½©Ê¬ÍøÂçGafgyt DDoS¹¥»÷ValveÓÎϷЧÀÍÆ÷£»£»£»£»´ó×ÚQNAP NAS×°±¸Ñ¬È¾¶ñÒâÈí¼þQSnatch

Ðû²¼Ê±¼ä 2019-11-01
1¡¢²Æ²ú500Ç¿¹«Ë¾µÄ2100Íò±»µÁƾ֤ÔÚ°µÍø³öÊÛ

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨

ImmuniWebÔÚÒ»·Ý±¨¸æÖÐÌåÏÖ°µÍøÖб£´æÁè¼Ý2100Íò¸ö´Ó²Æ²ú500Ç¿¹«Ë¾ÍµÇÔµÄÆ¾Ö¤£¬£¬ £¬£¬ÆäÖдó´ó¶¼À´×ÔÓڿƼ¼¹«Ë¾£¬£¬ £¬£¬µ«¸ÃÃûµ¥Ò²°üÀ¨½ðÈÚ¡¢Ò½ÁÆ¡¢ÄÜÔ´¡¢µçÐÅ¡¢ÁãÊÛ¡¢¹¤Òµ¡¢ÔËÊä¡¢º½¿Õº½Ìì¼°¹ú·ÀÁìÓòµÄÆóÒµ¡£¡£¡£¡£¡£ ¡£¡£²¢²»ÊÇËùÓеı»µÁƾ֤¶¼ÊÇеÄ£¬£¬ £¬£¬Ñо¿Ö°Ô±³ÆÔ¼1600Íò¸öƾ֤ÊÇÔÚÒÑÍù12¸öÔÂÄÚ±»µÁµÄ¡£¡£¡£¡£¡£ ¡£¡£95%µÄƾ֤°üÀ¨Î´¼ÓÃܵĻòÊÇÓɹ¥»÷ÕßÆÆ½âµÄÃ÷ÎÄÃÜÂë¡£¡£¡£¡£¡£ ¡£¡£Ö»¹Ü±»µÁƾ֤µÄ×ÜÊý´ï2100Íò£¬£¬ £¬£¬µ«Ö»ÓÐ490ÍòÊDz»Öظ´µÄ£¬£¬ £¬£¬ÕâÅú×¢´ó×ÚÓû§ÔÚʹÓÃÏàͬ»òÏàËÆµÄÃÜÂë¡£¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/21-million-logins-for-top-500-firms-offered-on-the-dark-web/

2¡¢ÁãÊÛÉÌBed Bath£¦BeyondÔ¼1%¿Í»§ÐÅÏ¢±»µÁ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ÃÀ¹úÁãÊÛÉÌBed Bath£¦BeyondÔÚÖܶþÌá½»¸øÖ¤È¯ÉúÒâίԱ»á£¨SEC£©µÄ±¨¸æÖÐ͸¶£¬£¬ £¬£¬Î´¾­ÊÚȨµÄ¹¥»÷Õß´ÓÆäϵͳÖÐÇÔÈ¡Á˲¿·Ö¿Í»§µÄµÇ¼ÐÅÏ¢£¬£¬ £¬£¬°üÀ¨µç×ÓÓʼþºÍÃÜÂë¡£¡£¡£¡£¡£ ¡£¡£ÊܸÃÊÂÎñÓ°ÏìµÄÓû§ÊýÄ¿½ÏÉÙ£¬£¬ £¬£¬²»µ½Bed Bath£¦BeyondÔÚÏ߿ͻ§ÕÊ»§µÄ1£¥¡£¡£¡£¡£¡£ ¡£¡£¸Ã¹«Ë¾Ã»ÓÐ͸¶¸ü¶àϸ½Ú£¬£¬ £¬£¬µ«Ö¸³ö¿Í»§µÄÐÅÓÿ¨Êý¾Ý²»ÊÜÓ°Ïì¡£¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/bed-bath-and-beyond-discloses-customer-login-credentials-breach/

3¡¢EmsisoftÐû²¼ÀÕË÷Èí¼þParadiseµÄ½âÃܹ¤¾ß

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨

EmsisoftÐû²¼ÀÕË÷Èí¼þParadiseµÄ½âÃܹ¤¾ß£¬£¬ £¬£¬¿ÉÒÔ×ÊÖúÊܺ¦ÕßÃ⺬»ìÃÜÎļþ¡£¡£¡£¡£¡£ ¡£¡£¸Ã½âÃÜÆ÷×îÔç¿ÉÖ§³Ö2017ÄêµÄParadise°æ±¾£¬£¬ £¬£¬µ«²¢·ÇËùÓеÄParadise±äÌå¶¼¿É½âÃÜ¡£¡£¡£¡£¡£ ¡£¡£¸Ã½âÃÜÆ÷Ö§³ÖµÄÀ©Õ¹Ãû°üÀ¨.2ksys19¡¢.p3rf0rm4¡¢.prt¡¢.exploit¡¢.immortal¡¢.Recognizer¡¢.sambo¡¢.paradise¡¢.FC¼°.sev¡£¡£¡£¡£¡£ ¡£¡£Óû§¿É´ÓEmsisoft¹ÙÍøÉÏÏÂÔØ¸Ã½âÃÜÆ÷¡£¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/paradise-ransomware-decryptor-gets-your-files-back-for-free/

4¡¢½©Ê¬ÍøÂçGafgyt DDoS¹¥»÷ValveÓÎϷЧÀÍÆ÷


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


½©Ê¬ÍøÂçGafgytµÄбäÌåÕýÔÚÆð¾¢Ñ¬È¾Zyxel¡¢»ªÎªÂ·ÓÉÆ÷¼°¾ßÓÐRealtek RTL81xxоƬ×éµÄ×°±¸£¬£¬ £¬£¬Õë¶ÔValveµÄÓÎϷЧÀÍÆ÷ÌᳫDDoS¹¥»÷¡£¡£¡£¡£¡£ ¡£¡£¸Ã±äÌå¼ÓÈëÁËÈý¸öÒÑÖªµÄRCEÎó²îʹÓ㬣¬ £¬£¬°üÀ¨ZYXEL P660HN-T1AÎó²î£¨CVE-2017-18368£©¡¢»ªÎªHG532Îó²î£¨CVE-2017-17215£©ºÍRealtek RTL81XXоƬ×éÎó²î£¨CVE-2014-8361£©¡£¡£¡£¡£¡£ ¡£¡£Ñо¿Ö°Ô±ÌåÏÖÔÚShodanÉÏ¿ÉËÑË÷µ½3.2Íǫ̀Ò×Êܹ¥»÷µÄ×°±¸¡£¡£¡£¡£¡£ ¡£¡£¸Ã±äÌå¿Éͨ¹ýVSEÏÂÁî¹¥»÷ÔËÐÐValve SourceÒýÇæµÄÓÎϷЧÀÍÆ÷£¬£¬ £¬£¬¿ÉÄÜÊÜÓ°ÏìµÄÓÎÏ·°üÀ¨°ëÌõÃüºÍÍŶÓÒªÈû2¡£¡£¡£¡£¡£ ¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/new-gafgyt-variant-recruits-routers-to-ddos-servers-for-valve-games/

5¡¢´ó×ÚQNAP NAS×°±¸Ñ¬È¾¶ñÒâÈí¼þQSnatch

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ºÚ¿ÍÕýÔÚʹÓÃжñÒâÈí¼þQSnatchѬȾ̨Í幩ӦÉÌQNAPµÄNAS×°±¸£¬£¬ £¬£¬½öÔڵ¹ú¾Í±¨¸æÁË7000¶àÆðѬȾ£¬£¬ £¬£¬¶ø¸Ã¶ñÒâÈí¼þÈÔÔÚÈö²¥¡£¡£¡£¡£¡£ ¡£¡£·ÒÀ¼¹ú¼ÒÍøÂçÇå¾²ÖÐÐÄ£¨NCSC-FI£©ÔÚÉÏÖÜÒ²ÖÒÑÔÁ˸öñÒâÈí¼þ£¬£¬ £¬£¬ÏÖÔÚÉÐδ·¢Ã÷ÕâÖÖÐÂÍþвÔõÑùÈö²¥ºÍѬȾQNAP NASϵͳ£¬£¬ £¬£¬µ«Ò»µ©»ñµÃ¶Ô×°±¸µÄ»á¼ûȨÏÞ£¬£¬ £¬£¬QSnatch¾Í»á½øÈë¹Ì¼þ²¢»ñµÃ³¤ÆÚÐÔ¡£¡£¡£¡£¡£ ¡£¡£ÏÖÔÚΨһȷÈÏÄÜɾ³ýQSnatchµÄÒªÁìÊǶÔNAS×°±¸¾ÙÐÐÍêÈ«³ö³§ÖØÖᣡ£¡£¡£¡£ ¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.zdnet.com/article/thousands-of-qnap-nas-devices-have-been-infected-with-the-qsnatch-malware/

6¡¢RittalÀäȴϵͳÉí·ÝÑéÖ¤ÈÆ¹ý¼°Ó²±àÂëÆ¾Ö¤Îó²î


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


¹¤ÒµÍøÂçÇå¾²¹«Ë¾Applied RiskÔڵ¹úRittalÖÆÔìµÄSK 3232ϵÁÐÀäÈ´Æ÷Öз¢Ã÷Á½¸öÓëÉí·ÝÑéÖ¤ÓйصÄÑÏÖØÎó²î¡£¡£¡£¡£¡£ ¡£¡£RittalÊÇFriedhelm Loh GroupµÄ×Ó¹«Ë¾£¬£¬ £¬£¬×¨Ñ§Éú²úÓÃÓÚ¹¤ÒµÇéÐκÍÊý¾ÝÖÐÐĵĻú¹ñϵͳ¡£¡£¡£¡£¡£ ¡£¡£¸Ã¿îÀäÈ´Æ÷רΪҺÌåÀäÈ´Ì×¼þ£¨LCP£©ºÍ»ú·¿¿Õµ÷£¨CRAC£©µÈÉè¼Æ¡£¡£¡£¡£¡£ ¡£¡£µÚÒ»¸öÎó²î£¨CVE-2019-13549£©Ê¹¹¥»÷Õß¿ÉÒÔͨ¹ýµ¼º½µ½Ìض¨URIÀ´ÈƹýÉí·ÝÑéÖ¤²¢»á¼ûÒªº¦¹¦Ð§¡£¡£¡£¡£¡£ ¡£¡£µÚ¶þ¸öÎó²î£¨CVE-2019-13553£©ÔòÓëÓ²±àÂëÆ¾Ö¤ÓйØ¡£¡£¡£¡£¡£ ¡£¡£Æ¾Ö¤CISAµÄͨ¸æ£¬£¬ £¬£¬ÕâЩÎó²î¶¼¿ÉÒÔÔ¶³ÌʹÓ㬣¬ £¬£¬¶øÊÜÓ°ÏìµÄϵͳ±»ÆÕ±éÓÃÓÚÈ«ÇòµÄIT¡¢ÄÜÔ´¡¢Òªº¦ÖÆÔ졢ͨѶºÍÉÌÒµÉèÊ©ÁìÓò¡£¡£¡£¡£¡£ ¡£¡£Applied RiskÌåÏÖÒÑÓÚ2019Äê1ÔÂÏò¸Ã¹©Ó¦É̱¨¸æÁËÎó²î£¬£¬ £¬£¬µ«Î´ÊÕµ½ÈκλØÓ¦£¬£¬ £¬£¬Îó²îÈÔδÐÞ¸´¡£¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/critical-vulnerabilities-found-rittal-cooling-system