¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20181111

°ä²¼¹¦·ò 2018-11-11
¡¾°²È«·ì϶¡¿


×êÑÐÈËÔ±·¢ÏÖRuby˵»°Ò²´æÔÚ·´ÐòÁл¯ÎÊÌâ

https://www.zdnet.com/article/deserialization-issues-also-affect-ruby-not-just-java-php-and-net/


¡¾Íþвµý±¨¡¿


×êÑÐÍŶӷ¢ÏÖ±¾ÖÜEmotetµÄÀ¬»øÓʼþ»î¶¯¼¤Ôö

https://www.welivesecurity.com/2018/11/09/emotet-launches-major-new-spam-campaign/


×êÑÐÍŶÓÅûÂ¶ÖØÒªÀûÓÃInPage·ì϶¶Ô×¼°Í»ù˹̹µÄ¶ñÒâ¹¥»÷»î¶¯

https://cloudblogs.microsoft.com/microsoftsecure/2018/11/08/attack-uses-malicious-inpage-document-and-outdated-vlc-media-player-to-give-attackers-backdoor-access-to-targets/


¡¾¶ñÒâÈí¼þ¡¿


×êÑÐÍŶӷ¢ÏÖжñÒâÍÚ¿óÈí¼þLinux.KORKERDS¿ÉÀûÓÃRootkit°µ²Ø¹ý³Ì

https://www.bleepingcomputer.com/news/security/linux-cryptominers-are-now-using-rootkits-to-stay-hidden/


¡¾·ì϶²¹¶¡¡¿


VMware½¨¸´½üÆÚGeekPwn2018ÉÏÅû¶µÄÐé¹¹»úÌÓÒÝ·ì϶

https://securityaffairs.co/wordpress/77858/hacking/vmware-critical-vm-escape-flaw.html



ÉêÃ÷£º±¾×ÊѶÓÉGA»Æ½ð¼×άËûÃü°²È«Ó××é·­ÒëºÍÕû¶Ù