¿½üÄ¿±ê Wi-Fi ÍøÂ磬²Å¿ÉÄܽøÐÐ֨װÃÜÔ¿ÓÕµ¼¡£
¿ÉÄܵĹ¥»÷·½Ê½°üÀ¨£º

Wi-Fi ʹÓÃÕßÓ¦¸ÃÈçºÎ¶Ô´ý¸Ã©¶´
©¶´¶ÔAPÉ豸µÄÓ°Ïì
¶Ô¹«º£²Ê´¬¡¤6600APÓ°Ïì½ÏС£¬Ö»ÓÐAPÔËÐÐÔÚÒÔϽÏÉÙʹÓõÄÁ½ÖÖ³¡¾°Ï£¬µ±Ç°µÄÈí¼þ°æ±¾²Å»áÊÜ´Ë©¶´Ó°Ï죬Ïà¹ØµÄ½â¾ö¹«º£²Ê´¬¡¤6600¹ÙÍøÈçÏ£º
>>>ÓÑÇéÌáʾ<<<
Ôڸ鶴ϸ½ÚÆØ¹âÖ®ºó£¬Linux¡¢Î¢Èí¡¢Æ»¹ûÏà¼Ì¶¼·¢²¼Á˲¹¶¡£¬ÎÒÃÇÇ¿ÁÒ½¨Òé´ó¼Ò¼°Ê±µÄ¸üÐÂ×Ô¼ºµÄϵͳ°æ±¾»òÕß°²×°²¹¶¡£¬½ØÖÁĿǰΪֹ£¬Ö÷Á÷Öն˵IJ¹¶¡½øÕ¹ÈçÏ£º
¶ÔÓÚ´Ë£¬´ó¼ÒÓÐÆäËûÒÉÎÊ£¬»¶ÓÖµ繫º£²Ê´¬¡¤6600ÍøÂç7*24Сʱ·þÎñÈÈÏß¡£
