
CVE-2018-4878 样本
Sample source: https://github.com/brianwrf/CVE-2017-4878-Samples
Analysis report: http://blog.talosintelligence.com/2018/02/group-123-goes-wild.html
Exploit source in Python script: https://github.com/vysec/CVE-2018-4878
cve-2018-4878.py is the exploit generation script, the shellcode is generated with metasploit, the default is a Windows calculator payload.
exploit.swf and index.html are the exploitation pages generated by cve-2018-4878.py.