¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180716
Ðû²¼Ê±¼ä 2018-07-16¡¾¶ñÒâÈí¼þ¡¿ÒøÐÐľÂíDorkbot¾íÍÁÖØÀ´£¬£¬£¬£¬Õ¼ÒøÐжñÒâÈí¼þÊг¡µÄ25%
ƾ֤Check PointµÄ×îÐÂÊý¾Ý£¬£¬£¬£¬ÒøÐÐľÂíDorkbotÔÚ2018Äê¾íÍÁÖØÀ´£¬£¬£¬£¬³ÉΪһ¸öÑÏÖØµÄÍþв¡£¡£¡£¡£¡£¡£¡£Dorkbot×îÔç¿ÉÒÔ×·Ëݵ½2012Ä꣬£¬£¬£¬ÆäÖ÷ÒªÓÃÓÚÇÔÈ¡Óû§µÄÒøÐеǼƾ֤¡£¡£¡£¡£¡£¡£¡£ÔÚ2018ÄêÉϰëÄ꣬£¬£¬£¬È«ÇòÒøÐжñÒâÈí¼þÊг¡Õ¼ÓÐǰÈýλµÄ»®·ÖÊÇRamnit£¨27£¥£©¡¢Dorkbot£¨25£¥£©ºÍZeus£¨13£¥£©¡£¡£¡£¡£¡£¡£¡£DorkbotÒѳÉΪ2018ÄêµÚ¶þ´óÁîÈËÍ·ÌÛµÄÒøÐжñÒâÈí¼þ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://threatpost.com/threatlist-6-year-old-dorkbot-banking-malware-resurfaces-as-big-threat/133898/
¡¾¶ñÒâÈí¼þ¡¿Çå¾²Ñо¿Ö°Ô±·¢Ã÷ÀÕË÷Èí¼þGandCrabµÄбäÌåv4.1
FortinetÑо¿Ö°Ô±·¢Ã÷ÀÕË÷Èí¼þGandCrabµÄÒ»¸öа汾v4.1¡£¡£¡£¡£¡£¡£¡£¸Ã±äÌåͨ¹ý±»ÉøÍ¸µÄÍøÕ¾Èö²¥£¬£¬£¬£¬²¢»áɱËÀÐí¶à¿ÉÄÜ×ÌÈÅÎļþ¼ÓÃÜÀú³ÌµÄÀú³Ì£¬£¬£¬£¬ÀýÈçmsftesql.exe¡¢sqlagent.exeºÍoracle.exeµÈ£¬£¬£¬£¬ÒÔ±ã¼ÓÃÜÕâЩӦÓõÄÊý¾ÝÎļþ¡£¡£¡£¡£¡£¡£¡£GandCrabÊÇÒ»ÖÖ½ñÄêзºÆðµÄÍþв£¬£¬£¬£¬×èÖ¹3Ô·ݸÃÀÕË÷Èí¼þÒѾѬȾÁËÁè¼Ý5Íò¸öϵͳ£¬£¬£¬£¬²¢Îª¹¥»÷Õß´øÀ´Áè¼Ý60ÍòÃÀÔªµÄÊê½ð¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/74443/malware/gandcrab-ransomware-4-1.html
¡¾ÍþвÇ鱨¡¿Ñо¿Ö°Ô±·¢Ã÷Ö÷ÒªÕë¶ÔWordPressÍøÕ¾µÄÀ¬»øÌ¸ÂÛ¹¥»÷»î¶¯
ImpervaÑо¿Ö°Ô±·¢Ã÷Õë¶ÔWordPressÍøÕ¾µÄÀ¬»øÌ¸ÂÛ¹¥»÷»î¶¯¼¤Ôö£¬£¬£¬£¬¸Ã»î¶¯ÊÇÓÉÒ»¸ö°üÀ¨Áè¼Ý1200¸ö²î±ðIPµÄ½©Ê¬ÍøÂçÌᳫµÄ£¬£¬£¬£¬ÓÃÓÚͨ¹ýÀ¬»øÌ¸ÂÛÖеÄÁ´½Ó½«Óû§µ¼Á÷ÖÁÌìϱ²©²ÊÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¸Ã½©Ê¬ÍøÂçÖ÷ҪʹÓÃSpray and PrayÊÖÒÕÕë¶ÔWordPressÍøÕ¾¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±»¹·¢Ã÷¸Ã½©Ê¬ÍøÂçÔøÓÃÓÚÌᳫÆäËü·ÇÀ¬»øÌ¸Â۵Ĺ¥»÷»î¶¯£¬£¬£¬£¬ÕâÒâζ׏¥»÷Õß¿ÉÄÜÊÇ×âÓÃÁ˸ý©Ê¬ÍøÂç¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.imperva.com/blog/2018/07/a-wordpress-spambot-wants-you-to-bet-on-the-2018-fifa-world-cup/
¡¾¹¥»÷ÊÂÎñ¡¿ESLintµÄnpmÕË»§ÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬²¿·ÖÓû§µÄnpmƾ֤±»ÇÔ
ESLintµÄnpm¿ª·¢ÕßÕË»§ÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬¹¥»÷Õß½«¶ñÒâ´úÂë×¢ÈëÁ˸ÃJavaScript¿â£¨Èí¼þ°üÃûΪeslint-scope£©£¬£¬£¬£¬ÓÃÓÚÇÔÈ¡Óû§µÄnpmƾ֤¡£¡£¡£¡£¡£¡£¡£´Ë´Î¹¥»÷ÊÂÎñ±¬·¢ÔÚ7ÔÂ11ÈÕµÄÒ¹Íí£¬£¬£¬£¬±»Ö²Èë¶ñÒâ´úÂëµÄÈí¼þ°ü°æ±¾ÊÇeslint-scope 3.7.2£¬£¬£¬£¬ÏÖÔڸð汾Òѱ»ÏÂÏß¡£¡£¡£¡£¡£¡£¡£Ô¼4500¸öÓû§µÄnpm»á¼ûÁîÅÆ±»ÇÔ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/compromised-javascript-package-caught-stealing-npm-credentials/
¡¾Îó²î²¹¶¡¡¿µçÍø·À»¤¹«Ë¾SELÐÞ¸´ÆäÖÎÀíºÍÉèÖù¤¾ßÖеĶà¸öÇå¾²Îó²î
µçÍø·À»¤¹«Ë¾SELÐÞ¸´ÁËÆäSEL Compass¼°AcSELerator ArchitectÖеĶà¸öÇå¾²Îó²î£¬£¬£¬£¬°üÀ¨¿Éµ¼ÖÂÐÅϢй¶»òí§Òâ´úÂëÖ´Ðм°DoSµÄXXEÎó²î£¨CVE-2018-10600£©ºÍ¿Éµ¼ÖÂDoSµÄÎó²î£¨CVE-2018-10608£©¡£¡£¡£¡£¡£¡£¡£SELÔÚ°æ±¾SEL Compass v3.0.6.1ºÍSEL AcSELerator v2.2.29.0ÖÐÐÞ¸´ÁËÕâЩÎó²î£¬£¬£¬£¬½¨ÒéÓû§¾¡¿ì¾ÙÐиüС£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.securityweek.com/power-grid-protection-firm-sel-patches-severe-software-flaws
¡¾Îó²î²¹¶¡¡¿Ñо¿ÍŶÓÅû¶Antenna HouseÖеĶà¸öÇå¾²Îó²î
˼¿ÆTalosÑо¿ÍŶÓÔÚAntenna HouseµÄOffice ServerÎĵµ×ª»»Æ÷£¨OSDC£©Öз¢Ã÷ÁË6¸öÇå¾²Îó²î¡£¡£¡£¡£¡£¡£¡£ÕâЩÎó²î¶¼¿Éµ¼ÖÂÔ¶³Ì¹¥»÷ÕßÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£OSDCÊÇÒ»¸öÖ¼ÔÚ½«Microsoft OfficeÎĵµ×ª»»ÎªPDFºÍSVGÎĵµµÄ¹¤¾ß¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷µÄÎó²î°üÀ¨CVE-2018-3929~CVE-2018-3936£¬£¬£¬£¬ÊÜÓ°ÏìµÄ°æ±¾ÊÇOSDC V6.1 Pro MR2£¬£¬£¬£¬½¨ÒéÓû§¸üÐÂÖÁ×îа汾¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://blog.talosintelligence.com/2018/07/vuln-spotlight-antenna.html