Windows RDP 0day£¨CVE-2019-9510£©£»£»£» £» £»WestpacÒøÐÐÔâºÚ¿Í¹¥»÷£»£»£» £» £»APT34¹¤¾ßJasonÔ´Âëй¶

°ä²¼¹¦·ò 2019-06-05
1.WestpacÒøÐÐÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬£¬Ô¼10ÍòÃû¿Í»§ÐÅϢй¶

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website

ƾ¾ÝϤÄáÏÈÇý³¿±¨µÄ±¨Â·£¬£¬£¬£¬£¬£¬£¬WestpacÒøÐÐÔâµ½ºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬£¬µ¼Ö½ü10Íò°Ä´óÀûÑÇÓû§µÄÓ×ÎÒÐÅϢй¶¡£¡£¡£¡£¡£¡£¡£ ¡£¹¥»÷ÕßÀ´×ÔÓÚº£±í£¬£¬£¬£¬£¬£¬£¬¶Ô¸ÃÒøÐеÄPayIDƽ̨½øÐÐÁË¡°Ã¶¾Ù¹¥»÷¡±¡£¡£¡£¡£¡£¡£¡£ ¡£¾Ý³Æ¹¥»÷Õß½øÐÐÁËԼĪ60Íò´Î²éÎÊ£¬£¬£¬£¬£¬£¬£¬³É¹¦»ñÈ¡ÁËÔ¼9.8Íò¿Í»§µÄÐÕÃû¡£¡£¡£¡£¡£¡£¡£ ¡£Westpac°µÊ¾¿Í»§µÄ²ÆÕþÐÅϢûÓÐÊܵ½ÇÖº¦£¬£¬£¬£¬£¬£¬£¬¸ÃÒøÐеÄPayIDƽֻ̨´æ´¢Á˿ͻ§µÄÐÕÃûºÍÊÖ»úºÅÂë¡£¡£¡£¡£¡£¡£¡£ ¡£

   

Ô­ÎÄÁ´½Ó£º

https://au.finance.yahoo.com/news/100-000-australians-reportedly-risk-232227017.html

2.°Ä´óÀûÑǹúÁ¢´óѧÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬£¬£¬20ÍòѧÉú¼°Ô±¹¤ÐÅϢй¶

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website

°Ä´óÀûÑǹúÁ¢´óѧÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬£¬£¬´óÁ¿Ñ§ÉúºÍÔ±¹¤µÄÐÅϢй¶¡£¡£¡£¡£¡£¡£¡£ ¡£¸ÃδÊÚȨ½Ó¼ûÊÂÎñ²úÉúÔÚ2018Äêµ×£¬£¬£¬£¬£¬£¬£¬Ñ§ÌÃÒÑÈ·ÈÏÔ¼ÓÐ20ÍòÈËÊܵ½Ó°Ï죬£¬£¬£¬£¬£¬£¬Ð¹Â¶µÄÊý¾Ý×îÔç¿É×·ÒäÖÁ19Äêǰ¡£¡£¡£¡£¡£¡£¡£ ¡£ÔÚÊÂÎñÖÐй¶µÄÐÅÏ¢Ô̺¬ÐÕÃû¡¢µØÖ·¡¢µ®ÉúÈÕÆÚ¡¢µç»°ºÅÂë¡¢µç×ÓÓʼþµØÖ·¡¢´¹Î£ÁªÏµÈËÐÅÏ¢¡¢ÄÉ˰ºÅÂë¡¢¹¤×ʵ¥ÐÅÏ¢¡¢ÒøÐÐÕË»§ÐÅÏ¢¡¢»¤ÕÕÐÅÏ¢ºÍѧҵ¼Í¼µÈ¡£¡£¡£¡£¡£¡£¡£ ¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.theguardian.com/australia-news/2019/jun/04/australian-national-university-hit-by-huge-data-breach

3.APT28ÀûÓÃÐÂNimºóÃŶÔ×¼12¸ö¹ú¶ÈÈ·µ±¾ÖÍøÕ¾

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website

¿¨°Í˹»ù×êÑÐÍŶӷ¢ÏÖAPT28µÄй¥»÷»î¶¯£¬£¬£¬£¬£¬£¬£¬¸Ã×éÖ¯ÀûÓÃкóÃŶÔ×¼¶à¸ö¹ú¶ÈÈ·µ±¾ÖÍøÕ¾¡£¡£¡£¡£¡£¡£¡£ ¡£Õâ¸öеĺóÃÅʹÓÃбà³Ì˵»°Nim±àд£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÀûÓÃËüÀ´ÇÔȡʹ´¦¼°ÔÚÊÜϰȾµÄϵͳÉϳÉÁ¢ÓƾÃÐÔ¡£¡£¡£¡£¡£¡£¡£ ¡£¸ÃºóÃÅͨ¹ý´¹µö¹¥»÷½øÐзַ¢£¬£¬£¬£¬£¬£¬£¬×êÑÐÍŶӷ¢ÏÖ¸Ã×éÖ¯¹²ÔÚÕë¶Ô12¸ö¹ú¶ÈµÄ¹¥»÷»î¶¯ÖÐʹÓÃÁ˸úóÃÅ£¬£¬£¬£¬£¬£¬£¬Ô̺¬µÂ¹ú¡¢Ó¢¹ú¡¢ÎÚ¿ËÀ¼¡¢°¢¸»º¹¡¢ÒÁÀÊ¡¢¹þÈø¿Ë˹̹µÈ¡£¡£¡£¡£¡£¡£¡£ ¡£

  

Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/new-backdoor-family-identified-in-zebrocy-apt-groups-campaigns-61ee6a8a

4.ÒÁÀÊAPT34й¤¾ßJasonÔ´´úÂëÔÚTelegramÉÏй¶

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website

Ò»¸öÃûΪLab DookhteganµÄÓû§ÔÚTelegramÉϰ䲼ÁËÒÁÀÊAPT34µÄºÚ¿Í¹¤¾ßJasonµÄÔ´´úÂ룬£¬£¬£¬£¬£¬£¬ÕâÊǸÃÓû§Åû¶µÄµÚÆß¸öAPT34ºÚ¿Í¹¤¾ßÔ´Âë¡£¡£¡£¡£¡£¡£¡£ ¡£Jason¿ª·¢ÓÚ2015Ä꣬£¬£¬£¬£¬£¬£¬ÕâÒâζ׏¥»÷ÕßÖÁÉÙÒÑʹÓÃÁËËüËÄÄ꣬£¬£¬£¬£¬£¬£¬µ«¸Ã¹¤¾ßÔÚ֮ǰµÄ¹¥»÷Öж¼Î´±»·¢ÏÖ¡£¡£¡£¡£¡£¡£¡£ ¡£Æ¾¾Ý×êÑÐÈËÔ±Omri Segev MoyalµÄ˵·¨£¬£¬£¬£¬£¬£¬£¬JasonÊÇÒ»¸öGUI¹¤¾ß£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚʹÓÃÔ¤±àÒëµÄÓû§ÃûºÍÃÜÂë±íÀ´±©Á¦ÆÆ½âMicrosoft Exchangeµç×ÓÓʼþ·þÎñÆ÷¡£¡£¡£¡£¡£¡£¡£ ¡£

 

Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/another-iranian-hacking-tool-jason-leaked-on-telegram-2cc176cb

5.Apple½¨¸´Mac OSÖдæÔÚ½ü20ÄêµÄRCE·ì϶

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website

°²È«×êÑÐÔ±Joshua Hill·¢ÏÖMac OSÖеÄÒ»¸ö´æÔÚÁË20ÄêµÄ·ì϶£¬£¬£¬£¬£¬£¬£¬¸Ã·ì϶×îÔç³öÏÖÓÚ1999Äê°ä²¼µÄMac OS 9ÖУ¬£¬£¬£¬£¬£¬£¬µ«¶ÔÏÖ´úAppleϵͳͬÑùÓÐЧ¡£¡£¡£¡£¡£¡£¡£ ¡£¸Ã·ì϶ÀûÓÃÁËÒ»¸öÃûΪCCLEngineµÄAppleÈí¼þ×é¼þ£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÔ¶³ÌÈÆ¹ýCCLEngineÖеÄÉí·ÝÑéÖ¤»úÔ죬£¬£¬£¬£¬£¬£¬´Ó¶øÔÚÍÆËã»úÖ®¼ä³ÉÁ¢Ô¶³ÌÏνӺÍÖ´ÐÐËÁÒâ´úÂ룬£¬£¬£¬£¬£¬£¬×îÖÕÆëÈ«½Ó¼ûºÍ½ÚÔìÖ¸±êÍÆËã»ú¡£¡£¡£¡£¡£¡£¡£ ¡£AppleÔÚ4Ô·ݵݲȫ¸üÐÂÖн¨¸´ÁËÕâÒ»·ì϶¡£¡£¡£¡£¡£¡£¡£ ¡£

  

Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/apple-fixes-20-year-old-modem-configuration-bug-cd6bf1b9

6.Windows RDPÐÂ0day£¬£¬£¬£¬£¬£¬£¬¿É½Ù³ÖÔ¶³Ì×ÀÃæ»á»°

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website

¿¨ÄÚ»ù÷¡CERT/CCÅû¶Windows RDP·þÎñÖеÄÒ»¸ö佨¸´µÄ0day£¨CVE-2019-9510£©£¬£¬£¬£¬£¬£¬£¬¸Ã·ì϶¿ÉÔÊÐí¹¥»÷ÕßÈÆ¹ýÔ¶³Ì×ÀÃæ»á»°ÖÐµÄÆÁÄ»Ëø¶¨²¢½Ù³Ö»á»°¡£¡£¡£¡£¡£¡£¡£ ¡£¸Ã·ì϶ÓëRDPµÄÍøÂçÉí·ÝÑéÖ¤NLAÓйØ£¬£¬£¬£¬£¬£¬£¬CERTÃèÊöµÄ¹¥»÷³¡¾°Îª£ºÓû§Ê¹ÓÃRDPÏνӵ½Windows 10 1803»òServer 2019»ò¸üеÄϵͳ£¬£¬£¬£¬£¬£¬£¬¶øºóËø¶¨Ô¶³Ì×ÀÃæ»á»°²¢ÍÑÀë¿Í»§¶Ë£¬£¬£¬£¬£¬£¬£¬´Ëʱ¹¥»÷Õß¿ÉÖжÏRDPÍøÂçÏνÓ£¬£¬£¬£¬£¬£¬£¬Õ⽫µ¼ÖÂËü×Ô¶¯³ÁÁ¬²¢ÈƹýWindowsÆÁÄ»Ëø¶¨£¬£¬£¬£¬£¬£¬£¬´Ó¶ø½øÐз¸·¨½Ó¼û¡£¡£¡£¡£¡£¡£¡£ ¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/remote-desktop-zero-day-bug-allows-attackers-to-hijack-sessions/