2020-07-21

Ðû²¼Ê±¼ä 2020-07-22

ÐÂÔöʼþ


ʼþÃû³Æ£º

HTTP_Laravel_Framework_·´ÐòÁл¯Â©¶´[CVE-2019-9081]

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²âµ½ÀûÓÃLaravel Framework ·´ÐòÁл¯Â©¶´½øÐй¥»÷µÄÐÐΪ¡£Laravel FrameworkÊÇTaylor OtwellÈí¼þ¿ª·¢Õß¿ª·¢µÄÒ»¿î»ùÓÚPHPµÄWebÓ¦Ó÷¨Ê½¿ª·¢¿ò¼Ü¡£IlluminateÊÇÆäÖеÄÒ»¸ö×é¼þ¡£Laravel Framework 5.7.x°æ±¾ÖеÄIlluminate×é¼þ´æÔÚ·´ÐòÁл¯Â©¶´ £¬Ô¶³Ì¹¥»÷Õß¿ÉÀûÓøÃ©¶´Ö´ÐдúÂë¡£

¸üÐÂʱ¼ä£º

20200721










ʼþÃû³Æ£º

DNS_Äþ¾²Â©¶´_Microsoft_DNS_Server_Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2020-1350]

Äþ¾²ÀàÐÍ£º

»º³åÒç³ö

ʼþÃèÊö£º

Windows DNS Server ÊÇ Windows Server ·þÎñÆ÷ÉÏÒ»ÏîÖØÒª¹¦Ð§×é¼þ £¬ÂôÁ¦ÓòÄÚÖ÷»úµÄËùÓÐDNSÏà¹Ø·þÎñµÄµ÷Öκʹ¦Öá£Windows DNS ServerÎÞ·¨ÕýÈ·´¦ÖÃSIGÇëÇó £¬Ô¶³Ì¹¥»÷Õ߿ɲ»¾­¹ýÉí·ÝÑéÖ¤ £¬ÏòÊÜÓ°ÏìµÄ·þÎñÆ÷·¢ËÍÌØÖÆµÄÇëÇó°ü £¬×îÖÕ´¥·¢¸Ã©¶´¡£ÀÖ³ÉÀûÓôË©¶´µÄ¹¥»÷Õß¿ÉÔÚÊÜÓ°ÏìµÄϵͳÉÏÖ´ÐÐÈÎÒâ´úÂë £¬½ø¶ø¿ØÖÆÆäËûÏàÁ¬Í¨µÄ·þÎñÔì³ÉÑÏÖØÎ£º¦¡£

¸üÐÂʱ¼ä£º

20200721











ʼþÃû³Æ£º

TCP_Fastjson_JSON·´ÐòÁл¯_Ô¶³Ì´úÂëÖ´ÐЩ¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

FastjsonÊÇÒ»¸öJava¿â £¬¿ÉÒÔ½«Java¹¤¾ßת»»ÎªJSON¸ñʽ £¬fastjson´æÔÚÔ¶³Ì´úÂëÖ´ÐиßΣÄþ¾²Â©¶´¡£¹¥»÷Õßͨ¹ý·¢ËÍÒ»¸ö¾«ÐĽṹµÄJSONÐòÁл¯¶ñÒâ´úÂë £¬µ±·¨Ê½Ö´ÐÐJSON·´ÐòÁл¯µÄ¹ý³ÌÖÐÖ´ÐжñÒâ´úÂë £¬´Ó¶øµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐС£

¸üÐÂʱ¼ä£º

20200721









ʼþÃû³Æ£º

HTTP_Äþ¾²Â©¶´_Jenkins_Groovy²å¼þshellÖ´ÐЩ¶´

Äþ¾²ÀàÐÍ£º

Äþ¾²Â©¶´

ʼþÃèÊö£º

¼ì²âµ½Ê¹ÓÃjavaÃô¸Ðº¯Êýexcute,Ö´ÐÐÀֳɿÉÄÜ»áÔì³ÉÃüÁîÖ´ÐС£

¸üÐÂʱ¼ä£º

20200721







ʼþÃû³Æ£º

TCP_ľÂíºóÃÅ_Win32.Lucifer_Satan_DDos_ÉÏ´«ÍÚ¿ó״̬

Äþ¾²ÀàÐÍ£º

ľÂíºóÃÅ

ʼþÃèÊö£º

Lucifer/Satan_DDosÊÇÒ»¸ö»ìºÏÐÍľÂí £¬¼È¿ÉÒÔ½øÐÐÍÚ¿ó £¬ÓÖÄܹ»½øÐÐDDOS¹¥»÷ £¬¶øÇÒ»¹Äܹ»Í¨¹ýÀûÓöà¸ö©¶´ºÍMSSQL±©Á¦ÆÆ½âÀ´½øÐÐ×ÔÎÒÁ÷´«¡£´ËÍâ £¬Ëü»áÕë¶ÔÄÚ²¿ÍøÑ¬È¾µÄÒ×Êܹ¥»÷Ä¿±êÊͷŲ¢ÔËÐÐEternalBlue £¬EternalRomanceºÍDoublePulsarºóÃÅ¡£¸ÃľÂíÀûÓõÄ©¶´Çåµ¥°üÂÞ£ºCVE-2014-6287 £¬CVE-2018-1000861 £¬CVE-2017-10271 £¬ThinkPHP RCE©¶´£¨CVE-2018-20062£© £¬CVE-2018-7600 £¬CVE-2017-9791 £¬CVE-2019-9081 £¬PHPStudyºóÃÅRCE £¬CVE-2017-0144 £¬CVE-2017-0145ºÍCVE-2017-8464¡£¸Ãʼþ±íÃ÷ÍÚ¿ó·¨Ê½ÕýÔÚÉÏ´«ÍÚ¿ó״̬ÐÅÏ¢¡£

¸üÐÂʱ¼ä£º

20200721














ʼþÃû³Æ£º

TCP_ľÂíºóÃÅ_Win32.Lucifer_Satan_DDos_Á¬½Ó

Äþ¾²ÀàÐÍ£º

ľÂíºóÃÅ

ʼþÃèÊö£º

¼ì²âµ½ÀûÓûìºÏÐÍľÂíLucifer/Satan_DDosÁ¬½Ó·þÎñÆ÷µÄÐÐΪ¡£Lucifer/Satan_DDosÊÇÒ»¸ö»ìºÏÐÍľÂí £¬¼È¿ÉÒÔ½øÐÐÍÚ¿ó £¬ÓÖÄܹ»½øÐÐDDOS¹¥»÷ £¬¶øÇÒ»¹Äܹ»Í¨¹ýÀûÓöà¸ö©¶´ºÍMSSQL±©Á¦ÆÆ½âÀ´½øÐÐ×ÔÎÒÁ÷´«¡£´ËÍâ £¬Ëü»áÕë¶ÔÄÚ²¿ÍøÑ¬È¾µÄÒ×Êܹ¥»÷Ä¿±êÊͷŲ¢ÔËÐÐEternalBlue £¬EternalRomanceºÍDoublePulsarºóÃÅ¡£¸ÃľÂíÀûÓõÄ©¶´Çåµ¥°üÂÞ£ºCVE-2014-6287 £¬CVE-2018-1000861 £¬CVE-2017-10271 £¬ThinkPHP RCE©¶´£¨CVE-2018-20062£© £¬CVE-2018-7600 £¬CVE-2017-9791 £¬CVE-2019-9081 £¬PHPStudyºóÃÅRCE £¬CVE-2017-0144 £¬CVE-2017-0145ºÍCVE-2017-8464¡£

¸üÐÂʱ¼ä£º

20200721















ÐÞ¸Äʼþ


ʼþÃû³Æ£º

TCP_ľÂí_CoinMiner_ʵÑéÁ¬½Ó¿ó³Ø

Äþ¾²ÀàÐÍ£º

ľÂíºóÃÅ

ʼþÃèÊö£º

¼ì²âµ½Ä¾ÂíÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCoinminerľÂí¡£

¸üÐÂʱ¼ä£º

20200721