2019-05-21
Ðû²¼Ê±¼ä 2019-05-21ÐÂÔöʼþ
ʼþÃû³Æ£º
HTTP_ºóÃÅ_APT×éÖ¯_MuddyWater_Ô¶³Ì·þÎñÆ÷Á¬½Ó
ʼþ¼¶±ð£º
¸ß¼¶Ê¼þ
Äþ¾²ÀàÐÍ£º
ľÂíºóÃÅ
ʼþÃèÊö£º
¼ì²âµ½Ä¾ÂíºóÃÅÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËMuddyWater×éÖ¯ÀûÓõĺóÃÅ¡£
MuddyWaterÊÇÒ»¸öÖ÷ÒªÕë¶ÔÒÁÀ¿ËºÍɳÌØ°¢À²®µÄÕþ¸®»ú¹¹µÄAPT×éÖ¯£¬¸ÃAPT×éÖ¯±³ºóµÄÍŶÓͬÑùÕë¶ÔÖж«Å·ÖÞºÍÃÀ¹úµÈÆäËû¹ú¼Ò¡£ÆäÖ÷ÒªÀûÓÃPowershell½øÐÐËûÃǵĶñÒâÐÐΪ£¬ÔÚһϵÁÐÐж¯ÖÐÑÜÉú³öÁËËûÃǵÄרÓÐľÂíPOWERSTATS¡£¸Ã×éÖ¯µÄ¹¥»÷Ä¿±êÖ÷Òª¼¯ÖÐÔÚÕþ¸®£¬Í¨ÐÅÓëʯÓÍÁìÓò£¬¸Ã×éÖ¯ÒÉËÆÀ´×ÔÓÚÒÁÀÊ¡£¸Ãʼþ±íÃ÷MuddyWater×éÖ¯ÀûÓúóÃÅÓëÔ¶³Ì·þÎñÆ÷Á¬½Ó²¢½ÓÊÕÃüÁîÖ´ÐС£
¸üÐÂʱ¼ä£º
20190521
ĬÈÏÐж¯£º
Å×Æú
ʼþÃû³Æ£º |
HTTP_ľÂí_KPot.Stealer_Á¬½Ó |
ʼþ¼¶±ð£º |
Öм¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
ʼþÃèÊö£º |
¼ì²âµ½Ä¾ÂíÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËKPot¡£
KPotÊÇÒ»¸öÇÔÃÜľÂí£¬¿ÉÒÔÇÔÈ¡Ö÷Á÷ä¯ÀÀÆ÷¡¢Skype¡¢Steam¡¢FTPµÈ¿Í»§¶ËÉú´æµÄÕ˺ÅÃÜÂë¡£ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ʼþÃû³Æ£º |
HTTP_Jenkins_GitLab²å¼þÐÅϢ鶩¶´[CVE-2019-10300] |
ʼþ¼¶±ð£º |
Öм¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
Äþ¾²Â©¶´ |
ʼþÃèÊö£º |
¼ì²âµ½Ô´IPÕýÔÚÀûÓÃGitLab²å¼þÐÅϢй¶µÄ©¶´½øÐй¥»÷µÄÐÐΪ¡£ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ʼþÃû³Æ£º |
HTTP_Jenkins_ScriptSecurityPluginÔ¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2019-1003005] |
ʼþ¼¶±ð£º |
¸ß¼¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
Äþ¾²Â©¶´ |
ʼþÃèÊö£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃHTTP_Jenkins_ScriptSecurityPluginÔ¶³Ì´úÂëÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ʼþÃû³Æ£º |
TCP_SpringDataCommon_SPEL_Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2018-1273] |
ʼþ¼¶±ð£º |
Öм¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
Äþ¾²Â©¶´ |
ʼþÃèÊö£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃTCP_SpringDataCommon_SPEL_Ô¶³Ì´úÂëÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ʼþÃû³Æ£º |
HTTP_NUUO_NVRMini2Ô¶³ÌÃüÁîÖ´ÐЩ¶´[CVE-2018-14933] |
ʼþ¼¶±ð£º |
Öм¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
×¢Èë¹¥»÷ |
ʼþÃèÊö£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃHTTP_NUUO_NVRMini2Ô¶³ÌÃüÁîÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ʼþÃû³Æ£º |
HTTP_NUUO_NVRMini2Ô¶³ÌÃüÁîÖ´ÐЩ¶´[CVE-2018-15716] |
ʼþ¼¶±ð£º |
Öм¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
×¢Èë¹¥»÷ |
ʼþÃèÊö£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃHTTP_NUUO_NVRMini2Ô¶³ÌÃüÁîÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ʼþÃû³Æ£º |
TCP_SpringOAuth2_SPEL_Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2018-1260] |
ʼþ¼¶±ð£º |
Öм¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
Äþ¾²Â©¶´ |
ʼþÃèÊö£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃTCP_SpringOAuth2_SPEL_Ô¶³Ì´úÂëÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ʼþÃû³Æ£º |
HTTP_Äþ¾²Â©¶´_Spring_Cloud_Config_Server·¾¶´©Ô½ÓëÈÎÒâÎļþ¶Áȡ©¶´[CVE-2019-3799] |
ʼþ¼¶±ð£º |
Öм¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
Äþ¾²Â©¶´ |
ʼþÃèÊö£º |
¼ì²âµ½Spring Cloud Config Server·¾¶´©Ô½ÓëÈÎÒâÎļþ¶Áȡ©¶´¡£ Pivotal Software Spring Cloud ConfigÊÇÃÀ¹úPivotal Software¹«Ë¾µÄÒ»Ì×ÂþÑÜʽϵͳµÄÅäÖùÜÀí½â¾ö·½°¸¡£¸Ã²úÎïÖ÷ҪΪÂþÑÜʽϵͳÖеÄÍⲿÅäÖÃÌṩ·þÎñÆ÷ºÍ¿Í»§¶ËÖ§³Ö¡£ Spring Cloud ConfigÖдæÔÚĿ¼±éÀú©¶´£¬¸Ã©¶´Ô´ÓÚÍøÂçϵͳ»ò²úÎïδÄÜÕýÈ·µØ¹ýÂË×ÊÔ´»òÎļþ·¾¶ÖеÄÌØÊâÔªËØ¡£¹¥»÷Õß¿ÉÀûÓø鶴·ÃÎÊÊÜÏÞĿ¼֮ÍâµÄÃô¸ÐÎļþ£¬Ôì³ÉÃô¸ÐÐÅϢй¶¡£ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ʼþÃû³Æ£º |
HTTP_Äþ¾²Â©¶´_Ruby_on_Rails·¾¶´©Ô½ÓëÈÎÒâÎļþ¶Áȡ©¶´[CVE-2019-5418] |
ʼþ¼¶±ð£º |
Öм¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
Äþ¾²Â©¶´ |
ʼþÃèÊö£º |
Ruby on RailsÊÇÒ»¸ö Web Ó¦Ó÷¨Ê½¿ò¼Ü,ÊÇÒ»¸öÏà¶Ô½ÏÐ嵀 Web Ó¦Ó÷¨Ê½¿ò¼Ü£¬¹¹½¨ÔÚ Ruby ÓïÑÔÖ®ÉÏ¡£ ¸Ã©¶´ÊÇAction ViewÖдæÔÚÄþ¾²Â©¶´¡£ÓÉÓÚÍøվʹÓÃÁËΪָ¶¨²ÎÊýµÄrender fileÀ´äÖȾӦÓÃÖ®ÍâµÄÊÓͼ£¬Í¨¹ý¡°../../../../¡±À´µ½´ï·¾¶´©Ô½µÄÄ¿µÄ£¬ÇÒͨ¹ý¡°{{¡±À´½øÐÐÄ£°å²éѯ·¾¶µÄ±ÕºÏ£¬Ê¹µÃËùÒª·ÃÎʵÄÎļþ±»µ±×öÍⲿģ°åÀ´½âÎö¡£¹¥»÷Õß¿ÉÀûÓø鶴й¶ÎļþÄÚÈÝ¡£ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ʼþÃû³Æ£º |
HTTP_Äþ¾²Â©¶´_Ruby_On_Rails·¾¶´©Ô½Â©¶´[CVE-2018-3760] |
ʼþ¼¶±ð£º |
Öм¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
Äþ¾²Â©¶´ |
ʼþÃèÊö£º |
SprocketsÊÇÈí¼þ¿ª·¢ÕßSam StephensonºÍJoshua PeekÅäºÏÑз¢µÄÒ»¸öRuby¿â£¬ËüÖ÷ÒªÓÃÓÚ¼ì²éJavaScriptÎļþµÄÏ໥ÒÀÀµ¹Øϵ£¬ÒÔ¼°ÓÅ»¯ÍøÒ³ÖÐÒýÈëµÄJSÎļþ£¬¿ÉÖÆÖ¹¼ÓÔز»ÐëÒªµÄJSÎļþ£¬¼Ó¿ìÍøÒ³·ÃÎÊËٶȡ£ Sprockets 4.0.0.beta7¼°Ö®Ç°°æ±¾¡¢3.7.1¼°Ö®Ç°°æ±¾ºÍ2.12.4¼°Ö®Ç°°æ±¾ÖдæÔÚÐÅϢ鶩¶´¡£¹¥»÷Õß¿Éͨ¹ý·¢ËÍÌØÖƵÄÇëÇóÀûÓø鶴·ÃÎÊÎļþϵͳÉϵÄÓ¦Ó÷¨Ê½rootĿ¼֮ÍâµÄÎļþ¡£ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ʼþÃû³Æ£º |
HTTP_Äþ¾²Â©¶´_ZTE_ZXV10_H108L_Router_Ô¶³ÌÃüÁîÖ´ÐЩ¶´ |
ʼþ¼¶±ð£º |
Öм¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
Äþ¾²Â©¶´ |
ʼþÃèÊö£º |
ZTE ZXV10 H108L RouterÊÇÖйúÖÐÐËͨѶ£¨ZTE£©¹«Ë¾µÄÒ»¿îÎÞÏß·ÓÉÆ÷²úÎʹÓÃWIND Hellas°æ±¾¹Ì¼þµÄZXV10 H108L·ÓÉÆ÷ÖдæÔÚϵͳÃüÁî×¢È멶´£¬Ô¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃrootȨÏÞÖ´ÐÐϵͳÃüÁî¡£ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ʼþÃû³Æ£º |
TCP_RDPÔ¶³Ì´úÂëÒç³ö©¶´ |
ʼþ¼¶±ð£º |
Öм¶Ê¼þ |
Äþ¾²ÀàÐÍ£º |
»º³åÒç³ö |
ʼþÃèÊö£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃTCP_RDPÔ¶³Ì´úÂëÒç³ö©¶´¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ |
¸üÐÂʱ¼ä£º |
20190521 |
ĬÈÏÐж¯£º |
Å×Æú |
ÐÞ¸Äʼþ
ÎÞ