ÐÅÏ¢Äþ¾²Öܱ¨-2018ÄêµÚ38ÖÜ
Ðû²¼Ê±¼ä 2018-09-252018Äê09ÔÂ17ÈÕÖÁ23ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´55¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇApache SpamAssassin meta ruleÓï·¨ÈÎÒâ´úÂëÖ´ÐЩ¶´£»Rockwell Automation CIPÕ»Òç³ö´úÂëÖ´ÐЩ¶´£»Adobe ColdFusion CVE-2018-15965·´ÐòÁл¯´úÂëÖ´ÐЩ¶´£»Adobe AcrobatºÍReader CVE-2018-12848Ô½½çд©¶´£»Apple iOS Core Bluetooth CVE-2018-4330ÈÎÒâ´úÂëÖ´ÐЩ¶´¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊÇÑо¿ÍŶӳÆÁè¼Ý20ÒŲ́É豸ÈÔÊÜBlueBorne©¶´µÄÓ°Ï죻Ӣ¹ú²¼Àï˹Íжû»ú³¡Ôâµ½ºÚ¿Í¹¥»÷£¬º½°àÐÅÏ¢ÏÔʾÆÁÒÑÍ£Ö¹·þÎñÁ½Ì죻MongoDBÅäÖôíÎóµ¼ÖÂÔ¼1100Íòµç×ÓÓʼþ¼Ç¼¿É¹ûÈ»·ÃÎÊ£»GovPayNet¹ÙÍø´æÔÚ©¶´£¬Áè¼Ý1400ÍòÓû§¼Ç¼ÒÉй¶£»ÃÀ¹ú¹úÎñÔºµç×ÓÓʼþϵͳÔâºÚ¿Í¹¥»÷£¬Ô¼1%Ô±¹¤µÄÐÅϢй¶¡£
ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖС£
¶þ¡¢ÖØÒªÄþ¾²Â©¶´Áбí
1. Apache SpamAssassin meta ruleÓï·¨ÈÎÒâ´úÂëÖ´ÐЩ¶´
Apache SpamAssassin meta ruleÓï·¨´¦ÖôæÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓé¶´Ìá½»ÌØÊâµÄÇëÇó£¬ÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£
https://lists.apache.org/thread.html/7f6a16bc0fd0fd5e67c7fd95bd655069a2ac7d1f88e42d3c853e601c@%3Cannounce.apache.org%3E2. Rockwell Automation CIPÕ»Òç³ö´úÂëÖ´ÐЩ¶´
https://rockwellautomation.custhelp.com/app/answers/detail/a_id/1075712
3. Adobe ColdFusion CVE-2018-15965·´ÐòÁл¯´úÂëÖ´ÐЩ¶´
https://helpx.adobe.com/security/products/coldfusion/apsb18-33.html
4. Adobe AcrobatºÍReader CVE-2018-12848Ô½½çд©¶´
https://helpx.adobe.com/security/products/acrobat/apsb18-34.html
5. Apple iOS Core Bluetooth CVE-2018-4330ÈÎÒâ´úÂëÖ´ÐЩ¶´
https://support.apple.com/en-us/HT208848
Èý¡¢ÖØÒªÄþ¾²Ê¼þ×ÛÊö

Armis LabsÑо¿ÍŶӳÆÁè¼Ý20ÒÚÉ豸ÈÔÊÜÒ»ÄêǰÅû¶µÄBlueBorne©¶´µÄÓ°Ïì¡£BlueBorne°üÂÞ9¸öÀ¶ÑÀ©¶´£¬ÓÚ2017Äê9Ô±»Åû¶²¢Ëæºó½øÐÐÐÞ¸´¡£µ½Ò»ÄêºóµÄ½ñÌ죬ԼÈý·ÖÖ®¶þµÄÊÜÓ°ÏìÉ豸ÒѾ½øÐÐÁ˸üУ¬µ«ÈÔÓдóÁ¿µÄ·þÎñÆ÷¡¢ÖÇÄÜÊÖ±í¡¢Ò½ÁÆÉ豸ºÍ¹¤ÒµÉ豸µÈ»¹Î´½øÐÐÐÞ¸´£¬°üÂÞ7.68ÒŲ́LinuxÉ豸¡¢7.34ÒŲ́ÔËÐÐAndroid5.1¼°¸üÔç°æ±¾µÄÉ豸¡¢2.61ÒŲ́ÔËÐÐAndroid6¼°¸üÔç°æ±¾µÄÉ豸¡¢2ÒŲ́WindowsÉ豸ÒÔ¼°5000Íǫ̀ÔËÐÐiOS9.3.5¼°¸üÔç°æ±¾µÄÉ豸¡£
ÔÎÄÁ´½Ó£º
https://www.armis.com/blueborne-one-year-later/
2¡¢Ó¢¹ú²¼Àï˹Íжû»ú³¡Ôâµ½ºÚ¿Í¹¥»÷£¬º½°àÐÅÏ¢ÏÔʾÆÁÒÑÍ£Ö¹·þÎñÁ½Ìì
Ó¢¹ú²¼Àï˹Íжû»ú³¡Ôâµ½ÀÕË÷Èí¼þ¹¥»÷£¬Æäº½°àÐÅÏ¢ÏÔʾÆÁÒÑÍ£Ö¹·þÎñÁ½Ìì¡£¸Ã»ú³¡µÄ·¢ÑÔÈËÌåÏÖº½°à²»ÊÜÓ°Ï죬µ«±ØÐëʹÓÃÓ¦¼±´ëÊ©ºÍÊÖ¶¯µÄÁ÷³Ì£¬°üÂÞ°×°åºÍ¼ÇºÅ±ÊµÈÀ´È¡´úÏÔʾÆÁ¡£¸Ã»ú³¡Ã»ÓÐÏò¹¥»÷ÕßÖ§¸¶Êê½ð¡£Õâ²»ÊÇÒ»´ÎÕë¶ÔÐԵĹ¥»÷£¬¶øÊÇËæ»úµÄ¹¥»÷¡£¸Ã»ú³¡ÕýÔÚÈ·±£Æäº½°àÐÅϢϵͳÔÚÖØÐÂÉÏÏß֮ǰÊÇÄþ¾²µÄ¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/76248/breaking-news/bristol-airport-cyber-attack.html
3¡¢MongoDBÅäÖôíÎóµ¼ÖÂÔ¼1100Íòµç×ÓÓʼþ¼Ç¼¿É¹ûÈ»·ÃÎÊ
Äþ¾²Ñо¿ÈËÔ±Bob DiachenkoÔÚ»¥ÁªÍøÉÏ·¢ÏÖÒ»¸ö¿É¹ûÈ»·ÃÎʵÄMongoDB£¬¸ÃÊý¾Ý¿âÖаüÂÞÔ¼1100ÍòÌõµç×ÓÓʼþ¼Ç¼¡£Êý¾Ý¿âµÄ¾ÞϸΪ43.5GB£¬°üÂÞÁËÓû§µÄÑÅ»¢µç×ÓÓÊÏä¼Ç¼ÒÔ¼°ÐÕÃû¡¢ÎïÀíµØÖ·¡¢ÓÊÕþ±àÂëºÍ¾Óס¶¼ÊеȸöÈËÐÅÏ¢¡£¸ÃÊý¾Ý¿âÍйÜÔÚÃÀ¹úGrupo-SMSµÄ»ù´¡ÉèÊ©ÉÏ£¬Ä¿Ç°»¹²»ÖªµÀ¸ÃÊý¾Ý¿âµÄËùÓÐÕßµÄÉí·Ý¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/database-with-11-million-email-records-exposed/
4¡¢GovPayNet¹ÙÍø´æÔÚ©¶´£¬Áè¼Ý1400ÍòÓû§¼Ç¼ÒÉй¶
ΪÃÀ¹úÖÝÕþ¸®ºÍµØ·½Õþ¸®ÌṩÔÚÏßÖ§¸¶Æ½Ì¨µÄGovPayNow.com´æÔÚÄþ¾²Â©¶´£¬Áè¼Ý1400ÍòÓû§µÄ¸öÈËÐÅÏ¢ÒÉй¶¡£¸ÃÍøÕ¾Îª36¸öÖݵÄ2000¶à¸öÕþ¸®»ú¹¹Ìṩ·þÎñ£¬¹«Ãñ¿ÉÒÔͨ¹ýËüÀ´Ö§¸¶·£¿î¡¢ÅÆÕշѺÍÕ˵¥µÈ¡£Æ¾¾ÝBrian KrebsµÄ˵·¨£¬¸ÃÍøÕ¾µÄÔÚÏßÖ§¸¶ÊÕ¾ÝÊǰ´Ë³Ðò±àºÅµÄ£¬¹¥»÷Õß¿ÉÒÔͨ¹ýÐÞ¸ÄURLÖеÄÊý×ÖÀ´¼ì²ìÆäËüÈ˵ļǼ¡£ÕâЩ¼Ç¼°üÂÞÓû§µÄÐÕÃû¡¢µØÖ·¡¢µç»°ºÅÂë¼°ÒøÐп¨ºóËÄλÊý×ֵȡ£¸Ã¹«Ë¾ÌåÏÖÒÑÔÚÖÜÄ©ÐÞ¸´ÁËÕâÒ»ÎÊÌâ¡£
ÔÎÄÁ´½Ó£º
https://www.infosecurity-magazine.com/news/government-payment-service-exposes/
5¡¢ÃÀ¹ú¹úÎñÔºµç×ÓÓʼþϵͳÔâºÚ¿Í¹¥»÷£¬Ô¼1%Ô±¹¤µÄÐÅϢй¶
ÃÀ¹ú¹úÎñÔºµÄµç×ÓÓʼþϵͳÔâµ½ºÚ¿Í¹¥»÷£¬ÉÙÊýÔ±¹¤£¨²»µ½1%£©µÄ¸öÈËÐÅÏ¢¿ÉÄÜй¶¡£Æ¾¾Ý¹úÎñÔºÐû²¼µÄͨ¸æ£¬¸Ãµç×ÓÓʼþϵͳÊÇ·Ç»úÃÜÐÔµç×ÓÓʼþϵͳ£¬Æä±»ÃèÊöΪÃô¸Ðµ«²»Éæ¼°»úÃÜ¡£¹úÎñÔº·¢ÑÔÈËNicole ThompsonÌåÏÖÕâһʼþ»¹ÔÚÊÓ²ìÖ®ÖУ¬¹úÎñÔºÕýÔÚÓëºÏ×÷»ï°éºÍ˽Ӫ²¿ÃÅ·þÎñÉÌÅäºÏ½øÐÐÈ«ÃæµÄÆÀ¹À¡£
ÔÎÄÁ´½Ó£º
https://www.politico.com/story/2018/09/17/state-department-email-personal-information-792665
ÉùÃ÷£º±¾×ÊѶÓɶ¶È¦Îª¶Ä¶øÉúάËûÃüÄþ¾²Ð¡×é·ÒëºÍÕûÀí