ÐÅÏ¢°²È«Öܱ¨-2019ÄêµÚ18ÖÜ
°ä²¼¹¦·ò 2019-05-05±¾Öܰ²È«Ì¬ÊÆ×ÛÊö
2019Äê4ÔÂ29ÈÕÖÁ5ÔÂ05ÈÕ¹²ÊÕ¼°²È«·ì϶46¸ö£¬£¬£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇApache Archiva CVE-2019-0214ËÁÒâÎļþд·ì϶£»£»£»£»£»£»£»Oracle WebLogic Server wls9_async_response·´ÐòÁл¯ºÅÁîÖ´Ðзì϶; Microsoft Visual Studio asmÄÚ´æ´úÂë´úÂëÖ´Ðзì϶£»£»£»£»£»£»£»Apple macOS Mojave APFS×é¼þ¿ªÊͺóʹÓÃÌØÈ¨ÌáÉý·ì϶£»£»£»£»£»£»£»Foxit Reader AcroForm removeField CVE-2019-6768¿ªÊͺóʹÓôúÂëÖ´Ðзì϶¡£¡£¡£¡£¡£¡£¡£¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊÇMalwarebytes Labs°ä²¼2019ÄêQ1ÍøÂç·¸×ïÕ½ÊõºÍ¼¼Êõ»ã±¨£»£»£»£»£»£»£»Ð»㱨Åú×¢2018Äê»ùÓÚÉ罻ýÌåµÄڲƻÔö³¤43%£»£»£»£»£»£»£»¿¨°Í˹»ù°ä²¼2019ÄêQ1 APT¹¥»÷Ç÷Ïò»ã±¨£»£»£»£»£»£»£»ÃÀ¹úÕÐÆ¸ÍøÕ¾LaddersÒâ±íй¶½ü1300ÍòÇóÖ°ÕßµÄÓ×ÎÒ×ÊÁÏ£»£»£»£»£»£»£»Å·ÖÞÐ̾¯×éÖ¯µ·»Ù°µÍøÊг¡Wall Street MarketºÍSilkkitie¡£¡£¡£¡£¡£¡£¡£¡£
³ÁÒª°²È«·ì϶Áбí
1. Apache Archiva CVE-2019-0214ËÁÒâÎļþд·ì϶
https://seclists.org/bugtraq/2019/Apr/48
2. Oracle WebLogic Server wls9_async_response·´ÐòÁл¯ºÅÁîÖ´Ðзì϶
Oracle Weblogic Server wls9_async_response´æÔÚ·´ÐòÁл¯·ì϶£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»£»£»£»£»£»£»òÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£
https://medium.com/@knownseczoomeye/knownsec-404-team-oracle-weblogic-deserialization-rce-vulnerability-0day-alert-90dd9a79ae93
3. Microsoft Visual Studio asmÄÚ´æ´úÂë´úÂëÖ´Ðзì϶
Microsoft Visual Studio __asm¿é±àÒë´æÔÚÄÚ´æ·ÛËé·ì϶£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÎļþÒªÇ󣬣¬£¬£¬£¬ÓÕʹÓû§½âÎö£¬£¬£¬£¬£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»£»£»£»£»£»£»òÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£
https://www.zerodayinitiative.com/advisories/ZDI-19-448/
4. Apple macOS Mojave APFS×é¼þ¿ªÊͺóʹÓÃÌØÈ¨ÌáÉý·ì϶
Apple macOS Mojave APFS×é¼þ´æÔÚ¿ªÊͺóʹÓ÷ì϶£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬Äܹ»Äں˸ߵÍÎÄÖ´ÐУ¬£¬£¬£¬£¬ÌáÉýȨÏÞ¡£¡£¡£¡£¡£¡£¡£¡£
https://www.zerodayinitiative.com/advisories/ZDI-19-422/
5. Foxit Reader AcroForm removeField CVE-2019-6768¿ªÊͺóʹÓôúÂëÖ´Ðзì϶
Foxit Reader´¦ÖÃAcroFormµÄremoveField²½Öè´æÔÚ¿ªÊͺóʹÓ÷ì϶£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÎļþÒªÇ󣬣¬£¬£¬£¬ÓÕʹÓû§½âÎö£¬£¬£¬£¬£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»£»£»£»£»£»£»òÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£
https://www.zerodayinitiative.com/advisories/ZDI-19-442/
³ÁÒª°²È«ÊÂÎñ×ÛÊö
Malwarebytes Labs°ä²¼2019ÄêµÚÒ»¼¾¶ÈµÄÍøÂç·¸×ïÕ½ÊõÓë¼¼Êõ»ã±¨£¬£¬£¬£¬£¬¸Ã»ã±¨Ö¸³öÆóÒµÔÚµÚÒ»¼¾¶ÈÔâ·êµÄÍþвÔö³¤ÁË235%£¬£¬£¬£¬£¬ÓÈÆäÊÇEmotetµÈľÂíºÍÀÕË÷Èí¼þÍþв¡£¡£¡£¡£¡£¡£¡£¡£Õë¶ÔÓ×ÎÒÏû·ÑÕߵĶñÒâÈí¼þÍþв½µÂäÁ˽ü40%¡£¡£¡£¡£¡£¡£¡£¡£Òƶ¯É豸ºÍMacÉ豸ԽÀ´Ô½³ÉΪ¸æ°×Èí¼þµÄÖ¸±ê£¬£¬£¬£¬£¬Mac¶ñÒâÈí¼þ´Ó2018ÄêQ4µ½2019ÄêQ1Ôö³¤ÁË60%£¬£¬£¬£¬£¬¸æ°×Èí¼þÔòÔö³¤ÁË200%¡£¡£¡£¡£¡£¡£¡£¡£ÔÚÈ«ÇòÍþв¼ì²âÂÊÖÐÃÀ¹ú×î¸ß£¬£¬£¬£¬£¬Îª47£¥£¬£¬£¬£¬£¬Ó¡¶ÈÄáÎ÷ÑÇΪ9£¥£¬£¬£¬£¬£¬°ÍÎ÷Ϊ8£¥¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://blog.malwarebytes.com/cybercrime/2019/04/labs-cybercrime-tactics-and-techniques-report-finds-businesses-hit-with-235-percent-more-threats-in-q1/
2¡¢Ð»㱨Åú×¢2018Äê»ùÓÚÉ罻ýÌåµÄڲƻÔö³¤43%
ƾ¾ÝRSA Security°ä²¼µÄ¡¶2019ÄêÍøÂç·¸×ï½ü¿ö°×ƤÊé¡·£¬£¬£¬£¬£¬ÍøÂç·¸×ï·Ö×ÓÔ½À´Ô½ÒÀÀµFacebook¡¢Instagram¡¢WhatsAppµÈÉ罻ýÌåºÍ̸ÌìÆ½Ì¨½øÐйµÍ¨¡¢ÏúÊÛ±»µÁÍ´´¦ºÍÐÅÓþ¿¨ÐÅÏ¢µÈ·¸×ï״Ϊ¡£¡£¡£¡£¡£¡£¡£¡£»£»£»£»£»£»£»ùÓÚÉ罻ýÌåµÄڲƻÔÚ2018ÄêÔö³¤43%¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬2015ÄêÖÁ2018ÄêÒÆ¶¯APPµÄÚ²ÆÐÐΪÔö³¤ÁË680%¡£¡£¡£¡£¡£¡£¡£¡£2018ÄêRSAÔÚ¸÷´óÖ÷Á÷³©Ó÷¨Ê½É̵êÖоùÔÈÿÌì·¢ÏÖ82¸ö¶ñÒâAPP¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://telecom.economictimes.indiatimes.com/news/social-media-fraud-increased-43-in-2018-report/69089489
3¡¢¿¨°Í˹»ù°ä²¼2019ÄêQ1 APT¹¥»÷Ç÷Ïò»ã±¨
½üÄêÀ´£¬£¬£¬£¬£¬Õë¶ÔÖ¸±êµÄ¹©¸øÁ´¹¥»÷ÒѾ֤Ã÷¼«¶È³É¹¦ - ShadowPad£¬£¬£¬£¬£¬CCleanerºÍExPetr¾ÍÊǺܺõÄÀý×Ó¡£¡£¡£¡£¡£¡£¡£¡£ÔÚÎÒÃǶÔ2019ÄêµÄÍþвԤ²âÖУ¬£¬£¬£¬£¬ÎÒÃǽ«´ËÏóÕ÷Ϊ¿ÉÄܳÖÐøµÄ¹¥»÷ÏòÁ¿; ÎÒÃÇûÓбØÒªµÈºÜ³¤¹¦·òÄÜÁ¦¿´µ½Õâ¸öÔ¤²â³ÉÕæ¡£¡£¡£¡£¡£¡£¡£¡£1Ô·ݣ¬£¬£¬£¬£¬ÎÒÃÇ·¢ÏÖÁËÉæ¼°»ªË¶Live Update UtilityµÄ¸´ÔÓ¹©¸øÁ´¹¥»÷£¬£¬£¬£¬£¬ÓÃÓÚÏò»ªË¶±Ê¼Ç±¾µçÄÔºĮ́ʽ»úÌṩBIOS£¬£¬£¬£¬£¬UEFIºÍÈí¼þ¸üеĻúÔì¡£¡£¡£¡£¡£¡£¡£¡£¡°ShadowHammer²Ù×÷¡±±³ºóµÄ¹¥»÷ÕßΪ¸ÃʵÓ÷¨Ê½Ôö³¤ÁËÒ»¸öºóÃÅ£¬£¬£¬£¬£¬¶øºóͨ¹ý¹Ù·½Çþ·½«Æä·Ö·¢¸øÓû§¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷µÄÖ¸±êÊǾ«È·¶¨Î»ÓÉÆäÍøÂçÊÊÅäÆ÷MACµØÖ·±êʶµÄδ֪Óû§³Ø¡£¡£¡£¡£¡£¡£¡£¡£·¢ÏÖ¹¥»÷ÕßÒѽ«Ò»ÏµÁÐMACµØÖ·Ó²±àÂëµ½ÌØÂåÒÁľÂí»¯Ñù±¾ÖУ¬£¬£¬£¬£¬´ú±íÁËÕâÒ»´ó¹æÄ£Ðж¯µÄÕæÕýÖ¸±ê¡£¡£¡£¡£¡£¡£¡£¡£ÎÒÃÇ¿ÉÄÜ´ÓÕâ´Î¹¥»÷Öз¢ÏÖµÄ200¶à¸öÑù±¾ÖÐÌáÈ¡600¶à¸öΨһµÄMACµØÖ·£¬£¬£¬£¬£¬Ö»¹Ü´æÔÚÕë¶Ô·ÖÆçMACµØÖ·µÄÆäËüÑù±¾¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securelist.com/apt-trends-report-q1-2019/90643/
4¡¢ÃÀ¹úÕÐÆ¸ÍøÕ¾LaddersÒâ±íй¶½ü1300ÍòÇóÖ°ÕßµÄÓ×ÎÒ×ÊÁÏ
°²È«×êÑÐÈËÔ±Sanyam Jain·¢ÏÖÁËÒ»¸öδÊܱ£»£»£»£»£»£»£»¤µÄAWSÍйܵÄElasticsearchÊý¾Ý¿â£¬£¬£¬£¬£¬¸ÃÊý¾Ý¿âÊôÓÚÕÐÆ¸ÍøÕ¾Ladders£¬£¬£¬£¬£¬ÓÉÓÚ²»×ãÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬¸ÃÊý¾Ý¿â¶³öÁ˽ü1300ÍòÇóÖ°ÕßµÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£Ô̺¬ÇóÖ°ÕßµÄÓ×ÎÒÐÅÏ¢£¬£¬£¬£¬£¬ÈçÐÕÃû£¬£¬£¬£¬£¬µç×ÓÓʼþµØÖ·£¬£¬£¬£¬£¬µç»°ºÅÂëÒÔ¼°»ùÓÚIPµØÖ·µÄ´óÌ嵨ÀíµØÎ»¡£¡£¡£¡£¡£¡£¡£¡£Ëü»¹Ô̺¬ÆäËüÃô¸ÐÐÅÏ¢£¬£¬£¬£¬£¬Èç¾ÍÒ·úÊ·£¬£¬£¬£¬£¬¹¤×÷ÃèÊö£¬£¬£¬£¬£¬¹¤×÷Åâ³¥£¬£¬£¬£¬£¬ËûÃÇÔÚѰÕÒ¹¤×÷µÄÐÐÒµ£¬£¬£¬£¬£¬ËûÃÇÊÇÃÀ¹ú¹«Ãñ»¹ÊÇǩ֤£¬£¬£¬£¬£¬ÈçH1-B £¬£¬£¬£¬£¬ºÍÆäËü¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://cyware.com/news/job-portal-ladders-exposed-profiles-of-13-million-job-seekers-thanks-to-an-unprotected-aws-elasticsearch-database-1b7d7474
5¡¢Å·ÖÞÐ̾¯×éÖ¯µ·»Ù°µÍøÊг¡Wall Street MarketºÍSilkkitie
·¨ÂÉ»ú¹¹³Æ£¬£¬£¬£¬£¬µÂ¹ú¾¯·½¹Ø¹ØWall Street Market£¬£¬£¬£¬£¬¾Ý³ÆÕâÊÇÊÀ½çÉϵڶþ´ó°µÍøÂçÊг¡£¬£¬£¬£¬£¬¶ø½ñÄêÔçЩʱ³½£¬£¬£¬£¬£¬·ÒÀ¼¹Ø¹ØSilkkitie¡£¡£¡£¡£¡£¡£¡£¡£¾Ýй©£¬£¬£¬£¬£¬µÂ¹ú¾¯·½¿ÛÁôÁË3ÃûÏÓÒÉÈ˲¢¿ÛѺÁË55ÍòÅ·ÔªµÄÏֽ𣬣¬£¬£¬£¬ÒÔ¼°ÁùλÊýµÄ¼ÓÃÜÇ®±Ò£¬£¬£¬£¬£¬³µÁ¾£¬£¬£¬£¬£¬ÍÆËã»ú£¬£¬£¬£¬£¬´æ´¢É豸ºÍÆäËûÖ¤¾Ý¡£¡£¡£¡£¡£¡£¡£¡£ÃÀ¹úµ±¾Ö¿ÛÁôÁËÁ½Ãû¾Ý³ÆÔÚ¸ÃÍøÕ¾ÉÏÔËÓªµÄÖØÒª¶¾··¡£¡£¡£¡£¡£¡£¡£¡£ÕâÁ½Ïîµ÷²éÏÔʾÁ˹ú¼Ê²ãÃæ·¨ÂɺÏ×÷µÄ³ÁÒªÐÔ£¬£¬£¬£¬£¬²¢Ö¤Ã÷°µÍøÉϵ폷¨»î¶¯²¢²»Ïñ×ï·¸ËùÏëµÄÄÇÑùÄäÃû¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°»¹²»Ã÷ÏÔ·¨ÂɻÊÇ·ñÓë¸ÃÍøÕ¾ÖÎÀíÔ±ÊÔͼÍ˳öڿƻÓйء£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.infosecurity-magazine.com/news/europol-two-more-dark-web-1/


¾©¹«Íø°²±¸11010802024551ºÅ