WordPress²å¼þYellow PencilÌáȨ·ì϶£»ÐÂÍÚ¿ó½©Ê¬ÍøÂçÀûÓÃEternalBlueºÍMimikatz´«²¼

°ä²¼¹¦·ò 2019-04-14

¡¾°²È«·ì϶¡¿


WordPress²å¼þYellow Pencil´æÔÚÌáȨ·ì϶£¬Ó°ÏìÔ¼3Íò¸öÍøÕ¾

https://www.bleepingcomputer.com/news/security/thousands-of-wordpress-sites-exposed-by-yellow-pencil-plugin-flaw/


¡¾Íþвµý±¨¡¿


ÐÂÍÚ¿ó½©Ê¬ÍøÂçÀûÓÃEternalBlueºÍMimikatz´«²¼£¬ÖØÒªÕë¶ÔÑÇÖÞ

https://www.bleepingcomputer.com/news/security/malware-creates-cryptominer-botnet-using-eternalblue-and-mimikatz/


ÃÀ¹úCERTÕë¶ÔCisco¡¢F5µÈ¶à¸öVPNÈí¼þÖеݲȫ·ì϶°ä²¼ÖÒ¸æ

https://www.networkworld.com/article/3388646/gov-t-warns-on-vpn-security-bug-in-cisco-palo-alto-f5-pulse-software.html


¡¾¹¥»÷ÊÂÎñ¡¿


Uniden¹ÙÍøÔâºÚ¿ÍÈëÇÖ£¬±»ÓÃÓÚ·Ö·¢Emotet±äÖÖ
https://cyware.com/news/uniden-commercial-site-compromised-to-distribute-emotet-trojan-5246b2f8


¡¾·ì϶²¹¶¡¡¿


VMware°ä²¼°²È«¸üУ¬½¨¸´¶à¸ö²úÆ·ÖеÄDoSºÍÐÅϢй¶·ì϶
https://www.securityweek.com/vmware-patches-dos-information-disclosure-flaws-graphics-components