{"id":70414,"date":"2021-11-10T09:00:00","date_gmt":"2021-11-10T01:00:00","guid":{"rendered":"https:\/\/blog.trendmicro.com.tw\/?p=70414"},"modified":"2022-01-12T11:24:53","modified_gmt":"2022-01-12T03:24:53","slug":"%e5%bc%b7%e8%a1%8c%e9%97%96%e5%85%a5%ef%bc%9a%e8%bb%8a%e5%ba%ab%e8%87%aa%e5%8b%95%e9%96%80%e5%ae%89%e5%85%a8%e6%b8%ac%e8%a9%a6","status":"publish","type":"post","link":"https:\/\/blog.trendmicro.com.tw\/?p=70414","title":{"rendered":"\u5f37\u884c\u95d6\u5165\uff1a\u8eca\u5eab\u81ea\u52d5\u9580\u5b89\u5168\u6e2c\u8a66"},"content":{"rendered":"\n<p><\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p><a href=\"https:\/\/t.rend.tw\/?i=OTQzMw\">\u8da8\u52e2\u79d1\u6280<\/a>\u5728\u9019\u7bc7\u6587\u7ae0\u88e1\u6703\u5229\u7528\u8edf\u9ad4\u7121\u7dda\u96fb\uff08SDR\uff09\u4f86\u6e2c\u8a66\u5169\u7a2e\u653b\u64ca\u60c5\u5883\uff0c\u91cd\u65b0\u6aa2\u8996\u8eca\u5eab\u81ea\u52d5\u9580\u6240\u53ef\u80fd\u9762\u81e8\u7684\u5a01\u8105\u3002\u6211\u5011\u6703\u793a\u7bc4\u6efe\u52d5\u78bc\u653b\u64ca\u4ee5\u53ca\u53e6\u4e00\u500b\u5229\u7528\u96b1\u85cf\u9059\u63a7\u5668\u529f\u80fd\u7684\u653b\u64ca\u3002<\/p><\/blockquote>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.trendmicro.com\/content\/dam\/trendmicro\/global\/en\/research\/21\/j\/forced-entry-a-security-test-for-automatic-garage-doors\/forced-entry-a-security-test-for-automatic-garage-doors.jpg\" alt=\"\"\/><\/figure>\n\n\n\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p>\u5927\u591a\u6578\u4f4f\u5b85\u7684\u7b2c\u4e00\u9053\u9632\u7dda\u90fd\u662f\u7d93\u5178\u7684\u9396\u52a0\u9470\u5319\u7d44\u5408\uff0c\u7528\u4f86\u4fdd\u8b77\u6240\u6709\u80fd\u5920\u5165\u5167\u7684\u901a\u9053\u3002\u9019\u985e\u6a5f\u5236\u901a\u5e38\u90fd\u5f88\u53ef\u9760\uff0c\u4e5f\u8b93\u4eba\u5011\u7406\u6240\u7576\u7136\u5730\u4ee5\u70ba\u9019\u5c07\u6c38\u9060\u662f\u4e8b\u5be6\u3002\u5728\u672c\u6587\u4e2d\uff0c\u6211\u5011\u5c07\u6703\u4ed4\u7d30\u7814\u7a76\u5176\u4e2d\u4e00\u7a2e\u6a5f\u5236 \u2013 \u5e38\u898b\u7684\u8eca\u5eab\u9059\u63a7\u5668\uff0c\u6e2c\u8a66\u5169\u7a2e\u5a01\u8105\u60c5\u5883\u4e26\u5c55\u793a\u5176\u5b89\u5168\u5f71\u97ff\u3002<\/p>\n\n\n\n<!--more-->\n\n\n\n<p>\u96d6\u7136\u9019\u4e3b\u984c\u5728<a href=\"https:\/\/www.wired.com\/2015\/08\/hackers-tiny-device-unlocks-cars-opens-garages\/\">\u904e\u53bb<\/a>\u66fe\u88ab\u63d0\u53ca\uff0c\u4f46\u7576\u6211\u5011\u525b\u597d\u6709\u500b\u58de\u6389\u7684\u8eca\u5eab\u9059\u63a7\u5668\u6642\uff0c\u6211\u5011\u767c\u73fe\u9019\u662f\u500b\u597d\u6a5f\u6703\u4f86\u91cd\u65b0\u6aa2\u8996\u9019\u500b\u554f\u984c\u3002\u6211\u5011\u7814\u7a76\u4e86\u5b83\u7684\u904b\u4f5c\u539f\u7406\u4f86\u6aa2\u8996\u6f5b\u5728\u5b89\u5168\u6f0f\u6d1e\u3002\u5229\u7528<a href=\"https:\/\/www.trendmicro.com\/vinfo\/tmr\/?\/us\/security\/news\/vulnerabilities-and-exploits\/attacks-against-industrial-machines-via-vulnerable-radio-remote-controllers-security-analysis-and-recommendations\">\u8edf\u9ad4\u7121\u7dda\u96fb\uff08SDR\uff09\u548c\u5c04\u983b\uff08RF\uff09\u6280\u8853<\/a>\uff0c\u8b93\u6211\u5011\u53ef\u4ee5\u6e2c\u8a66\u5169\u7a2e\u653b\u64ca\u60c5\u5883\u3002<\/p>\n\n\n\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/marvel-b1-cdn.bc0a.com\/f00000000017219\/www.trendmicro.com\/content\/dam\/trendmicro\/global\/en\/research\/21\/j\/forced-entry-a-security-test-for-automatic-garage-doors\/Garage%20Door%20Remotes_fig-1.png\" alt=\"Figure 1. The attack chain summarizing this analysis\"\/><\/figure>\n\n\n\n<p>\u57161. \u6982\u62ec\u6b64\u6b21\u5206\u6790\u7684\u653b\u64ca\u93c8<\/p>\n\n\n\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p>\u7b2c\u4e00\u7a2e\u60c5\u5883\u5f88\u6709\u610f\u601d\uff0c\u56e0\u70ba\u5176\u653b\u64ca\u95dc\u9375\u5728\u65bc\u9059\u63a7\u5668\u4e00\u500b\u5c11\u6709\u4eba\u77e5\u7684\u529f\u80fd\uff0c\u5373\u76f4\u63a5\u63a5\u6536\u5668\uff08DOR\uff09\u529f\u80fd\u3002\u5229\u7528\u5e72\u64fe\u548c\u91cd\u64ad\u8a0a\u865f\uff0c\u6211\u5011\u53ef\u4ee5\u5c07\u7b2c\u4e8c\u500b\u9059\u63a7\u5668\u8a18\u9304\u5230\u63a5\u6536\u5668\u8b93\u5176\u6c38\u4e45\u53ef\u7528\u3002\u7b2c\u4e8c\u7a2e\u6e2c\u8a66\u5247\u662f\u56de\u9867\u4e86\u6efe\u52d5\u78bc\u653b\u64ca\u3002\u6700\u5f8c\uff0c\u6211\u5011\u63a2\u8a0e\u4e86\u6700\u5c0f\u5316\u6574\u5957\u8a2d\u5099\u4f7f\u5f97\u6b64\u985e\u653b\u64ca\u53ef\u4ee5\u66f4\u52a0\u96b1\u853d\u5730\u9032\u884c\u4ee3\u8868\u4ec0\u9ebc\u610f\u601d\u3002<\/p>\n\n\n\n<p><a href=\"https:\/\/t.rend.tw\/?i=OTQzMw\">\u8da8\u52e2\u79d1\u6280<\/a>\u7684\u6280\u8853\u7c21\u5831\u300c<a href=\"https:\/\/www.trendmicro.com\/content\/dam\/trendmicro\/global\/en\/research\/21\/j\/forced-entry-a-security-test-for-automatic-garage-doors\/TechnicalBrief-A-Security-Analysis-of-Garage-Door-Remotes-and-the-Danger-of-DOR-Attacks.pdf\">\u8eca\u5eab\u9059\u63a7\u5668\u5b89\u5168\u5206\u6790\u53caDOR\u653b\u64ca\u7684\u5371\u96aa<\/a>\u300d\u63d0\u4f9b\u4e86\u6e2c\u8a66\u7d30\u7bc0\u548c\u5b8c\u6574\u63cf\u8ff0\uff0c\u5305\u62ec\u4f7f\u7528\u5de5\u5177\u7684\u5f71\u50cf\u53ca\u5169\u7a2e\u5a01\u8105\u60c5\u5883\u4e2d\u5404\u6b65\u9a5f\u7684\u7d50\u679c\u3002<\/p>\n\n\n\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p><strong>\u89e3\u78bc\u8a0a\u865f<\/strong><\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/marvel-b1-cdn.bc0a.com\/f00000000017219\/www.trendmicro.com\/content\/dam\/trendmicro\/global\/en\/research\/21\/j\/forced-entry-a-security-test-for-automatic-garage-doors\/figure%202%20setup.jpg\" alt=\"\u57162. \u6e2c\u8a66\u88e1\u4f7f\u7528\u4e86\u5169\u500b\u8eca\u5eabCardin S449-QZ2\u9059\u63a7\u5668\u548c\u4e00\u500bCardin RMQ449200\u63a5\u6536\u5668\uff0c\u4e26\u4e14\u4f7f\u7528USRP B205mini-i\u9032\u884c\u5206\u6790\nFigure 2. The setup composed of two garage Cardin S449-QZ2 test remotes and a Cardin RMQ449200 test receiver that will be analyzed against a USRP B205mini-i\"\/><figcaption>\u57162. \u6e2c\u8a66\u88e1\u4f7f\u7528\u4e86\u5169\u500b\u8eca\u5eabCardin S449-QZ2\u9059\u63a7\u5668\u548c\u4e00\u500bCardin RMQ449200\u63a5\u6536\u5668\uff0c\u4e26\u4e14\u4f7f\u7528USRP B205mini-i\u9032\u884c\u5206\u6790<\/figcaption><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p>\u672c\u6587\u7684\u7814\u7a76\u76ee\u6a19\u662fCardin S449-QZ2\u9059\u63a7\u5668\u53ca\u652f\u63f4\u9019\u4e9b\u9059\u63a7\u5668\u7684\u63a5\u6536\u5668\u3002\u6211\u5011\u9078\u64c7\u9019\u500b\u9059\u63a7\u5668\u662f\u56e0\u70ba\u5b83\u5177\u5099\u4e86DOR\u7a0b\u5f0f\uff0c\u6211\u5011\u5c07\u5728\u5f8c\u9762\u8a73\u7d30\u8aaa\u660e\u3002\u6211\u5011\u4f7f\u7528<a href=\"https:\/\/www.trendmicro.com\/vinfo\/tmr\/?\/us\/security\/news\/vulnerabilities-and-exploits\/attacks-against-industrial-machines-via-vulnerable-radio-remote-controllers-security-analysis-and-recommendations\">SDR<\/a>\u4f86\u6355\u6349\u548c\u5206\u6790\u9059\u63a7\u5668\u6bcf\u500b\u6309\u9375\u6309\u4e0b\u5f8c\u6240\u767c\u9001\u7684\u8a0a\u865f\u3002\u5728\u78ba\u8a8d\u983b\u7387\u7bc4\u570d\u5f8c\uff0c\u6211\u5011\u53ef\u4ee5\u7528\u5ba2\u88fd\u5316SDR\u983b\u7387\u5206\u6790\u5100\u4f86\u89c0\u5bdf\u4ee3\u8868\u6211\u5011\u60f3\u6355\u6349\u8a0a\u865f\u7684\u5169\u500b\u5cf0\u503c\u3002<\/p>\n\n\n\n<p>\u8a72\u8a0a\u865f\u662f\u7528\u4e00\u500b\u8907\u96dc\u7684\u5beb\u5165\u5668\u6240\u8a18\u9304\u3002\u6211\u5011\u63a5\u8457\u5c0d\u5b83\u9032\u884c\u62bd\u53d6\u548c\u89e3\u8abf\uff0c\u4f86\u53d6\u5f97\u6211\u5011\u9700\u8981\u63d0\u53d6\u548c\u89e3\u78bc\u7684\u8cc7\u6599\u3002\u70ba\u6b64\uff0c\u6211\u5011\u4f7f\u7528Inspectrum\u548cUniversal Radio Hacker\uff08URH\uff09\u7b49\u5de5\u5177\u9032\u884c\u89e3\u78bc\u3002<\/p>\n\n\n\n<p>\u6211\u5011\u5c0d\u6bcf\u500b\u6309\u9375\u90fd\u6e2c\u8a66\u4e86\u6578\u6b21\uff0c\u5305\u62ec\u524d\u9762\u63d0\u5230\u7684\u96b1\u85cf\u6309\u9375\u3002\u5728\u8a18\u9304\u4e86\u5e7e\u6b21\u4e0d\u540c\u8a0a\u865f\u9001\u51fa\u5f8c\uff0c\u6211\u5011\u53ef\u4ee5\u8b58\u5225\u51fa\u547d\u4ee4\u3001\u56fa\u5b9a\u548c\u52a0\u5bc6\u6b04\u4f4d\u7b49\u6b04\u4f4d\uff0c\u9019\u4ee3\u8868\u4e86\u6709\u4f7f\u7528\u6efe\u52d5\u78bc\u6a5f\u5236\u3002\u6211\u5011\u9700\u8981\u5728\u7b2c\u4e8c\u500b\u6e2c\u8a66\u4e2d\u5206\u6790\u6efe\u52d5\u78bc\u3002<\/p>\n\n\n\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p><strong>\u7b2c\u4e00\u7a2e\u60c5\u5883\uff1a\u60e1\u610f\u4f7f\u7528DOR<\/strong><strong>\u529f\u80fd<\/strong><\/p>\n\n\n\n<p><br>\u6b64\u6642\u6211\u5011\u53ef\u4ee5\u6e2c\u8a66\u9019\u5169\u7a2e\u60c5\u5883\u3002\u7b2c\u4e00\u7a2e\u53d6\u6c7a\u65bcDOR\u7a0b\u5f0f\uff0c\u5b83\u6d89\u53ca\u5230\u9059\u63a7\u5668\u5167\u7684\u4e00\u500b\u96b1\u85cf\u6309\u9375\u3002Cardin\u4e26\u4e0d\u662f\u552f\u4e00\u5177\u6709\u6b64\u529f\u80fd\u7684\u9059\u63a7\u5668\uff0c\u5b83\u5728\u4e0d\u540c\u5ee0\u5546\u6240\u88fd\u9020\u7684\u88dd\u7f6e\u4e2d\u4e5f\u5f88\u5e38\u898b\u3002\u503c\u5f97\u6ce8\u610f\u7684\u662f\uff0c\u9059\u63a7\u5668\u624b\u518a\u8868\u793a\u96b1\u85cf\u6309\u9375\u53ef\u4ee5\u8b93\u4eba\u5011\u5c07\u65b0\u9059\u63a7\u5668\u9304\u5230\u63a5\u6536\u5668\u3002\u6211\u5011\u9084\u767c\u73fe\uff0c\u6b64\u6309\u9375\u8ddf\u5176\u4ed6\u6309\u9375\u4e0d\u540c\uff0c\u53ef\u4ee5\u91cd\u64ad\uff0c\u56e0\u6b64\u662f\u653b\u64ca\u7684\u57fa\u790e\u3002<\/p>\n\n\n\n<p>\u6211\u5011\u6355\u6349\u5230DOR\u547d\u4ee4\u4e26\u5c01\u9396\u5176\u7b2c\u4e00\u6b21\u7684\u6309\u9375\u52d5\u4f5c\u3002\u6211\u5011\u7684\u4f5c\u6cd5\u662f\u5e72\u64fe\u5b83\u4e26\u540c\u6642\u8a18\u9304\u5b83\u3002\u7d50\u679c\u53ef\u4ee5\u8b93\u8a72\u7a0b\u5f0f\u5931\u6548\u3002\u9019\u8b93\u6211\u5011\u53ef\u4ee5\u91cd\u64ad\u9a57\u8b49\u904e\u7684\u9059\u63a7\u5668DOR\u6309\u9375\u52d5\u4f5c\uff0c\u64ad\u653e\u5176\u6309\u9375\u547d\u4ee4\u4e26\u900f\u904e\u767c\u9001\u6309\u9375\u8a0a\u865f\u4f86\u8a18\u9304\u6211\u5011\u7684\u7b2c\u4e8c\u500b\u9059\u63a7\u5668\u3002<\/p>\n\n\n\n<p>\u597d\u6d88\u606f\u662f\uff0c\u9019\u7a2e\u4f5c\u6cd5\u9700\u8981\u5165\u4fb5\u8005\u6355\u6349\u6709\u6548\u7684\u6309\u9375\u52d5\u4f5c\uff0c\u5305\u62ec\u96b1\u85cf\u7684DOR\u6309\u9375\uff0c\u9019\u5728\u771f\u5be6\u60c5\u6cc1\u4e2d\u5f88\u5c11\u898b\u3002\u653b\u64ca\u8005\u9700\u8981\u62ff\u5230\u4f4f\u6236\u7684\u9059\u63a7\u5668\u6216\u5728\u8eca\u5eab\u7dad\u8b77\u6642\u9032\u884c\u653b\u64ca\u3002<\/p>\n\n\n\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p><strong>\u60c5\u5883\u4e8c\uff1a\u5206\u6790\u6efe\u52d5\u78bc<\/strong><\/p>\n\n\n\n<p>\u9032\u5165\u5230\u7b2c\u4e8c\u500b\u5834\u666f\uff0c\u6211\u5011\u9700\u8981\u5c0d\u6efe\u52d5\u78bc\u9032\u884c\u89e3\u78bc\uff0c\u6240\u4ee5\u6211\u5011\u5c07\u76ee\u5149\u8f49\u5411KeeLoq \u6f14\u7b97\u6cd5\uff0c\u5b83\u88ab\u7528\u4f86\u4fdd\u8b77\u5c01\u5305\u4e0d\u88ab\u91cd\u64ad\u548c\u89e3\u78bc\u3002\u7814\u7a76\u986f\u793a\u4e4b\u524d\u5c31\u6709\u5c0dKeeLoq\u9032\u884c\u7684<a href=\"https:\/\/www.wired.com\/2015\/08\/hackers-tiny-device-unlocks-cars-opens-garages\/\">\u653b\u64ca<\/a>\u3002\u8ddf\u8a31\u591a\u6efe\u52d5\u78bc\u6a5f\u5236\u4e00\u6a23\uff0cKeeLoq\u6c92\u6709\u4f7f\u7528\u80fd\u9632\u6b62\u653b\u64ca\u8005\u9032\u884c\u91cd\u64ad\u653b\u64ca\u7684\u6642\u9593\u6233\u8a18\u3002\u6211\u5011\u5728\u6e2c\u8a66\u4e2d\u4f7f\u7528Kaiju\u4f86\u5206\u6790\u6efe\u52d5\u78bc\uff0c\u8b93\u6211\u5011\u53ef\u4ee5\u9694\u7a7a\u767c\u9001\u547d\u4ee4\u3002<\/p>\n\n\n\n<p>Kaiju\u5c0d\u975eLEA\u4f7f\u7528\u8005\u4f86\u8aaa\u6709\u8457\u986f\u8457\u7684\u9650\u5236\u3002\u5118\u7ba1\u5982\u6b64\uff0c\u653b\u64ca\u8005\u7e3d\u80fd\u5920\u67e5\u770b\u9059\u63a7\u5668\u7684\u8a18\u61b6\u9ad4\u4e26\u7814\u7a76\u88fd\u9020\u5546\u91d1\u9470\u4f86\u81ea\u884c\u7522\u751f\u6efe\u52d5\u78bc\u3002\u9019\u53ef\u4ee5\u900f\u904e\u67e5\u770b\u5305\u542b\u591a\u500b\u54c1\u724c\u4e3b\u91d1\u9470\u7684\u9059\u63a7\u5668\u62f7\u8c9d\u5668\u4f86\u66f4\u9032\u4e00\u6b65\uff0c\u6211\u5011\u5728\u6280\u8853\u7c21\u4ecb\u4e2d\u5c55\u793a\u4e86\u9019\u4e00\u9ede\u3002<\/p>\n\n\n\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p><strong>PandwaRF\u88dd\u7f6e<\/strong><\/p>\n\n\n\n<p>\u6709\u4eba\u53ef\u80fd\u6703\u8aaa\uff0c\u8981\u9032\u884c\u6b64\u985e\u653b\u64ca\u6703\u7528\u5230\u5f88\u986f\u76ee\u7684\u88dd\u7f6e\uff0c\u7834\u58de\u6389\u60f3\u79d8\u5bc6\u95d6\u5165\u7684\u76ee\u7684\u3002\u4f46\u50cfPandwaRF\u9019\u6a23\u7684\u88dd\u7f6e\uff0c\u4e00\u500b\u5e36\u6709Android APK\u7684\u5c0f\u578b\u983b\u7387\u5206\u6790\u5100\uff0c\u53ef\u4ee5\u8b93\u9019\u6574\u5957\u8a2d\u5099\u66f4\u52a0\u5bb9\u6613\u651c\u5e36\u8ddf\u96b1\u85cf\u3002\u6211\u5011\u5728\u6280\u200b\u200b\u8853\u7c21\u4ecb\u4e2d\u8a73\u7d30\u5730\u5c55\u793a\u5982\u4f55\u4f7f\u7528\u8a72\u88dd\u7f6e\u4f86\u6709\u6548\u6355\u6349\u548c\u5e6b\u52a9\u89e3\u78bc\u8a0a\u865f\u3002<\/p>\n\n\n\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p><strong>\u5b89\u5168\u5f71\u97ff<\/strong><\/p>\n\n\n\n<p>\u5c0d\u5165\u4fb5\u8005\u4f86\u8aaa\uff0c\u8eca\u5eab\u9580\u53ef\u80fd\u662f\u95d6\u5165\u4f4f\u5b85\u7684\u66f4\u597d\u9078\u64c7\u3002\u4ed6\u5011\u80fd\u5920\u5728\u8eca\u5eab\u5167\u898f\u5283\u9032\u4e00\u6b65\u7684\u95d6\u5165\u8a08\u5283\u800c\u4e0d\u88ab\u8def\u4eba\u5bdf\u89ba\u3002\u4e5f\u53ef\u80fd\u5c31\u5c07\u76ee\u6a19\u653e\u5728\u8eca\u5eab\u5167\u7684\u4efb\u4f55\u6771\u897f\u3002<\/p>\n\n\n\n<p>\u9019\u6b21\u5c55\u793a\u662f\u70ba\u4e86\u986f\u793a\u9019\u4e9b\u5b89\u5168\u6f0f\u6d1e\u4ecd\u7136\u5b58\u5728\uff0c\u53ef\u80fd\u8b93\u4f4f\u5b85\u5c4f\u969c\u4ee5\u610f\u60f3\u4e0d\u5230\u7684\u96b1\u853d\u65b9\u5f0f\u74e6\u89e3\u3002\u70ba\u4e86\u9632\u6b62\u9019\u985e\u653b\u64ca\u6210\u771f\uff0c\u88fd\u9020\u5546\u61c9\u63a1\u53d6\u63aa\u65bd\u5728\u6efe\u52d5\u78bc\u6a5f\u5236\u4e4b\u4e0a\u52a0\u5165\u66f4\u591a\u5b89\u5168\u63aa\u65bd\uff0c\u4f8b\u5982\uff1a<\/p>\n\n\n\n<ul><li>\u6bcf\u500b\u9059\u63a7\u5668\u90fd\u4f7f\u7528\u4e0d\u540c\u7684\u88fd\u9020\u5546\u5bc6\u9470\u4e26\u52a0\u5165\u591a\u6a23\u5316\uff0c\u9019\u6a23\u653b\u64ca\u8005\u5c31\u7b97\u8f49\u5132\u4e86\u4e3b\u5bc6\u9470\u4e5f\u5fc5\u9808\u627e\u51fa\u7522\u751f\u5404\u500b\u5bc6\u9470\u7684\u6f14\u7b97\u6cd5<\/li><li>\u5728\u9059\u63a7\u5668\u548c\u63a5\u6536\u5668\u4e0a\u95dc\u9589\u9664\u932f\u4ecb\u9762<\/li><li>\u5728\u9059\u63a7\u5668\u548c\u63a5\u6536\u5668\u4e0a\u5be6\u65bd\u8a18\u61b6\u9ad4\u4fdd\u8b77\u4f86\u907f\u514d\u53ef\u80fd\u7684\u5916\u6d29<\/li><li>\u52a0\u5165\u540c\u6b65\u8a08\u6578\u5668\u6642\u4f7f\u7528\u7a2e\u5b50\u4f86\u8b93\u66b4\u529b\u7834\u89e3\u66f4\u52a0\u8907\u96dc<\/li><\/ul>\n\n\n\n<p>\u800c\u5c0d\u5c4b\u4e3b\u4f86\u8aaa\uff0c\u8981\u78ba\u4fdd\u63a5\u6536\u5668\u5be6\u9ad4\u53d7\u5230\u4fdd\u8b77\u4e14\u6536\u85cf\u7684\u5f88\u597d\u3002\u4e0d\u8981\u8b93\u8eca\u5eab\u9580\u655e\u958b\u800c\u7121\u4eba\u770b\u7ba1\uff0c\u6ce8\u610f\u8eca\u5eab\u9059\u63a7\u5668\u653e\u7f6e\u7684\u5730\u65b9\uff0c\u4e26\u4e14\u8003\u616e\u4f7f\u7528\u50b3\u7d71\u9396\u5177\u4f86\u4fdd\u8b77\u8eca\u5eab\uff0c\u5c24\u5176\u662f\u7576\u81ea\u5df1\u8981\u51fa\u9060\u9580\u6642\u3002\u9084\u61c9\u8a72\u4e86\u89e3\u672c\u6587\u88e1\u5f37\u8abf\u7684DOR\u7a0b\u5f0f\u7b49\u529f\u80fd\uff0c\u9632\u6b62\u9019\u4e9b\u529f\u80fd\u88ab\u7528\u4f86\u653b\u64ca\u3002\u6b64\u5916\uff0c\u5c4b\u4e3b\u8981\u77e5\u9053\u53ef\u4ee5\u900f\u904e\u8a2d\u5b9a\u63a5\u6536\u5668\u4f86\u505c\u7528DOR\u529f\u80fd\u3002<\/p>\n\n\n\n<p>\u672c\u7814\u7a76\u662f\u70ba\u4e86\u63d0\u4f9b\u6846\u67b6\u4f86\u7522\u751f\u6240\u6709\u5bc6\u9470\u4e26\u6aa2\u67e5\u8a2d\u5b9a\u662f\u5426\u6b63\u78ba\u3002\u6211\u5011\u5728\u9019\u88e1\u50c5\u63cf\u8ff0\u4e86\u904e\u7a0b\u6458\u8981\uff0c\u8a73\u7d30\u4ecb\u7d39\u53ef\u4ee5\u53c3\u8003\u6211\u5011\u7684\u6280\u8853\u7c21\u4ecb\u300c<a href=\"https:\/\/www.trendmicro.com\/content\/dam\/trendmicro\/global\/en\/research\/21\/j\/forced-entry-a-security-test-for-automatic-garage-doors\/TechnicalBrief-A-Security-Analysis-of-Garage-Door-Remotes-and-the-Danger-of-DOR-Attacks.pdf\">\u8eca\u5eab\u9059\u63a7\u5668\u5b89\u5168\u5206\u6790\u548cDOR\u653b\u64ca\u7684\u5371\u96aa<\/a>\u300d\u3002<\/p>\n\n\n\n<div style=\"height:100px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p>@\u539f\u6587\u51fa\u8655\uff1a<a href=\"https:\/\/www.trendmicro.com\/en_us\/research\/21\/j\/forced-entry-a-security-test-for-automatic-garage-doors.html\">Forced Entry: A Security Test for Automatic Garage Doors<\/a> \u4f5c\u8005\uff1aS\u00e9bastien Dudek<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u8da8\u52e2\u79d1\u6280\u5728\u9019\u7bc7\u6587\u7ae0\u88e1\u6703\u5229\u7528\u8edf\u9ad4\u7121\u7dda\u96fb\uff08SDR\uff09\u4f86\u6e2c\u8a66\u5169\u7a2e\u653b\u64ca\u60c5\u5883\uff0c\u91cd\u65b0\u6aa2\u8996\u8eca\u5eab\u81ea\u52d5\u9580\u6240\u53ef\u80fd\u9762\u81e8\u7684\u5a01\u8105\u3002\u6211\u5011\u6703\u793a [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","_wpscppro_dont_share_socialmedia":false,"_wpscppro_custom_social_share_image":0,"_facebook_share_type":"","_twitter_share_type":"","_linkedin_share_type":"","_pinterest_share_type":"","_linkedin_share_type_page":"","_instagram_share_type":"","_medium_share_type":"","_threads_share_type":"","_google_business_share_type":"","_selected_social_profile":[],"_wpsp_enable_custom_social_template":false,"_wpsp_social_scheduling":{"enabled":false,"datetime":null,"platforms":[],"status":"template_only","dateOption":"today","timeOption":"now","customDays":"","customHours":"","customDate":"","customTime":"","schedulingType":"absolute"},"_wpsp_active_default_template":true},"categories":[1335,906,2988],"tags":[1599,2989,1260,4042,4958],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=\/wp\/v2\/posts\/70414"}],"collection":[{"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=70414"}],"version-history":[{"count":2,"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=\/wp\/v2\/posts\/70414\/revisions"}],"predecessor-version":[{"id":70416,"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=\/wp\/v2\/posts\/70414\/revisions\/70416"}],"wp:attachment":[{"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=70414"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=70414"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blog.trendmicro.com.tw\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=70414"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}