Android StrandHoggÎó²îÇ徲ͨ¸æ
Ðû²¼Ê±¼ä 2019-12-04Îó²î±àºÅºÍ¼¶±ð
CVE±àºÅ£ºÔÝÎÞ£¬£¬£¬£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬£¬£¬£¬£¬£¬£¬£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨
Ó°Ïì°æ±¾
ËùÓÐAndroid°æ±¾£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨Android10*
Îó²î¸ÅÊö
¿ËÈÕ£¬£¬£¬£¬£¬£¬£¬£¬Å²ÍþרҵӦÓÃÇå¾²±£»£»£»£»£»¤¹«Ë¾PromonµÄÇå¾²Ñо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬£¬£¬£¬ËûÃÇ·¢Ã÷ÁËAndroid²Ù×÷ϵͳÖеÄÒ»¸öÎó²î£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÎó²îʹ¶ñÒâÓ¦ÓÿÉÒÔÐ®ÖÆÕýµ±³ÌÐò£¬£¬£¬£¬£¬£¬£¬£¬´Ó¶øÊ¹ºÚ¿Í¿ÉÒÔ»á¼û˽È˶ÌÐźÍÕÕÆ¬£¬£¬£¬£¬£¬£¬£¬£¬ÇÔÈ¡Êܺ¦ÕߵĵǼƾ֤£¬£¬£¬£¬£¬£¬£¬£¬¸ú×ÙλÖûò¼Í¼µç»°¶Ô»°£¬£¬£¬£¬£¬£¬£¬£¬ÉõÖÁ¿ÉÒÔͨ¹ýÊÖ»úÉãÏñÍ·ºÍÂó¿Ë·ç¾ÙÐмàÊÓ¡£¡£¡£¡£ËûÃǽ«¸ÃÎó²îÃüÃûΪStrandHogg£¬£¬£¬£¬£¬£¬£¬£¬ÕâÊDZ±Å·È˵ÄÒ»ÖÖ±±Å·º£µÁÕ½Êõ£¬£¬£¬£¬£¬£¬£¬£¬Ï®»÷ÑØº£µØÇøÂÓ¶á²¢¿ÛѺÊê½ð¡£¡£¡£¡£
StrandHogg¹¥»÷²»ÐèÒªroot»á¼ûȨÏÞ¼´¿ÉÔËÐУ¬£¬£¬£¬£¬£¬£¬£¬ÏÖÔÚÒѾÓÐÖÁÉÙ36¸öʹÓôËÎó²îµÄ¶ñÒâÓ¦Ó㬣¬£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨×îÔçÔÚ2017ÄêÊӲ쵽µÄBankBotÒøÐÐľÂíµÄ±äÖÖ¡£¡£¡£¡£Õâ36¸öÓ¦ÓóÌÐòÒÑ×÷ΪµÚ¶þ½×¶ÎµÄÓÐÓøºÔØ×°ÖÃÔÚÓû§µÄ×°±¸ÉÏ¡£¡£¡£¡£Óû§×î³õ´ÓPlayÊÐËÁ×°ÖÃÁËÆäËû¶ñÒâÓ¦ÓóÌÐò£¬£¬£¬£¬£¬£¬£¬£¬È»ºóÓÖÏÂÔØÁËÊÜStrandHoggѬȾµÄÓ¦ÓóÌÐò£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¾ÙÐиü¾ßÇÖÈëÐԵĹ¥»÷¡£¡£¡£¡£
PromonÑо¿Ö°Ô±»¹²âÊÔÁËGoogle PlayÊÐËÁÖпÉÓõÄǰ500¸ö×îÊ¢ÐеÄAndroidÓ¦ÓóÌÐò£¬£¬£¬£¬£¬£¬£¬£¬·¢Ã÷¿ÉÒÔͨ¹ýStrandHogg¹¥»÷Ð®ÖÆËùÓÐÓ¦ÓóÌÐòµÄÀú³ÌÒÔÖ´ÐжñÒâ²Ù×÷¡£¡£¡£¡£
Îó²îÑéÖ¤
ÔÚÍâòÉÏ£¬£¬£¬£¬£¬£¬£¬£¬StrandHoggÊÇAndroid²Ù×÷ϵͳ´¦Öóͷ£ÔÚ´¦Öóͷ£²î±ð²Ù×÷»òÓ¦ÓóÌÐòµÄʹÃü£¨Àú³Ì£©Ö®¼äÇл»µÄ·½·¨ÖеĹýʧ¡£¡£¡£¡£¸üÏêϸµØËµ£¬£¬£¬£¬£¬£¬£¬£¬StrandHoggÊÇOS×é¼þÖеÄÒ»¸ö¹ýʧ£¬£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚ´¦Öóͷ£¶àʹÃü£¬£¬£¬£¬£¬£¬£¬£¬ÕâÖÖ»úÖÆÊ¹Android²Ù×÷ϵͳ¿ÉÒÔÒ»´ÎÔËÐжà¸öÀú³Ì£¬£¬£¬£¬£¬£¬£¬£¬²¢ÔÚÓ¦ÓóÌÐò½øÈë»òÍ˳öÓû§ÊÓͼ£¨ÆÁÄ»£©Ê±ÔÚËüÃÇÖ®¼äÇл»¡£¡£¡£¡£µ±Óû§Æô¶¯ÁíÒ»¸öÓ¦ÓóÌÐòʱ£¬£¬£¬£¬£¬£¬£¬£¬Í¨¹ý³ÆÎª¡°Ê¹ÃüÖØ×ö¡±µÄ¹¦Ð§£¬£¬£¬£¬£¬£¬£¬£¬×°ÖÃÔÚAndroidÖÇÄÜÊÖ»úÉϵĶñÒâÓ¦ÓóÌÐò¿ÉÒÔʹÓÃStrandHogg¹ýʧ´¥·¢¶ñÒâ´úÂë¡£¡£¡£¡£
¹¥»÷Õßͨ¹ý¸ÃÎó²î£¬£¬£¬£¬£¬£¬£¬£¬ÇëÇó»ñȡӦÓÃȨÏÞ£¬£¬£¬£¬£¬£¬£¬£¬»òÕß¹¥»÷ÕßʹÓÃÀàËÆ¡°½çÃæÐ®ÖÆ¡±µÄ·½·¨£¬£¬£¬£¬£¬£¬£¬£¬µ¯³ö´¹ÂÚ½çÃæÈÃÄãÊäÈëÕË»§ÃÜÂ룬£¬£¬£¬£¬£¬£¬£¬»òÕßÒ»Ö±¸øÄ㵯½çÃæ£¬£¬£¬£¬£¬£¬£¬£¬ÈÃÄãÍ˲»³öÈ¥£¬£¬£¬£¬£¬£¬£¬£¬´Ó¶øÊµÑéÀÕË÷Ç®²Æ¡£¡£¡£¡£
Îó²îÑÝʾÊÓÆµ£ºhttps://promon.co/security-news/strandhogg/¡£¡£¡£¡£
ÐÞ¸´½¨Òé
ÏÖÔÚ³§ÉÌûÓÐÐû²¼Îó²î²¹¶¡£¬£¬£¬£¬£¬£¬£¬£¬²»Òª×°ÖÃȪԴ²»Ã÷µÄAPP¡£¡£¡£¡£
²Î¿¼Á´½Ó
https://promon.co/security-news/strandhogg/


¾©¹«Íø°²±¸11010802024551ºÅ