AG¹«Ë¾

AG¹«Ë¾

AG¹«Ë¾¿Æ¼¼

  • »ù´¡ÉèÊ©Çå¾²

    »ù´¡ÉèÊ©Çå¾²
  • Êý¾ÝÇå¾²

    Êý¾ÝÇå¾²
  • ÔÆÅÌËãÇå¾²

    ÔÆÅÌËãÇå¾²
  • AIÇå¾²

    AIÇå¾²
  • ¹¤Òµ»¥ÁªÍøÇå¾²

    ¹¤Òµ»¥ÁªÍøÇå¾²
  • ÎïÁªÍøÇå¾²

    ÎïÁªÍøÇå¾²
  • ÐÅÏ¢ÊÖÒÕÓ¦ÓÃÁ¢Òì

    ÐÅÏ¢ÊÖÒÕÓ¦ÓÃÁ¢Òì
  • ËùÓвúÆ·

    ËùÓвúÆ·
  • ËùÓнâ¾ö¼Æ»®

    ËùÓнâ¾ö¼Æ»®

»ù´¡ÉèÊ©Çå¾²


  • Õþ¸®

    Õþ¸®
  • ÔËÓªÉÌ

    ÔËÓªÉÌ
  • ½ðÈÚ

    ½ðÈÚ
  • ÄÜÔ´

    ÄÜÔ´
  • ½»Í¨

    ½»Í¨
  • ÆóÒµ

    ÆóÒµ
  • ¿Æ½ÌÎÄÎÀ

    ¿Æ½ÌÎÄÎÀ

  • AG¹«Ë¾ÔÆ AG¹«Ë¾ÔÆ
  • AG¹«Ë¾ÍþвÇ鱨ÖÐÐÄNTI AG¹«Ë¾ÍþвÇ鱨ÖÐÐÄNTI
  • TechWorldÊÖÒÕ¼ÎÄ껪 TechWorldÊÖÒÕ¼ÎÄ껪
  • ±±¾©AG¹«Ë¾¹«Òæ»ù½ð»á ±±¾©AG¹«Ë¾¹«Òæ»ù½ð»á
  • ÊÖÒÕ²©¿Í ÊÖÒÕ²©¿Í
  • Àֳɰ¸Àý Àֳɰ¸Àý

ÏàÖúͬ°éÉó²é¸ü¶à >

ÏàÖúͬ°é¶¯Ì¬

³ÉΪÏàÖúͬ°é

  • AG¹«Ë¾ÔÆ AG¹«Ë¾ÔÆ
  • AG¹«Ë¾ÍþвÇ鱨ÖÐÐÄNTI AG¹«Ë¾ÍþвÇ鱨ÖÐÐÄNTI
  • TechWorldÊÖÒÕ¼ÎÄ껪 TechWorldÊÖÒÕ¼ÎÄ껪
  • ±±¾©AG¹«Ë¾¹«Òæ»ù½ð»á ±±¾©AG¹«Ë¾¹«Òæ»ù½ð»á
  • ÊÖÒÕ²©¿Í ÊÖÒÕ²©¿Í
  • Àֳɰ¸Àý Àֳɰ¸Àý

ÊÖÒÕÖ§³ÖÉó²é¸ü¶à >

²úÆ·Ö§³Ö

  • AG¹«Ë¾ÔÆ AG¹«Ë¾ÔÆ
  • AG¹«Ë¾ÍþвÇ鱨ÖÐÐÄNTI AG¹«Ë¾ÍþвÇ鱨ÖÐÐÄNTI
  • TechWorldÊÖÒÕ¼ÎÄ껪 TechWorldÊÖÒÕ¼ÎÄ껪
  • ±±¾©AG¹«Ë¾¹«Òæ»ù½ð»á ±±¾©AG¹«Ë¾¹«Òæ»ù½ð»á
  • ÊÖÒÕ²©¿Í ÊÖÒÕ²©¿Í
  • Àֳɰ¸Àý Àֳɰ¸Àý

·µ»ØÁбí

¼òÒªÆÊÎö£ºHacking Team Ô¶³Ì¿ØÖÆÏµÍ³

2015-07-09

Ðû²¼ÕߣºAG¹«Ë¾¿Æ¼¼

Content

  • ¼òÒªÆÊÎö Hacking TeamÔ¶³Ì¿ØÖÆÏµÍ³

  • й¶£ºHacking Team

    • Hacking Team
  • ÆÊÎö£ºÔ¶³Ì¿ØÖÆÏµÍ³

    • Hacking Team RCSϵͳ¼Ü¹¹
    • Hacking Team RCS»ù±¾¹¦Ð§
    • Hacking Team RCSÈëÇÖÊÖ¶Î
  • ÍþвÇ鱨

  • ¹ØÓÚAG¹«Ë¾¿Æ¼¼


ÄÚÈݵ¼¶Á

7ÔÂ5ÈÕÍí £¬Ò»¼ÒÒâ´óÀûÔ¶³Ì¿ØÖÆÈí¼þ³§ÉÌHackingTeamµÄÄÚ²¿Êý¾Ý±»Ð¹Â¶³öÀ´ £¬ÆäÓ°ÏìÁ¦²»ÑÇÓÚ˹ÂåµÇÊÂÎñ¼°Î¬»ù½âÃÜÊÂÎñ £¬AG¹«Ë¾¿Æ¼¼ÍþвÏìÓ¦ÖÐÐÄËæ¼´Æô¶¯Ó¦¼±ÏìÓ¦ÊÂÇé ¡£

  • 6ÈÕ £¬ÍþвÏìÓ¦ÖÐÐÄÆô¶¯Ó¦¼±ÆÊÎöÊÂÇé £¬AG¹«Ë¾TAC²úÆ·×èµ²µ½Flash 0DayÎó²î¹¥»÷ £»
  • 6ÈÕÒ¹ £¬Ïà¹ØÐÅÏ¢¼°ÆðÔ´½¨Òé £¬µÚһʱ¼ä¼û¸æ¿Í»§¹Ø×¢ £»
  • 7ÈÕ £¬ÔÚ¹ÙÍøÍøÕ¾Ðû²¼½ôÆÈͨ¸æ £¬½¨Òé¿í´óÓû§¹Ø×¢ÊÂÎñÏ£Íû ¡£ÆÊÎöÊÂÇéÏ£ÍûÏ£ÍûÖÐ £»
  • 9ÈÕ £¬Ðû²¼Hacking TeamÔ¶³Ì¿ØÖÆÏµÍ³¼òÒªÆÊÎö±¨¸æ £»

ÕâÊÇÒ»·Ý¿ìËÙ±¨¸æ £¬ÒÔ±ã¼òÒªÆÊÎöÆäÖеĽ¹µãÄÚÈÝ £¬Hacking Team RCS£¨Ô¶³Ì¿ØÖÆÏµÍ³£© ¡£ÔÚºóÐøµÄ±¨¸æÖÐ £¬ÎÒÃǽ«»á¶Ô´Ë´ÎÊÂÎñ¾ÙÐÐÉîÈëÆÊÎö £¬²¢¸ø³öÓ¦¶Ô¼Æ»® ¡£


й¶£ºHacking Team

7ÔÂ5ÈÕÍí £¬Ò»¼ÒÒâ´óÀûÈí¼þ³§É̱»¹¥»÷ £¬ÆäÕÆÎÕµÄ400GBÎó²î£¨°üÀ¨0day£©Êý¾Ýй¶³öÀ´ £¬ÓÉ´Ë¿ÉÄÜÒý·¢µÄ¶¯µ´ £¬ÒýÆðÁËÒµ½çһƬ»©È» ¡£Êý¾Ý°üÖÐÖ÷Òª°üÀ¨¼¸¸ö´óµÄ²¿·Ö£º

  • Ô¶³Ì¿ØÖÆÈí¼þÔ´Âë £¬Ò²ÊÇÆä½¹µã £¬ÔÝÇÒ³ÆÖ®Îª Hacking Team RCS
  • ·´²éɱÆÊÎö¹¤¾ß¼°Ïà¹ØÌÖÂÛÎĵµ
  • 0Day¡¢Îó²î¼°Ïà¹ØÈëÇÖ¹¤¾ß
  • ÈëÇÖÏîÄ¿Ïà¹ØÐÅÏ¢ £¬°üÀ¨ÕË»§ÃÜÂë¡¢Êý¾Ý¼°ÒôÏñ×ÊÁÏ
  • °ì¹«ë¹µµ¡¢Óʼþ¼°Í¼Æ¬
  • ÆäËû

Hacking Team

Hacking TeamÔÚÒâ´óÀûÃ×À¼×¢²áÁËÒ»¼ÒÈí¼þ¹«Ë¾ £¬Ö÷ÒªÏò¸÷¹úÕþ¸®¼°Ö´·¨»ú¹¹ÏúÊÛÈëÇÖ¼°¼àÊÓ¹¦Ð§µÄÈí¼þ ¡£ÆäÔ¶³Ì¿ØÖÆÏµÍ³¿ÉÒÔ¼à²â»¥ÁªÍøÓû§µÄͨѶ¡¢½âÃÜÓû§µÄ¼ÓÃÜÎļþ¼°µç×ÓÓʼþ £¬¼Í¼Skype¼°ÆäËûVoIPͨѶ £¬Ò²¿ÉÒÔÔ¶³Ì¼¤»îÓû§µÄÂó¿Ë·ç¼°ÉãÏñÍ· ¡£Æä×ܲ¿ÔÚÒâ´óÀû £¬¹ÍÔ±40¶àÈË £¬²¢ÔÚ°²Äɲ¨Àû˹ºÍÐÂ¼ÓÆÂÓµÓзÖÖ§»ú¹¹ £¬Æä²úÆ·ÔÚ¼¸Ê®¸ö¹ú¼ÒʹÓà ¡£

ÆÊÎö£ºÔ¶³Ì¿ØÖÆÏµÍ³

¸÷ÈËÖªµÀITÔËάÖÎÀíÖо­³£Óõ½Ô¶³Ì¿ØÖÆÈí¼þ £¬ºÃ±ÈDameware £¬µ«Hacking Team RCSÏà±ÈÊÐÃæÉϳ£¼ûµÄÔ¶³Ì¿ØÖÆÈí¼þ¶øÑÔ £¬Ö÷񻂿±ðÈçÏ£º

  • ϵͳ»¯ÖÎÀí¸ÃÈí¼þ´ÓÈëÇÖµ½Ä¿µÄÐÅÏ¢ÍøÂçÆÊÎö £¬ÓÐÍêÕûµÄϵͳ¼Ü¹¹
    • Õâ¸ö¼Ü¹¹ÖÐÓвî±ðµÄ¹¦Ð§Ä£¿é £¬Ï໥֮¼äÏ໥ÅäºÏ £¬Íê³ÉÈëÇÖ¡¢×°Öá¢ÐÅÏ¢ËѼ¯¡¢¼à¿Ø¡¢¼¯ÖÐÖÎÀíµÈ¹¦Ð§ ¡£
  • ÍøÂçÐÅÏ¢¸ÃÈí¼þÔÚºóÌ¨ÍøÂç²¢ÉÏ´«Ä¿µÄÓû§µÄÐÅÏ¢ £¬°üÀ¨ÖÖÖÖÊý¾Ý¡¢Í¼Æ¬¡¢Ó°ÒôµÈ
  • ÈëÇÖ¹¤¾ßÅäºÏ¸ÃÈí¼þÓÐÖÖÖÖÎó²î¡¢Ê¹ÓÃÊֶμ°×Ô¶¯»¯¹¤¾ß £¬ÒÔ±ãÔÚÄ¿µÄÉÏÇ¿ÖÆ×°ÖÃAgent
  • ˳ӦÄÜÁ¦Ç¿×ÀÃæOS´ÓWindowsµ½MacOs X £¬ÊÖ»úOS»ù±¾ÁýÕÖÁËÊг¡ÉÏÊ¢ÐеÄϵͳ
  • ·´×·×Ù¸ÃÈí¼þÍâµØ¼°Èö²¥Àú³ÌÊý¾Ý¾ù¼ÓÃÜ £¬ÈÃ×·×ÙÕßÄÑÒÔÕÒµ½¹¥»÷Õß
  • ·´Ð¶ÔØ·´²éɱ¸ÃÈí¼þAgent²»Ìá¹©Ð¶ÔØ·½·¨ £¬²¢½ÓÄÉÖÖÖÖÊÖ¶ÎÌÓ±Üɱ¶¾Èí¼þ

Hacking Team RCSϵͳ¼Ü¹¹

RCS (Remote Control System)ϵͳÊÇÒ»Ì×ÓÃÓÚÕþ¸®×èµ²µÄºÚ¿ÍÌ×¼þ £¬ÊµÏÖÁËȫƽ̨µÄ¼à¿ØÏµÍ³ ¡£

RCSÖ÷Òª×é¼þ

123

ÿһ¿é×é¼þÏêϸµÄ¹¦Ð§ÈçÏ £¬

  • Front-End:ÎüÊÕÔËÐÐÔÚ±»½ØÈ¡Éè±¹ØÁ¬ÄÊðÀí £¬×÷ΪBack-EndµÄ¸ôÀëÆÁÕÏ £¬°ü¹ÜRCS×°ÖõÄÇå¾²ÐÔ ¡£ÏµÍ³ÒªÇóÊÇWindows 2003 or 2008 ¡£
  • Back-end: ÊÇÕû¸öÉèÊ©µÄ½¹µã £¬Ëü´æ´¢ËùÓдÓÊðÀíÍøÂçµ½µÄÊý¾Ýͬʱ´¦Öóͷ£´ÓÖÎÀí¿ØÖÆÌ¨´«À´µÄÇëÇó ¡£ËùÓеÄRCSÊý¾Ý´æ´¢ÄÚÀïÒ»¸ö±ê×¼µÄ¹ØÏµÐÍÊý¾Ý¿â £¬Òò´Ë¸Ã·þÎñ»¹Ìá¹©ÌØÁíÍ⹦Ч £¬ºÃ±Èƾ֤¿Í»§µÄÒªÇóʵÏÖ×Ô¶¯±¸·ÝºÍ¶¨ÖÆÊý¾ÝÍÚ¾ò ¡£ÏµÍ³ÒªÇóÊÇWindows 2003 or 2008 ¡£
  • Management console:RCSµÄ¿ØÖÆÌ¨ÊÇÓÃÓÚ»á¼ûºÍ¿ØÖÆËùÓеÄÔ¶³Ì¿ØÖÆÏµÍ³£¨RCS£©¹¦Ð§µÄÓ¦ÓóÌÐò ¡£Operators¿ÉÒÔÊÚÓèϵͳ²î±ðÆ·¼¶µÄ»á¼ûȨÏÞ£ºAdmin¿ÉÒÔ½¨ÉèÓû§ºÍ×é £¬ÊÚÓèȨÏÞ £¬ÖÎÀíÊÓ²ì £¬ÉóºËϵͳ £»TechnicianÊǽ¨ÉèÄ¿µÄѬȾ¡¢ÉèÖÃ/ÖØÐÂÉèÖÃÊðÀíÐÐΪµÄÔØÌå £»Viewerä¯ÀÀÀ´×ÔtargetµÄÐÅÏ¢ £¬¶ÔÆä¾ÙÐзÖÀà»òÕßÊä³ö ¡£ÏµÍ³ÒªÇóÊÇWindows MacOS X or Linux ¡£
  • Target:RCS AgentÊǼàÊÓÄ¿µÄÅÌËã»ú»òÖÇÄÜÊÖ»úÉϵÄÈí¼þ×é¼þ ¡£Ò»µ©×°ÖÃÀÖ³É £¬Agent½«»áͨ¹ý×°±¸µÄÍøÂç½«ÍøÂçµ½µÄÊý¾Ý´«Ë͵½Front-End £¬ÕâЩÊý¾ÝÓÐÐí¶àÖÖÀà £¬ºÃ±ÈÆÁÄ»½ØÍ¼¡¢µç»°ºô½ÐµÈ ¡£

    • RCS AgentÓÐÁ½ÖÖ×°Ö÷½·¨£ºÍâµØÒÔ¼°Ô¶³Ì ¡£ÍâµØ×°ÖÃÖ÷ÒªÊÇͨ¹ý×ÀÃæÏµÍ³µÄCDºÍUSB´æ´¢×°±¸À´Ö¸µ¼ £¬»òÕßÊÇÖÇÄÜÊÖ»úµÄusb ¡£Ô¶³Ì×°ÖÃÔòͨ¹ýMelting tool¡¢Exploit portal¡¢Network InjectorÒÔ¼°Remote Mobile Installation ¡£²¢ÇÒÿ¸öRCS Agent¶¼¿ÉÒÔͨ¹ýÔ¶³ÌÏÂÁîÐ¶ÔØ ¡£
    • RCS AgentsµÄϵͳҪÇó£º

    • Windows XP Vista 7 (32/64 bit)

    • MacOs X 10.6 Snow Leopard 10.7 Lion

    • Windows Mobile 6 6.5

    • iOS 3 4 (iPhone/iPad)

    • Symbian S60 3rd and 5th edition

    • BlackBerry 4.5 or newer
  • AnonymizersÄ¿µÄÊÇÒþ²ØFront EndÕæÊµIPµØµã £¬ÓÉÓÚAnonymizersÖ®¼äµÄÅþÁ¬Êý¾Ý±»ÍêÈ«¼ÓÃܲ¢ÇÒûÓнâÃÜÊý¾Ý £¬ÒÔÊÇ¿ÉÒÔ±»°²ÅÅÔÚÈκηÇÐÅÍеÄÍøÂçºÍ¹ú¼Ò ¡£

  • Collection Node ÐÅÏ¢ËѼ¯¹¦Ð§ÊÇͨ¹ýCollection NodeÀ´Íê³ÉµÄ¿Í»§¶ËÉÏ´«ÐÅÏ¢µÄËѼ¯ £¬²¢ÇÒÔÊÐí¿Í»§¶Ë´Ó·þÎñÆ÷ÉÏÏÂÔØÐµÄÉèÖúͲå¼þ £¬Õâ¸ö½ÚµãÊÇͨ¹ýÌṩASP·þÎñÍê³É½»»¥µÄ ¡£Õâ¸ö½ÚµãÊÇÕû¸ö¿ØÖÆÏµÍ³Î¨Ò»ÄÜ´ÓÍⲿ¾ÙÐлá¼ûµÄ½Úµã £¬Òò´Ë¶ÔËüµÄ± £»¤Ò²ºÜÊÇÒªº¦ £¬ºÃ±ÈʹÓ÷À»ðǽµÈ²½·¥¾ÙÐÐÒ»¶¨µÄ¸ôÀë £¬Ò²ÐèҪʹÓõ½Anonymizer Á´À´¶ÔASPÕæÊµµÄIPµØµã¾ÙÐÐÒþ²Ø ¡£

    • RSSM(Mobile Collection Node)×÷ΪCollection NodeµÄÒ»¸öÔö²¹ £¬Í¨¹ýÀ¶ÑÀµÈÊÖ¶ÎÍê³ÉCollection NodeµÄ¹¦Ð§ £¬²¢ÇҸýڵãÒ²»áºÍCollection NodeÍê³Éͬ²½µÄÀú³Ì ¡£
  • Log Repository Log Repository(RCSDB)ÊÇRCSϵͳµÄ´æ´¢²¿¼þ £¬´æ´¢ÐÅÏ¢°üÀ¨£º

    • »á¼û¹ýµÄÍøÕ¾
    • Îļþ²Ù×÷
    • ¼üÅ̼ͼ
    • ÎĵµºÍͼƬÐÅÏ¢
    • VoIPµç»°¼à¿Ø(ÀýÈçskype)
    • ³ÌÐòÖ´ÐÐÐÅÏ¢
    • ÒôƵ¼àÊÓ
    • WebÉãÏñÍ·¼àÊÓ
    • ½ØÆÁ
    • ¼´Ê±Í¨Ñ¶£¨Skype¡¢WindowsLiveMessenge¡¢WechatµÈ£©
    • ¼ôÌù°åµÄÐÅÏ¢
    • ÃÜÂëÐÅÏ¢£¨emailÕË»§¡¢WindowsLiveÕË»§µÈ£©
    • ·¢ËͺÍÎüÊÕÓʼþ
    • µç»°Â¼Òô
    • GPSλÖÃ
    • ÁªÏµÈËÐÅÏ¢

´ÓÉÏÃæµÄÆÊÎö¿ÉÒÔ¿´³öÀ´ £¬ÕâÒ»´Îй¶µÄHacking TeamµÄÖÖÖÖ³ÌÐòÖÐ £¬½ÏÁ¿ÍêÕûµÄº­¸ÇÁËʵÑé¹¥»÷¸÷¸ö½×¶ÎÐèÒªÓõ½µÄһЩ¿ØÖƺÍʹÓù¤¾ß £¬Õë¶ÔÆäÖеÄһЩ½ÏΪ¾­µäµÄ´úÂë £¬ÎÒÃǾ­ÓÉÑо¿ £¬¸ø³öÕâЩ¹¤¾ß°üµÄ¹¦Ð§ £¬¶ÔʹÓùæÄ£×öÁË´óÖµÄÐÎò ¡£ÔÚÕâÒ»Ì×RCSÀï £¬Õë¶Ôµç»°¡¢pc¡¢ÍøÂç¾ù¾ÙÐÐÁË¿ØÖƺÍÐÅÏ¢ËѼ¯ ¡£

Hacking Team RCS»ù±¾¹¦Ð§

µç»°¼à¿Ø

Õë¶Ôµç»°¼à¿Ø £¬¿ª·¢ÁËÕë¶Ô²î±ðƽ̨µÄagent³ÌÐò £¬ÏÂÃæÊÇÒ»·ÝÁбí

  • core-winphone:Õë¶Ô Windows Phone ÒÆ¶¯Æ½Ì¨µÄÔ¶³Ì¿ØÖÆÄ¾Âí¿Í»§¶Ë £¬ÓÃÓÚÊµÊ±ÍøÂçÄ¿µÄϵͳ״̬ÐÅÏ¢ £¬GPS £¬Í¨Ñ¶Â¼ £¬Í¨»°¶ÌÐżÍ¼ £¬ÈÕÀúÈճ̰²ÅŵÈÒþ˽ÐÅÏ¢ £¬»¹¿ÉÒÔÖ´ÐмÒô £¬½ØÈ¡ÊÖ»úÆÁÄ»µÈ׼ʱʹÃü £¬¾ßÓÐÔ¶³Ì·­¿ªÊÖ»úÉãÏñÍ· £¬¿ªÆô»°Í²µÈ¹¦Ð§ ¡£
  • core-winmobile:Õë¶ÔÒѾ­ÓÉʱµÄ Windows Mobile ÒÆ¶¯Æ½Ì¨µÄÔ¶³Ì¿ØÖÆÄ¾Âí¿Í»§¶Ë ¡£Ò²ÊÇÓÃÓÚÍøÂçÄ¿µÄÒþ˽ÐÅÏ¢ £¬ÇÒ¾ßÓÐÔ¶³Ì¿ØÖÆÍøÂç¼Òô £¬½ØÆÁµÈ¹¦Ð§ ¡£
  • core-symbian:Õë¶Ô Symbian ÒÆ¶¯Æ½Ì¨µÄÔ¶¿ØÄ¾ÂíÊðÀí £¬ÓÃÓÚÍøÂçGPSλÖà £¬Í¨Ñ¶¼Í¼ £¬¶ÌÐÂÎŵÈÃô¸Ð¼Í¼ £¬²¢¿ÉÔ¶³Ìʵʱ¼àÌý»°Í²µÈ¹¦Ð§ ¡£
  • core-android-audiocapture:°²×¿Æ½Ì¨ÏµÄÓïÒô¼àÌý¹¤¾ß £¬Í¨¹ý×¢ÈëAudioFlingerÏà¹ØÀú³ÌµÖ´ï¼Í¼Âó¿ËºÍÌýͲÒôƵµÄ¹¦Ð§ ¡£Õû¸ö¹¤¾ß°üÀ¨×¢È빤¾ßhijack¡¢±»×¢ÈëµÄ¿âlibt.so £¬×¢Èëºó»á¼Í¼ÒôƵÐÅÏ¢µ½dumpÎļþ £¬ºÚ¿Íͨ¹ýdecoder.py¾ç±¾¿ÉÒÔ½«dumpÎļþ»¹Ô­³ÉwavÎļþ ¡£¿ÉÒÔÔÚ°²×¿3.xµ½4.xÏÂÔËÐÐ ¡£
  • core-android:Ò»¸ö°²×¿ÏµÄRCSÓ¦Óà £¬Ó¦¸ÃÊǹ¦Ð§½ÏÁ¿ÍêÉÆµÄ¹¤¾ß £¬¿ÉÒÔÍøÂçÉç½»Èí¼þµÄÐÅÏ¢ £¬Ó¦ÓÃÖл¹´ò°üÁËÐí¶àʹÓù¤¾ß
  • core-blackberry:ÊǺÚݮϵÄRCSÈí¼þ ¡£

×ÀÃæÏµÍ³¼à¿Ø

  • core-macos:ÆäÖаüÀ¨Ò»¸öÓÃÓÚMax OS X ƽ̨¿ÉÖ´ÐÐÎļþ macho ÎļþµÄ¼Ó¿Ç¼ÓÃÜ»ìÏý³ÌÐò ¡£Í¬Ê±»¹°üÀ¨Õë¶Ô Mac OS X ƽ̨µÄÔ¶³Ì¿ØÖÆÄ¾Âí¿Í»§¶Ë³ÌÐò £¬ÓÃÓÚÍøÂçÄ¿µÄÏµÍ³ÍøÂçÅþÁ¬ £¬ÎļþϵͳµÈÐÅÏ¢ £¬»¹¿ÉÒÔÇÔÈ¡iMessageSkype¼ôÌù°åµÈÓ¦ÓõÄÃô¸ÐÐÅÏ¢ £¬Í¬Ê±»¹¿ÉÒÔ¼üÅ̼ͼ £¬½ØÆÁ £¬·­¿ªÉãÏñÍ·µÈ ¡£
  • core-win32:windowsƽ̨ľÂí £¬Ö÷Òª¹¦Ð§°üÀ¨£º1.ÇÔÈ¡Ö÷Á÷ä¯ÀÀÆ÷ÈçChrome¡¢FireFoxºÍIE µÄCookiesµÈÐÅÏ¢2.¶ÔÓû§GMail¡¢Outlook¡¢Facebook¡¢Twitter¡¢MSN¡¢Skype¡¢ICQ¡¢Yahoo¡¢Google Talk¡¢Mozilla ThunderbirdµÈʹÓþÙÐÐ¼à¿Ø £¬ÍøÂçÏà¹ØÐÅÏ¢ÍøÂçÈ磺ÕʺÅÐÅÏ¢¡¢Ïà¹ØÁªÏµÈËÐÅÏ¢µÈ ¡£¼à¿ØµÄMSN°æ±¾´Ó6.0µ½2011 £¬Yahoo Messager°æ±¾´Ó7.xµ½10.x £¬ICQ Messenger v7.x 3.¶ÔÂó¿Ë·çºÍÉãÏñÍ·¾ÙÐÐ¼à¿Ø
  • core-win64:ºÍcore-win32¶ÔÓ¦ £¬Í¬ÑùÊÇwindowsƽ̨ľÂí £¬µ«ÏîĿֻÊǰüÀ¨ÁË64Î»ÏµÍ³ÌØÓеÄapi hook¿ò¼Ü.
  • soldier-win:windowsƽ̨ľÂí £¬¹¦Ð§°üÀ¨£º»ñȡĿµÄÅÌËã»ú»ù±¾ÐÅÏ¢ÇÔÈ¡ä¯ÀÀÆ÷chrome¡¢firefox¡¢IEÃÜÂëºÍcookiesÇÔÈ¡facebook¡¢gmail¡¢twitter¡¢YahooÏà¹ØÐÅÏ¢ÆÁÄ»¼à¿Ø¡¢ÉãÏñÍ·¼à¿ØµÈ
  • scout-win:windowsƽ̨ľÂí £¬¹¦Ð§Ïà¶Ô¼òÆÓ£ºscreenshot¡¢»ñȡĿµÄÅÌËã»úµÄ»ù±¾ÐÅÏ¢È磺CPU £¬ÄÚ´æ £¬Óû§ÃûµÈÐÅÏ¢ ¡£¾ßÓÐÉÙÁ¿¼òÆÓµÄ·´¼ì²â»úÖÆ £¬ÈçAntiVM¡¢¶¯Ì¬»ñÈ¡APIµØµã¡¢ºÚÃûµ¥µÈ ¡£×ÓÏîÄ¿VMProtectDumperÊÇÕë¶Ôijһ°æ±¾VMProtectµÄÍѿǻú

¸¨ÖúÈëÇÖ¹¦Ð§

ΪÁËÔÚtargetÉÏ×°ÖÃÊܿضËÈí¼þ²¢»ñÈ¡Ö÷»ú¿ØÖÆÈ¨ £¬ÉÐÓÐÌṩÁËһЩÐëÒªµÄ¹¦Ð§

  • driver-macos:°üÀ¨Ò»¸ö Mac OS X ƽ̨µÄÄں˼¶ Rootkit  £¬¾ßÓÐÓû§Àú³ÌÒþ²Ø £¬ÎļþϵͳÒþ²ØµÈ¹¦Ð§ £¬»¹¿ÉÒÔ hook ϵͳŲÓà £¬ mach_trap_table  £¬²¢ÊµÊ±×·×ÙÓû§¿Õ¼äºóÃŵÄÔËÐÐ״̬ ¡£
  • core-packer:ÓÃÓÚWindows ƽ̨ PE ¿ÉÖ´ÐÐÎļþµÄ¼Ó¿Ç¼ÓÃÜ»ìÏý³ÌÐò ¡£
  • core-android-market:Ó¦¸ÃÊǰ²×¿ÏµÄÀàËÆÍÆËÍÐÂÎŵÄÓ¦Óà £¬°üÀ¨Ò»¸öÃûΪorg.benews.BeNewsµÄ°²×¿¶ËµÄapkÓ¦ÓúÍÍâµØÔËÐеÄserver £¬Í¨Ñ¶Êý¾ÝΪbsonÃûÌà ¡£apkÓ¦ÓþßÓÐ×ÔÆô¶¯¹¦Ð§ £¬»áÆô¶¯ÍÆËÍ·þÎñ
  • core-android-native:׿Ïà¹ØÊ¹Óù¤¾ßµÄÜöÝÍ £¬°üÀ¨ÁËËùÓа²×¿4.1°æ±¾ÒÔǰµÄʹÓù¤¾ß £¬°üÀ¨ÁËput_user_exploit¡¢towelrootÖеÄʹÓù¤¾ß¡¢selinuxµÄʹÓù¤¾ßµÈ
  • vector-ipa:ipaÊÇ Injection Proxy Appliance µÄËõд Injection Proxy ApplianceÊÇRCSϵͳһ²¿·Ö ¡£

    • RCS Injection Proxy Appliance (RCS IPA)ÊÇÓÃÓÚ¹¥»÷µÄÇå¾²×°±¸ £¬Ê¹ÓÃÖÐÐÄÈ˹¥»÷ÊÖÒÕºÍstreamline injection»úÖÆ £¬Ëü¿ÉÒÔÔÚ²î±ðµÄÍøÂçÇéÐÎÏÂ͸Ã÷µØ¾ÙÐвÙ×÷ £¬ÎÞÂÛÊÇÔÚ¾ÖÓòÍøÕÕ¾ÉÄÚ²¿½»Á÷»úÉÏ ¡£
    • IPA ¿É´Ó¼à¿ØµÄÍøÂçÁ÷Á¿Öмì²âHTTPÅþÁ¬ £¬¾ÙÐÐÖÐÐÄÈ˹¥»÷ £¬Ö÷ÒªÓÐÈýÖÖ¹¥»÷·½·¨:×¢ÈëEXE ×¢ÈëhtmlºÍÌæ»»¹¥»÷ ¡£µ±¼à¿ØµÄHTTPÅþÁ¬ÖÀÖÐÔ¤ÏÈÉèÖõĹæÔòʱ £¬IPA ½«Ö´ÐÐ×¢Èë¹¥»÷ ¡£IPA ¿ÉÒÔÉèÖÃÐèҪעÈëµÄÓû§(ÈçIPµØµã) £¬×ÊÔ´(Èç¿ÉÖ´ÐÐÎļþ)µÈ¹æÔò ¡£
  • driver-win32:core-win32¶ÔÓ¦µÄÄÚºËÇý¶¯Ä£¿é £¬Ìṩ¹¦Ð§ÖîÈ磺ȨÏÞÌáÉý¡¢²Ù×÷Ãô¸Ð×¢²á±í¡¢»Ö¸´SSDTµÈ ¡£

  • driver-win64:Ïà¶Ô32λ°æ±¾µÄÇý¶¯ £¬Ö»ÊÇ×¢Ê͵ôÁËÐí¶à¹¦Ð§´úÂë ¡£

  • vector-silent:ľÂí¸¨Öú³ÌÐò£ºDropperºÍdepacker

  • vector-applet:Ó¦¸ÃÊÇÓÃÓÚ¹ÒÂíµÄJava applet ¡£Ê¹ÓõÄÓпÉÄÜÊÇδ֪Îó²î £¬Îó²îÔÚtwostageºÍweaponizedÎļþ¼ÐϵÄreadmeÖÐÓÍÐÎò £¬¡±Í¨¹ýXMLDecoder»ñȡһ¸öBridgeʵÀýµÄÒýÓà £¬´Ó¶øµ¼ÖÂÒ»¸öÀà»ìÏý¡± ¡£

  • vector-edk:Intel UEFI£¨Í³Ò»¿ÉÀ©Õ¹¹Ì¼þ½Ó¿Ú£©BIOSºóÃÅÖ²È빤¾ß

  • vector-offline2:ÀëÏß×°ÖÃRCS¹¤¾ß°ü £¬¿ÉÔÚÎïÀí½Ó´¥Ê±Ö²ÈëRCSºóÃÅ ¡£ ¿É½«ÀëÏß×°Öù¤¾ß¿Ì¼ÔÚCD-DVD/USBµÈ¿ÉÖ¸µ¼½éÖÊÉÏ £¬µ±¿ÉÎïÆÊÎö¼ûµ½ÅÌËã»úϵͳʱ £¬¿ÉʹÓøýéÖÊÆô¶¯ÏµÍ³ £¬½«ºóÃÅÖ±½ÓÖ²ÈëÅÌËã»úÖеIJÙ×÷ϵͳÖÐ ¡£ÏÖÔÚÖ§³Ö¶ÔLinux/OS X/WindowsϵͳµÄÀëÏß×°Öà ¡£ÌṩÁËÓѺõÄͼÐνçÃæ £¬¿É×Ô¶¯Ê¶±ðÅÌËã»úÉϱ£´æµÄ²î±ð²Ù×÷ϵͳ £¬²¢¿Éʶ±ðÿ¸ö²Ù×÷ϵͳÉϱ£´æµÄÓû§ £¬È»ºó¿ÉÕë¶Ô²î±ðÓû§»®·ÖÖ²Èë²î±ðÀàÐ͵ĺóÃÅ ¡£
  • vector-offline:Windows°æµÄÀëÏß×°Öù¤¾ßÔ´Âë ¡£
  • vector-recover:Ò»¸öWindows°æµÄÏÂÔØÆ÷ ¡£ÏÂÔØÆ÷×Ô¼º»áÐÞ¸Äͼ±êºÍ°æ±¾ÐÅÏ¢ £¬½«×Ô¼ºÎ±×°³É¶«Ö¥µÄÀ¶ÑÀÖúÊÖ¹¤¾ß:btassist.exe ¡£ÏÂÔØÆ÷×Ô¼º»áÑ­»·»á¼ûÁ½¸öµØµãµÄÀο¿URL:GET /gh/3735928545/deadbee2ÅжÏÏÂÔØÊý¾ÝµÄǰ32×Ö½ÚÊÇ·ñÊÇ¡±3j9WmmDgBqyU270FTid3719g64bP4s52¡å £¬ÈôÊÇÊǵϰ»á´ÓµÚ33×Ö½Ú×îÏÈÉúÑĺóÐøÊý¾Ý¹âÔÝʱĿ¼ÏµÄmsupd64.exeÎļþÖÐ £¬È»ºóÖ´ÐиÃÎļþ ¡£
  • vector-rmi:Ò»¸ö·¢ËÍWAP PUSHÐÅÏ¢µÄÏÂÁîÐй¤¾ß £¬¿ÉÒÔ½«Á´½ÓÒÔ¶ÌÐÅÐÎʽ·¢Ë͵½Ö§³ÖWAP PUSH¹¦Ð§µÄÊÖ»úÉÏ ¡£¿É×Ô½ç˵ÖݪֲÎÊý ¡£

Hacking Team RCSÈëÇÖÊÖ¶Î

Hacking Team RCSÈí¼þÈëÇÖÄ¿µÄ £¬Ö÷Ҫͨ¹ýÈçÏÂÈýÖÖ·½·¨£º

Ñ¬È¾ÒÆ¶¯½éÖÊ

ÓëÐí¶àľÂí¡¢²¡¶¾¼°Á÷Ã¥Èí¼þµÄÈö²¥·½·¨Ò»Ñù £¬¸ÃÈí¼þÊ×ÏÈÕվɽÓÄÉÕâÖֵͱ¾Ç®µÄ·½·¨¾ÙÐÐ £¬Ñ¬È¾Ò»Ð©Äܹ»½Ó´¥Ä¿µÄµÄÒÆ¶¯Ã½Ìå £¬ºÃ±ÈCD-ROM¡¢USBµÈ £¬¼´¼´ÊÇOS »òÕßBIOSÉèÖÃÁËÃÜÂëÒ²Ò»Ñù¿ÉÒÔѬȾ £¬´Ó¶ø»ñȡһЩÇéÐÎÊý¾Ý £¬ºÃ±ÈµçÄÔÊÇ·ñ¿ÉÒÔÉÏÍøµÈ £¬ÎªºóÐøµÄÐж¯Ìṩ²Î¿¼ÒÀ¾Ý ¡£

ÊðÀí¹¥»÷

½ÓÄÉÈí¼þ»òÓ²¼þµÄϵͳ £¬Äܹ»ÔÚÍøÂç»á»°Àú³ÌÖÐÐ޸ĺÍ×¢ÈëÊý¾Ý £¬ÔÚijЩÇéÐÎÏ £¬¿ÉÒÔ×¢È뵽ϵͳ²¢ÄÑÒÔ±»¼ì²âµ½ ¡£Í¬Ê± £¬Ò²Äܹ»Ñ¬È¾Windowsƽ̨ÉϵĿÉÖ´ÐÐÎļþ £¬ÈôÊÇÄ¿µÄµçÄÔ´ÓÍøÕ¾ÉÏÏÂÔØ²¢Ö´ÐÐÕâЩ¿ÉÖ´ÐÐÎļþʱ £¬Agent½«ÔÚºǫ́×Ô¶¯×°Öà £¬Óû§²»»áÖªÏþ ¡£

APT

ÈçÉÏÁ½ÖÖ·½·¨¶¼ÎÞ·¨×àЧµÄʱ¼ä £¬¾Í»á½ÓÄɶàÖÖÐÎʽ×éºÏÈëÇÖ £¬½ÓÄÉÏà¹ØµÄÎó²î¡¢ÈëÇÖ¹¤¾ß¼°¸ü¶àʹÓÃÊÖ¶Î £¬ÏêϸµÄÆÊÎö¼°·À»¤¼Æ»® £¬ÔÚºóÐøµÄ±¨¸æÖзºÆð ¡£

Hacking Team RCSÐÅÏ¢ÉÏ´«

ÓÃÓÚËѼ¯¿Í»§¶ËËѼ¯ÐÅÏ¢µÄÉÏ´«Í¨µÀ £¬ÊÇÒ»¸öÇ¿¼ÓÃܺÍÐèÒªÈÏÖ¤µÄͨѶÀú³Ì £¬Í¬Ê±Õû¸öÉÏ´«Í¨µÀµÄÉè¼ÆÊÇ»ùÓÚÖØ´óÍøÂçÇéÐεÄ £¬Ë¼Á¿µ½·À»ðǽ¡¢´øÓÐÓòÈÏÖ¤¹¦Ð§µÄÊðÀíµÈµÈ £¬»áͨ¹ýÄ£ÄâÒ»¸öÕý³£Óû§ä¯ÀÀwebµÄÀú³ÌÀ´¾ÙÐÐÕâһЩ²Ù×÷ ¡£

ÐÅÏ¢ËѼ¯¹¦Ð§ÊÇͨ¹ýCollection NodeÀ´Íê³ÉµÄ¿Í»§¶ËÉÏ´«ÐÅÏ¢µÄËѼ¯ £¬²¢ÇÒÔÊÐí¿Í»§¶Ë´Ó·þÎñÆ÷ÉÏÏÂÔØÐµÄÉèÖúͲå¼þ £¬Õâ¸ö½ÚµãÊÇͨ¹ýÌṩASP·þÎñÍê³É½»»¥µÄ ¡£Õâ¸ö½ÚµãÊÇÕû¸ö¿ØÖÆÏµÍ³Î¨Ò»ÄÜ´ÓÍⲿ¾ÙÐлá¼ûµÄ½Úµã £¬Òò´Ë¶ÔËüµÄ± £»¤Ò²ºÜÊÇÒªº¦ £¬ºÃ±ÈʹÓ÷À»ðǽµÈ²½·¥¾ÙÐÐÒ»¶¨µÄ¸ôÀë £¬Ò²ÐèҪʹÓõ½Anonymizer Á´À´¶ÔASPÕæÊµµÄIPµØµã¾ÙÐÐÒþ²Ø ¡£

RSSM(Mobile Collection Node)×÷ΪCollection NodeµÄÒ»¸öÔö²¹ £¬Í¨¹ýÀ¶ÑÀµÈÊÖ¶ÎÍê³ÉCollection NodeµÄ¹¦Ð§ £¬²¢ÇҸýڵãÒ²»áºÍCollection NodeÍê³Éͬ²½µÄÀú³Ì ¡£

ÍþвÇ鱨


´ÓÏÖÔÚ´Ë´ÎHacking Teamй¶ÊÂÎñÇéÐÎÀ´¿´ £¬ÆäÔì³ÉµÄ·´Ó¦ÓÌÈç˹ÂåµÇ¼°Î¬»ù½âÃÜÊÂÎñµÄÓ°Ïì £¬Òªº¦ÔÚÓÚ¾¡¿ÉÄÜ¿ìµÄÏàʶµ½Ïà¹ØµÄÇ鱨 £¬ÒԱ㾡¿ÉÄÜ¿ìµÄÆô¶¯Ó¦¼±ÏìÓ¦»úÖÆ ¡£ÍþвÇ鱨µÄ»ñÈ¡¼°ÏìÓ¦¶¼ÌåÏÖÁË·ÀÓùÄÜÁ¦µÄ½¨Éèˮƽ £¬ÍþвÇ鱨·þÎñϵͳÖÁÉÙ°üÀ¨ÁËÍþв¼à²â¼°ÏìÓ¦¡¢Êý¾ÝÆÊÎö¼°ÕûÀí¡¢ÓªÒµÇ鱨¼°½»¸¶¡¢Î£º¦ÆÀ¹À¼°×Éѯ¡¢Çå¾²Íйܼ°Ó¦Óõȸ÷¸ö·½Ãæ £¬Éæ¼°Ñо¿¡¢²úÆ·¡¢·þÎñ¡¢ÔËÓª¼°ÓªÏúµÄ¸÷¸ö»·½Ú £¬AG¹«Ë¾¿Æ¼¼Í¨¹ýÑо¿¡¢Ôƶˡ¢²úÆ·¡¢·þÎñµÈÁ¢ÌåµÄÓ¦¼±ÏìӦϵͳ £¬ÏòÆóÒµºÍ×é֯ʵʱÌṩÍþвÇ鱨 £¬²¢Ò»Á¬¶Ô¶ÔÄäÃûÕß¹¥»÷ÊÂÎñ¾ÙÐйØ×¢ £¬°ü¹Ü¿Í»§ÓªÒµµÄ˳³©ÔËÐÐ ¡£

ÈôÊÇÄú¶ÔÎÒÃÇÌṩµÄÄÚÈÝÓÐÈκÎÒÉÎÊ £¬»òÕßÐèÒªÏàʶ¸ü¶àµÄÐÅÏ¢ £¬¿ÉÒÔËæÊ±Í¨¹ýÔÚ΢²©¡¢Î¢ÐÅÖÐËÑË÷AG¹«Ë¾¿Æ¼¼ÁªÏµAG¹«Ë¾ £¬½Ó´ýÄúµÄ´¹Ñ¯£¡

2


ÍþвÇ鱨ÏÂÔØ

¼òÒªÆÊÎö:Hacking Team Ô¶³Ì¿ØÖÆÏµÍ³


?

ÄúµÄÁªÏµ·½·¨

*ÐÕÃû
*µ¥Î»Ãû³Æ
*ÁªÏµ·½·¨
*ÑéÖ¤Âë AG¹«Ë¾(Öйú¼¯ÍÅ)¡¤ÓÐÏÞ¹«Ë¾¹ÙÍø
Ìá½»µ½ÓÊÏä

¹ºÖÃÈÈÏß

  • ¹ºÖÃ×Éѯ:

    400-818-6868-1

Ìá½»ÏîÄ¿ÐèÇó

½Ó´ý¼ÓÈëAG¹«Ë¾¿Æ¼¼ £¬³ÉΪÎÒÃǵÄÏàÖúͬ°é£¡
  • *ÇëÐÎòÄúµÄÐèÇó
  • *×îÖÕ¿Í»§Ãû³Æ
  • *ÏîÄ¿Ãû³Æ
  • Äú¸ÐÐËȤµÄ²úÆ·
  • ÏîĿԤËã
ÄúµÄÁªÏµ·½·¨
  • *ÐÕÃû
  • *ÁªÏµµç»°
  • *ÓÊÏä
  • *Ö°Îñ
  • *¹«Ë¾
  • *¶¼»á
  • *ÐÐÒµ
  • *ÑéÖ¤Âë AG¹«Ë¾(Öйú¼¯ÍÅ)¡¤ÓÐÏÞ¹«Ë¾¹ÙÍø
  • Ìá½»µ½ÓÊÏä
AG¹«Ë¾(Öйú¼¯ÍÅ)¡¤ÓÐÏÞ¹«Ë¾¹ÙÍø
AG¹«Ë¾(Öйú¼¯ÍÅ)¡¤ÓÐÏÞ¹«Ë¾¹ÙÍø

·þÎñÖ§³Ö

ÖÇÄܿͷþ
ÖÇÄܿͷþ
¹ºÖÃ/ÊÛºóÊÖÒÕÎÊÌâ
Ã˹ܼÒ-ÊÛºó·þÎñϵͳ
Ã˹ܼÒ-ÊÛºó·þÎñϵͳ
ÔÚÏßÌáµ¥|ÖÇÄÜÎÊ´ð|֪ʶ¿â
Ö§³ÖÈÈÏß
Ö§³ÖÈÈÏß
400-818-6868
AG¹«Ë¾¿Æ¼¼ÉçÇø
AG¹«Ë¾¿Æ¼¼ÉçÇø
×ÊÁÏÏÂÔØ|ÔÚÏßÎÊ´ð|ÊÖÒÕ½»Á÷
΢²©
΢²©

΢²©

΢ÐÅ
΢ÐÅ

΢ÐÅ

BÕ¾
BÕ¾

BÕ¾

¶¶Òô
¶¶Òô

¶¶Òô

ÊÓÆµºÅ
ÊÓÆµºÅ

ÊÓÆµºÅ

·þÎñÈÈÏß

400-818-6868

·þÎñʱ¼ä

7*24Сʱ

? 2026 NSFOCUS AG¹«Ë¾¿Æ¼¼ www.nsfocus.com All Rights Reserved . ¾©¹«Íø°²±¸ 11010802021605ºÅ ¾©ICP±¸14004349ºÅ ¾©ICPÖ¤110355ºÅ

ÍøÕ¾µØÍ¼