ÐÅÏ¢°²È«Öܱ¨-2018ÄêµÚ20ÖÜ

°ä²¼¹¦·ò 2018-05-21

Ò»¡¢±¾Öܰ²È«Ì¬ÊÆ×ÛÊö
        2018Äê05ÔÂ14ÈÕÖÁ20ÈÕ¹²ÊÕ¼°²È«·ì϶52¸ö £¬ÖµµÃ¹Ø×¢µÄÊÇRed Hat DHCP Client Script´úÂëÖ´Ðзì϶£»Advantech WebAccessËÁÒâÎļþɾ³ý·ì϶£»Adobe Photoshop CCÔ½½çдËÁÒâ´úÂëÖ´Ðзì϶£»Google Chrome V8 CVE-2018-6122´úÂëÖ´Ðзì϶£»Spring Framework CVE-2018-1258°²È«ÈÏÖ¤ÈÆ¹ý·ì϶¡£

        ±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊDzÍÒûÁ¬Ëø¹«Ë¾Chili'sÔâµ½¶ñÒâÈí¼þ¹¥»÷ £¬·¨Âɲ¿ÃÅÔÚµ÷²éÖУ»Ä«Î÷¸çµÄÒøÐеç×ÓÖ§¸¶ÏµÍ³£¨SPEI£©ÂÅ´ÎÔâµ½ºÚ¿Í¹¥»÷ £¬±»µÁ×ʽð²»È·¶¨£»×êÑÐÍŶӷ¢ÏÖÁ½ÆðÀûÓÃUPnPºÍ̸½øÐеÄDDoS¹¥»÷ÊÂÎñ£»¶íÂÞ˹Áª¹ú¹ú¼ÊºÏ×÷Êð£¨Rossotrudnichestvo£©¹Ù·½ÍøÕ¾ÔâºÚ¿Í¹¥»÷£»×êÑÐÍŶӷ¢ÏÖ¶ñÒâPDFÎļþͬʱÀûÓÃWindowsÌáȨ·ì϶ºÍAdobe ReaderµÄRCE·ì϶¡£

        ƾ¾ÝÒÔÉÏ×ÛÊö £¬±¾Öܰ²È«ÍþвΪÖС£


¶þ¡¢³ÁÒª°²È«·ì϶Áбí
1¡¢Red Hat DHCP Client Script´úÂëÖ´Ðзì϶

        Red Hat DHCP Client´¦ÖÃÌØÊâµÄDHCPÏìÓ¦´æÔÚ°²È«·ì϶ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâÒªÇó £¬Äܹ»rootȨÏÞÖ´ÐÐËÁÒâºÅÁî¡£

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://access.redhat.com/security/vulnerabilities/3442151
2¡¢Advantech WebAccessËÁÒâÎļþɾ³ý·ì϶

        Advantech WebAccess´æÔÚÎļþÃû³Æ»òõè¾¶±í²¿½ÚÔì·ì϶ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇó £¬¿Éɾ³ýËÁÒâÎļþ¡£

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://ics-cert.us-cert.gov/advisories/ICSA-18-135-01
3¡¢Adobe Photoshop CCÔ½½çдËÁÒâ´úÂëÖ´Ðзì϶

        Adobe Photoshop CC´¦ÖÃÎļþ´æÔÚÔ½½çд·ì϶ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâÎļþ £¬ÓÕʹÓû§½âÎö £¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»òÖ´ÐÐËÁÒâ´úÂë¡£

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://helpx.adobe.com/security/products/photoshop/apsb18-17.html
4¡¢Google Chrome V8 CVE-2018-6122´úÂëÖ´Ðзì϶

        Google Chrome V8´æÔÚ°²È«·ì϶ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄWEBÒ³ £¬ÓÕʹÓû§½âÎö £¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»òÖ´ÐÐËÁÒâ´úÂë¡£

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop.html
5¡¢Spring Framework CVE-2018-1258°²È«ÈÏÖ¤ÈÆ¹ý·ì϶

        Spring FrameworkÔÚʹÓò½Ö谲ȫÐÔ´æÔÚ°²È«·ì϶ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇó £¬Èƹý°²È«ÏÞ¶ÈδÊÚȨ½Ó¼û¡£

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://pivotal.io/security/cve-2018-1258


Èý¡¢³ÁÒª°²È«ÊÂÎñ×ÛÊö
1¡¢²ÍÒûÁ¬Ëø¹«Ë¾Chili'sÔâµ½¶ñÒâÈí¼þ¹¥»÷ £¬·¨Âɲ¿ÃÅÔÚµ÷²éÖÐ

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

        ²ÍÒûÁ¬Ëø¹«Ë¾Chili's±¾Öܰ䲼²¼¸æ³ÆÔâµ½¶ñÒâÈí¼þ¹¥»÷¡£¸Ã¹«Ë¾°µÊ¾ £¬ÔÚÓë·¨Âɲ¿Ãź͵ÚÈý·½¼ø¶¨×¨¼Òһ·µ÷²é´ËÊÂÎñ¡£Æ¾¾ÝÍøÂçµ½µÄ×îÐÂϸ½Ú £¬¸Ã¶ñÒâÈí¼þËÆºõÒѾ­Ï°È¾ÁËÆäijЩ֧¸¶ÏµÍ³¡£µ«ÔÚÍøÂçÉÏ·¢ÏָöñÒâÈí¼þ £¬³ÆÓÐÖ¤¾ÝÅú×¢¸Ã¶ñÒâÈí¼þ½öÔÚ2018Äê3ÔºÍ4ÔÂÖ®¼ä»îÔ¾¡£BrinkerҲûÓÐÌṩ»òÐíÊÜÓ°ÏìµÄ¿Í»§ÊýÁ¿ £¬µ«³ÐŵÔÚµ÷²é½øÐÐʱ°ä²¼¸ü¶àϸ½Ú¡£

        Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/card-breach-announced-at-chili-s-restaurant-chain/

2¡¢Ä«Î÷¸çµÄÒøÐеç×ÓÖ§¸¶ÏµÍ³£¨SPEI£©ÂÅ´ÎÔâµ½ºÚ¿Í¹¥»÷ £¬±»µÁ×ʽð²»È·¶¨

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

        ÖÐÑëÒøÐÐÆóÒµÖ§¸¶ºÍ·þÎñϵͳ×ܼàLorenza Martinez°µÊ¾ £¬ÔÚ4ÔºÍ5ÔÂÖÁÉÙ¶ÔÄ«Î÷¸çÑëÐеÄÒøÐмäµç×ÓÖ§¸¶ÏµÍ³£¨SPEI£©ÌáÒéÁËÎå´ÎºÚ¿Í¹¥»÷¡£Ò»Ð©Ä«Î÷¸çýÌåÒѾ­½«±»µÁ½ð¶îÉèΪ4ÒÚ±ÈË÷£¨2040ÍòÃÀÔª£© £¬µ«Âí¶¡ÄÚ˹·ñ¶¨ÁËÕâЩ±¨Â·¡£Ëý˵±»µÁµÄÇ®ÊôÓÚÒøÐÐ×ÔÉí £¬¿Í»§µÄ×ʽð´ÓδÊܵ½Ó°Ïì¡£ÔÚ·¢ÏÖ¹¥»÷ºó £¬ÒøÐÐת¶øÑ¡È¡½ÏÂýµ«¸ü°²È«µÄ²½Öè £¬Ä¿Ç°»¹Ã»ÓÐÐµĹ¥»÷¼Í¼¡£

        Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/hackers-divert-funds-mexico-banks-amount-unclear-official

3¡¢×êÑÐÍŶӷ¢ÏÖÁ½ÆðÀûÓÃUPnPºÍ̸½øÐеÄDDoS¹¥»÷ÊÂÎñ

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

        ¹¥»÷ÕßÔÚ³¢ÊÔѡȡͨÓü´²å¼´Óã¨UPnP£©ºÍ̸À´ÆÁ±ÎDDoS·ºÀÄÆÚ¼ä·¢Ë͵ÄÍøÂçÊý¾Ý°üµÄÔ´¶Ë¿Ú £¬´Ó¶øÔ¤·ÀʹÓÃijЩDDoS»º½â½â¾ö¹æ»®µÄв½Öè¡£ÔÚÖÜÒ»°ä²¼µÄÒ»·Ý»ã±¨ÖÐ £¬Imperva¹«Ë¾°µÊ¾ £¬ËûÃÇ·¢ÏÖÖÁÉÙÓÐÁ½´ÎѡȡÕâÖÖ¼¼ÊõµÄDDoS¹¥»÷¡£Í¨¹ýÆÁ±Î´«ÈëÍøÂçÊý¾Ý°üµÄÔ´¶Ë¿Ú¡£ÒÀ¸½¶ÁÈ¡´ËÐÅÏ¢À´×èÖ¹¹¥»÷µÄÀÏʽDDoS»º½âϵͳ±ØÒª¸üÐÂΪ¸ü¸´ÔӵĽâ¾ö¹æ»® £¬ÕâЩ½â¾ö¹æ»®ÒÀÀµÓÚÉî¶È°ü¼ì²â£¨DPI£© £¬ÕâÊÇÒ»Öֳɱ¾¸ü¸ß £¬½¨ÒéʹÓ÷ÓÉÆ÷µÄÓû§ÈôÊDz»Ê¹ÓøÃÖ°ÄÜ £¬Ôò½ûÓÃUPnPÖ§³Ö¡£

        Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/ddos-attacks-leverage-upnp-protocol-to-avoid-mitigation/

4¡¢¶íÂÞ˹Áª¹ú¹ú¼ÊºÏ×÷Êð£¨Rossotrudnichestvo£©¹Ù·½ÍøÕ¾ÔâºÚ¿Í¹¥»÷

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

        Anonymous¹¥»÷Á˶íÂÞ˹Áª¹ú¹ú¼ÊºÏ×÷Êð£¨Rossotrudnichestvo£©µÄ¹Ù·½ÍøÕ¾µÄ×ÓÓòÃû £¬¸Ã¹¥»÷ÊÂÎñ²úÉúÔÚ5ÔÂ10ÈÕ £¬ÒÔ¿¹Òéµ±¾ÖµÄÉó²éÔì¶È £¬²¢³ö¸ñÌáµ½Á˲»ÈÝTelegramµÄ»®¶¨¡£ÉϸöÔ £¬¶íÂÞ˹µ±¾Ö¹Ø±ÕÁ˸ùúµÄTelegramÀûÓ÷¨Ê½ £¬ÓÉÓڸù«Ë¾»Ø¾ø½«ÆäÓû§µÄ¼ÓÃÜÃÜÔ¿½»¸ø¶íÂÞ˹Áª¹ú°²È«¾Ö£¨FSB£©½øÐе÷²é¡£×Ô2018Äê5ÔÂ3ÈÕÆð £¬¶íÂÞ˹Óйػú¹¹½û·âÁË50¶à¸öÐ鹹רÓÃÍøÂ磨VPN£©¡¢ÍøÂç´úÀíºÍÄäÃûÍøÂç¡£

        Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/72567/hacktivism/anonymous-hask-russia-site.html

5¡¢×êÑÐÍŶӷ¢ÏÖ¶ñÒâPDFÎļþͬʱÀûÓÃWindowsÌáȨ·ì϶ºÍAdobe ReaderµÄRCE·ì϶

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

        ESETµÄ×êÑÐÈËÔ±×î½ü·¢ÏÖÁËÒ»¸ö¶ñÒâPDFÎļþ £¬¸Ã¶ñÒâÎĵ·ûÓÃWindowsÖеÄÌØÈ¨Éý¼¶·ì϶£¨CVE-2018-8120£©ºÍAdobe Reader£¨CVE-2018-4990£©ÖеÄÔ¶³Ì´úÂëÖ´Ðзì϶¡£CVE-2018-8120ÊÇMicrosoftÔÚ2018Äê5Ô²¹¶¡¸üÐÂÖн¨¸´µÄÁ½¸ö0day·ì϶֮һ £¬¶øCVE-2018-4990ÊÇÓÉAdobeÓÚ5ÔÂ14ÈÕ°ä²¼µÄ £¬°ä²¼Á˽¨¸´½ü50¸öÆäËûÎÊÌâµÄ¸üС£Í¨¹ý½áºÏÕâÁ½¸öȱµã £¬¹¥»÷ÕßÄܹ»ÓÃÖÁÉÙµÄÓû§½»»¥ÒÔ¸ü¸ßµÄȨÏÞÖ´ÐÐËÁÒâ´úÂë £¬³ö¸ñÊÇ´ò¿ª¶ñÒâPDF¡£

        Ô­ÎÄÁ´½Ó£ºhttps://www.securityweek.com/malicious-pdf-leads-discovery-adobe-reader-windows-zero-days