hellomsg
V2EX  ›  路由器

路由器被植入 SSH 后门,这是真的?

  •  
  •   hellomsg · Jun 17, 2025 · 1820 views
    This topic created in 377 days ago, the information mentioned may be changed or developed.

    无意间刷到的,

    https://mp.weixin.qq.com/s/Nuq8-rCvzCnMis97XFLpEw

    是真的吗?

    3 replies    2025-06-21 13:12:15 +08:00
    ixixi
        1
    ixixi  
       Jun 17, 2025
    路由器也都是 linux 系统,且固件更新慢 , 干啥都完全有可能
    Kenshiro
        2
    Kenshiro  
       Jun 21, 2025 via Android
    好几周前的了,华硕的也中招了,目前没看到任何修补补丁
    Kenshiro
        3
    Kenshiro  
       Jun 21, 2025 via Android
    bleepingcomputer.com/news/security/botnet-hacks-9-000-plus-asus-routers-to-add-persistent-ssh-backdoor

    排查方法

    查有没有可疑的 authorized_keys
    防火墙 ban 掉以下 IP 段

    101.99.91[.]151
    101.99.94[.]173
    79.141.163[.]179
    111.90.146[.]237
    About   ·   Help   ·   Advertise   ·   Blog   ·   API   ·   FAQ   ·   Solana   ·   2903 Online   Highest 6679   ·     Select Language
    创意工作者们的社区
    World is powered by solitude
    VERSION: 3.9.8.5 · 31ms · UTC 15:00 · PVG 23:00 · LAX 08:00 · JFK 11:00
    ♥ Do have faith in what you're doing.