ArubaÐÞ¸´EdgeConnectÖÐRCEºÍÉí·ÝÑéÖ¤ÈƹýµÈ©¶´
Ðû²¼Ê±¼ä 2022-10-14
ýÌå10ÔÂ12ÈÕ±¨µÀ£¬ArubaÐû²¼ÁËEdgeConnect Enterprise OrchestratorµÄÄþ¾²¸üУ¬ÐÞ¸´Á˶à¸öÑÏÖصÄ©¶´¡£ÆäÖаüÂÞ»ùÓÚWebµÄ¹ÜÀí½çÃæÖеÄÉí·ÝÑéÖ¤Èƹý©¶´£¨CVE-2022-37913ºÍCVE-2022-37914£©£¬CVSSÆÀ·ÖΪ9.8£»ÒÔ¼°»ùÓÚWebµÄ¹ÜÀí½çÃæÖÐδ¾Éí·ÝÑéÖ¤µÄÔ¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2022-37915£©£¬CVSSÆÀ·ÖҲΪ9.8¡£ÎªÁË×î´óÏ޶ȵؼõÉÙÀûÓÃÉÏÊö©¶´µÄ¿ÉÄÜÐÔ£¬¹©Ó¦É̽¨ÒéÓû§½«CLIºÍ»ùÓÚWebµÄ¹ÜÀí½çÃæÏÞÖÆÔÚרÓõĵÚ2²ãÍø¶Î/VLAN£¬»ò½«·À»ðǽ¼ÆıÉèÖÃΪµÚ3²ã¼°ÒÔÉÏ¡£
https://securityaffairs.co/wordpress/137000/security/aruba-edgeconnect-flaws.html
2¡¢MinecraftµÄ·þÎñÆ÷Wynncraft½üÆÚÔâµ½DDoS¹¥»÷
ýÌå10ÔÂ13Èճƣ¬MinecraftµÄ·þÎñÆ÷Wynncraft×î½üÔâµ½ÁË2.5 TbpsµÄDDoS¹¥»÷¡£CloudflareÌåÏÖ£¬ÕâÊÇÒ»ÆðÁ¬ÐøÔ¼Á½·ÖÖӵĶàÏòÁ¿¹¥»÷£¬ÓÉUDPºÍTCPºé·ºÊý¾Ý°ü×é³É£¬ÊÇËûÃǼǼºÍ´¦Öùý×î´ó±ÈÌØÂʵĹ¥»÷¡£´ËÍ⣬¸ÃÄþ¾²¹«Ë¾Ö¸³ö£¬ËûÃÇÔÚ½ñÄêµÄµÚÈý¼¾¶È×èÖ¹Á˱ÈÈ¥Äê¸ü¶àµÄDDoS¹¥»÷£¬ÆäÖлùÓÚHTTPµÄ¹¥»÷Ôö¼ÓÁË111%£¬µÚ3²ãºÍµÚ4²ã(L3/4)DDoS¹¥»÷Ò²¼¸ºõͬ±È·ÁËÒ»·¬£¬Ôö¼ÓÁË97%¡£
https://www.bleepingcomputer.com/news/security/cloudflare-mitigated-record-ddos-attack-against-minecraft-server/
3¡¢Mango Marketsƽ̨Ôâµ½ÉÁµç´û¹¥»÷Ëðʧ³¬1ÒÚÃÀÔª
¾Ý10ÔÂ12ÈÕ±¨µÀ£¬¼ÓÃÜ»õ±Ò½»Ò×ƽ̨Mango MarketsÔâµ½ÉÁµç´û¹¥»÷£¬Ëðʧ³¬1ÒÚÃÀÔª¡£¸Ãƽ̨ÖܶþÍíÉÏÔÚTwitterÉϸæËßÓû§£¬ËüÕýÔÚÊÓ²ìÒ»ÆðÄþ¾²Ê¼þ¡£¼¸¸öСʱºó£¬¸Ã¹«Ë¾Ö¤Êµ£¬ºÚ¿ÍÀûÓÃÁ½¸öÕË»§Ôڶ̶̼¸·ÖÖÓÄÚÈËΪ½«MNGO±ÒÔÚ¸÷½»Ò×ËùµÄ¼Û¸ñÌá¸ßÁËÔ¼ÛµÄ5µ½10±¶£¬Æäʱ¸ÃÕË»§ÌáÈ¡µÄ¾»ÖµÔ¼Îª1ÒÚÃÀÔª¡£Ä¿Ç°Æ½Ì¨ÉϵĿͻ§ÎÞ·¨ÌáÈ¡ÈκÎ×ʲú£¬ÒòΪºÚ¿ÍºÄ¾¡ÁËËùÓпÉÓÃ×ʲú£¬Ê¹Æ½Ì¨×ʲ»µÖÕ®¡£¾ÝϤ£¬ºÚ¿ÍÁªÏµÁËMango Markets²¢ÌåÏÖÔ¸Òâ̸ÅС£
https://therecord.media/crypto-trading-platform-mango-markets-drained-of-more-than-100-million-in-flash-loan-attack/
4¡¢Ñо¿ÍŶӷ¢ÏÖÒ»ÖÖеÄnpm¶¨Ê±¹¥»÷¿Éµ¼Ö¹©Ó¦Á´¹¥»÷
¾ÝýÌå10ÔÂ12ÈÕ±¨µÀ£¬Aqua SecurityÍŶӷ¢ÏÖÒ»ÖÖеÄnpm¶¨Ê±¹¥»÷¡£Ëü¿ÉÒÔ͸¶˽ÓÐÈí¼þ°üµÄÃû³Æ£¬Òò´Ë¹¥»÷Õß¿ÉÒÔ¹ûÈ»Ðû²¼¶ñÒâ¿Ë¡£¬²¢ÓÕʹ¿ª·¢ÈËԱʹÓÃËüÃÇ¡£ÕâÖÖ¹¥»÷ÒÀÀµÓÚÔÚËÑË÷Ò»¸ö˽Óаüʱ£¬Óë¿âÖв»´æÔڵİüÏà±È£¬·µ»Ø404 Not Found´íÎóµÄ΢Сʱ¼ä²î¡£ËäÈ»ÏìӦʱ¼ä²îÖ»Óм¸°ÙºÁÃ룬µ«Ëü×ãÒÔÈ·¶¨Õâ¸ö˽ÓаüÊÇ·ñ´æÔÚ£¬´Ó¶ø½øÐмÙð¹¥»÷¡£Ñо¿ÈËÔ±³Æ£¬ÕâÖÖеļ¼Êõ¿ÉÄܵ¼Ö¹©Ó¦Á´¹¥»÷£¬¶øGitHubÌåÏÖ²»»á½â¾öÕâ¸öÎÊÌâ¡£
https://www.bleepingcomputer.com/news/security/new-npm-timing-attack-could-lead-to-supply-chain-attacks/
5¡¢INKY³ÆÒÔCOVID-19ΪÖ÷ÌâµÄµöÓã¹¥»÷»î¶¯ÔÚÃÀ¹ú¼¤Ôö
10ÔÂ12ÈÕ±¨µÀ£¬ÓʼþÄþ¾²¹«Ë¾INKYÖ¸³ö£¬ÒÔCOVID-19ΪÖ÷ÌâµÄµöÓã»î¶¯ÔÚÃÀ¹ú¼¤Ôö¡£ÔÚ×î½üµÄ¹¥»÷ÖУ¬µöÓãÓʼþð³äÃÀ¹úСÆóÒµ¹ÜÀí¾Ö(SBA)²¢ÀÄÓÃGoogle±íµ¥À´ÍйÜÓÃÓÚÇÔÈ¡ÆóÒµÖ÷¸öÈËÐÅÏ¢µÄµöÓãÒ³Ãæ¡£¸Ã»î¶¯Ê¹ÓõÄÓÕ¶üÊÇÕë¶ÔCOVID-19µÄ½ðÈÚÖ§³Ö¼Æ»®£¬Ö¼ÔÚÇÔÈ¡Ä¿±êµÄGoogleÕÊ»§Æ¾¾Ý¡¢SSN¡¢EIN¡¢State ID¡¢¼ÝʻִÕÕÐÅÏ¢ÒÔ¼°ÒøÐÐÕʺš£INKY»¹Í¸Â¶£¬ÓëÇ°Èý¸öÔÂÏà±È£¬9Ô·ݵÄÀ¬»øÓʼþÊýÁ¿·ÁËÒ»·¬£¬Ô¤¼Æ»¹»á½øÒ»²½ÉÏÉý¡£
https://www.bleepingcomputer.com/news/security/new-npm-timing-attack-could-lead-to-supply-chain-attacks/
6¡¢KasperskyÐû²¼¹ØÓÚ¶ñÒâWhatsApp modµÄ·ÖÎö³ÂËß
10ÔÂ12ÈÕ£¬KasperskyÐû²¼ÁËͨ¹ýºÏ·¨Ó¦Ó÷ַ¢µÄ¶ñÒâWhatsApp modµÄ·ÖÎö³ÂËß¡£Ñо¿ÈËÔ±ÔÚYoWhatsApp°æ±¾2.22.11.75Öз¢ÏÖÁËÒ»¸ö¶ñÒâÄ£¿é£¬¸ÃÄ£¿é½âÃܲ¢Æô¶¯ÁËTrojan.AndroidOS.Triada.efµÄÖ÷Òªpayload¡£´ËÍ⣬¸Ã¶ñÒâÄ£¿é»¹ÇÔÈ¡Á˺Ϸ¨WhatsAppÊÂÇéËùÐèµÄÖÖÖÖÃÜÔ¿¡£¸ÃÓ¦ÓÃͨ³£Í¨¹ýSnaptubeºÍVidmateÉϵÄÆÛÕ©¹ã¸æÁ÷´«£¬°²×°ºó»áÇëÇóÓëWhatsAppÏàͬµÄȨÏÞ¡£
https://securelist.com/malicious-whatsapp-mod-distributed-through-legitimate-apps/107690/