ÐÅÏ¢Çå¾²Öܱ¨-2019ÄêµÚ11ÖÜ

Ðû²¼Ê±¼ä 2019-03-18

±¾ÖÜÇå¾²Ì¬ÊÆ×ÛÊö


2019Äê3ÔÂ11ÈÕÖÁ17ÈÕ¹²ÊÕ¼Çå¾²Îó²î55¸ö£¬£¬£¬£¬£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇMicrosoft Internet Explorer¾ç±¾ÒýÇæCVE-2019-0783Ô¶³ÌÄÚ´æÆÆËðÎó²î£»£»£»£»£»Microsoft Windows ActiveX CVE-2019-0784Ô¶³Ì´úÂëÖ´ÐÐÎó²î; Microsoft AzureÇå¾²ÏÞÖÆÈÆ¹ýÎó²î£»£»£»£»£»Google Chrome V8¶ÑÒç³öÎó²î£»£»£»£»£»LCDS LAquis SCADAÔ½½çдÎó²î¡£¡£ ¡£¡£¡£¡£¡£

±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊÇGoogle PlayÖÐ210¸öAPPѬȾ¹ã¸æÈí¼þSimBad£¬£¬£¬£¬£¬£¬£¬²¨¼°1.5ÒÚÓû§£»£»£»£»£»¿¨°Í˹»ùÐû²¼2018ÄêÀ¬»øÓʼþ¼°´¹ÂÚ¹¥»÷±¨¸æ£»£»£»£»£»Õë¶ÔWordPressµÄй¥»÷À˳±£¬£¬£¬£¬£¬£¬£¬Ö÷ҪʹÓùºÎï³µ²å¼þÖеÄXSSÎó²î£»£»£»£»£»ÐµÄATM skimmer¹¥»÷£¬£¬£¬£¬£¬£¬£¬¿ÉÐ®ÖÆATMÄÚÖÃÉãÏñÍ·£»£»£»£»£»ÃÀ¹úJacksonÏØÕþ¸®ÏòÀÕË÷Èí¼þ¹¥»÷ÕßÖ§¸¶40ÍòÃÀÔªÊê½ð¡£¡£ ¡£¡£¡£¡£¡£

ƾ֤ÒÔÉÏ×ÛÊö£¬£¬£¬£¬£¬£¬£¬±¾ÖÜÇå¾²ÍþвΪÖС£¡£ ¡£¡£¡£¡£¡£

Ö÷ÒªÇå¾²Îó²îÁбí


1. Microsoft Internet Explorer¾ç±¾ÒýÇæCVE-2019-0783Ô¶³ÌÄÚ´æÆÆËðÎó²î
Microsoft Internet Explorer´¦Öóͷ£Äڴ湤¾ß±£´æÇå¾²Îó²î£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄwebÇëÇ󣬣¬£¬£¬£¬£¬£¬ÓÕʹÓû§ÆÊÎö£¬£¬£¬£¬£¬£¬£¬¿ÉʹӦÓóÌÐò±ÀÀ£»£»£»£»£»òÖ´ÐÐí§Òâ´úÂë¡£¡£ ¡£¡£¡£¡£¡£
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2019-0783

2. Microsoft Windows ActiveX CVE-2019-0784Ô¶³Ì´úÂëÖ´ÐÐÎó²î
Microsoft ActiveX Data objects (ADO)´¦Öóͷ£Äڴ湤¾ß±£´æÇå¾²Îó²î£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬£¬¿ÉʹӦÓóÌÐò±ÀÀ£»£»£»£»£»òÖ´ÐÐí§Òâ´úÂë¡£¡£ ¡£¡£¡£¡£¡£
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2019-0784

3. Microsoft AzureÇå¾²ÏÞÖÆÈÆ¹ýÎó²î
Microsoft Azure SSH KeypairsʹÓÃcloud-initµÄLinuxÓ³ÏñÉèÖÃÈí¼þµÄ¸ü¸Ä£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬£¬ÈƹýÇå¾²ÏÞÖÆ¡£¡£ ¡£¡£¡£¡£¡£
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2019-0816

4. Google Chrome V8¶ÑÒç³öÎó²î
Google Chrome V8±£´æ¶Ñ»º³åÇøÒç³öÎó²î£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄwebÒ³£¬£¬£¬£¬£¬£¬£¬ÓÕʹÓû§ÆÊÎö£¬£¬£¬£¬£¬£¬£¬¿ÉÌáÉýȨÏÞ¡£¡£ ¡£¡£¡£¡£¡£
https://chromereleases.googleblog.com/2019/03/stable-channel-update-for-desktop_12.html

5. LCDS LAquis SCADAÔ½½çдÎó²î
LCDS LAquis SCADA´¦Öóͷ£elsÎļþ±£´æÔ½½çдÎó²î£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬£¬¿ÉÖ´ÐÐí§Òâ´úÂë¡£¡£ ¡£¡£¡£¡£¡£
https://ics-cert.us-cert.gov/advisories/ICSA-19-073-01

Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö


1¡¢Google PlayÖÐ210¸öAPPѬȾ¹ã¸æÈí¼þSimBad£¬£¬£¬£¬£¬£¬£¬²¨¼°1.5ÒÚÓû§


ÍòÀû¹ú¼Ê¹ÙÍø(ÖйúÓÎ)ÓÐÏÞ¹«Ë¾


ƾ֤Check PointµÄÒ»·Ý±¨¸æ£¬£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±ÔÚGoogle PlayÖз¢Ã÷210¸öAPPѬȾÁË¹ã¸æÈí¼þSimBad£¬£¬£¬£¬£¬£¬£¬ÕâЩAPPµÄ×Ü×°ÖÃÁ¿´ï1.5ÒڴΡ£¡£ ¡£¡£¡£¡£¡£´ó´ó¶¼APP¶¼ÊÇÈü³µ»òÉä»÷ÓÎÏ·£¬£¬£¬£¬£¬£¬£¬ÆäÖÐÃûΪSnow Heavy Excavator SimulatorµÄAPPÏÂÔØÁ¿Áè¼Ý1000Íò¡£¡£ ¡£¡£¡£¡£¡£SimBadαװ³É¹ã¸æ¹¤¾ß°üRXDrioder£¬£¬£¬£¬£¬£¬£¬µ±Óû§×°ÖÃÁËÊÜѬȾµÄAPPºó£¬£¬£¬£¬£¬£¬£¬¸ÃAPP»áÔÚ×°±¸Æô¶¯»òÓû§½âËøÊ±×Ô¶¯Æô¶¯²¢ÏÔʾ¹ã¸æ£¬£¬£¬£¬£¬£¬£¬±ðµÄ£¬£¬£¬£¬£¬£¬£¬¶ñÒâ´úÂ뻹»áÖ´ÐдÓC&CЧÀÍÆ÷ÎüÊÕµ½µÄÏÂÁ£¬£¬£¬£¬£¬£¬°üÀ¨É¾³ýͼ±ê¡¢ºǫ́¹ã¸æ¡¢·­¿ªÍøÒ³µÈ¡£¡£ ¡£¡£¡£¡£¡£GoogleÒѾ­Ï¼ÜÁËÕâЩAPP¡£¡£ ¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/simbad-adware-found-in-210-android-apps-with-over-150m-installs/

2¡¢¿¨°Í˹»ùÐû²¼2018ÄêÀ¬»øÓʼþ¼°´¹ÂÚ¹¥»÷±¨¸æ


ÍòÀû¹ú¼Ê¹ÙÍø(ÖйúÓÎ)ÓÐÏÞ¹«Ë¾


¿¨°Í˹»ùÐû²¼2018ÄêµÄÀ¬»øÓʼþºÍ´¹ÂÚ¹¥»÷ͳ¼Æ±¨¸æ£¬£¬£¬£¬£¬£¬£¬±¨¸æµÄÖ÷Òª·¢Ã÷°üÀ¨£ºÈ«Çòµç×ÓÓʼþÁ÷Á¿ÖеÄÀ¬»øÓʼþÊý¾ÝµÄÕ¼±ÈΪ52.48%£¬£¬£¬£¬£¬£¬£¬±È2017Äê½µµÍ4.15¸ö°Ù·Öµã£»£»£»£»£»2018Äê×î´óµÄÀ¬»øÓʼþȪԴ¹úÊÇÖйú£¨11.69£¥£©£»£»£»£»£»74.15£¥µÄÀ¬»øÓʼþСÓÚ2 KB£»£»£»£»£»À¬»øÓʼþÖÐ×î³£±»¼ì²âµ½µÄÎó²îʹÓÃÊÇWin32.CVE-2017-11882¡£¡£ ¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://securelist.com/spam-and-phishing-in-2018/89701/

3¡¢Õë¶ÔWordPressµÄй¥»÷À˳±£¬£¬£¬£¬£¬£¬£¬Ö÷ҪʹÓùºÎï³µ²å¼þÖеÄXSSÎó²î


ÍòÀû¹ú¼Ê¹ÙÍø(ÖйúÓÎ)ÓÐÏÞ¹«Ë¾


DefiantÑо¿Ö°Ô±Mikey Veenstra·¢Ã÷Ò»¸öÕë¶ÔWordPress¹ºÎïÍøÕ¾µÄ¹¥»÷À˳±£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓùºÎï³µ²å¼þ¡°Abondoned Cart Lite for WooCommerce¡±ÖеÄXSSÎó²î£¬£¬£¬£¬£¬£¬£¬ÏòÍøÕ¾Ö²ÈëºóÃŲ¢»ñµÃÍøÕ¾µÄ¿ØÖÆÈ¨¡£¡£ ¡£¡£¡£¡£¡£¾Ý±¨µÀ¸Ã²å¼þÒÑÔÚÁè¼Ý2Íò¸öWordPressÍøÕ¾ÉÏ×°Öᣡ£ ¡£¡£¡£¡£¡£¹¥»÷ÕßÖ²ÈëµÄºóÃŰüÀ¨Ò»¸öÖÎÀíÔ±ÕË»§woouserÒÔ¼°Ôڷǻ²å¼þÖÐÖ²ÈëµÄPHPºóÃÅ¡£¡£ ¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://cyware.com/news/hackers-abuse-xss-vulnerability-in-cart-plugin-to-target-wordpress-based-shopping-sites-ff4b4019

4¡¢ÐµÄATM skimmer¹¥»÷£¬£¬£¬£¬£¬£¬£¬¿ÉÐ®ÖÆATMÄÚÖÃÉãÏñÍ·


ÍòÀû¹ú¼Ê¹ÙÍø(ÖйúÓÎ)ÓÐÏÞ¹«Ë¾


ƾ֤Krebs on SecurityµÄÒ»·Ýб¨¸æ£¬£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±Ôڵ¿ËÈøË¹ÖݺÕË¹ÌØÊеÄATMÉÏ·¢Ã÷ÁËеÄskimmer¹¥»÷£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ýÐ®ÖÆATMÖÐÄÚÖõÄÉãÏñÍ·ÒÔÇÔÈ¡Óû§µÄPINÂë¡£¡£ ¡£¡£¡£¡£¡£¸Ãskimmer°üÀ¨Ò»¸öÉãÏñÍ·²¿¼þ£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚÁýÕÖÔÚATMÄÚÖõÄÇå¾²ÉãÏñÍ·ÉÏÃæ£¬£¬£¬£¬£¬£¬£¬Óû§ºÜÄÑ´ÓÍⲿ¿´µ½¸Ãskimmer¡£¡£ ¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://cyware.com/news/new-atm-skimming-attack-enables-scammers-to-hijack-the-atms-in-built-camera-and-steal-a-users-pin-3d2c4884

5¡¢ÃÀ¹úJacksonÏØÕþ¸®ÏòÀÕË÷Èí¼þ¹¥»÷ÕßÖ§¸¶40ÍòÃÀÔªÊê½ð


ÍòÀû¹ú¼Ê¹ÙÍø(ÖйúÓÎ)ÓÐÏÞ¹«Ë¾


ÃÀ¹úÇÇÖÎÑÇÖݽܿËÑ·ÏØÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬£¬Õþ¸®Ïò·¸·¨·Ö×ÓÖ§¸¶ÁË40ÍòÃÀÔªµÄÊê½ðÒÔ»ñµÃ½âÃÜÃÜÔ¿¡£¡£ ¡£¡£¡£¡£¡£´Ë´Î¹¥»÷ÊÂÎñÓ°ÏìÁ˸ÃÏØËùÓв¿·ÖµÄÅÌËã»úϵͳ£¬£¬£¬£¬£¬£¬£¬°üÀ¨µç×ÓÓʼþЧÀͺͽôÆÈЧÀÍ£¬£¬£¬£¬£¬£¬£¬Ð§ÀÍ´¦²»µÃ²»Ê¹ÓÃÖ½ÕÅÒÔÍê³ÉÊÂÇé¡£¡£ ¡£¡£¡£¡£¡£ÓÉÓÚ¸ÃÏØÃ»Óб¸·Ýϵͳ£¬£¬£¬£¬£¬£¬£¬ÏØÕþ¸®²»µÃ²»Öª×ã¹¥»÷ÕßµÄÒªÇóÒÔ»»È¡×¼È·µÄ½âÃÜÃÜÔ¿¡£¡£ ¡£¡£¡£¡£¡£Æ¾Ö¤FBIµÄÊӲ죬£¬£¬£¬£¬£¬£¬·¸·¨·Ö×ÓʹÓõÄÀÕË÷Èí¼þ¿ÉÄÜÊÇRyuk£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÒÉΪ¶«Å·µÄÒ»¸ö×éÖ¯¡£¡£ ¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/ransomware-attack-on-jackson-county-gets-cybercriminals-400-000/

ÉùÃ÷£º±¾×ÊѶÓÉÍòÀû¹ú¼Ê¹ÙÍøÎ¬ËûÃüÇ徲С×é·­ÒëºÍÕûÀí