深入 Windows HTTP:揭示 Windows HTTP 服务中隐藏的预认证漏洞(预录制).pdf

编号:981929 PDF 75页 2.73MB 下载积分:VIP专享
下载报告请您先登录!

深入 Windows HTTP:揭示 Windows HTTP 服务中隐藏的预认证漏洞(预录制).pdf

1、#BHUSA BlackHatEventsDiving into Windows HTTP:Diving into Windows HTTP:Unveiling Hidden Unveiling Hidden PreauthPreauthVulnerabilities in Windows HTTP Vulnerabilities in Windows HTTP ServicesServicesQibo Shi(k0shl),VictorV,Wei Xiao,Zhiniang Peng#BHUSA BlackHatEventsAbout usQibo Shi(k0shl)|Senior Sec

2、urity Researcher of Cyber Kunlun LabVictorV|Senior Security Researcher of Cyber Kunlun LabWei Xiao|Senior Security Researcher of Cyber Kunlun LabZhiniang Peng|Associate Professor of Huazhong University of Science and Technology#BHUSA BlackHatEventsAgendaI.Background II.Overview of the Windows HTTP S

3、ervice Framework III.Exploring Logic Flaws Leading to Pre-auth DoS IV.Parsing and Handling Stages Leading to Pre-auth RCE V.Conclusion#BHUSA BlackHatEventsB Backgroundackground#BHUSA BlackHatEventsWhy HTTP Services?Most of them are unauthenticated.No user interaction required.No additional configura

4、tion needed.Few researchers have focused on it before.Many Windows Services rely on the Windows HTTP APIs(httpapi.dll).#BHUSA BlackHatEventsOverview of HTTP Services in WindowsHttpCreateServerSessionhttps:/ a new HTTP Server API session.This is the starting point for configuring a server-side HTTP s

5、tack.HttpAddUrl/HttpAddUrlToUrlGrouphttps:/ a URL to listen on.Binds a specific URL to the server session for handling incoming requests(e.g.,http:/+:80/example/).#BHUSA BlackHatEventsHow to find themHttpQueryServiceConfiguration-A Windows API used to query configuration details managed by HTTP.sys.

6、-Can retrieve:Registered URLs SSL certificate bindings IP listeners Request queue names Service SID bindings-Allows inspection of system-wide HTTP configuration from user-mode.#BHUSA BlackHatEventsHow to find them netsh http show servicestate#BHUSA BlackHatEventsOverview of the Windows HTTP Overview

友情提示

1、下载报告失败解决办法
2、PDF文件下载后,可能会被浏览器默认打开,此种情况可以点击浏览器菜单,保存网页到桌面,就可以正常下载了。
3、本站不支持迅雷下载,请使用电脑自带的IE浏览器,或者360浏览器、谷歌浏览器下载即可。
4、本站报告下载后的文档和图纸-无水印,预览文档经过压缩,下载后原文更清晰。

本文(深入 Windows HTTP:揭示 Windows HTTP 服务中隐藏的预认证漏洞(预录制).pdf)为本站 (竿头日上) 主动上传,三个皮匠报告文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知三个皮匠报告文库(点击联系客服),我们立即给予删除!

温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。
客服
商务合作
小程序
服务号
折叠