Google°ä²¼´¹Î£¸üн¨¸´ChromeÖÐÒѱ»ÀûÓõķì϶

°ä²¼¹¦·ò 2022-04-15
1¡¢Google°ä²¼´¹Î£¸üн¨¸´ChromeÖÐÒѱ»ÀûÓõķì϶


GoogleÔÚ4ÔÂ14ÈÕ°ä²¼´¹Î£¸üУ¬£¬£¬£¬£¬£¬£¬£¬½¨¸´Chrome V8 JavaScriptÒýÇæÖеÄÒ»¸öÀàÐÍ»ìºÏ·ì϶£¨CVE-2022-1364£©¡£¡£¡£ ¡£¡£¡£GoogleÔÚ°²È«²¼¸æÖаµÊ¾£¬£¬£¬£¬£¬£¬£¬£¬ÒѾ­¼ì²âµ½ÀûÓÃÕâ¸öÁãÈÕ·ì϶µÄ¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬µ«Ëü²¢Î´ÌṩÓйØÕâЩ¹¥»÷µÄ¸ü¶àϸ½Ú¡£¡£¡£ ¡£¡£¡£¹ÌÈ»ÀàÐÍ»ìºÏ·ì϶ͨ³ £»£»£»£» £»£»£»£»áͨ¹ýÔ½½ç¶ÁÈ¡»òдÈëµ¼ÖÂä¯ÀÀÆ÷±ÀÀ££¬£¬£¬£¬£¬£¬£¬£¬µ«¹¥»÷ÕßÒ²Äܹ»ÀûÓÃËüÃÇÀ´Ö´ÐÐËÁÒâ´úÂë¡£¡£¡£ ¡£¡£¡£ÓÉÓÚ´Ë·ì϶ÒÑÔÚ¹¥»÷Öб»»ý¼«ÀûÓ㬣¬£¬£¬£¬£¬£¬£¬×êÑÐÈËԱǿÁÒ½¨ÒéÓû§ÊÖ¶¯²é³­Ð¸üв¢³ÁÆôä¯ÀÀÆ÷ÀûÓøüС£¡£¡£ ¡£¡£¡£


https://www.bleepingcomputer.com/news/security/google-chrome-emergency-update-fixes-zero-day-used-in-attacks/


2¡¢×êÑÐÍŶӳÆÐ½©Ê¬ÍøÂçFodchaÒÑϰȾ³¬¹ý6Íǫ̀É豸


ýÌå3ÔÂ14ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬Ð½©Ê¬ÍøÂçFodchaÔÚ3ÔÂ29ÈÕÖÁ4ÔÂ10ÈÕÆÚ¼äÒÑϰȾ³¬¹ý62000̨É豸¡£¡£¡£ ¡£¡£¡£FodchaʹÓÃÁ˱©Á¦ÆÆ½â¹¤¾ßCrazyfia£¬£¬£¬£¬£¬£¬£¬£¬²¢ÀÄÓÃÁ˶à¸önday·ì϶À´Ï°È¾ÐÂÉ豸£¬£¬£¬£¬£¬£¬£¬£¬Éæ¼°Android£¨ADBµ÷ÊÔ·þÎñÆ÷ÖÐRCE£©¡¢GitLab£¨CVE-2021-22205£©ºÍRealtek Jungle SDK£¨CVE-2021-35394£©µÈ¡£¡£¡£ ¡£¡£¡£ËüÿÌì¶Ô100¶à¸öÖ¸±ê½øÐÐDDoS¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬×Ô1ÔÂÒÔÀ´Ò»ÏòʹÓÃfolded[.]in£¬£¬£¬£¬£¬£¬£¬£¬Ö±µ½3ÔÂ19ÈÕ¸ÃÓò±»È¡µÞºó£¬£¬£¬£¬£¬£¬£¬£¬ËüÇл»µ½ÁËfrenchxperts[.]cc¡£¡£¡£ ¡£¡£¡£


https://www.bleepingcomputer.com/news/security/new-fodcha-ddos-botnet-targets-over-100-victims-every-day/


3¡¢VMware³ÆWorkspace ONE AccessÖÐCVE-2022-22954Òѱ»ÀûÓÃ


¾ÝýÌå4ÔÂ13ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬VMware Workspace ONE AccessÖеķì϶CVE-2022-22954Òѱ»ÔÚÒ°ÀûÓᣡ£¡£ ¡£¡£¡£VMwareÔÚ°²È«Õ÷ѯÖÐÖ¸³ö£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÄܹ»Í¨¹ý·þÎñÆ÷¶ËÄ£°å×¢Èëµ¼ÖÂÔ¶³Ì´úÂëÖ´ÐÓ×£¡£¡£ ¡£¡£¡£±¾ÖÜ£¬£¬£¬£¬£¬£¬£¬£¬¶à¸ö×êÑÐÈËÔ±°ä²¼Á˹ØÓڸ÷ì϶µÄ·ì϶ÀûÓ㬣¬£¬£¬£¬£¬£¬£¬ÒÔ¼°ÖÁÉÙÒ»¸öPoC¡£¡£¡£ ¡£¡£¡£Bad Packets¼ì²âµ½ÊÔIJÀûÓø÷ì϶µÄ»î¶¯£¬£¬£¬£¬£¬£¬£¬£¬ÆäpayloadÖÐʹÓõÄIPµØÖ·»¹ÔÚÆäËü¹¥»÷ÖÐÓÃÀ´·Ö·¢ºóÃÅTsunami¡£¡£¡£ ¡£¡£¡£


https://thehackernews.com/2022/04/vmware-releases-patches-for-critical.html


4¡¢Î¢Èíǣͷ¹Ø¹Ø½©Ê¬ÍøÂçZLoaderµÄÊýʮ̨C2·þÎñÆ÷


4ÔÂ13ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬Î¢ÈíµÄÊý×Ö·¸×ﲿÃÅ(DCU)°ä·¢Òѵ·»Ù½©Ê¬ÍøÂçZLoader¡£¡£¡£ ¡£¡£¡£Õâ´ÎÐж¯ÎªÆÚÊýÔÂÖ®¾Ã£¬£¬£¬£¬£¬£¬£¬£¬½áºÏÁËÈ«Çò¶à¼ÒµçÐÅÌṩÉ̺ÍÍøÂ簲ȫ¹«Ë¾¡£¡£¡£ ¡£¡£¡£Î¢Èí»ñµÃ·¨ÔººÅÁîºó¹Ø¹ØÁËZLoaderµÄ65¸öÓ²±àÂëÓò£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°Áí±í319¸öʹÓÃÓòÌìÉúË㷨ע²áµÄÓò£¬£¬£¬£¬£¬£¬£¬£¬ÔÚµ÷²éÖл¹È·¶¨Á˸öñÒâÈí¼þµÄ¿ª·¢ÕßÖ®Ò»Denis Malikov¡£¡£¡£ ¡£¡£¡£ZLoaderÓÚ2015Äê8Ô³õ´Î±»·¢ÏÖ£¬£¬£¬£¬£¬£¬£¬£¬ÖØÒªÕë¶ÔÃÀ¹ú¡¢Öйú¡¢Î÷Å·ºÍÈÕ±¾£¬£¬£¬£¬£¬£¬£¬£¬×î½ü±»Ryuk¡¢Egregor¡¢DarkSideºÍBlackMatterµÈ¶à¸öÀÕË÷ÍÅ»ïÀ´·Ö·¢payload¡£¡£¡£ ¡£¡£¡£


https://blogs.microsoft.com/on-the-issues/2022/04/13/zloader-botnet-disrupted-malware-ukraine/


5¡¢Aethon½¨¸´Ó°ÏìÆäTUG»úеÈ˵ķì϶JekyllBot:5


¾Ý4ÔÂ14ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬Ò½ÁÆÎïÁªÍø°²È«¹«Ë¾Cynerio·¢ÏÖÁËAethon TUG»úеÈËÖеÄ5¸ö·ì϶¡£¡£¡£ ¡£¡£¡£Aethon TUGÖÇÄÜ»úеÈËÒѱ»È«ÇòÊý°Ù¼ÒҽԺʹÓ㬣¬£¬£¬£¬£¬£¬£¬ÓÃÓÚÔËËÍÒ©Æ·ºÍÊØ»¤ÓÃÆ·£¬£¬£¬£¬£¬£¬£¬£¬²¢Ö´Ðе¥Ò»µÄ¹¤×÷¡£¡£¡£ ¡£¡£¡£ÕâЩ·ì϶ͳ³ÆÎªJekyllBot:5£¬£¬£¬£¬£¬£¬£¬£¬±ðÀëÊÇCVE-2022-1066¡¢CVE-2022-26423¡¢CVE-2022-1070¡¢CVE-2022-1070¡¢CVE-2022-27494¡¢CVE-2022-1059¡£¡£¡£ ¡£¡£¡£CISA³Æ£¬£¬£¬£¬£¬£¬£¬£¬³É¹¦ÀûÓÃÕâЩ·ì϶¿ÉÄܻᵼÖ»ؾø·þÎñ״̬£¬£¬£¬£¬£¬£¬£¬£¬²¢¿ÉÆëÈ«½ÚÔì»úеÈË»ò¶³öÃô¸ÐÐÅÏ¢¡£¡£¡£ ¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬£¬£¬AethonÒѰ䲼¹Ì¼þ¸üн¨¸´ÕâЩ·ì϶¡£¡£¡£ ¡£¡£¡£


https://securityaffairs.co/wordpress/130157/security/jekyllbot5-flaws-tug-autonomous-mobile-robots.html


6¡¢Fortinet°ä²¼KeksecÍÅ»ïµÄÐÂEnemybotµÄ·ÖÎö»ã±¨


4ÔÂ12ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬Fortinet°ä²¼Á˹ØÓÚKeksecÍÅ»ïʹÓõÄн©Ê¬ÍøÂçEnemybotµÄ·ÖÎö»ã±¨¡£¡£¡£ ¡£¡£¡£EnemybotÖØÒªÔ´×ÔGafgyt£¬£¬£¬£¬£¬£¬£¬£¬µ«Ò²½è¼øÁËMiraiµÄ¼¸¸öÄ£¿£¿ £¿£¿£¿£¿£¿é¡£¡£¡£ ¡£¡£¡£ËüÓµÓÐ×Ö·û´®»ìºÏÖ°ÄÜ£¬£¬£¬£¬£¬£¬£¬£¬¶øÆäC2·þÎñÆ÷°µ²ØÔÚTor½ÚµãÖУ¬£¬£¬£¬£¬£¬£¬£¬ÕâʹµÃɾ³ýËü±äµÃ¼«¾ßÌôÕ½ÐÔ¡£¡£¡£ ¡£¡£¡£¸Ã¶ñÒâÈí¼þÖØÒªÊ¹Óõķì϶Ô̺¬Seowon Intech SLC-130ºÍSLR-120S·ÓÉÆ÷ÖеÄRCE(CVE-2020-17456)¡¢D-Link DWR·ÓÉÆ÷ÖеÄRCE£¨CVE-2018-10823£©ÒÔ¼°iRZÒÆ¶¯Â·ÓÉÆ÷ÖеÄËÁÒâcronjob×¢Èë·ì϶£¨CVE-2022-27226£©¡£¡£¡£ ¡£¡£¡£


https://www.fortinet.com/blog/threat-research/enemybot-a-look-into-keksecs-latest-ddos-botnet