¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20180929

Ðû²¼Ê±¼ä 2018-09-29

¡¾¹¥»÷ÊÂÎñ¡¿FacebookÔâÁãÈÕÎó²î¹¥»÷£¬£¬ £¬ £¬£¬£¬Ô¼5000ÍòÓû§µÄ»á¼ûÁîÅÆ±»ÇÔ


9ÔÂ28ÈÕFacebookÈ·ÈÏÆäÔâµ½ºÚ¿Í¹¥»÷£¬£¬ £¬ £¬£¬£¬¹¥»÷ÕßʹÓÃÁãÈÕÎó²îÇÔÈ¡ÁËÁè¼Ý5000ÍòÓû§µÄ»á¼ûÁîÅÆ¡£¡£¡£¡£¡£¸ÃÎó²î±£´æÓÚFacebookµÄView As¹¦Ð§ÖУ¬£¬ £¬ £¬£¬£¬¿ÉÔÊÐí¹¥»÷ÕßÇÔÈ¡Óû§µÄ»á¼ûÁîÅÆ²¢»á¼ûÓû§µÄ˽ÈËÐÅÏ¢£¬£¬ £¬ £¬£¬£¬¶øÎÞÐèÕË»§ÃÜÂë»òË«ÒòËØÑéÖ¤Âë¡£¡£¡£¡£¡£FacebookÒѽÓÄɲ½·¥×ÊÖú½ü9000ÍòÓû§ÖØÖÃÁË»á¼ûÁîÅÆ£¬£¬ £¬ £¬£¬£¬²¢½ûÓÃÁËView As¹¦Ð§¡£¡£¡£¡£¡£ÓÉÓÚÊÓ²ìÈÔ´¦ÓÚÔçÆÚ½×¶Î£¬£¬ £¬ £¬£¬£¬FacebookÉÐδȷ¶¨ÊÇ·ñÓÐÈκÎÕË»§±»ÀÄÓûòÐÅÏ¢±»»á¼û¡£¡£¡£¡£¡£


https://thehackernews.com/2018/09/facebook-account-hack.html


¡¾¹¥»÷ÊÂÎñ¡¿ÃÀÊ¥µØÑǸç¸ÛÔâÀÕË÷Èí¼þ¹¥»÷£¬£¬ £¬ £¬£¬£¬²¿·ÖÓªÒµÊÜÓ°Ïì


ÃÀ¹úÊ¥µØÑǸç¸ÛÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬ £¬ £¬£¬£¬ÆäITϵͳÊܵ½Ë𺦡£¡£¡£¡£¡£¿Ú°¶µÄ²¿·Ö¹«ÖÚЧÀÍÊܵ½Ó°Ï죬£¬ £¬ £¬£¬£¬°üÀ¨Í£¿£¿£¿£¿¿ÔÊÐí¡¢ÉÌҵЧÀͺ͹«¹²¼Í¼µÈ¡£¡£¡£¡£¡£¸Ã¿Ú°¶ÌåÏÖÒÑÊÕµ½ÀÕË÷Ʊ¾Ý£¬£¬ £¬ £¬£¬£¬ÒªÇóÒÔ±ÈÌØ±Ò¾ÙÐÐÖ§¸¶£¬£¬ £¬ £¬£¬£¬µ«²¢Î´Åû¶ÏêϸµÄ½ð¶î¡£¡£¡£¡£¡£ÏÖÔÚÕâÒ»ÊÂÎñ»¹ÔÚ½øÒ»²½µÄÊÓ²ìºÍ´¦Öóͷ£ÖУ¬£¬ £¬ £¬£¬£¬ÉÐδÅû¶¸ü¶àÏêϸÐÅÏ¢£¬£¬ £¬ £¬£¬£¬Ò²²»ÇåÎú¸ÃÊÂÎñÓë±¾Ô°ÍÈûÂÞÄǸ۵Ĺ¥»÷ÊÂÎñÊÇ·ñ±£´æ¹ØÁª¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/port-of-san-diego-affected-by-a-ransomware-attack/


¡¾Çå¾²Îó²î¡¿Google Project ZeroÅû¶ÐÂLinuxÄÚºËÎó²î¼°ÆäPoC


Google Project ZeroµÄÇå¾²Ñо¿Ö°Ô±Jann Horn·¢Ã÷ÐÂLinuxÄÚºËÎó²î£¨CVE-2018-17182£©¡£¡£¡£¡£¡£¸ÃÎó²îÊÇLinuxÄÚ´æÖÎÀí×ÓϵͳÖеÄuse-after-freeÎó²î£¬£¬ £¬ £¬£¬£¬¿ÉÔÊÐí·ÇÌØÈ¨Óû§ÌáȨÖÁrootȨÏÞ¡£¡£¡£¡£¡£Ñо¿Ö°Ô±»¹Åû¶ÁËÏà¹ØPoC¡£¡£¡£¡£¡£LinuxÄں˿ª·¢ÍŶÓÒѾ­ÔÚ×îеİ汾ÖÐÐÞ¸´Á˸ÃÎó²î£¬£¬ £¬ £¬£¬£¬µ«×èÖ¹ÖÜÈýDebianºÍUbuntuÖÐÉÐδ°üÀ¨¸ÃÐÞ¸´²¹¶¡¡£¡£¡£¡£¡£


https://thehackernews.com/2018/09/linux-kernel-exploit.html


¡¾Çå¾²Îó²î¡¿ZDIÅû¶¸»Ê¿µç»úAlpha 5ϵͳÖеĶà¸öÉÐδÐÞ¸´µÄÇå¾²Îó²î


ZDIÅû¶ÈÕ±¾µçÆø×°±¸¹«Ë¾¸»Ê¿µç»úµÄAlpha 5ÖÇÄÜËÅ·þϵͳÖеĶà¸öÇå¾²Îó²î£¬£¬ £¬ £¬£¬£¬°æ±¾3.7¼°Ö®Ç°µÄ°æ±¾Êܵ½Ó°Ïì¡£¡£¡£¡£¡£¸Ã²úÆ·Ö÷ÒªÓÃÓÚÑÇÖÞºÍÅ·ÖÞµÄÉÌÒµÉèÊ©ºÍÒªº¦ÖÆÔ첿·Ö¡£¡£¡£¡£¡£Îó²î°üÀ¨»º³åÇøÒç³öÎó²î£¨CVE-2018-14794ºÍCVE-2018-14788£©£¬£¬ £¬ £¬£¬£¬¿Éµ¼ÖÂí§Òâ´úÂëÖ´Ðм°Ãô¸ÐÐÅϢй¶¡£¡£¡£¡£¡£±ðµÄ£¬£¬ £¬ £¬£¬£¬Æ¾Ö¤ICS-CERT£¬£¬ £¬ £¬£¬£¬»¹°üÀ¨Á½¸ö»º³åÇøÒç³öÎó²î£¨CVE-2018-14802ºÍCVE-2018-14790£©¡£¡£¡£¡£¡£¸»Ê¿µç»úÉù³ÆÕýÔÚÆð¾¢ÐÞ¸´ÕâЩÎó²î¡£¡£¡£¡£¡£


https://www.securityweek.com/no-patches-critical-flaws-fuji-electric-servo-system-drives


¡¾¶ñÒâÈí¼þ¡¿Ñо¿ÍŶӷ¢Ã÷Ö÷ÒªÕë¶ÔÅ·ÑÇ´ó½ºÍ¶«ÄÏÑǵÄжñÒâÈí¼þNOKKI


Palo Alto NetworksµÄUnit 42ÍŶÓÐû²¼¹ØÓÚжñÒâÈí¼þNOKKIµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÓë֮ǰµÄ¶ñÒâÈí¼þ¼Ò×åKONNI±£´æ´úÂëÖØµþºÍ»ù´¡ÉèÊ©ÖØµþ£¬£¬ £¬ £¬£¬£¬Òò´ËÆä±³ºóµÄ¹¥»÷Õß¿ÉÄÜÊÇͳһ¸ö¡£¡£¡£¡£¡£NOKKIµÄ¶ñÒâ»î¶¯Ö÷ÒªÕë¶ÔÅ·ÑÇ´ó½ÒÔ¼°¶«ÄÏÑǵØÇø£¬£¬ £¬ £¬£¬£¬ÆäÄ¿µÄÍùÍù¾ßÓÐÕþÖÎÄîÍ·¡£¡£¡£¡£¡£ÆäC2ЧÀÍÆ÷λÓÚº«¹ú¾³ÄÚ¡£¡£¡£¡£¡£×ܵÄÀ´Ëµ£¬£¬ £¬ £¬£¬£¬Æ¾Ö¤C2ЭÒéµÄ²î±ð£¬£¬ £¬ £¬£¬£¬Ñо¿Ö°Ô±ÔÚ2018ÄêÍ·µ½2018Äê7ÔÂʱ´ú¹²ÊӲ쵽Á½²¨¹¥»÷À˳±¡£¡£¡£¡£¡£


https://researchcenter.paloaltonetworks.com/2018/09/unit42-new-konni-malware-attacking-eurasia-southeast-asia/


¡¾¶ñÒâÈí¼þ¡¿Ñо¿Ö°Ô±ÔÚGoogle PlayÖз¢Ã÷ÒøÐÐľÂíRazdel


ESETÑо¿Ö°Ô±ÔÚGoogle PlayÖз¢Ã÷ÒøÐÐľÂíRazdel£¬£¬ £¬ £¬£¬£¬¸ÃľÂíαװ³Éµç»°ºÍÓïÒôÂ¼ÖÆapp QRecorder£¬£¬ £¬ £¬£¬£¬Ö÷ÒªÕë¶ÔÅ·ÖÞÒøÐеÄÓû§¡£¡£¡£¡£¡£RazdelÊÇÒøÐÐľÂíBankBotµÄÒ»¸ö±äÖÖ£¬£¬ £¬ £¬£¬£¬Æ¾Ö¤Çå¾²Ñо¿Ô±Lukas StefankoµÄ˵·¨£¬£¬ £¬ £¬£¬£¬¸ÃľÂíµÄÏÂÔØ´ÎÊý´ï1Íò¶à´Î¡£¡£¡£¡£¡£RazdelÕë¶ÔµÄÒøÐаüÀ¨Air Bank¡¢Equa¡¢ING¡¢Bawag¡¢Fio¡¢OberbankºÍBank Austria¡£¡£¡£¡£¡£Æ¾Ö¤½Ý¿Ë¾¯·½µÄÉùÃ÷£¬£¬ £¬ £¬£¬£¬QRecorder¹²Ñ¬È¾ÁË5Ãû½Ý¿Ë¹«Ãñ£¬£¬ £¬ £¬£¬£¬²¢´ÓËûÃǵÄÕË»§ÖÐÇÔÈ¡ÁËÁè¼Ý7.8ÍòÅ·Ôª¡£¡£¡£¡£¡£


https://securityaffairs.co/wordpress/76637/malware/qrecorder-app-malware.html



¡¾¼øºÚµ£±£Íø¼¯ÍÅADLabÕûÀíÐû²¼¡¿