CVE-2025-53770
【図表】 4L4MD4Rからの身代金要求書 復号化の指示 出典: https://unit42.paloaltonetworks.com/ja/microsoft-sharepoint-cve-2025-49704-cve-2025-49706-cve-2025-53770/ 【概要】 CVE 内容 CVSSスコア CVE-2025-49704 SharePointの認証処理に不備があり、…
【図表】 Vulnerability Summary 出典: https://github.com/soltanali0/CVE-2025-53770-Exploit 【Exploit Code】 ◆CVE-2025-53770-Exploit (soltanali0, 2025/07/25) https://github.com/soltanali0/CVE-2025-53770-Exploit 【関連まとめ記事】◆全体まとめ …
【図表】 Webシェルは、システムのmachineKey設定からValidationKeyやDecryptionKeyなどの暗号鍵を取得するよう設計されています SharePointの認証を回避するために使用された悪意あるPOSTリクエスト .NETのMachineKeySectionにアクセスし、SharePointの暗号…
【訳】オンプレミスのSharePointの脆弱性の悪用を阻止する 【図表】 図 1. ToolPane エンドポイントへの POST リクエスト 図 2. SharePoint の脆弱性を悪用してランサムウェアに誘導する Storm-2603 の攻撃チェーン 出典: https://www.microsoft.com/en-us/s…
【ブログ】 ◆CVE-2025-53770の検出:Microsoft SharePointのゼロデイ脆弱性がRCE攻撃に悪用中 (SOC Prime, 2025/07/21) https://socprime.com/ja/blog/latest-threats/detect-cve-2025-53770-exploitation/