积极预防 及时发现
快速响应 力保恢复
Recourse ManTrap 1.6不能正确的隐藏来自攻击者的进程,这允许攻击者通过在/proc...
发布时间:2001-01-09 信息来源:管理员

CNCVE编号:CNCVE-20001140 CVE编号:CVE-2000-1140 安全级别:高 漏洞中文描述: Recourse ManTrap 1.6不能正确的隐藏来自攻击者的进程,这允许攻击者通过在/proc文件系统中的进程列表来比较kill命令的结果,从而确定其攻击的是否是honeypot系统。 漏洞英文描述: Recourse ManTrap 1.6 does not properly hide processes from attackers, which could allow attackers to determine that they are in a honeypot system by comparing the results from kill commands with the process listing in the /proc filesystem. 漏洞参考: BUGTRAQ:20001102 Mantrap By Recourse Technologies - Fate Advisory (11-01-00) | URL:http://archives.neohapsis.com/archives/bugtraq/2000-11/0041.html | BUGTRAQ:20001107 Vendor Response Re: Mantrap Advisory Vendor Followup - Fate Research Labs | 系统类型:其他 漏洞类型:设计错误