Õë¶ÔÖÐÑǵØÇøÕþ¸®µÄй¥»÷»î¶¯£¬£¬ £¬£¬£¬£¬£¬Ö÷Òª·Ö·¢HAWKBALLºóÃÅ£»£»£»£»£»£»FusionPBX¶à¸öÎó²î£¬£¬ £¬£¬£¬£¬£¬¿Éµ¼ÖÂXSS¡¢ÏÂÁî×¢Èë¼°ÐÅϢй¶

Ðû²¼Ê±¼ä 2019-06-09

¡¾ÍþвÇ鱨¡¿


Õë¶ÔÖÐÑǵØÇøÕþ¸®µÄй¥»÷»î¶¯£¬£¬ £¬£¬£¬£¬£¬Ö÷Òª·Ö·¢HAWKBALLºóÃÅ

https://www.fireeye.com/blog/threat-research/2019/06/government-in-central-asia-targeted-with-hawkball-backdoor.html


Áè¼Ý4Íò¸öÈÝÆ÷ʵÀýÒòʹÓÃĬÈÏÉèÖñ£´æÌ»Â¶Î£º¦

https://www.infosecurity-magazine.com/news/researchers-find-40000-containers-1/


Diebold NixdorfÕë¶ÔÀϾÉOpteva ATMÖеÄRCEÎó²îÐû²¼ÖÒÑÔ

https://www.zdnet.com/article/diebold-nixdorf-warns-customers-of-rce-bug-in-older-atms/


¡¾Çå¾²Îó²î¡¿


Amcrest HDSeriesÏà»ú¶à¸öÎó²î£¬£¬ £¬£¬£¬£¬£¬¿Éµ¼ÖÂ×°±¸±»½ÓÊÜ

https://threatpost.com/amcrest-critical-security-issues/145507/


FusionPBX¶à¸öÎó²î£¬£¬ £¬£¬£¬£¬£¬¿Éµ¼ÖÂXSS¡¢ÏÂÁî×¢Èë¼°ÐÅϢй¶
https://securityboulevard.com/2019/06/rce-using-caller-id-multiple-vulnerabilities-in-fusionpbx/