@inproceedings{SisLab2362, booktitle = {H?i th{\h a}o l?n th? I M?t s? v?n {\dj}? ch{\d o}n l{\d o}c v? An to{\`a}n an ninh th{\^o}ng tin}, month = {November}, title = {Ph{\'a}t tri?n c{\^o}ng c{\d u} d{\d i}ch ng??c firmware tr{\^e}n thi?t b{\d i} {\dj}{\d i}nh tuy?n}, author = {Nghi Phu Tran and Huy Trung Nguyen and Quoc Dung Ngo and Ngoc Binh Nguyen and Dai Tho Nguyen}, year = {2016}, url = {https://eprints.uet.vnu.edu.vn/eprints/id/eprint/2362/}, abstract = {V{\d a}n v?t k?t n?i (Internet of Things) hi?n nay {\dj}??c s? d{\d u}ng ng{\`a}y c{\`a}ng r?ng r{\~a}i trong cu?c s?ng, {\dj}i k{\`e}m v?i nh?ng ti?n {\'i}ch m?i c{\^o}ng ngh? n{\`a}y mang l{\d a}i {\dj}{\'o} ch{\'i}nh l{\`a} v?n {\dj}? an ninh, an to{\`a}n th{\^o}ng tin. K?t qu{\h a} c{\'a}c nghi{\^e}n c?u g?n {\dj}{\^a}y {\dj}{\~a} ch{\h i} ra r?ng c{\'a}c l? h?ng b{\h a}o m?t v{\`a} {\dj}?c bi?t l{\`a} m{\~a} {\dj}?c xu?t hi?n r?t nhi?u tr{\^e}n h? {\dj}i?u h{\`a}nh c{\h u}a c{\'a}c thi?t b{\d i} m{\d a}ng (firmware). V{\`i} t{\'i}nh {\dj}?c th{\`u} cao c{\h u}a c{\'a}c thi?t b{\d i} m{\d a}ng c{\~u}ng nh? c{\h u}a c{\'a}c firmware m{\`a} vi?c ph{\^a}n t{\'i}ch, r{\`a} qu{\'e}t c{\'a}c l? h?ng b{\h a}o m?t v{\`a} m{\~a} {\dj}?c g?p r?t nhi?u tr? ng{\d a}i. H?n n?a, do ch?a c{\'o} {\dj}??c s? quan t{\^a}m {\dj}{\'u}ng m?c c{\h u}a c{\'a} nh{\^a}n, t? ch?c l?n n{\^e}n vi?c ph{\'a}t tri?n c{\'a}c c{\^o}ng c{\d u} c{\~u}ng nh? ph??ng ph{\'a}p ph{\^a}n t{\'i}ch, ph{\'a}t hi?n c{\`o}n nhi?u h{\d a}n ch?. H{\d a}n ch? c{\'o} th? k? {\dj}?n l{\`a} kh{\h a} n{\u a}ng tr{\'i}ch ch{\d o}n firmware v{\`a} d{\d i}ch ng??c ch{\'u}ng th{\`a}nh m{\~a} t??ng minh {\dj}? t? {\dj}{\'o} c{\'o} th? s? d{\d u}ng c{\'a}c ph??ng ph{\'a}p ph{\^a}n t{\'i}ch l? h?ng, m{\~a} {\dj}?c kh{\'a}c nhau. Trong b{\`a}i b{\'a}o n{\`a}y, C500-Toolkit s{\~e} {\dj}??c gi?i thi?u v?i m{\d u}c ti{\^e}u t{\u a}ng hi?u su?t tr{\'i}ch ch{\d o}n v{\`a} d{\d i}ch ng??c firmware c{\h u}a c{\'a}c thi?t b{\d i} {\dj}{\d i}nh tuy?n. G?n 13.674 firmware t? 27 nh{\`a} ph{\^a}n ph?i {\dj}??c s? d{\d u}ng {\dj}? {\dj}{\'a}nh gi{\'a} v{\`a} so s{\'a}nh v?i c{\'a}c c{\^o}ng c{\d u} hi?n c{\'o} nh? fmk, binwalk v{\`a} m{\^o} {\dj}un tr{\'i}ch ch{\d o}n, d{\d i}ch ng??c c{\h u}a firmadyne.} }