2020-02-25

Ðû²¼Ê±¼ä 2020-02-25

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

DNS_ºóÃÅ_Trojan.Mozart

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¼ì²âµ½ºóÃÅÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˺óÃÅ Mozart¡£

Mozart ÊÇÒ»¸ö¹¦Ð§ºÜÊÇÇ¿Ê¢µÄºóÃÅ£¬Ê¹ÓÃDNSЭÒéÓëC&C·þÎñÆ÷ͨѶ¡£MozartÄܹ»ÍøÂçÅÌËã»úÐÅÏ¢·¢ËÍÖÁ·þÎñÆ÷£¬²¢ÇÒ´Ó·þÎñÆ÷ÏÂÔØÎļþÖ´ÐС£

¸üÐÂʱ¼ä£º

20200225

 

ÊÂÎñÃû³Æ£º

HTTP_Çå¾²Îó²î_VMware_SD-WAN_by_VeloCloudÐÅϢй¶Îó²î[CVE-2019-5533]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýVMware SD-WAN by VeloCloudÐÅϢй¶Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£

VMware SD-WAN by VeloCloudÊÇÃÀ¹úÍþ¨VMware£©¹«Ë¾µÄÒ»Ì×Èí¼þ½ç˵µÄWAN£¨¹ãÓòÍø£©½â¾ö¼Æ»®¡£¸Ã²úÆ·Ìṩ¶ÔÔÆÊý¾ÝÖÐÐĺÍÓ¦ÓóÌÐòµÄÓÅ»¯»á¼û¡£

VMware SD-WAN by VeloCloud   3.3.0֮ǰµÄ3.x°æ±¾Öб£´æÐÅϢй¶Îó²î¡£¸ÃÎó²îÔ´ÓÚÍøÂçϵͳ»ò²úÆ·ÔÚÔËÐÐÀú³ÌÖб£´æÉèÖõȹýʧ¡£Î´ÊÚȨµÄ¹¥»÷Õß¿ÉʹÓÃÎó²î»ñÈ¡ÊÜÓ°Ïì×é¼þÃô¸ÐÐÅÏ¢¡£

¸üÐÂʱ¼ä£º

20200225 


ÊÂÎñÃû³Æ£º

TCP_Jackson_Databind_¿ÉÒÉ·´ÐòÁл¯Àà_xbean[CVE-2020-8840]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃTCP_Jackson_databind_¿ÉÒÉ·´ÐòÁл¯À๥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¡£

¸üÐÂʱ¼ä£º

20200225


ÊÂÎñÃû³Æ£º

HTTP_CryptoPatronumÀÕË÷²¡¶¾_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¸ÃÊÂÎñÅú×¢µ½ÀÕË÷Èí¼þCryptoPatronumÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÀÕË÷Èí¼þCryptoPatronum¡£

CryptoPatronumÊÇÒ»¿îÀÕË÷Èí¼þ£¬ÔËÐкó¼ÓÃܱ»Ö²Èë»úеÉϵÄÎļþ£¬²¢ÀÕË÷±ÈÌرÒÀ´½âÃÜ¡£

¸üÐÂʱ¼ä£º

20200225


ÊÂÎñÃû³Æ£º

HTTP_fusionauth_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-7799]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³Ì·þÎñÆ÷¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËľÂíFileStolen¡£

FileStolenµÄÖ÷Òª¹¦Ð§ÎªÎļþÇÔÈ¡£¬ÇÔÈ¡Ö¸¶¨Âß¼­´ÅÅÌÏÂÖ¸¶¨ÎļþÃûµÄÎļþ²¢ÇÒÉÏ´«µ½CC·þÎñÆ÷£¬ÇÔÈ¡µÄÎļþÀàÐÍ°üÀ¨£ºtxt¡¢ppt¡¢pptx¡¢pdf¡¢doc¡¢docx¡¢xls¡¢xlsx¡¢zip¡¢7z¡¢rtf¡£

¸ÃľÂíÔÚAPT×éÖ¯ÂûÁ黨BitterµÄ¹¥»÷ÖÐʹÓá£

¸üÐÂʱ¼ä£º

20200225

 

ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

HTTP_ľÂí_Win32.FileStolen_ÅþÁ¬

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

CMS¹¥»÷¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃfusionauth_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-7799]¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¡£

¸üÐÂʱ¼ä£º

20200225