How Hong Kong Protesters Are Connecting, Without Cell Or Wi-Fi Networks : All Tech Considered Pro-democracy protesters are downloading a fast-growing app called FireChat to stay in touch. It has been used around the world during political unrest.
CVE-2014-6271ãçºç«¯ã¨ãã bash ã®èå¼±æ§ããããã ShellShock ã£ã¦å¼ã°ãã¦ãã奴ãç°å¢å¤æ°ã«ä»è¾¼ãã ä»»æã®ã³ãã³ããå®è¡ã§ãã¦ãã¾ãã£ã¦ãã¨ãããCGI ã¨ã®çµã¿åãããåãæ²æ±°ããã¦ããã ãã®é sudo ã®è¨å®ã®åå¼·ããã¦ããã®ã§ããµã¨æ°ã«ãªã£ãã®ããsudoã®è¨å®ã§ç°å¢å¤æ°ãæã¡è¶ãã¦ä½¿ç¨ãããã¨ãã§ãã env_keep ã®è¨å®ãsudo 㧠root ã¨ãã¦bashãå®è¡ãããã°ãä»»æã®ã³ãã³ããç¹æ¨©ææ ¼ãã¦å®è¡ã§ãã¡ãããããï¼ ã¨ãããã®ã æ©é試ãã¦ã¿ãã æ®éã«å®è¡ãããã® $ export ORACLE_SID='() { :;}; echo Vulnerability !!!' $ cat /usr/local/bin/testcmd #!/bin/bash -x id printenv ORACLE_SID $ /usr/local/
â»(2014/10/1 追è¨) èå¼±æ§ã®çªå·ã誤ã£ã¦ CVE-2014-6721 ã¨è¡¨è¨ãã¦ãã¾ã£ã¦ãã¾ãã æ£ãã㯠"CVE-2014-6271" ã§ã 失礼è´ãã¾ãã â»(2014/10/7 追è¨) 2014/10/7 14:00æç¹ã§ Shell Shock ã¸ã®ä¿®æ£ãããã¯6å å ¬éããã¦ãã¾ã æ¢ã«å¯¾å¿æ¸ã¿ã®ã·ã¹ãã ã§ããããã®æ¼ãããªãã注æãã¦ãã ãã ã·ã§ã«ã«èå¼±æ§ãè¦ã¤ãã£ããããã§ã ãã®ã³ãã³ããå®è¡ããã¨èå¼±æ§ããããã¼ã¸ã§ã³ãã®ãã§ãã¯ãã§ããããã§ã $ env x='() { :;}; echo vulnerable' bash -c "echo this is a test" 以ä¸ã®ããã«è¡¨ç¤ºããããã¢ã¦ãã§ã vulnerable this is a test ã©ãããããã®ã³ãã³ããæ£å¸¸ã«å®è¡ã§ããã¨ããã®ããã®èå¼±æ§ã®æ£ä½ãããã echo vuln
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}