¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20180627

°ä²¼¹¦·ò 2018-06-27

¡¾°²È«²¥±¨¡¿Wi-FiͬÃËÕýʽ°ä²¼ÐÂÒ»´ú°²È«³ß¶ÈWPA3£¬¿É½øÒ»²½Ìá¸ßÍøÂ簲ȫÐÔ


±¾ÖÜÒ»Wi-FiͬÃËÕýʽ°ä²¼ÐÂÒ»´ú°²È«³ß¶ÈWPA3£¬WPA3ÊÇÓÃÓÚWi-FiÏνӵÄÓû§Éí·ÝÑéÖ¤¼¼ÊõµÄ×îа汾¡£WPA3ÓÐÁ½ÖÖ°²È«Ä£Ê½£¬WPA3-PersonalºÍWPA3-Enterprise£¬ÕâÁ½ÖÖ°²È«Ä£Ê½µÄÖØÒªÇø±ðÔÚÓÚÉí·ÝÑéÖ¤½×¶Î¡£¶ÔÓÚÆóÒµ¡¢µ±¾ÖºÍ½ðÈÚÍøÂçÖÐʹÓõÄÉ豸£¬½¨ÒéʹÓÃWPA3-Enterprise°²È«Ä£Ê½£¬WPA3-PersonalÔòÊÇÃæÏòͨ³£Ó×ÎÒÓû§¡£Wi-FiͬÃ˰µÊ¾WPA3µÄSAEËã·¨¿ÉÄÜÕмܱ©Á¦¹¥»÷£¬WPA3½«ÔÚÂÅ´Îʧ°Ü³¢ÊÔºó×èÖ¹ÈÏÖ¤ÒªÇó¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/new-wpa3-wi-fi-standard-released/


¡¾Íþвµý±¨¡¿°²È«×êÑÐÍŶӷ¢ÏÖÖØÒªÕë¶Ô¶«ÄÏÑǵĹ¥»÷»î¶¯Rancor


Palo Alto NetworksµÄUnit 42×êÑÐÍŶӹ۲쵽Õë¶Ô¶«ÄÏÑǵÄһϵÁй¥»÷»î¶¯£¬Æä¶ñÒâÈí¼þµÄ·Ö·¢ºÍÖ¸±êµÄÑ¡ÔñÓµÓи߶ÈÕë¶ÔÐÔ¡£×êÑÐÈËÔ±ÒÔΪ¸Ã¹¥»÷ÕßÊÇÒ»¸öδ֪µÄ×éÖ¯Rancor£¬RancorÖØÒªÊ¹ÓÃÁ½¸ö¶ñÒâÈí¼þ¼Ò×壬DDKONGºÍPLAINTEE¡£DDKONGÊÇÆäÖØÒªµÄ¶ñÒâÈí¼þ¹¤¾ß£¬PLAINTEEËÆºõÊÇÐÂÔö³¤µÄ¹¤¾ß¡£Æä¹¥»÷Ö¸±êÔ̺¬µ«²»ÏÞÓÚÐÂ¼ÓÆÂºÍ¼íÆÒÕ¯¡£ÕâЩ¹¥»÷»î¶¯´Ó´¹µöÐÅÏ¢ÆðÍ·£¬×êÑÐÈËÔ±ÒÔΪÆäÖØÒªÕë¶ÔÕþÖÎʵÌå¡£


Ô­ÎÄÁ´½Ó£ºhttps://researchcenter.paloaltonetworks.com/2018/06/unit42-rancor-targeted-attacks-south-east-asia-using-plaintee-ddkong-malware-families/


¡¾Íþвµý±¨¡¿×êÑÐÈËÔ±³Æ2017ÄêµÄÿһ¸ö¼ÓÃÜÇ®±ÒICO¾ùÔÈÔ̺¬5¸ö°²È«·ì϶


Positive.com·¢ÏÖ2017ÄêµÄÿһ¸ö¼ÓÃÜÇ®±ÒICO¾ùÔÈ´æÔÚ5¸ö°²È«·ì϶£¬´óÎÞÊý·ì϶¶¼ÊÇÔÚICO×ÔÉíµÄÖÇÄܺÏÔ¼Öз¢Ïֵġ£¸Ã¹«Ë¾°µÊ¾2017ÄêËùÓеÄICOÒÆ¶¯ÀûÓö¼´æÔÚ°²È«·ì϶£¬Áí±íÈý·ÖÖ®Ò»µÄ·ì϶³Ê´Ë¿ÌICOµÄwebÀûÓÃÖУ¬·ì϶ÁìÓòÔ̺¬´úÂë×¢Èë¡¢·þÎñÆ÷Ãô¸ÐÊý¾Ýй¶¡¢²»°²È«µÄÊý¾Ý´«ÊäÒÔ¼°ËÁÒâÎļþ¶ÁÈ¡µÈ¡£ICO×éÖ¯ÕßÍùÍùûÓÐΪÆäÏîĿע²áÉ罻ýÌåÕË»§£¬Ê¹ÆäÓû§Ò×ÊÜÉç½»¹¤³ÌºÍ´¹µö¹¥»÷¡£×îºó£¬ICO×éÖ¯ÕßÍùÍùδÄÜΪÆäÃô¸ÐÕË»§ÆôÓÃË«³É·ÖÈÏÖ¤£¬µ¼Ö¹¥»÷Õß¿ÉÄܽٳֹٷ½ÍøÕ¾»òÇ®°ü¡£

Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/researchers-last-year-s-icos-had-five-security-vulnerabilities-on-average/


¡¾Íþвµý±¨¡¿°²È«×êÑÐÍŶӰ䲼ÀÕË÷Èí¼þThanatosµÄ½âÃܹ¤¾ß


˼¿ÆTalos°ä²¼ÀÕË÷Èí¼þThanatosµÄÃâ·Ñ½âÃܹ¤¾ß£¬¸Ã¹¤¾ßÔÚThanatos°æ±¾1ºÍ1.1ÒÔ¼°ÆäËüÒÑÖª°æ±¾É϶¼ÓÐЧ¡£Thanatosͨ¹ýŲÓÃGetTickCount»ñȡϵͳÔËÐй¦·òµÄºÁÃëÊý£¬¶øºóÌìÉú¼ÓÃÜÃÜÔ¿£¬²¢Ê¹ÓÃ(AES)-256½øÐмÓÃÜ¡£Òò¶øÆäÃÜÔ¿ÊÇÒ»¸ö32λµÄÖµ£¬ÔÚ¾ùÔÈÿÃë10Íò´ÎµÄ±©Á¦ÆÆ½âÏ£¨²âÊÔÐé¹¹»úµÄ»ù×¼£©£¬»ñµÃÃÜÔ¿±ØÒªÔ¼14·ÖÖӵŦ·ò¡£

Ô­ÎÄÁ´½Ó£ºhttps://blog.talosintelligence.com/2018/06/ThanatosDecryptor.html


¡¾·ÖÎö»ã±¨¡¿×êÑÐÍŶӰ䲼¹ØÓÚ¸æ°×Èí¼þPbotµÄбäÌåµÄ·ÖÎö»ã±¨


¿¨°Í˹»ù³¢ÊÔÊÒ·¢ÏÖ¸æ°×Èí¼þPBot£¨PythonBot£©µÄбäÌ壬¸Ã±äÌåÊÔͼÔÚÓû§µÄä¯ÀÀÆ÷ÉÏ×°Öøæ°×²å¼þ£¬ÕâЩ²å¼þ»áÔÚÍøÒ³ÉÏÔö³¤¸÷Àà¸æ°×£¬²¢½«Óû§³Á¶¨Ïòµ½¸æ°×ÍøÕ¾¡£PBotµÄ¿ª·¢ÈËÔ±²»Ðݰ䲼¸Ã±äÌåµÄа汾£¬Ã¿¸ö°æ±¾³ÇÊÐʹ¾ç±¾»ìºÏ±äµÃÔ½·¢¸´ÔÓ¡£ÔÚ4Ô·ݿ¨°Í˹»ù¼ì²âµ½³¬¹ý5Íò´Î×°ÖÃPBotµÄ³¢ÊÔ£¬ÔÚ5Ô·ÝÕâÒ»Êý×ÖÉõÖÁ»¹ÔÚÔö³¤¡£PBotÖØÒªÕë¶Ô¶íÂÞ˹¡¢ÎÚ¿ËÀ¼ºÍ¹þÈø¿Ë˹̹µÄÓû§¡£

Ô­ÎÄÁ´½Ó£ºhttps://securelist.com/pbot-evolving-adware/86242/


¡¾°²È«·ì϶¡¿×êÑÐÈËÔ±³ÆJolokiaµÄÃýÎóÅäÖÿÉÄܵ¼ÖÂÐÅϢй¶»òDoS


°²È«×êÑÐÈËÔ±Mat Mannion·¢ÏÖJolokia Java Management Extensions£¨JMX£©´æÔÚһЩ°²È«·ì϶£¬¿ÉÄܵ¼Ö»ؾø·þÎñ¡¢ÐÅϢй¶µÈÕë¶ÔJava Web·þÎñÆ÷µÄDZÔÚ¹¥»÷¡£Mannion³ÆJolokiaµÄĬÈÏÅäÖò¢²»°²È«£¬Ã»ÓнøÐÐÊʵ±ÅäÖõÄJolokia¿ÉÄܸøÍøÕ¾´øÀ´·çÏÕ£¬ÉõÖÁÔ̺¬Ò»Ð©½ðÈÚ»ú¹¹µÄÍøÕ¾¡£Mannion»¹°ä²¼ÁËÕë¶ÔApache Tomcat 8µÄPoC¡£

Ô­ÎÄÁ´½Ó£ºhttps://matmannion.com/jolokiapwn/