¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20180716
°ä²¼¹¦·ò 2018-07-16¡¾¶ñÒâÈí¼þ¡¿ÒøÐÐľÂíDorkbot¾íÍÁ³ÁÀ´£¬£¬£¬£¬£¬Õ¼ÒøÐжñÒâÈí¼þÊг¡µÄ25%
ƾ¾ÝCheck PointµÄ×îÐÂÊý¾Ý£¬£¬£¬£¬£¬ÒøÐÐľÂíDorkbotÔÚ2018Äê¾íÍÁ³ÁÀ´£¬£¬£¬£¬£¬³ÉΪһ¸öÑϳÁµÄÍþв¡£¡£¡£¡£¡£¡£¡£¡£Dorkbot×îÔçÄܹ»×·Òäµ½2012Ä꣬£¬£¬£¬£¬ÆäÖØÒªÓÃÓÚÇÔÈ¡Óû§µÄÒøÐеǼʹ´¦¡£¡£¡£¡£¡£¡£¡£¡£ÔÚ2018ÄêÉϰëÄ꣬£¬£¬£¬£¬È«ÇòÒøÐжñÒâÈí¼þÊг¡Õ¼¾ÝǰÈýλµÄ±ðÀëÊÇRamnit£¨27£¥£©¡¢Dorkbot£¨25£¥£©ºÍZeus£¨13£¥£©¡£¡£¡£¡£¡£¡£¡£¡£DorkbotÒѳÉΪ2018ÄêµÚ¶þ´óÁîÈËÍ·ÌÛµÄÒøÐжñÒâÈí¼þ¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://threatpost.com/threatlist-6-year-old-dorkbot-banking-malware-resurfaces-as-big-threat/133898/
¡¾¶ñÒâÈí¼þ¡¿°²È«×êÑÐÈËÔ±·¢ÏÖÀÕË÷Èí¼þGandCrabµÄбäÌåv4.1
Fortinet×êÑÐÈËÔ±·¢ÏÖÀÕË÷Èí¼þGandCrabµÄÒ»¸öа汾v4.1¡£¡£¡£¡£¡£¡£¡£¡£¸Ã±äÌåͨ¹ý±»ÉøÈëµÄÍøÕ¾´«²¼£¬£¬£¬£¬£¬²¢»áɱËÀºÜ¶à¿ÉÄÜ×ÌÈÅÎļþ¼ÓÃܹý³ÌµÄ¹ý³Ì£¬£¬£¬£¬£¬ÀýÈçmsftesql.exe¡¢sqlagent.exeºÍoracle.exeµÈ£¬£¬£¬£¬£¬ÒÔ±ã¼ÓÃÜÕâЩÀûÓõÄÊý¾ÝÎļþ¡£¡£¡£¡£¡£¡£¡£¡£GandCrabÊÇÒ»ÖÖ½ñÄêгöÏÖµÄÍþв£¬£¬£¬£¬£¬½ØÖÁ3Ô·ݸÃÀÕË÷Èí¼þÒѾϰȾÁ˳¬¹ý5Íò¸öϵͳ£¬£¬£¬£¬£¬²¢Îª¹¥»÷Õß´øÀ´³¬¹ý60ÍòÃÀÔªµÄÊê½ð¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/74443/malware/gandcrab-ransomware-4-1.html
¡¾Íþвµý±¨¡¿×êÑÐÈËÔ±·¢ÏÖÖØÒªÕë¶ÔWordPressÍøÕ¾µÄÀ¬»øÆÀÂÛ¹¥»÷»î¶¯
Imperva×êÑÐÈËÔ±·¢ÏÖÕë¶ÔWordPressÍøÕ¾µÄÀ¬»øÆÀÂÛ¹¥»÷»î¶¯¼¤Ôö£¬£¬£¬£¬£¬¸Ã»î¶¯ÊÇÓÉÒ»¸öÔ̺¬³¬¹ý1200¸ö·ÖÆçIPµÄ½©Ê¬ÍøÂçÌáÒéµÄ£¬£¬£¬£¬£¬ÓÃÓÚͨ¹ýÀ¬»øÆÀÂÛÖеÄÁ´½Ó½«Óû§µ¼Á÷ÖÁÊÀ½ç±²©²ÊÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£¸Ã½©Ê¬ÍøÂçÖØÒªÊ¹ÓÃSpray and Pray¼¼ÊõÕë¶ÔWordPressÍøÕ¾¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±»¹·¢Ïָý©Ê¬ÍøÂçÔøÓÃÓÚÌáÒéÆäËü·ÇÀ¬»øÆÀÂ۵Ĺ¥»÷»î¶¯£¬£¬£¬£¬£¬ÕâÒâζ׏¥»÷Õß¿ÉÄÜÊÇ×âÓÃÁ˸ý©Ê¬ÍøÂç¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.imperva.com/blog/2018/07/a-wordpress-spambot-wants-you-to-bet-on-the-2018-fifa-world-cup/
¡¾¹¥»÷ÊÂÎñ¡¿ESLintµÄnpmÕË»§ÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬²¿ÃÅÓû§µÄnpmÍ´´¦±»ÇÔ
ESLintµÄnpm¿ª·¢ÕßÕË»§ÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬¹¥»÷Õß½«¶ñÒâ´úÂë×¢ÈëÁ˸ÃJavaScript¿â£¨Èí¼þ°üÃûΪeslint-scope£©£¬£¬£¬£¬£¬ÓÃÓÚÇÔÈ¡Óû§µÄnpmÍ´´¦¡£¡£¡£¡£¡£¡£¡£¡£Õâ´Î¹¥»÷ÊÂÎñ²úÉúÔÚ7ÔÂ11ÈÕµÄÒ¹Íí£¬£¬£¬£¬£¬±»Ö²Èë¶ñÒâ´úÂëµÄÈí¼þ°ü°æ±¾ÊÇeslint-scope 3.7.2£¬£¬£¬£¬£¬Ä¿Ç°¸Ã°æ±¾Òѱ»ÏÂÏß¡£¡£¡£¡£¡£¡£¡£¡£Ô¼4500¸öÓû§µÄnpm½Ó¼ûÁîÅÆ±»ÇÔ¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/compromised-javascript-package-caught-stealing-npm-credentials/
¡¾·ì϶²¹¶¡¡¿µçÍø·À»¤¹«Ë¾SEL½¨¸´ÆäÖÎÀíºÍÅäÖù¤¾ßÖеĶà¸ö°²È«·ì϶
µçÍø·À»¤¹«Ë¾SEL½¨¸´ÁËÆäSEL Compass¼°AcSELerator ArchitectÖеĶà¸ö°²È«·ì϶£¬£¬£¬£¬£¬Ô̺¬¿Éµ¼ÖÂÐÅϢй¶»òËÁÒâ´úÂëÖ´Ðм°DoSµÄXXE·ì϶£¨CVE-2018-10600£©ºÍ¿Éµ¼ÖÂDoSµÄ·ì϶£¨CVE-2018-10608£©¡£¡£¡£¡£¡£¡£¡£¡£SELÔÚ°æ±¾SEL Compass v3.0.6.1ºÍSEL AcSELerator v2.2.29.0Öн¨¸´ÁËÕâЩ·ì϶£¬£¬£¬£¬£¬½¨ÒéÓû§¾¡¿ì½øÐиüС£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.securityweek.com/power-grid-protection-firm-sel-patches-severe-software-flaws
¡¾·ì϶²¹¶¡¡¿×êÑÐÍŶÓÅû¶Antenna HouseÖеĶà¸ö°²È«·ì϶
˼¿ÆTalos×êÑÐÍŶÓÔÚAntenna HouseµÄOffice ServerÎĵµ×ª»»Æ÷£¨OSDC£©Öз¢ÏÖÁË6¸ö°²È«·ì϶¡£¡£¡£¡£¡£¡£¡£¡£ÕâЩ·ì϶¶¼¿Éµ¼ÖÂÔ¶³Ì¹¥»÷ÕßÔÚÖ¸±êϵͳÉÏÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£OSDCÊÇÒ»¸öÖ¼ÔÚ½«Microsoft OfficeÎĵµ×ª»»ÎªPDFºÍSVGÎĵµµÄ¹¤¾ß¡£¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±·¢Ïֵķì϶Ô̺¬CVE-2018-3929~CVE-2018-3936£¬£¬£¬£¬£¬ÊÜÓ°ÏìµÄ°æ±¾ÊÇOSDC V6.1 Pro MR2£¬£¬£¬£¬£¬½¨ÒéÓû§¸üÐÂÖÁ×îа汾¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://blog.talosintelligence.com/2018/07/vuln-spotlight-antenna.html


¾©¹«Íø°²±¸11010802024551ºÅ