
CVE-2018-4878 عينة
مصدر النموذج: https://github.com/brianwrf/CVE-2017-4878-Samples
تقرير التحليل: http://blog.talosintelligence.com/2018/02/group-123-goes-wild.html
مصدر exploit في سكريبت بايثون: https://github.com/vysec/CVE-2018-4878
cve-2018-4878.py هو سكريبت توليد exploit، يتم توليد shellcode باستخدام Metasploit، والافتراضي هو payload لتشغيل الآلة الحاسبة في Windows.
exploit.swf و index.html هما صفحات الاستغلال التي تم إنشاؤها بواسطة cve-2018-4878.py.