ÐÅÏ¢Çå¾²Öܱ¨-2019ÄêµÚ11ÖÜ
Ðû²¼Ê±¼ä 2019-03-18±¾ÖÜÇ徲̬ÊÆ×ÛÊö
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊÇGoogle PlayÖÐ210¸öAPPѬȾ¹ã¸æÈí¼þSimBad£¬²¨¼°1.5ÒÚÓû§£»¿¨°Í˹»ùÐû²¼2018ÄêÀ¬»øÓʼþ¼°´¹ÂÚ¹¥»÷±¨¸æ£»Õë¶ÔWordPressµÄй¥»÷À˳±£¬Ö÷ҪʹÓùºÎï³µ²å¼þÖеÄXSSÎó²î£»ÐµÄATM skimmer¹¥»÷£¬¿ÉЮÖÆATMÄÚÖÃÉãÏñÍ·£»ÃÀ¹úJacksonÏØÕþ¸®ÏòÀÕË÷Èí¼þ¹¥»÷ÕßÖ§¸¶40ÍòÃÀÔªÊê½ð¡£
ƾ֤ÒÔÉÏ×ÛÊö£¬±¾ÖÜÇå¾²ÍþвΪÖС£
Ö÷ÒªÇå¾²Îó²îÁбí
Microsoft Internet Explorer´¦Öóͷ£Äڴ湤¾ß±£´æÇå¾²Îó²î£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄwebÇëÇó£¬ÓÕʹÓû§ÆÊÎö£¬¿ÉʹӦÓóÌÐò±ÀÀ£»òÖ´ÐÐí§Òâ´úÂë¡£
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2019-0783
2. Microsoft Windows ActiveX CVE-2019-0784Ô¶³Ì´úÂëÖ´ÐÐÎó²î
Microsoft ActiveX Data objects (ADO)´¦Öóͷ£Äڴ湤¾ß±£´æÇå¾²Îó²î£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬿ÉʹӦÓóÌÐò±ÀÀ£»òÖ´ÐÐí§Òâ´úÂë¡£
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2019-0784
3. Microsoft AzureÇå¾²ÏÞÖÆÈƹýÎó²î
Microsoft Azure SSH KeypairsʹÓÃcloud-initµÄLinuxÓ³ÏñÉèÖÃÈí¼þµÄ¸ü¸Ä£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇó£¬ÈƹýÇå¾²ÏÞÖÆ¡£
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2019-0816
4. Google Chrome V8¶ÑÒç³öÎó²î
Google Chrome V8±£´æ¶Ñ»º³åÇøÒç³öÎó²î£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄwebÒ³£¬ÓÕʹÓû§ÆÊÎö£¬¿ÉÌáÉýȨÏÞ¡£
https://chromereleases.googleblog.com/2019/03/stable-channel-update-for-desktop_12.html
5. LCDS LAquis SCADAÔ½½çдÎó²î
LCDS LAquis SCADA´¦Öóͷ£elsÎļþ±£´æÔ½½çдÎó²î£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬿ÉÖ´ÐÐí§Òâ´úÂë¡£
https://ics-cert.us-cert.gov/advisories/ICSA-19-073-01
Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö
ƾ֤Check PointµÄÒ»·Ý±¨¸æ£¬Ñо¿Ö°Ô±ÔÚGoogle PlayÖз¢Ã÷210¸öAPPѬȾÁ˹ã¸æÈí¼þSimBad£¬ÕâЩAPPµÄ×Ü×°ÖÃÁ¿´ï1.5ÒڴΡ£´ó´ó¶¼APP¶¼ÊÇÈü³µ»òÉä»÷ÓÎÏ·£¬ÆäÖÐÃûΪSnow Heavy Excavator SimulatorµÄAPPÏÂÔØÁ¿Áè¼Ý1000Íò¡£SimBadαװ³É¹ã¸æ¹¤¾ß°üRXDrioder£¬µ±Óû§×°ÖÃÁËÊÜѬȾµÄAPPºó£¬¸ÃAPP»áÔÚ×°±¸Æô¶¯»òÓû§½âËøʱ×Ô¶¯Æô¶¯²¢ÏÔʾ¹ã¸æ£¬±ðµÄ£¬¶ñÒâ´úÂ뻹»áÖ´ÐдÓC&C·þÎñÆ÷ÎüÊÕµ½µÄÏÂÁ°üÀ¨É¾³ýͼ±ê¡¢ºǫ́¹ã¸æ¡¢·¿ªÍøÒ³µÈ¡£GoogleÒѾϼÜÁËÕâЩAPP¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/simbad-adware-found-in-210-android-apps-with-over-150m-installs/
2¡¢¿¨°Í˹»ùÐû²¼2018ÄêÀ¬»øÓʼþ¼°´¹ÂÚ¹¥»÷±¨¸æ
¿¨°Í˹»ùÐû²¼2018ÄêµÄÀ¬»øÓʼþºÍ´¹ÂÚ¹¥»÷ͳ¼Æ±¨¸æ£¬±¨¸æµÄÖ÷Òª·¢Ã÷°üÀ¨£ºÈ«Çòµç×ÓÓʼþÁ÷Á¿ÖеÄÀ¬»øÓʼþÊý¾ÝµÄÕ¼±ÈΪ52.48%£¬±È2017Äê½µµÍ4.15¸ö°Ù·Öµã£»2018Äê×î´óµÄÀ¬»øÓʼþȪԴ¹úÊÇÖйú£¨11.69£¥£©£»74.15£¥µÄÀ¬»øÓʼþСÓÚ2 KB£»À¬»øÓʼþÖÐ×î³£±»¼ì²âµ½µÄÎó²îʹÓÃÊÇWin32.CVE-2017-11882¡£
ÔÎÄÁ´½Ó£º
https://securelist.com/spam-and-phishing-in-2018/89701/
3¡¢Õë¶ÔWordPressµÄй¥»÷À˳±£¬Ö÷ҪʹÓùºÎï³µ²å¼þÖеÄXSSÎó²î
DefiantÑо¿Ö°Ô±Mikey Veenstra·¢Ã÷Ò»¸öÕë¶ÔWordPress¹ºÎïÍøÕ¾µÄ¹¥»÷À˳±£¬¹¥»÷ÕßʹÓùºÎï³µ²å¼þ¡°Abondoned Cart Lite for WooCommerce¡±ÖеÄXSSÎó²î£¬ÏòÍøÕ¾Ö²ÈëºóÃŲ¢»ñµÃÍøÕ¾µÄ¿ØÖÆȨ¡£¾Ý±¨µÀ¸Ã²å¼þÒÑÔÚÁè¼Ý2Íò¸öWordPressÍøÕ¾ÉÏ×°Ö᣹¥»÷ÕßÖ²ÈëµÄºóÃÅ°üÀ¨Ò»¸öÖÎÀíÔ±ÕË»§woouserÒÔ¼°ÔÚ·ÇÔ˶¯²å¼þÖÐÖ²ÈëµÄPHPºóÃÅ¡£
ÔÎÄÁ´½Ó£º
https://cyware.com/news/hackers-abuse-xss-vulnerability-in-cart-plugin-to-target-wordpress-based-shopping-sites-ff4b4019
4¡¢ÐµÄATM skimmer¹¥»÷£¬¿ÉЮÖÆATMÄÚÖÃÉãÏñÍ·
ƾ֤Krebs on SecurityµÄÒ»·Ýб¨¸æ£¬Ñо¿Ö°Ô±Ôڵ¿ËÈø˹ÖݺÕ˹ÌØÊеÄATMÉÏ·¢Ã÷ÁËеÄskimmer¹¥»÷£¬¹¥»÷Õßͨ¹ýЮÖÆATMÖÐÄÚÖõÄÉãÏñÍ·ÒÔÇÔÈ¡Óû§µÄPINÂë¡£¸Ãskimmer°üÀ¨Ò»¸öÉãÏñÍ·²¿¼þ£¬ÓÃÓÚÁýÕÖÔÚATMÄÚÖõÄÇå¾²ÉãÏñÍ·ÉÏÃ棬Óû§ºÜÄÑ´ÓÍⲿ¿´µ½¸Ãskimmer¡£
ÔÎÄÁ´½Ó£º
https://cyware.com/news/new-atm-skimming-attack-enables-scammers-to-hijack-the-atms-in-built-camera-and-steal-a-users-pin-3d2c4884
5¡¢ÃÀ¹úJacksonÏØÕþ¸®ÏòÀÕË÷Èí¼þ¹¥»÷ÕßÖ§¸¶40ÍòÃÀÔªÊê½ð
ÃÀ¹úÇÇÖÎÑÇÖݽܿËÑ·ÏØÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬Õþ¸®Ïò·¸·¨·Ö×ÓÖ§¸¶ÁË40ÍòÃÀÔªµÄÊê½ðÒÔ»ñµÃ½âÃÜÃÜÔ¿¡£´Ë´Î¹¥»÷ÊÂÎñÓ°ÏìÁ˸ÃÏØËùÓв¿·ÖµÄÅÌËã»úϵͳ£¬°üÀ¨µç×ÓÓʼþ·þÎñºÍ½ôÆÈ·þÎñ£¬·þÎñ´¦²»µÃ²»Ê¹ÓÃÖ½ÕÅÒÔÍê³ÉÊÂÇé¡£ÓÉÓÚ¸ÃÏØûÓб¸·Ýϵͳ£¬ÏØÕþ¸®²»µÃ²»Öª×ã¹¥»÷ÕßµÄÒªÇóÒÔ»»È¡×¼È·µÄ½âÃÜÃÜÔ¿¡£Æ¾Ö¤FBIµÄÊӲ죬·¸·¨·Ö×ÓʹÓõÄÀÕË÷Èí¼þ¿ÉÄÜÊÇRyuk£¬¹¥»÷ÕßÒÉΪ¶«Å·µÄÒ»¸ö×éÖ¯¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/ransomware-attack-on-jackson-county-gets-cybercriminals-400-000/
ÉùÃ÷£º±¾×ÊѶÓÉÓÅ·¢¹ú¼ÊÍøÕ¾¹ÙÍøάËûÃüÇ徲С×é·ÒëºÍÕûÀí