ÐÅÏ¢°²È«Öܱ¨-2018ÄêµÚ20ÖÜ
°ä²¼¹¦·ò 2018-05-21
Ò»¡¢±¾Öܰ²È«Ì¬ÊÆ×ÛÊö
2018Äê05ÔÂ14ÈÕÖÁ20ÈÕ¹²ÊÕ¼°²È«·ì϶52¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇRed Hat DHCP Client Script´úÂëÖ´Ðзì϶£»Advantech WebAccessËÁÒâÎļþɾ³ý·ì϶£»Adobe Photoshop CCÔ½½çдËÁÒâ´úÂëÖ´Ðзì϶£»Google Chrome V8 CVE-2018-6122´úÂëÖ´Ðзì϶£»Spring Framework CVE-2018-1258°²È«ÈÏÖ¤ÈÆ¹ý·ì϶¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊDzÍÒûÁ¬Ëø¹«Ë¾Chili'sÔâµ½¶ñÒâÈí¼þ¹¥»÷£¬·¨Âɲ¿ÃÅÔÚµ÷²éÖУ»Ä«Î÷¸çµÄÒøÐеç×ÓÖ§¸¶ÏµÍ³£¨SPEI£©ÂÅ´ÎÔâµ½ºÚ¿Í¹¥»÷£¬±»µÁ×ʽð²»È·¶¨£»×êÑÐÍŶӷ¢ÏÖÁ½ÆðÀûÓÃUPnPºÍ̸½øÐеÄDDoS¹¥»÷ÊÂÎñ£»¶íÂÞ˹Áª¹ú¹ú¼ÊºÏ×÷Êð£¨Rossotrudnichestvo£©¹Ù·½ÍøÕ¾ÔâºÚ¿Í¹¥»÷£»×êÑÐÍŶӷ¢ÏÖ¶ñÒâPDFÎļþͬʱÀûÓÃWindowsÌáȨ·ì϶ºÍAdobe ReaderµÄRCE·ì϶¡£
ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾Öܰ²È«ÍþвΪÖС£
¶þ¡¢³ÁÒª°²È«·ì϶Áбí
1¡¢Red Hat DHCP Client Script´úÂëÖ´Ðзì϶
Red Hat DHCP Client´¦ÖÃÌØÊâµÄDHCPÏìÓ¦´æÔÚ°²È«·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâÒªÇó£¬Äܹ»rootȨÏÞÖ´ÐÐËÁÒâºÅÁî¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://access.redhat.com/security/vulnerabilities/3442151
2¡¢Advantech WebAccessËÁÒâÎļþɾ³ý·ì϶
Advantech WebAccess´æÔÚÎļþÃû³Æ»òõè¾¶±í²¿½ÚÔì·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬿Éɾ³ýËÁÒâÎļþ¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://ics-cert.us-cert.gov/advisories/ICSA-18-135-01
3¡¢Adobe Photoshop CCÔ½½çдËÁÒâ´úÂëÖ´Ðзì϶
Adobe Photoshop CC´¦ÖÃÎļþ´æÔÚÔ½½çд·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâÎļþ£¬ÓÕʹÓû§½âÎö£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»òÖ´ÐÐËÁÒâ´úÂë¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://helpx.adobe.com/security/products/photoshop/apsb18-17.html
4¡¢Google Chrome V8 CVE-2018-6122´úÂëÖ´Ðзì϶
Google Chrome V8´æÔÚ°²È«·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄWEBÒ³£¬ÓÕʹÓû§½âÎö£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»òÖ´ÐÐËÁÒâ´úÂë¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop.html
5¡¢Spring Framework CVE-2018-1258°²È«ÈÏÖ¤ÈÆ¹ý·ì϶
Spring FrameworkÔÚʹÓò½Ö谲ȫÐÔ´æÔÚ°²È«·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇó£¬Èƹý°²È«ÏÞ¶ÈδÊÚȨ½Ó¼û¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄ°²È«²¹¶¡ÒÔ½¨¸´¸Ã·ì϶£ºhttps://pivotal.io/security/cve-2018-1258
Èý¡¢³ÁÒª°²È«ÊÂÎñ×ÛÊö
1¡¢²ÍÒûÁ¬Ëø¹«Ë¾Chili'sÔâµ½¶ñÒâÈí¼þ¹¥»÷£¬·¨Âɲ¿ÃÅÔÚµ÷²éÖÐ

²ÍÒûÁ¬Ëø¹«Ë¾Chili's±¾Öܰ䲼²¼¸æ³ÆÔâµ½¶ñÒâÈí¼þ¹¥»÷¡£¸Ã¹«Ë¾°µÊ¾£¬ÔÚÓë·¨Âɲ¿Ãź͵ÚÈý·½¼ø¶¨×¨¼Òһ·µ÷²é´ËÊÂÎñ¡£Æ¾¾ÝÍøÂçµ½µÄ×îÐÂϸ½Ú£¬¸Ã¶ñÒâÈí¼þËÆºõÒѾϰȾÁËÆäijЩ֧¸¶ÏµÍ³¡£µ«ÔÚÍøÂçÉÏ·¢ÏָöñÒâÈí¼þ£¬³ÆÓÐÖ¤¾ÝÅú×¢¸Ã¶ñÒâÈí¼þ½öÔÚ2018Äê3ÔºÍ4ÔÂÖ®¼ä»îÔ¾¡£BrinkerҲûÓÐÌṩ»òÐíÊÜÓ°ÏìµÄ¿Í»§ÊýÁ¿£¬µ«³ÐŵÔÚµ÷²é½øÐÐʱ°ä²¼¸ü¶àϸ½Ú¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/card-breach-announced-at-chili-s-restaurant-chain/
2¡¢Ä«Î÷¸çµÄÒøÐеç×ÓÖ§¸¶ÏµÍ³£¨SPEI£©ÂÅ´ÎÔâµ½ºÚ¿Í¹¥»÷£¬±»µÁ×ʽð²»È·¶¨

ÖÐÑëÒøÐÐÆóÒµÖ§¸¶ºÍ·þÎñϵͳ×ܼàLorenza Martinez°µÊ¾£¬ÔÚ4ÔºÍ5ÔÂÖÁÉÙ¶ÔÄ«Î÷¸çÑëÐеÄÒøÐмäµç×ÓÖ§¸¶ÏµÍ³£¨SPEI£©ÌáÒéÁËÎå´ÎºÚ¿Í¹¥»÷¡£Ò»Ð©Ä«Î÷¸çýÌåÒѾ½«±»µÁ½ð¶îÉèΪ4ÒÚ±ÈË÷£¨2040ÍòÃÀÔª£©£¬µ«Âí¶¡ÄÚ˹·ñ¶¨ÁËÕâЩ±¨Â·¡£Ëý˵±»µÁµÄÇ®ÊôÓÚÒøÐÐ×ÔÉí£¬¿Í»§µÄ×ʽð´ÓδÊܵ½Ó°Ïì¡£ÔÚ·¢ÏÖ¹¥»÷ºó£¬ÒøÐÐת¶øÑ¡È¡½ÏÂýµ«¸ü°²È«µÄ²½Ö裬Ŀǰ»¹Ã»ÓÐÐµĹ¥»÷¼Í¼¡£
ÔÎÄÁ´½Ó£ºhttps://www.securityweek.com/hackers-divert-funds-mexico-banks-amount-unclear-official
3¡¢×êÑÐÍŶӷ¢ÏÖÁ½ÆðÀûÓÃUPnPºÍ̸½øÐеÄDDoS¹¥»÷ÊÂÎñ

¹¥»÷ÕßÔÚ³¢ÊÔѡȡͨÓü´²å¼´Óã¨UPnP£©ºÍ̸À´ÆÁ±ÎDDoS·ºÀÄÆÚ¼ä·¢Ë͵ÄÍøÂçÊý¾Ý°üµÄÔ´¶Ë¿Ú£¬´Ó¶øÔ¤·ÀʹÓÃijЩDDoS»º½â½â¾ö¹æ»®µÄв½Öè¡£ÔÚÖÜÒ»°ä²¼µÄÒ»·Ý»ã±¨ÖУ¬Imperva¹«Ë¾°µÊ¾£¬ËûÃÇ·¢ÏÖÖÁÉÙÓÐÁ½´ÎѡȡÕâÖÖ¼¼ÊõµÄDDoS¹¥»÷¡£Í¨¹ýÆÁ±Î´«ÈëÍøÂçÊý¾Ý°üµÄÔ´¶Ë¿Ú¡£ÒÀ¸½¶ÁÈ¡´ËÐÅÏ¢À´×èÖ¹¹¥»÷µÄÀÏʽDDoS»º½âϵͳ±ØÒª¸üÐÂΪ¸ü¸´ÔӵĽâ¾ö¹æ»®£¬ÕâЩ½â¾ö¹æ»®ÒÀÀµÓÚÉî¶È°ü¼ì²â£¨DPI£©£¬ÕâÊÇÒ»Öֳɱ¾¸ü¸ß£¬½¨ÒéʹÓ÷ÓÉÆ÷µÄÓû§ÈôÊDz»Ê¹ÓøÃÖ°ÄÜ£¬Ôò½ûÓÃUPnPÖ§³Ö¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/ddos-attacks-leverage-upnp-protocol-to-avoid-mitigation/
4¡¢¶íÂÞ˹Áª¹ú¹ú¼ÊºÏ×÷Êð£¨Rossotrudnichestvo£©¹Ù·½ÍøÕ¾ÔâºÚ¿Í¹¥»÷

Anonymous¹¥»÷Á˶íÂÞ˹Áª¹ú¹ú¼ÊºÏ×÷Êð£¨Rossotrudnichestvo£©µÄ¹Ù·½ÍøÕ¾µÄ×ÓÓòÃû£¬¸Ã¹¥»÷ÊÂÎñ²úÉúÔÚ5ÔÂ10ÈÕ£¬ÒÔ¿¹Òéµ±¾ÖµÄÉó²éÔì¶È£¬²¢³ö¸ñÌáµ½Á˲»ÈÝTelegramµÄ»®¶¨¡£ÉϸöÔ£¬¶íÂÞ˹µ±¾Ö¹Ø±ÕÁ˸ùúµÄTelegramÀûÓ÷¨Ê½£¬ÓÉÓڸù«Ë¾»Ø¾ø½«ÆäÓû§µÄ¼ÓÃÜÃÜÔ¿½»¸ø¶íÂÞ˹Áª¹ú°²È«¾Ö£¨FSB£©½øÐе÷²é¡£×Ô2018Äê5ÔÂ3ÈÕÆð£¬¶íÂÞ˹Óйػú¹¹½û·âÁË50¶à¸öÐ鹹רÓÃÍøÂ磨VPN£©¡¢ÍøÂç´úÀíºÍÄäÃûÍøÂç¡£
ÔÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/72567/hacktivism/anonymous-hask-russia-site.html
5¡¢×êÑÐÍŶӷ¢ÏÖ¶ñÒâPDFÎļþͬʱÀûÓÃWindowsÌáȨ·ì϶ºÍAdobe ReaderµÄRCE·ì϶

ESETµÄ×êÑÐÈËÔ±×î½ü·¢ÏÖÁËÒ»¸ö¶ñÒâPDFÎļþ£¬¸Ã¶ñÒâÎĵ·ûÓÃWindowsÖеÄÌØÈ¨Éý¼¶·ì϶£¨CVE-2018-8120£©ºÍAdobe Reader£¨CVE-2018-4990£©ÖеÄÔ¶³Ì´úÂëÖ´Ðзì϶¡£CVE-2018-8120ÊÇMicrosoftÔÚ2018Äê5Ô²¹¶¡¸üÐÂÖн¨¸´µÄÁ½¸ö0day·ì϶֮һ£¬¶øCVE-2018-4990ÊÇÓÉAdobeÓÚ5ÔÂ14ÈÕ°ä²¼µÄ£¬°ä²¼Á˽¨¸´½ü50¸öÆäËûÎÊÌâµÄ¸üС£Í¨¹ý½áºÏÕâÁ½¸öȱµã£¬¹¥»÷ÕßÄܹ»ÓÃÖÁÉÙµÄÓû§½»»¥ÒÔ¸ü¸ßµÄȨÏÞÖ´ÐÐËÁÒâ´úÂ룬³ö¸ñÊÇ´ò¿ª¶ñÒâPDF¡£
ÔÎÄÁ´½Ó£ºhttps://www.securityweek.com/malicious-pdf-leads-discovery-adobe-reader-windows-zero-days


¾©¹«Íø°²±¸11010802024551ºÅ