ÐÅÏ¢Çå¾²Öܱ¨-2021ÄêµÚ17ÖÜ
Ðû²¼Ê±¼ä 2021-04-27> ±¾ÖÜÇ徲̬ÊÆ×ÛÊö
2021Äê04ÔÂ19ÈÕÖÁ04ÔÂ25ÈÕ¹²ÊÕ¼Çå¾²Îó²î60¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇGoogle Chrome V8¶ÑÒç³ö´úÂëÖ´ÐÐÎó²î£»FIBARO Home Center 2 8000¶Ë¿ÚδÊÚȨ»á¼ûÎó²î£»Oracle Cloud Infrastructure Storage Gateway CVE-2021-2318´úÂëÖ´ÐÐÎó²î£»Cisco SD-WAN vManage CVE-2021-1484²ÎÊý×¢ÈëÎó²î£»Dell Technologies Dell PowerScale OneFSδÊÚȨ»á¼ûÎó²î¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊÇTwitterÔÚÈ«Çò¹æÄ£ÄÚ·þÎñÖÐÖ¹£¬ÊÂÎñÈÔÔÚÊÓ²ìÖУ»AdvIntel·¢Ã÷RyukʹÓÃKeeThiefµÈй¤¾ßµÄ¹¥»÷Ô˶¯£»ÃÀ¹úÖƲÃ28¸öÓë¶íÂÞ˹¹¥»÷Ô˶¯ÓйصļÓÃÜÇ®±ÒµØµã£»OracleÐû²¼Çå¾²¸üУ¬ÐÞ¸´¶à¸ö²úÆ·ÖеÄ390¸öÎó²î£»McAfeeÐû²¼2020Ï°ëÄêÍþв̬ÊƵÄÆÊÎö±¨¸æ¡£
ƾ֤ÒÔÉÏ×ÛÊö£¬±¾ÖÜÇå¾²ÍþвΪÖС£
> Ö÷ÒªÇå¾²Îó²îÁбí
1.Google Chrome V8¶ÑÒç³ö´úÂëÖ´ÐÐÎó²î
Google Chrome V8ÒýÇæ±£´æ¶ÑÒç³öÎó²î£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄWEBÇëÇó£¬ÓÕʹÓû§ÆÊÎö£¬¿ÉʹӦÓóÌÐò±ÀÀ£»ò¿ÉÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£
https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_20.html
2.FIBARO Home Center 2 8000¶Ë¿ÚδÊÚȨ»á¼ûÎó²î
FIBARO Home Center 2 8000¶Ë¿Ú±£´æÇå¾²Îó²î£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬿ÉδÊÚȨִÐжñÒâ²Ù×÷£¬Èç¹Ø»ú¡¢ÖØÆô»òÖØÆôµ½»Ö¸´Ä£Ê½¡£
http://seclists.org/fulldisclosure/2021/Apr/27
3.Oracle Cloud Infrastructure Storage Gateway CVE-2021-2318´úÂëÖ´ÐÐÎó²î
Oracle Cloud Infrastructure Storage Gateway±£´æÇå¾²Îó²î£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬿ÉʹӦÓóÌÐò±ÀÀ£»ò¿ÉÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£
https://www.oracle.com/security-alerts/cpuapr2021.html
4.Cisco SD-WAN vManage CVE-2021-1484²ÎÊý×¢ÈëÎó²î
Cisco SD-WAN vManage×°±¸Ä£°åÉèÖñ£´æÇå¾²Îó²î£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬿É×¢Èëí§ÒâÏÂÁ»ò¿É¾ÙÐоܾø·þÎñ¹¥»÷¡£
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-vman-cmdinj-nRHKgfHX
5.Dell Technologies Dell PowerScale OneFSδÊÚȨ»á¼ûÎó²î
Dell Technologies Dell PowerScale OneFS¶ÔÃÜÔ¿ÓâÆÚ´¦Öóͷ£±£´æÇå¾²Îó²î£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇó£¬ÓµÓÐISI_PRIV_LOGIN_SSHµÄÓâÆÚÓû§¿É¼ÌÐøµÇ¼ϵͳ¡£
https://www.dell.com/support/kbdoc/en-sg/000185202/dsa-2021-048-dell-emc-powerscale-onefs-security-update-for-multiple-vulnerabilities
> Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö
1¡¢TwitterÔÚÈ«Çò¹æÄ£ÄÚ·þÎñÖÐÖ¹£¬ÊÂÎñÈÔÔÚÊÓ²ìÖÐ
TwitterÔÚÉÏÖÜÎåÍíÉϱ¬·¢Á˵ÄÖÐÖ¹£¬²¢Ò»Ö±Ò»Á¬µ½ÖÜÁùÉÏÎç¡£Óû§·´Ó¦µÄÎÊÌâ°üÀ¨ÎÞ·¨Õý³£ËÑË÷¡¢ÄÚÈÝÎÞ·¨¼ÓÔØ¡¢Í¼ÏñÎÞ·¨ÏÔʾÉõÖÁÎÞ·¨µÇ¼ÍøÕ¾¡£¾Ýͳ¼Æ´Ë´ÎÖÐÖ¹Ó°ÏìÁËÈ«Çò¹æÄ£ÄÚµÄÓû§£¬µ«ÂÞÂíÄáÑǵÈһЩ¹ú¼ÒËƺõ²¢Î´Êܵ½Ó°Ïì¡£TwitterÌåÏÖ´Ë´ÎÖÐÖ¹ÊÇÆä·þÎñÆ÷ÉϵÄÎÊÌ⣬²¢ÒѾÔÚÆð¾¢½â¾öʹһÇо¡¿ì»Ö¸´Õý³££¬¿ÉÊDz¢Î´ÌṩÓйش˴ιÊÕϵÄÏêϸÐÅÏ¢¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/technology/twitter-is-suffering-from-another-worldwide-outage-today/
2¡¢AdvIntel·¢Ã÷RyukʹÓÃKeeThiefµÈй¤¾ßµÄ¹¥»÷Ô˶¯
Çå¾²¹«Ë¾Advanced Intelligence·¢Ã÷RyukʹÓÃKeeThiefµÈй¤¾ßµÄ¹¥»÷Ô˶¯¡£Ñо¿Ö°Ô±ÊӲ쵽£¬½ñÄêRyukÀÕË÷Èí¼þ¸ü¶àµØÒÀÀµÓÚ¶ÔRDP̻¶µÄÖ÷»ú¾ÙÐдó¹æÄ£±©Á¦ÆƽâºÍÃÜÂëÅçÈ÷¹¥»÷À´ÈëÇÖÄ¿µÄÍøÂç¡£±ðµÄ£¬ÔÚÕâЩ¹¥»÷Öл¹·¢Ã÷ÁËÐÂÊÖÒÕ£¬°üÀ¨Ê¹ÓôÓKeePassÃÜÂëÖÎÀíÆ÷ÇÔȡƾ֤µÄ¿ªÔ´¹¤¾ßKeeThief£¬ÒÔ¼°×°ÖñãЯʽ°æ±¾µÄNotepad ++£¬ÔÚPowerShellÖ´ÐÐÊÜÏÞµÄϵͳÉÏÔËÐÐPowerShell¾ç±¾¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/ryuk-ransomware-operation-updates-hacking-techniques/
3¡¢ÃÀ¹úÖƲÃ28¸öÓë¶íÂÞ˹¹¥»÷Ô˶¯ÓйصļÓÃÜÇ®±ÒµØµã
ÃÀ¹úÕþ¸®ÔÚ±¾ÖÜÖƲÃÁË28¸ö¼ÓÃÜÇ®±ÒµØµã£¬¾Ý³ÆÕâЩµØµãÓëÉæ¼°¶íÂÞ˹ÍøÂç¹¥»÷»ò×ÌÈÅÑ¡¾ÙÔ˶¯µÄ×éÖ¯ºÍСÎÒ˽¼ÒÓйء£ÃÀ¹úÕþ¸®»¹ÌåÏÖ£¬ÕâЩÔ˶¯ÊÇÓɶíÂÞ˹Áª°îÇå¾²¾Ö£¨FSB£©ºÍ¶íÂÞ˹Ö÷ÒªÇ鱨¾Ö£¨GRU£©¿ªÕ¹µÄ£¬²¢ÇÒÒѾ»ñµÃÁËÁù¼ÒÓë¶íÂÞ˹ÓÐÏàÖúµÄ¹«Ë¾µÄ×ÊÖú¡£±ðµÄ£¬ÃûΪSESµÄ°Í»ù˹̹¹«Ë¾Ïò»¥ÁªÍøÑо¿»ú¹¹(IRA)ÌṩÐéαÉí·ÝÀ´ÌÓ±ÜÃÀ¹úµÄÖƲã¬Æä¼ÓÃÜÇ®±ÒµØµãÒÑͨ¹ý26900±ÊÉúÒâÊÕµ½Á˼ÛÖµÁè¼Ý250ÍòÃÀÔªµÄÊý×ÖÇ®±Ò¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/us-sanctions-cryptocurrency-addresses-linked-to-russian-cyberactivities/
4¡¢OracleÐû²¼Çå¾²¸üУ¬ÐÞ¸´¶à¸ö²úÆ·ÖеÄ390¸öÎó²î
OracleÒÑÓÚ2021Äê4ÔÂÐû²¼ÁËÖ÷Òª²¹¶¡¸üУ¬ÐÞ¸´Á˶à¸ö²úÆ·ÖеÄ390¸öÎó²î¡£´Ë´ÎÐÞ¸´µÄ½ÏΪÑÏÖصÄÎó²îΪOracleͨѶӦÓóÌÐòÖÐCVSSÆÀ·ÖΪ9.8µÄCVE-2020-11612¡¢CVE-2019-0228¡¢CVE-2020-11612ºÍCVE-2020-28052£¬Instantis EnterpriseTrackÖеÄCVE-2019-0219£¬ÆóÒµÖÎÀíÆ÷»ù´¡Æ½Ì¨ÖеÄCVE-2019-17195ÒÔ¼°OracleÉÌÒµÖÇÄÜÆóÒµ°æÖеÄCVE-2020-9480µÈÎó²î¡£OracleÇ¿ÁÒ½¨Òé¿Í»§¾¡¿ìÓ¦ÓÃÇå¾²²¹¶¡¡£
ÔÎÄÁ´½Ó£º
https://www.oracle.com/security-alerts/cpuapr2021.html
5¡¢McAfeeÐû²¼2020Ï°ëÄêÍþв̬ÊƵÄÆÊÎö±¨¸æ
McAfeeÐû²¼ÁË2020Ï°ëÄêÍþв̬ÊƵÄÆÊÎö±¨¸æ¡£±¨¸æ³Æ£¬2020ÄêQ4ƽ¾ùÿ·ÖÖӿɼì²âµ½648¸öÍþв£¬±ÈQ3ÔöÌíÁË10£¥£¬±ÈQ2ÔöÌíÁË40£¥£¬Ê¼ÖÕ³ÊÒ»Á¬ÉÏÉýÇ÷ÊÆ¡£±¨¸æ»¹Ö¸³ö2020ÄêÏ°ëÄêÔÚÒ°Íâ·¢Ã÷µÄ¹¥»÷ÊýÄ¿¼¤ÔöµÄÖ÷ÒªÔµ¹ÊÔÓÉÊÇÒÔCOVIDΪÖ÷ÌâµÄ¹¥»÷ºÍPowerShellľÂíµÄ¼¤Ôö£¬ÒÔ¼°SolarWindsÎó²îºÍSunburst¶ñÒâÈí¼þµÄÒ»Á¬ÉìÕÅ¡£Ïà±ÈÓÚQ3 £¬Q4µÄPowerShellÊýÄ¿ÔöÌíÁË208%£¬Õë¶ÔofficeµÄ¶ñÒâÈí¼þÊýÄ¿ÔöÌíÁË199%¡£
ÔÎÄÁ´½Ó£º
https://www.mcafee.com/enterprise/en-us/lp/threats-reports/apr-2021.html