ÐÅÏ¢Äþ¾²Öܱ¨-2019ÄêµÚ29ÖÜ

Ðû²¼Ê±¼ä 2019-07-29

>  ±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö



2019Äê7ÔÂ22ÈÕÖÁ28ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´49¸ö £¬ÖµµÃ¹Ø×¢µÄÊÇProFTPD SITE CPFR/CPTOÈÎÒâ¶Á䩶´ £»Apple Webkit ¶à¸öÄÚ´æÆÆ»µ´úÂëÖ´ÐЩ¶´ £»Zeroshell http²ÎÊýÃüÁî×¢È멶´ £»Apache Storm·´ÐòÁл¯´úÂëÖ´ÐЩ¶´ £»McAfee Data Loss Prevention Endpoint ePOÀ©Õ¹ÃüÁî×¢È멶´¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊǶíÂÞ˹Áª°îÄþ¾²¾Ö³Ð°üÉÌÔâºÚ¿ÍÈëÇÖ £¬»úÃÜÏîÄ¿Æعâ £»ProFTPD RCE©¶´ £¬Áè¼Ý100Íǫ̀·þÎñÆ÷ÊÜÓ°Ïì £»Ó¡¶ÈС¶îÐÅ´ûÒøÐÐJana CashÒâÍâй¶260ÍòÓû§½»Ò×ÐÅÏ¢ £»RiskIQÐû²¼2019»¥ÁªÍø·¸×ï³ÂËß £¬Ã¿·ÖÖÓËðʧ290ÍòÃÀÔª £»Ç°Î÷ÃÅ×ÓºÏͬ¹¤ÈÏ¿ÉÔÚ¹«Ë¾µç×Ó±í¸ñÖÐÖ²ÈëÂß¼­Õ¨µ¯¡£


ƾ¾ÝÒÔÉÏ×ÛÊö £¬±¾ÖÜÄþ¾²ÍþвΪÖС£



>  ÖØÒªÄþ¾²Â©¶´Áбí



1. ProFTPD SITE CPFR/CPTOÈÎÒâ¶Á䩶´


ProFTPD SITE CPFR/CPTOûÓÐÕýÈ·´¦ÖúÍÅäÖà £¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó £¬¿ÉÖ´ÐÐÈÎÒâ¶Áд²Ù×÷¡£

http://bugs.proftpd.org/show_bug.cgi?id=4372

2. Apple Webkit CVE-2019-8644ÄÚ´æÆÆ»µ´úÂëÖ´ÐЩ¶´


Apple iOS°üÂÞµÄWebKit´æÔÚÄÚ´æÆÆ»µÂ©¶´ £¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄWEBÇëÇó £¬ÓÕʹÓû§½âÎö £¬¿ÉʹӦÓ÷¨Ê½±ÀÀ £»òÖ´ÐÐÈÎÒâ´úÂë¡£

https://support.apple.com/zh-cn/HT210356

3. Zeroshell http²ÎÊýÃüÁî×¢È멶´


Zeroshell´¦ÖÃhttp²ÎÊý´æÔÚÊäÈëÑé֤©¶´ £¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó £¬¿ÉÖ´ÐÐÈÎÒâ´úÂë¡£
https://www.tarlogic.com/advisories/zeroshell-rce-root.txt

4. Apache Storm·´ÐòÁл¯´úÂëÖ´ÐЩ¶´


Apache Storm´¦Öò»ÐÐÐÅÊý¾Ý´æÔÚ·´ÐòÁл¯Â©¶´ £¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó £¬¿ÉÖ´ÐÐÈÎÒâ´úÂë¡£
https://lists.apache.org/thread.html/3e4f704c4bd9296405a07a0290b8cbb6cbf5046e277efe6d93280a98@%3Cuser.storm.apache.org%3E

5. McAfee Data Loss Prevention Endpoint ePOÀ©Õ¹ÃüÁî×¢È멶´


McAfee Data Loss Prevention Endpoint ePOÀ©Õ¹´æÔÚÄþ¾²Â©¶´ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó £¬¿ÉÖ´ÐÐÈÎÒâOSÃüÁî¡£
https://kc.mcafee.com/corporate/index?page=content&id=SB10289



 ÖØÒªÄþ¾²Ê¼þ×ÛÊö



1¡¢¶íÂÞ˹Áª°îÄþ¾²¾Ö³Ð°üÉÌÔâºÚ¿ÍÈëÇÖ £¬»úÃÜÏîÄ¿Æعâ


×ðÁú¶¶È¦ - Ϊdu¶øÉú


¶íÂÞ˹Áª°îÄþ¾²¾Ö£¨FSB£©µÄ³Ð°üÉÌSyTechÔâºÚ¿ÍÈëÇÖ £¬¸Ã¹«Ë¾ÎªFSB¿ª·¢µÄ»úÃÜÏîÄ¿±»Æعâ¡£¸Ã¹¥»÷ʼþ·¢ÉúÔÚ7ÔÂ13ÈÕ £¬ºÚ¿ÍÍÅ»ï0v1ru$ÈëÇÖÁËSyTechµÄ·þÎñÆ÷ £¬²¢ÇÔÈ¡ÁË7.5TBµÄÊý¾Ý¡£ÕâЩÊý¾ÝËæºó±»·ÖÏí¸øºÚ¿ÍÍÅ»ïDigitalRevolution £¬ºóÕßÏòýÌå½øÐÐÁËÆعâ¡£ÕâЩ»úÃÜÏîÄ¿°üÂÞÖ¼ÔÚ¸ôÀë¶íÂÞ˹»¥ÁªÍøµÄNadezhdaÏîÄ¿¡¢Ö¼ÔÚÊÕ¼¯É罻ýÌåÓû§ÐÅÏ¢µÄNautilusÏîÄ¿ÒÔ¼°Ö¼ÔÚ¶ÔTorÍøÂçÓû§½øÐÐÈ¥ÄäÃû»¯µÄNautilus-SÏîÄ¿µÈ¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/russian-fsb-intel-agency-contractor-hacked-secret-projects-exposed/

2¡¢ProFTPD RCE©¶´ £¬Áè¼Ý100Íǫ̀·þÎñÆ÷ÊÜÓ°Ïì


×ðÁú¶¶È¦ - Ϊdu¶øÉú



ProFTPDÐû²¼Ð°汾1.3.6 £¬ÐÞ¸´Ò»¸ö¿Éµ¼ÖÂRCEµÄ©¶´¡£¸Ã©¶´£¨CVE-2019- 12815£©ÓëProFTPDµÄmod_copyÄ£¿éÓйØ £¬Â©¶´Ô­ÒòÊÇmod_copyÄ£¿éµÄ×Ô½ç˵SITE CPFRºÍSITE CPTOÃüÁîûÓа´Ô¤ÆÚÅäÖÃÊÂÇé¡£¹ÜÀíÔ±¿Éͨ¹ý½ûÓÃmod_copyÄ£¿éÀ´»º½â¸Ã©¶´¡£Æ¾¾ÝShodanµÄËÑË÷½á¹û £¬Ä¿Ç°ÓÐÁè¼Ý100Íò¸öProFTPd·þÎñÆ÷ÉÐδÉý¼¶ÐÞ¸´²¹¶¡¡£µÂ¹úCERT-BundÒ²Õë¶Ô¸Ã©¶´ÏòÓû§·¢³ö¾¯±¨¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/proftpd-remote-code-execution-bug-exposes-over-1-million-servers/

3¡¢Ó¡¶ÈС¶îÐÅ´ûÒøÐÐJana CashÒâÍâй¶260ÍòÓû§½»Ò×ÐÅÏ¢


×ðÁú¶¶È¦ - Ϊdu¶øÉú


Ñо¿ÈËÔ±·¢ÏÖÓ¡¶ÈС¶îÐÅ´ûÒøÐÐJana CashµÄÒ»¸öÊý¾Ý¿âδÊÜÃÜÂë± £»¤ £¬µ¼ÖÂÊý°ÙÍòÓû§µÄ½»Ò×ÐÅÏ¢¿É±»¹ûÈ»·ÃÎÊ¡£Ð¹Â¶µÄÃô¸ÐÐÅÏ¢°üÂÞ260ÍòÓû§µÄ½»Ò׼Ǽ £¬ÒÔ¼°ËûÃǵÄKYC PIIÐÅÏ¢ £¬ÀýÈçÇ®°üID¡¢Óû§Ãû¡¢µç×ÓÓʼþ¡¢IPµØÖ·ºÍ¶Ë¿ÚºÅµÈ¡£ÔÚÑо¿ÈËԱͨ±¨¸Ã¹«Ë¾ºó £¬¸Ã¹«Ë¾ÒѶÔElasticÊý¾Ý¿â½øÐб £»¤¡£Ä¿Ç°Éв»Çå³þ¸ÃÊý¾Ý¿â̻¶Á˶೤ʱ¼äÒÔ¼°ÊÇ·ñÒѱ»ÆäËûÈË·ÃÎÊ¡£

Ô­ÎÄÁ´½Ó£ºhttps://securitydiscovery.com/jana-bank-data-leak/

4¡¢RiskIQÐû²¼2019»¥ÁªÍø·¸×ï³ÂËß £¬Ã¿·ÖÖÓËðʧ290ÍòÃÀÔª


×ðÁú¶¶È¦ - Ϊdu¶øÉú


ƾ¾ÝRiskIQµÄÊý¾Ý £¬È¥ÄêÍøÂç·¸×ï·Ö×Óÿ·ÖÖÓ¸øÈ«Çò¾­¼ÃÔì³É290ÍòÃÀÔªµÄËðʧ £¬È«Äê×ܼÆÔì³É1.5ÍòÒÚÃÀÔªµÄËðʧ¡£ÆäËüÊý¾Ý°üÂÞ £¬¼ÓÃÜ»õ±Ò½»Ò×Ëùÿ·ÖÖÓµÄËðʧ´ï1930ÃÀÔª £»µöÓã¹¥»÷ÿ·ÖÖÓÔì³ÉµÄËðʧ´ï17700ÃÀÔª £»2019ÄêÈ«ÇòÀÕË÷Èí¼þʼþµÄÔ¤¼Æ³É±¾ÎªÃ¿·ÖÖÓ22184ÃÀÔª £»Ã¿·ÖÖÓ鶵ÄÉí·ÝÊý¾ÝÌõÊýΪ8100Ìõ £»Ã¿·ÖÖÓ¼ì²âµ½µÄ¶ñÒâÖض¨ÏòΪ7¸öµÈ¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.riskiq.com/blog/external-threat-management/2019-evil-internet-minute/

5¡¢Ç°Î÷ÃÅ×ÓºÏͬ¹¤ÈÏ¿ÉÔÚ¹«Ë¾µç×Ó±í¸ñÖÐÖ²ÈëÂß¼­Õ¨µ¯


×ðÁú¶¶È¦ - Ϊdu¶øÉú


Ç°Î÷ÃÅ×ÓºÏͬ¹¤David TinleyÈÏ¿ÉÔÚΪ¹«Ë¾´´½¨µÄµç×Ó±í¸ñÖÐÖ²ÈëÂß¼­Õ¨µ¯ £¬Ëû½«ÃæÁÙ×î¸ß10ÄêµÄ¼à½ûÒÔ¼°25ÍòÃÀÔªµÄ·£¿î¡£Æ¾¾ÝÏà¹Ø·¨Í¥Îļþ £¬TinleyΪÎ÷ÃÅ×ÓµÄMonroeville PA·þÎñ´¦ÌṩÁ˽üÊ®ÄêµÄÈí¼þ·þÎñ £¬ËûÔÚ¸ø¹«Ë¾´´½¨ÓÃÓÚ¹ÜÀíÉ豸¶©µ¥µÄµç×Ó±í¸ñʱֲÈëÁËÂß¼­Õ¨µ¯ £¬ÕâЩըµ¯»áÔÚÌض¨ÈÕÆÚ´¥·¢ £¬µ¼ÖÂÎļþÍ߽⡣ÿ´ÎÍß½âʱTinley¶¼ÊÐÊÕÈ¡ÓöÈÀ´ÐÞ¸´¸ÃÎļþ £¬Ö±µ½Á½ÄêºóÎ÷ÃÅ×Ó·¢ÏÖÁËÂß¼­Õ¨µ¯²¢Ìá³öÁËÖ¸¿Ø¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.zdnet.com/article/siemens-contractor-pleads-guilty-to-planting-logic-bomb-in-company-spreadsheets/