8æ3æ¥ã®Blackhat 2016ã§çºè¡¨ããããHTTPSã®URLãèªããã¨ããWPAD/PAC Attack1ããªãã»ã©ãããã¨æãããã¢ã¿ãã¯ã§ããªã HTTPSèªèº«ãæ»æãããããããªãã¦ãHTTPSã®hostã«å¯¾ããproxy resolveã®æã«ãPACãã¡ã¤ã«ã使ã£ã¦URLã®å 容ããã£ã«ã¿ãªã³ã°ãã¦æ»æè ã®ãã¹ãã«éãã¨ããããå£ã æ¯åproxy resolveãèµ°ããã©ã¦ã¶ï¼ä¾ï¼Firefox, Chromeï¼ã¨ããã§ãªããã©ã¦ã¶ããã£ã¦ãå¾è ã ã¨ãã¾ãæ»æã¯æåããªãããFirefoxãChromeãªã©ã§ã¯å¹æçããã ããLANã®Proxyè¨å®ãªã©ã§ããè¨å®ãèªåçã«æ¤åºãããããªã³ã«ãªã£ã¦ããªããã°ãªããªããã§ãããã¯ãä¼æ¥ã·ã¹ãã ãªã©ã§ã¯å²ãã¨ONã«ãªã£ã¦ãããã¨ãå¤ãã®ã§ã¯ãªãã ãããã
{{#tags}}- {{label}}
{{/tags}}