¡¶Î¬ËûÃü¡·ÖðÈÕ°²È«¼òѶ20180918

°ä²¼¹¦·ò 2018-09-18

¡¾Íþвµý±¨¡¿×êÑÐÍŶӳƳ¬¹ý20ÒŲ́É豸ÈÔÊÜBlueBorne·ì϶µÄÓ°Ïì


Armis Labs×êÑÐÍŶӳƳ¬¹ý20ÒÚÉ豸ÈÔÊÜÒ»ÄêǰÅû¶µÄBlueBorne·ì϶µÄÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¡£BlueBorneÔ̺¬9¸öÀ¶ÑÀ·ì϶£¬£¬£¬£¬£¬£¬£¬ÓÚ2017Äê9Ô±»Åû¶²¢Ëæºó½øÐн¨¸´¡£¡£¡£¡£¡£¡£¡£¡£µ½Ò»ÄêºóµÄ½ñÌ죬£¬£¬£¬£¬£¬£¬Ô¼Èý·ÖÖ®¶þµÄÊÜÓ°ÏìÉ豸ÒѾ­½øÐÐÁ˸üУ¬£¬£¬£¬£¬£¬£¬µ«ÈÔÓдóÁ¿µÄ·þÎñÆ÷¡¢ÖÇÄÜÍó±í¡¢Ò½ÁÆÉ豸ºÍ¹¤ÒµÉ豸µÈ»¹Î´½øÐн¨¸´£¬£¬£¬£¬£¬£¬£¬Ô̺¬7.68ÒŲ́LinuxÉ豸¡¢7.34ÒŲ́ÔËÐÐAndroid5.1¼°¸üÔç°æ±¾µÄÉ豸¡¢2.61ÒŲ́ÔËÐÐAndroid6¼°¸üÔç°æ±¾µÄÉ豸¡¢2ÒŲ́WindowsÉ豸ÒÔ¼°5000Íǫ̀ÔËÐÐiOS9.3.5¼°¸üÔç°æ±¾µÄÉ豸¡£¡£¡£¡£¡£¡£¡£¡£


https://www.armis.com/blueborne-one-year-later/


¡¾¹¥»÷ÊÂÎñ¡¿EOSBetÔâµ½ºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬£¬¼ÛÖµÔ¼20ÍòÃÀÔªµÄEOS±»ÇÔ


´ò¶ÄÀûÓÃEOSBetÔâµ½ºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬£¬¼ÛÖµÔ¼20ÍòÃÀÔªµÄEOS±»ÇÔ¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÀûÓûùÓÚEOSÇø¿éÁ´£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÀûÓÃÆäÖÇÄܺÏÔ¼Öеķì϶£¬£¬£¬£¬£¬£¬£¬´ÓEOSBetµÄÇ®°üÖÐÇÔÈ¡ÁËÔ¼4Íò¸öEOS¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°¸ÃÀûÓÃÒÑÏÂÏß¡£¡£¡£¡£¡£¡£¡£¡£Æ¾¾Ý¸Ã¹«Ë¾µÄ˵·¨£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ýαÔì¹þÏ£½Ù³ÖÁËEOSBetµÄÂòÂô×ʽ𡣡£¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñÈÔ´¦ÓÚ½øÒ»²½µÄµ÷²éȡ֤֮ÖÓ×£¡£¡£¡£¡£¡£¡£¡£


https://securityaffairs.co/wordpress/76258/hacking/eosbet-gambling-application-hacked.html


¡¾·ì϶²¹¶¡¡¿°²È«×êÑÐÍŶÓÔÚ»ôÄáΤ¶ûPDAÖз¢ÏÖÒ»¸öÌáȨ·ì϶


¹È¸èAndroidÍŶÓÔÚ»ôÄáΤ¶ûµÄPDA£¨ÕÆÉϵçÄÔ£©Öз¢ÏÖÒ»¸öÑϳÁµÄÌáȨ·ì϶£¬£¬£¬£¬£¬£¬£¬¸Ã·ì϶£¨CVE-2018-14825£©¿ÉÔÊÐí¹¥»÷Õß½øÐÐÌáȨ²¢¶ÔÃÜÂëºÍ»úÃÜÎĵµµÈÃô¸ÐÐÅÏ¢½øÐÐδÊÚȨ½Ó¼û¡£¡£¡£¡£¡£¡£¡£¡£»£»£»£» £» £»£»ôÄáΤ¶ûµÄPDA±»¿í·ºÓÃÓÚÄÜÔ´¡¢Ò½Áƽ¡È«¡¢¹Ø¼üÔì×÷ÒÔ¼°Ã³Ò×ÉèÊ©µÈÁìÓò¡£¡£¡£¡£¡£¡£¡£¡£ÊÜÓ°ÏìµÄÉ豸ÔËÐеÄAndroid°æ±¾Ô̺¬´Ó4.4µ½8.1¡£¡£¡£¡£¡£¡£¡£¡£»£»£»£» £» £»£»ôÄáΤ¶ûÒѾ­Õë¶ÔÆäÉ豸°ä²¼ÁËÓйؽ¨¸´²¹¶¡¡£¡£¡£¡£¡£¡£¡£¡£


https://securityaffairs.co/wordpress/76268/hacking/honeywell-android-based-handheld-device-flaw.html


¡¾¶ñÒâÈí¼þ¡¿×êÑÐÍŶӰ䲼¹ØÓÚжñÒâÈí¼þXBashµÄ·ÖÎö»ã±¨


Palo Alto NetworksµÄUnit 42×êÑÐÍŶӷ¢ÏÖÒ»¸öеĶñÒâÈí¼þ¼Ò×åXbash¡£¡£¡£¡£¡£¡£¡£¡£XbashÓë·¸×ïÍÅ»ïIron GroupÓйأ¬£¬£¬£¬£¬£¬£¬ËüÄܹ»Õë¶ÔLinuxºÍWindows·þÎñÆ÷£¬£¬£¬£¬£¬£¬£¬²¢½«½©Ê¬ÍøÂç¡¢ÀÕË÷Èí¼þ¡¢¶ñÒâÍÚ¿óÒÔ¼°È䳿ְÄÜÕûºÏÔÚһ·¡£¡£¡£¡£¡£¡£¡£¡£XbashÖØÒªÕë¶Ô佨¸´µÄ·ì϶ºÍÈõÃÜÂë½øÐд«²¼£¬£¬£¬£¬£¬£¬£¬ÆäĬÈÏ»áÏú»ÙÊý¾Ý£¬£¬£¬£¬£¬£¬£¬²¢ÇÒÎÞ·¨¸´Ô­£¬£¬£¬£¬£¬£¬£¬Òò¶øÖ§¸¶Êê½ðÊÇûÓбØÒªµÄ¡£¡£¡£¡£¡£¡£¡£¡£Xbash»¹ÓµÓÐ×ÔÎÒ´«²¼Ö°ÄÜ¡£¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°ÒÑÓÐ48ÃûÊܺ¦ÕßÖ§¸¶ÁËÊê½ð£¨Ô¼6000ÃÀÔª£©£¬£¬£¬£¬£¬£¬£¬ÕâÒâζןöñÒâÈí¼þ´¦ÓÚ»îÔ¾Ö®ÖÓ×£¡£¡£¡£¡£¡£¡£¡£


https://researchcenter.paloaltonetworks.com/2018/09/unit42-xbash-combines-botnet-ransomware-coinmining-worm-targets-linux-windows/


¡¾¶ñÒâÈí¼þ¡¿×êÑÐÈËÔ±³ÆÍ¨¹ýÓÀºãÖ®À¶·Ö·¢µÄ¶ñÒâÍÚ¿óÈí¼þWannamineÈÔÔÚ»îÔ¾


CybereasonµÄ°²È«×êÑÐÈËÔ±Amit Serper³ÆÍ¨¹ýÓÀºãÖ®À¶·ì϶ÀûÓýøÐд«²¼µÄ¶ñÒâÍÚ¿óÈí¼þWannamineÒÀÈ»´¦ÓÚ»îԾ״̬¡£¡£¡£¡£¡£¡£¡£¡£¹ÌȻ΢ÈíÔÚ2017Äê3ÔÂ14ÈÕ½¨¸´Á˸÷ì϶£¬£¬£¬£¬£¬£¬£¬µ«Æ¾¾ÝShodanµÄɨÃèÁ˾֣¬£¬£¬£¬£¬£¬£¬»¥ÁªÍøÉÏÈÔ´æÔÚÔ¼100Íò¸öÒ×Êܹ¥»÷µÄÉ豸¡£¡£¡£¡£¡£¡£¡£¡£¸ÃWannamineбäÌåÒ²´æÔÚÒ»¸ö֮ǰµÄ±äÌåûÓйýµÄÐÂÐÐΪ£¬£¬£¬£¬£¬£¬£¬Æä»áɱËÀÆäÓàÏνӵ½3333¡¢5555ºÍ7777¶Ë¿Ú£¨WannamineµÄ³ß¶ÈÏνӶ˿ڣ©µÄ¹ý³Ì¡£¡£¡£¡£¡£¡£¡£¡£


https://www.cybereason.com/blog/wannamine-cryptominer-eternalblue-wannacry


¡¾°²È«·ì϶¡¿×êÑÐÍŶÓÅû¶NUUOÍøÂçÊÓÆµÂ¼Ïñ»úÖеÄÐÂ0day£¬£¬£¬£¬£¬£¬£¬¶à´ï80Íǫ̀É豸ÒÉÊÜÓ°Ïì


ƾ¾Ý±¾ÖÜÒ»Tenable Research°ä²¼µÄ°²È«²¼¸æ£¬£¬£¬£¬£¬£¬£¬×êÑÐÍŶÓÔÚNUUO¹«Ë¾µÄÍøÂçÊÓÆµÂ¼Ïñ»ú£¨NVR£©¹Ì¼þÖз¢ÏÖÒ»¸öеÄ0day Peekaboo£¬£¬£¬£¬£¬£¬£¬¶à´ï80Íǫ̀É豸ÒÉÊÜÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¡£Peekaboo·ì϶£¨CVE-2018-1149£©ÊÇÒ»¸öδ¾­ÑéÖ¤µÄÕ»»º³åÇøÒç¶Âí½Å£¬£¬£¬£¬£¬£¬£¬¸Ã·ì϶¿ÉÔÊÐí¹¥»÷ÕßÒÔroot»òÖÎÀíԱȨÏÞÖ´ÐÐÔ¶³Ì¶ñÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÄܹ»½Ó¼û¼à¿ØÉãÏñÍ·¡¢¼à¶½ºÍ°Ñ³ÖÊÓÆµÔ´»òÖ²Èë¶ñÒâÈí¼þ¡£¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬£¬×êÑÐÍŶӻ¹·¢ÏÖÁíÒ»¸ö·ì϶£¨CVE-2018-1150£©£¬£¬£¬£¬£¬£¬£¬¸Ã·ì϶ÊÇNUUO NVRMini2 Web·þÎñÆ÷ÖеĺóÃÅ£¬£¬£¬£¬£¬£¬£¬ÔÊÐíδ¾­Éí·ÝÑéÖ¤µÄ¹¥»÷ÕßÅú¸ÄÓû§µÄÃÜÂë¡£¡£¡£¡£¡£¡£¡£¡£


https://threatpost.com/zero-day-bug-allows-hackers-to-access-cctv-surveillance-cameras/137499/



¡¾8827Ì«Ñô¼¯Íż¯ÍÅADLabÕû¶Ù°ä²¼¡¿