Skip to content
KitploitKITPLOIT
工具博客
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
SIGRed — 检测通过 CVE-2020-1350(又名 SIGRed)利用 Microsoft Windows DNS 服务器的尝试 | Kitploit
工具/GitHubGitHub/corelight/sigred
漏洞分析漏洞利用网络安全威胁情报入侵检测DNS 分析
GitHubcorelight/sigred

SIGRed

检测通过 CVE-2020-1350(又名 SIGRed)利用 Microsoft Windows DNS 服务器的尝试

查看仓库
956年前尚未审核

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享

CVE-2020-1350 (又名 SIGRed) v0.30

摘要:

一个 Zeek 包,用于检测通过 CVE-2020-1350(又名 SIGRed - CVE 评分为 10.0)利用 Microsoft Windows DNS 服务器的尝试。

参考链接:

https://research.checkpoint.com/2020/resolving-your-way-into-domain-admin-exploiting-a-17-year-old-bug-in-windows-dns-servers/
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1350
https://cve.mitre.org/cgi-bin/cvename.cgi?name=ALAS-2020-1350

发出的通知:

NoticeFidelity
CVE_2020_1350::CVE_2020_1350_Detected_High_Confidence 已检测到 CVE-2020-1350 Windows DNS 漏洞利用(CVE10)(高置信度,大型 SIG/KEY 响应)。请参阅链接: https://cve.mitre.org/cgi-bin/cvename.cgi?name=ALAS-2020-1350 和 https://research.checkpoint.com/2020/resolving-your-way-into-domain-admin-exploiting-a-17-year-old-bug-in-windows-dns-servers/High
已检测到潜在的 CVE-2020-1350 Windows DNS 漏洞利用(CVE10)(大型 DNS RRSIG/TKEY 响应)。请参阅链接: https://cve.mitre.org/cgi-bin/cvename.cgi?name=ALAS-2020-1350 和 https://research.checkpoint.com/2020/resolving-your-way-into-domain-admin-exploiting-a-17-year-old-bug-in-windows-dns-servers/Medium/High
已检测到潜在的 CVE-2020-1350 Windows DNS 漏洞利用(CVE10)(大型 DNS 响应)。请参阅链接: https://cve.mitre.org/cgi-bin/cvename.cgi?name=ALAS-2020-1350 和 https://research.checkpoint.com/2020/resolving-your-way-into-domain-admin-exploiting-a-17-year-old-bug-in-windows-dns-servers/Medium/High

默认情况下,所有通知均处于启用状态。但是,如果您只想启用高置信度通知(由于噪音/性能或其他原因),可以将 scripts/CVE-2020-1350.zeek 中的选项更改为 True,即 option only_enable_high_fidelity_notice: bool = T;

下载工具