ÒøÐÐľÂíAnubisÐÂÔöPayPalÍ´´¦ÇÔÈ¡ºÍÉè±¸Ëø¶¨Ö°ÄÜ£»£»£»£»£»£»TP-Link WR940NºÍWR941ND 0day
°ä²¼¹¦·ò 2019-04-10
ESET×êÑÐÈËÔ±Lukas StefankoÔÚGoogle PlayÉ̵êÖз¢ÏÖAndroidÒøÐÐľÂíAnubisµÄÒ»¸öбäÌ壬£¬£¬£¬£¬¸Ã±äÌåζͨ¹ý¼Í¼¼üÅ̼°½ØÆÁµÄ´ó¾ÖÇÔÈ¡PayPalÍ´´¦£¬£¬£¬£¬£¬²¢¼ÓÃÜÉ豸ÉϵÄËùÓÐÎļþ£¨¸½¼Ó.AnubisCryptÀ©´óÃû£©£¬£¬£¬£¬£¬¶øºóËø¶¨É豸¡£¡£¡£¡£¡£¡£µ«¸Ã±äÌåµÄÀÕË÷Ö°ÄÜËÆºõ²¢²»ÃÀÂú£¬£¬£¬£¬£¬ËüûÓÐÌáÐÑÊê½ðÐÅÏ¢£¬£¬£¬£¬£¬×êÑÐÈËÔ±Ò²Äܹ»ÈƹýÕâÖÖËø¶¨¡£¡£¡£¡£¡£¡£GoogleÒѾÔÚPlayÉ̵êÖÐɾ³ýÁ˸öñÒâÀûÓᣡ£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://cyware.com/news/anubis-android-trojan-spotted-stealing-paypal-credentials-and-locking-devices-2c4f04052.iOS¼äµýÈí¼þExodus£¬£¬£¬£¬£¬ÖØÒªÕë¶ÔÒâ´óÀûºÍÍÁ¿âÂü˹̹
Lookout°²È«×êÑÐÔ±Adam Bauer·¢ÏÖiOS°æ±¾µÄ¼äµýÈí¼þExodus¡£¡£¡£¡£¡£¡£¸Ãа汾¼Ù×°³ÉiOSÀûÓ÷¨Ê½£¬£¬£¬£¬£¬ÖØÒªÕë¶ÔÒâ´óÀûºÍÍÁ¿âÂü˹̹µÄÓû§¡£¡£¡£¡£¡£¡£ÓÉÓÚ¶ñÒâAPPÔ̺¬Apple°ä²¼µÄºÏ·¨Ö¤Ê飬£¬£¬£¬£¬ÕâʹµÃÊܺ¦ÕßÉõÖÁÄܹ»´ÓApp Store±í×°ÖøÃÀûÓᣡ£¡£¡£¡£¡£¸Ã°æ±¾µÄExodus¿ÉÇÔÈ¡AppleÉ豸ÉϵĴóÁ¿ÐÅÏ¢£¬£¬£¬£¬£¬Ô̺¬ÁªÏµÈË¡¢ÕÕÆ¬¡¢ÊÓÆµ¡¢¹àÒôºÍGPSÐÅÏ¢£¬£¬£¬£¬£¬ÉõÖÁÄܹ»°´Ðè¼ÔìÒôƵ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://cyware.com/news/new-ios-version-of-exodus-spyware-uncovered-by-researchers-2cbb0f733.ÃϼÓÀ¹úʯÓ͹«Ë¾PetroBangla¹ÙÍøÔâºÚ¿ÍÈëÇÖ
ÃϼÓÀ¹úµÄ¹úÓÐʯÓÍ¡¢ÌìÈ»ÆøºÍ¿ó²ú¹«Ë¾PetroBanglaµÄ¹ÙÍøÔâºÚ¿ÍÈëÇÖ¡£¡£¡£¡£¡£¡£ÈëÇÖÊÂÎñ×î³õ²úÉúÔÚ4ÔÂ7ÈÕ£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÓÚ4ÔÂ8ÈÕÉÏÎç9µã30·Ö×óÓÒ¸´ÔÁËÍøÕ¾£¬£¬£¬£¬£¬µ«µ±È«¹úÎç¸ÃÍøÕ¾Ôٴα»ºÚ¿ÍÈëÇÖ¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÔÚÍøÕ¾ÉÏÁôÑԳƣº¡°ÕâÖÖˮƽµÄ°²È«²¢²»¼°¹»£¬£¬£¬£¬£¬»¹ÊǺÜÈÝÒ×Ôâµ½ÈëÇÖ¡£¡£¡£¡£¡£¡£ÇëÁªÏµn33lob33@mail.ru£¬£¬£¬£¬£¬ÎÒÃÇÔÚ½¨¸´Äú°²È«ÐÔÉϵÄÈõµã¡±¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://cyware.com/news/bangladeshi-oil-company-petrobanglas-website-gets-hacked-twice-71fce94c4.TP-Link WR940NºÍWR941ND·ÓÉÆ÷ÁãÈÕ·ì϶£¬£¬£¬£¬£¬¿Éµ¼ÖÂÉ豸±»ÊÕÊÜ
IBM Security×êÑÐÍŶӷ¢ÏÖTP-Link TL-WR940NºÍTL-WR941NDÁ½¿î·ÓÉÆ÷´æÔÚ»º³åÇøÒç¶Âí½Å£¬£¬£¬£¬£¬¿Éµ¼Ö¶ñÒâµÚÈý·½Ô¶³Ì½ÚÔì¸ÃÉ豸¡£¡£¡£¡£¡£¡£¸Ã·ì϶ÓëÉ豸µÄWeb½ÚÔìÃæ°åÓйأ¬£¬£¬£¬£¬¹ÌȻƾ¾ÝTP-LinkµÄ·ÓÉÆ÷ÓйØÎĵµ£¬£¬£¬£¬£¬ÕâÁ½ÖÖÐͺŶ¼ÒÑÍ£²ú£¬£¬£¬£¬£¬µ«ËüÃÇÈÔÄܹ»´ÓTargetºÍWalmartµÈÁãÊÛÉÌ´¦²É°ì¡£¡£¡£¡£¡£¡£TP-LinkÓÚ3ÔÂ12ÈÕ°ä²¼Á˹̼þ¸üУ¬£¬£¬£¬£¬½¨ÒéÓû§¾¡¿ì½øÐиüС£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/tp-link-routers-vulnerable-to-zero-day-buffer-overflow-attack/143575/5.Verizon½¨¸´Fios Quantum Gateway·ÓÉÆ÷ÖеÄÈý¸ö°²È«·ì϶
×êÑÐÈËÔ±·¢ÏÖVerizonµÄFios Quantum Gateway£¨G1100£©Â·ÓÉÆ÷´æÔÚÈý¸ö°²È«·ì϶£¬£¬£¬£¬£¬¿Éµ¼ÖÂÉ豸±»ÊÕÊÜ¡£¡£¡£¡£¡£¡£ÕâЩ·ì϶£¨CVE-2019-3914¡¢CVE-2019-3915ºÍCVE-2019-3916£©µÄÁìÓòÔ̺¬root¼¶´ËÍâºÅÁî×¢Èë¡¢µÇ¼³Á·Å¹¥»÷ºÍ¼ÓÑιþÏ£ÃÜÂëй¶¡£¡£¡£¡£¡£¡£VerizonÔÚ3Ô·ݰ䲼Á˹̼þ¸üУ¨02.02.00.13£©À´½¨¸´ÕâЩ·ì϶¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/verizon-fixes-bugs-allowing-full-control-of-fios-quantum-router/6.΢Èí°ä²¼4ÔÂWindows°²È«¸üУ¬£¬£¬£¬£¬½¨¸´74¸ö·ì϶
ÔÚ4Ô·ݵÄWindows°²È«¸üÐÂÖУ¬£¬£¬£¬£¬Î¢Èí½¨¸´ÁË74¸ö·ì϶£¬£¬£¬£¬£¬ÆäÖÐ15¸ö·ì϶±»¹éÀàΪCritical¡£¡£¡£¡£¡£¡£½ÏΪÑϳÁµÄ·ì϶Ô̺¬ÒÑÔÚÒ°±í±»»ý¼«ÀûÓõÄÁ½¸öWin32kÌáȨ·ì϶£¨CVE-2019-0803ºÍCVE-2019-0859£©£¬£¬£¬£¬£¬·ì϶¿ÉÔÊÐí¹¥»÷Õß×°Ö÷¨Ê½¡¢²é¿´»ò¸ü¸Äɾ³ýÊý¾ÝÒÔ¼°´´½¨ÐÂÕË»§¡£¡£¡£¡£¡£¡£ÆëÈ«·ì϶ÁбíÇë²Î¿¼ÒÔÏÂÁ´½Ó¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/microsoft/microsofts-april-2019-patch-tuesday-fixes-74-vulnerabilities/


¾©¹«Íø°²±¸11010802024551ºÅ