Ò»¡¢¼ò½é
Fuzzing(Ä£ºý²âÊÔ)ÊÇÒ»ÖÖÓÃÓÚʶ±ðÈí¼þbugÒÔ¼°Â©¶´µÄ·½·¨¡£¾ÍĿǰµÄ·¢Õ¹Ç÷ÊÆÀ´ËµFuzzingÕýÏò×ÅÔÆ¶ËÂõ½ø£¬Ïà½ÏÓÚ´«Í³Fuzzing·½Ê½£¬ÔƶËFuzzingʹµÃÄ£ºý²âÊÔËٶȼӿìÒ²¸ü¼ÓÁé»î¡£ÔÚ±¾½Ì³ÌÖУ¬ÎÒÃǽ«ÓëÄãһͬ×ßÍêÔÆ¶ËÄ£ºý²âÊÔµÄÈ«¹ý³Ì(¼´²¿Êð£¬FuzzingÒÔ¼°Ê¹ÓÃsoftScheck
Cloud Fuzzing Framework (sCFF)¿ò¼Ü¼ìË÷½á¹û)¡£ÎÒÃǽ«ÒÔÔËÐÐÔÚUbuntu
16.04ÉϵÄtcpdump4.9°æ±¾ÎªÀý½øÐÐÑÝʾ£¬¶ÁÕß¿ÉÏÂÔØsCFF¿ò¼Ü£¬ºÍÎÒÃÇÒ»Í¬ÍæË£¡£
¶þ¡¢±³¾°ÖªÊ¶
µÚÒ»Õ½ڽ«½²½âÔÚʹÓùý³ÌÖлáÓöµ½µÄһЩ»ù´¡ÎÊÌâ¡£µ±È»£¬Èç¹ûÄã¶ÔÔÆ¶ËÄ£ºý²âÊÔÓÐÒ»¶¨¾Ñé»òÕß¶ÔÕâЩ»ù´¡ÎÊÌâ×ã¹»Á˽âµÄÇé¿öÏ¿ÉÒÔÌø¹ý±¾Õ½ڡ£´ËÍ⣬ÎÒÃÇÇ¿ÁÒ½¨Òé´ÓÉϵ½ÏÂÒÀ´ÎÔĶÁ±¾ÎÄ£¬×ÓÕ½ڿÉÄÜÓÐЩ¼ò¶Ì£¬µ«ÊǶ¼»áÌṩ´ó¼Ò½øÒ»²½Á˽âÏêÇéµÄ´«ËÍÃÅ¡£
1. Fuzzing
FuzzingÊÇÒ»ÏîÓÃÓÚÈí¼þÇ¿¶È²âÊԵļ¼Êõ¡£ÆäºËÐÄ˼ÏëÊÇ×Ô¶¯»ò°ë×Ô¶¯µÄÉú³ÉËæ»úÊý¾ÝÊäÈëµ½Ò»¸ö³ÌÐòÖУ¬²¢¼à¿ØÄ¿±ê³ÌÐòÒì³££¬Èç±ÀÀ££¬¶ÏÑÔ(assertion)ʧ°Ü£¬ÒÔ·¢ÏÖ¿ÉÄܵijÌÐò´íÎ󣬱ÈÈçÄÚ´æÐ¹Â©¡£
ÕâЩÒì³£´ó¶àÊý¶¼ÊÇÈí¼þ©¶´£¬¾Ñé·á¸»µÄ¹¥»÷ÕßÍêÈ«¿ÉÒÔ½øÐÐÀûÓá£ÓÉÓÚÆä×Ô¶¯»¯ÌØÐÔÒÔ¼°¿ÉÒÔÓ¦ÓÃÓÚËùÓÐÈí¼þÖУ¬Fuzzing³£×÷Ϊ°²È«×¨¼ÒµÄ»ù±¾×°±¸´æÔÚ¡£¾¡¹ÜÖªÏþÔ´´úÂë¿ÉÒÔ¼Ó¿ìÄ£ºý²âÊÔµÄËÙ¶È£¬µ«ÊDz¢·Ç±ØÐëµÄ¡£ÊýÊ®ÄêÀ´£¬Ä£ºý²âÊÔ¹¤¾ßÒÔ¼°Ä¿±êÓ¦Óö¼ÊÇÔÚ±¾µØ¼ÆËã»úÉÏÔËÐС£È»¶øËæ×Ÿ÷ÖÖÔÆ¼ÆËã·þÎñÉÌÐËÆð£¬ËƺõÔÚÔÆ¶ËÔËÐÐÄ£ºý²âÊÔ¹¤¾ßÒ²ÊǸö²»´íµÄÑ¡Ôñ¡£ÊÂʵÉÏÏñ΢Èí£¬¹È¸èµÈ´óÐ͹«Ë¾ÒѾʵÏÖÔÚÔÆ¶Ë½øÐÐÄ£ºý²âÊÔÁË¡£ÔÚÔÆ¶ËÄ£ºý²âÊÔ·½Ã棬΢Èí»¹ÒªÁìÏÈÒ»²½£¬ÆäSpringfieldÏîÄ¿ÉõÖÁ»¹Ïò¿ª·¢ÕßÌá¹©ÔÆ¶ËÄ£ºý²âÊÔ·þÎñ¡£
Ïà¶ÔÓÚ´«Í³Ä£ºý²âÊÔ£¬ÔƶËÄ£ºý²âÊÔÓÐÄÄЩÓŵãÄØ?Ê×ÏÈÄã²»ÐèÒª¶îÍ⹺Âò¼ÆËã»ú£¬Ê¡Ç®£¬½ÚÊ¡¿Õ¼ä£¬²»ÐèÒª»¨¹ý¶àʱ¼äÈ¥ÉèÖû·¾³µÈµÈ£¬ÔƶËÄ£ºý²âÊÔµÄÖ÷ÒªÓÅÊÆ»¹ÊÇËüËù¾ßÓеÄÁé»îÐÔ£¬Í¬Ò»Ê±¼ä³ÌÐò¿ÉÒÔÔÚ¶à¸ö²Ù×÷ϵͳÉϽøÐвâÊÔ£¬¼ì²âÊÇ·ñ»á³öÏÖ²»Í¬±íÏÖÐÐΪ¡£Èç¹ûÒ»¸öÏîÄ¿¶ÔÊý¾ÝÍÌÍÂÁ¿ÒªÇó½Ï¸ß£¬¾Í¿ÉÒÔÀûÓÃRAID0ÕóÁÐÖеÄSSD¡£µ±Ò»¸öÓ¦ÓóÌÐòÐèÒª´óÁ¿µÄRAM£¬Ò²¿ÉÒÔÑ¡ÔñÒ»¸öÏàÓ¦µÄʵÀý¡£Èç¹ûÐèÒª²âÊÔÒ»¸öwebÓ¦ÓûòÕßÊÇÍøÂçÐÒ飬ÕâÀïÓÐÐí¶àµÍ½×ÖÕ¶Ë£¬ËùÒÔÏà¶ÔÀ´ËµÍê³ÉÈÎÎñµÄ»¨·Ñ¾ÍºÜ±ãÒË¡£
µ±È»ÕâÀïÒ²ÊÇ´æÔÚȱµãµÄ¡£Ê×ÏÈÄãµÃÏàÐÅΪÄãÌá¹©ÔÆ·þÎñµÄÉ̼ң¬ÒòΪËùÓÐÊý¾Ý¶¼ÊÇÔÚÔÆ¶ËÔËÐУ¬¶ø·ÇÄã¸öÈ˵ļÆËã»ú¡£´ËÍ⣬Äã¶àÓü¸¸öÔÂËùÐèÒªÖ§¸¶µÄ¼Û¸ñ²î²»¶àÒ²¹»Äã×Ô¼ºÔÙÂòһ̨¼ÆËã»úµÄ¼Û¸ñÁË¡£
2. Amazon AWS
Amazon Web ServicesÊÇÖ¸AmazonÌṩµÄ¸÷ÀàÔÆ¶Ë·þÎñºÏ¼¯£¬Ä¿Ç°AWSÊÇÈ«Çò×î´óµÄÒ»¼ÒÌá¹©ÔÆ¼ÆËã·þÎñµÄ¹«Ë¾¡£AWSÖÐÓÐÒ»¸öÃûΪElastic
Compute Cloud (EC2)µÄ×é¼þ£¬EC2ÔÊÐíÓû§×Ô¼ºÅäÖÃÐéÄâ»ú×÷Ϊ·þÎñÆ÷ʹÓá£ÔÚÔÆ¶Ë´´½¨µÄÕâ¸öÐéÄâ·þÎñÆ÷ʵÀý£¬ÔÚ´´½¨Ê±¾Í¿ÉÒÔÑ¡Ôñ²Ù×÷ϵͳ£¬Ô¤°²×°Èí¼þ£¬×ÊÔ´·ÖÅäµÈ¸÷ÖÖÉèÖá£ÖÁÓÚ²Ù×÷ϵͳ£¬Óû§¿ÉÒÔÒÀ¿¿AmazonÅÓ´óµÄ¾µÏñ¿âAMI½øÐÐÑ¡Ôñ£¬ÎÒÃÇ¿ÉÒÔ´ÓAmazonÌṩµÄ100ÓàÖÖ²»Í¬µÄ»úÆ÷ÅäÖÃÖÐ×ÔÓÉÑ¡Ôñ¡£Óû§Ö»ÐèÒª°´Ã¿Ð¡Ê±Ö§¸¶·ÑÓ㬵±È»ÅäÖÃÔ½¸ßÊÕ·ÑÔ½¹ó¿©!
3. softScheck Cloud Fuzzer Framework
softScheckΪÁËÈÃÄ£ºý²âÊÔ¹ý³Ì¸ü¼ÓÇáËÉ£¬Ê¹ÓÃPython 3¿ª·¢ÁËsoftScheck Cloud
Fuzzer Framework(sCFF)£¬¸Ã¿ò¼ÜʹÓÃBoto 3 APIÓëAWS½øÐÐͨÐÅ¡£sCFF×ñÑUnix·¶Ê½½«²»Í¬µÄ×Ó³ÌÐò·Ö¿ª£ºÒ»¸ö³ÌÐòרעһ¼þÊ¡£

4. American fuzzy lop
American fuzzy lop (afl)ÊÇsCFF¿ò¼ÜÖеÄÒ»¸öÄ£ºý²âÊÔ¹¤¾ß¡£ÒÔÆäËÙ¶È£¬¿É¿¿ÐÔ£¬¸´¹Å·ç¸ñµÄUIÉè¼ÆÒÔ¼°ºÕºÕÕ½¹¦¶øÎÅÃû¡£Èç¹û¿ÉÒÔ»ñµÃ²âÊÔÈí¼þµÄÔ´´úÂ룬²»½öÄÜÉú³É¸ü¼Ó¿Í¹ÛµÄÄ£ºý²âÊÔ½á¹û£¬»¹ÄÜÌá¸ß²âÊÔ¸²¸ÇÂÊ¡£±àÕß×¢£ºµ±Ç°´ó¶àÊýÔ¶³Ì´úÂëÖ´ÐкÍÌØÈ¨ÌáÉýµÈ±È½ÏÑÏÖØµÄ©¶´»ù±¾ÊÇʹÓÃFuzzing¼¼ÊõÍÚ¾òµÄ£¬È»¶øFuzzing¼¼ÊõÈÔÈ»´æÔÚן²¸ÇÂʵ͵ÄȱÏÝ¡£¶øÐí¶àµÄ´úÂë©¶´ÐèÒª¸ü´óµÄ·¾¶¸²¸ÇÂʲÅÄÜ´¥·¢£¬¶ø²»ÊÇͨ¹ý´¿´âµÄËæ»ú³¢ÊÔ¡£

5. tcpdump
TcpdumpÊÇÒ»¿îÖøÃûµÄÍøÂçÊý¾Ý°ü·ÖÎö¹¤¾ß¡£ËüÄÜץȡ£¬ÏÔʾ£¬ÒÔpcapÎļþ¸ñʽ±£´æÍøÂçÖеÄÊý¾Ý°ü£¬Ö®ºóÕâЩÊý¾Ý½«ÒÔ¸üÓѺõķ½Ê½Ìṩ¸øÊ¹ÓÃÕß¡£²»Í¬ÓÚÀÏ´ó¸çWireshark£¬TcpdumpÊÇÒ»¸ö·Ç½»»¥Ê½ÃüÁîÐгÌÐò£¬¶ÔÓÚÄ£ºý²âÊÔÀ´Ëµ¸ü¼Ó·½±ã¡£
6. GNU Debugger
GNU DeBugger (GDB),¿ÉÒÔ¶ÔÈí¼þÔËÐÐ״̬½øÐе¥²½·ÖÎö£¬¸ü¾«È·µÄÕÒ³öµ¼Ö³ÌÐò±ÀÀ£µÄÔÒò¡£Èç¹û·ÖÎöµÄÊǰüº¬µ÷ÊÔ±êÖ¾µÄ¶þ½øÖÆ´úÂ룬Äã¿ÉÒÔÖªµÀµ±Ç°³ÌÐòÕýÔÚÔËÐдúÂëµÄÄÇÒ»ÐУ¬¶ÔÓÚÐÞ¸´bugÀ´Ëµ¸ü¼ÓÇáËÉ¡£ÉõÖÁ»¹¿ÉÒÔÔÚÔËÐÐʱÐÞ¸ÄijЩ±äÁ¿µÄÖµ£¬ÓÃÒÔ¿ìËÙ¹Û²ì±äÁ¿Öµ¸Ä±äÊÇ·ñÄÜÐÞ¸´bug¡£
Èý¡¢Ê¹ÓÃsCFFÀ´¶Ôtcpdump½øÐÐÄ£ºý²âÊÔ
½éÉÜÍê±³¾°ÖªÊ¶ºó£¬½Ó׿ÌÐøÎÒÃÇÎÄÊ×Ìáµ½µÄtcpdump 4.9©¶´·¢ÏÖÖ®Âá£ÕâÒ»Õ·ÖΪÁ½¸ö²¿·Ö£¬Ê×ÏȾÍÊÇÕ½ÚÁÐ±í£¬ÕâÊÇÐèÒªÄãÔÚ¼ÌÐø±¾½Ì³Ì֮ǰÍê³ÉµÄÈÎÎñ¡£ÓÉÓÚÎÄÕÂÆª·ùµÄÏÞÖÆ£¬ÕâЩÄÚÈݲ¢Ã»ÓÐдÈëÎÄÕ£¬»¹ºÃÍøÉÏÒѾÓдóÁ¿µÄÎÄÕ½̳̿ÉÒÔʹÓá£Æä´Îº¸ÇÁËԤģºý²âÊԽ׶Σ¬Ö÷Òª½²½âÁËÔÚÕæÊÇ»·¾³Ï½øÐÐÄ£ºý²âÊÔ֮ǰӦ¸Ã×öµÄÊÂÇ飬×îºó¼´ÊÇ·¢ÏÖ©¶´ºóÄã¸ÃÔõô×ö¡£
1. ǰÆÚ¹¤×÷
Èç¹ûÄãÏëÒªÒÔÔÆ¶ËÄ£ºý²âÊԵķ½·¨ÕÒ³ötcpdumpÖдæÔڵĩ¶´£¬ÄãÊ×ÏÈÐèÒªÍê³ÉһЩ±¾½Ì³ÌÃ»Éæ¼°µ½µÄ²½Ö裬»ù±¾ÉÏÕâЩ²Ù×÷¿ÉÒÔ¹é½áΪAWSÒÔ¼°sCFF¿ò¼ÜµÄÅäÖá£Èç¹ûÄãÏëÒÔ´«Í³µÄ±¾µØÄ£ºý²âÊÔ·½·¨Ñ°ÕÒ©¶´£¬»òÕß½ö½öÖ»ÊÇÁ˽âÒ»ÏÂÔÆ¶ËÄ£ºý²âÊÔ£¬Äã¿ÉÒÔÌø¹ýÕâЩ²½Öè¡£
±ØÑ¡Ï
´´½¨Ò»¸öAWSÕ˺Å
µ¼³öAWSÃÜÔ¿IDºÍÃÜÔ¿
.aws/configÖÐÓ¦¸Ã°üº¬ÄãµÄÓòÐÅÏ¢£¬.aws/credentialsÖÐÓ¦¸Ã°üº¬ÃÜÔ¿IDºÍ·ÃÎÊÃÜÔ¿
´´½¨SSH°²È«×飬ÒÔÔÊÐíʵÀýÓëÍⲿ¶Ë¿Ú22Ö®¼ä½øÐÐͨÐÅ
´´½¨²¢ÏÂÔØÃÜÔ¿¶Ô(SSHͨÐÅÐèҪʹÓõ½ÕâЩÃÜÔ¿)
ÏÂÔØ²¢°²×°sCFF;
¿ÉÑ¡Ï
ΪÁ˽øÐÐÄ£ºý²âÊÔ£¬ ÐèÒª°²×°AFLµÄÓïÑÔ»·¾³
È·±£afl-collectÒÔ¼°GDB + exploitable pluginÒѰ²×°
2. Ԥģºý²âÊÔ½×¶Î
ǰÆÚ¹¤×÷Íê³ÉÖ®ºó£¬½Ó×űãÏÂÔØtcpdump 4.9°æ±¾µÄÔ´´úÂë¡£ÄãÒ²¿ÉÒÔÏÂÔØ×îеÄgit°æ±¾£¬ËäÈ»±¾ÎÄ×÷Ϊ°¸ÀýµÄ©¶´ÔÚа汾ÖÐÒѽøÐÐÐÞ¸´£¬µ«ËÄܱ£Ö¤²»»áÓÐÆäËû¾ªÏ²ÄØ?ÔÚÏÂÔØÔ´´úÂëÖ®ºó£¬Ê¹ÓÃafl-gcc±àÒë¶ÔÓÚÖ®ºóµÄÄ£ºý²âÊÔÊÇÓаïÖúµÄ(CC=afl-gcc
./configure && make)
±àÒë³É¹¦Ö®ºó£¬ÔËÐÐscff-mkconfigÖ¸Áî´´½¨Ò»¸ösCFFÏîÄ¿Îļþ¡£ÇëÈ·±£½«targetÉèÖÃΪtcpdump£¬²ÎÊýÉèÖÃΪ¨Ce
¨Cr @@¡£ÆäÖÐ-eºÍ-r¶¼ÊÇtcpdumpµÄ²ÎÊý£¬-e±íʾ´òÓ¡À©Õ¹Í·£¬-r±íʾ¶ÁÈ¡Îļþ¡£ÕâÁ½¸ö±êÖ¾ÔÚÖ®ºó»á±»aflÿ´ÎÉú³ÉµÄÄ£ºý²âÊÔÎļþÌæ»»¡£¼Çס£¬Èç¹ûÄãÊÇÊǵÚÒ»´Î×¢²áAWS
t2»úÆ÷£¬Ö»ÒªÔËÐÐʱµÍÓÚ750Сʱ¶¼¿ÉÒÔÃâ·ÑʹÓá£ËùÒÔÄã¿ÉÄÜ»á¼á³ÖʹÓÃt2»úÆ÷½øÐÐÄ£ºý²âÊÔ¡£ÎªÁ˸ü¿ìµÄµÃµ½²âÊÔ½á¹û£¬ÍƼö´ó¼ÒʹÓÃÒ»¸öÄ£°æ£¬Ê¹ÓÃÁËÒ»¸ö170btyesµÄpcapÎļþ°üº¬ipv4ͨÐÅÊý¾Ý¡£×÷Ϊ½è¼ø£¬ÒÔÏÂΪÎÒÃÇͨ¹ýscff-mkconfigÃüÁî´´½¨µÄÅäÖÃÎļþ£º
[INSTANCES] amiami = ami-0963b466 gid = tcpdump49 instancetype = t2.micro name = auto numberofmachines = 4 platform = linux [FUZZING] dependencies = none fuzzer = afl fuzzdir = fuzzing inputdir = fuzzing/input outputdir = fuzzing/output template = ipv4.pcap target = tcpdump args = -e -r @@ |
Èç½ñ¿ÉÒÔͨ¹ýscff-create-instancesÃüÁîÀ´´´½¨EC2ʵÀý£¬Äã¿ÉÒÔʹÓÃÃÜÔ¿¶Ôͨ¹ýSSH½øÐÐͨÐÅ¡£
3. Ä£ºý²âÊÔ½×¶Î
½ÓÏÂÀ´£¬ÎÒÃÇ¿ÉÒÔͨ¹ýscff-ctrl . bootstrapÃüÁî¶Ô½«ÓÃÓÚÄ£ºý²âÊԵĻúÆ÷½øÐÐÉèÖá£Ò»µ©ÉèÖÃÍê³É£¬ÕýʽµÄÄ£ºý²âÊԱ㿪ʼ¡£sCFFÌṩÁ˵¥Ä£FuzzingºÍ·Ö²¼Ê½Fuzzing¡£ÔÚµ¥Ä£FuzzingÏ£¬Ã¿¸öʵÀý¶¼»áµ¥¶ÀÔËÐÐÄ£ºý²âÊÔ¹¤¾ß;·Ö²¼Ê½Fuzzing£¬ËäȻͬÑùÿ¸öʵÀýÔËÐÐÒ»¸öÄ£ºý²âÊÔ¹¤¾ß£¬µ«Ä£ºý²âÊÔÊý¾Ý»áÔÚʵÀý¼ä¹²Ïí£¬ÕâÑù¿ÉÒÔÌáÉý²âÊÔËÙ¶È¡£Èç¹ûÄãÓµÓÐÁ½¸öÒÔÉϵÄʵÀý£¬ÎÒÃÇÍÆ¼öʹÓ÷ֲ¼Ê½Fuzzingģʽ£¬ÒÔscff-ctrl
. distributedÖ¸ÁîÆô¶¯·Ö²¼Ê½Ä£Ê½¡£Èç¹ûÏëÒªÁ˽âÄ£ºý²âÊÔµÄ״̬£¬ÎÒÃÇ¿ÉÒÔͨ¹ýä¯ÀÀÆ÷½øÐв鿴¡£

Äã¿ÉÒÔʹÓÃscff-ctrl . grab-findingsÃüÁîËæÊ±ÏÂÔØµ¼ÖÂÕâЩ±ÀÀ£µÄÎļþ¡£
4. ²âÊÔÍê³Éºó
ÔËÐÐscff-exploitcheckÃüÁî¿ÉÒÔ¶ÔÕâЩ±ÀÀ£Îļþ½øÐзÖÎö£¬ÎóÅкÍÖØ¸´³öÏֵıÀÀ£ÐÅÏ¢½«»á±»¹ýÂË£¬×îºóʣϵÄÐÅÏ¢½«»áÓÃÓÚ©¶´µÄ¼ì²âºÍÀûÓá£

Èç¹ûÐÅÏ¢ÖÐÓкìÉ«EXPLOITABLE±êÇ©£¬ÄÇôÕâÀï´æÔÚ©¶´µÄ¿ÉÄÜÐԾͷdz£¸ßÁË¡£ÔÙÓÃgdb¶ÔËù·¢ÏÖµÄÄÚÈݽøÐмì²â¡£ÈçÏÂͼ£¬tcpdump
4.9µÄÎļþprintsl.cÖдæÔÚÒ»¸ö¿ÉÀûÓõÄ©¶´¡£

¾¹ý½øÒ»²½µÄµ÷ÊÔ£¬ÎÒÃÇ¿ÉÒÔµÃÖªdirΪ255£¬²¢ÇÒdirÒ²ÊÇlastlenÖеÄÖ¸Õë(¶¨ÒåΪlastlen[2][255])£¬ÕâÀï´æÔÚ²ÎÊýÔ½½ç£¬½ø¶øµ¼Ö³ÌÐò±ÀÀ£¡£
ΪÁËÐÞ¸´Õâ¸ö´íÎó£¬ÎÒÃÇҪôµ÷ÕûdirµÄÖµ£¬ÒªÃ´¼ì²édirµÄÖµÊÇ·ñÔÚ0ºÍ2Ö®¼ä¡£ÔÚdir = p[DIR_SLX]ºóÃæÉèÖÃÒ»¸ö¶Ïµã£¬È»ºóÔÚgdbÖÐÐ޸ĸÃÖµ(ÀýÈç0,p=0)
ÔÙ¶ÔÔ´´úÂë½øÐбàÒ룬֮ºó¼ì²é³ÌÐòÊÇ·ñ»¹»á±ÀÀ£¡£

ËÄ¡¢×ܽá
ÓÉÓڸé¶´ÐèÒªÓû§Ê¹ÓÃ-e²ÎÊýÀ´´ò¿ªpcapÎļþ²Å¿ÉÒÔÍê³É¹¥»÷£¬Î£º¦²¢²»ÊÇÌØ±ðÑÏÖØ¡£
µ±ÎÒ½«¸Ã©¶´±¨¸æ¸øtcpdump°²È«ÍŶӣ¬ËûÃǵÄÏìÓ¦ËٶȵÄÈ·³ÆÔÞ£¬¸Ã©¶´ÒÑÔÚ4.10°æ±¾Öеõ½ÐÞ¸´¡£µÃÒæÓÚÔÆ¶ËÄ£ºý²âÊÔÒÔ¼°ÓÅÐãµÄ¹¤¾ß°ü£¬Õû¸ö²âÊÔ¹ý³Ì´óÔ¼»¨·ÑÎå¸öСʱ£¬ÆäÖаüÀ¨Ê¶±ðÒÔ¼°ÐÞ¸´Â©¶´¡£
Downloading and compiling tcpdump: 10 minutes Pre Fuzzing Phase + template generation: 10 minutes Fuzzing Phase: 110 minutes Post Fuzzing Phase: 60 minutes Patch writing and retesting: 90 minutes -------------------------- Total: 300 minutes |
|