Stratus¹«Ë¾Ñ¬È¾ÀÕË÷Èí¼þ £¬ÍøÂçºÍ·þÎñÔÝʱÖжÏ£»Purple Fox¹¥»÷»î¶¯½ÏÈ¥ÄêÔö³¤600£¥ £¬´ï9Íò¶à´Î

Ðû²¼Ê±¼ä 2021-03-25

1.Stratus¹«Ë¾Ñ¬È¾ÀÕË÷Èí¼þ £¬ÍøÂçºÍ·þÎñÔÝʱÖжÏ


1.jpg


Stratus TechnologiesѬȾÀÕË÷Èí¼þ £¬ÍøÂçºÍ·þÎñÔÝʱÖжÏ¡£StratusÊÇÖªÃûµÄ¸ß¿ÉÓÃÐÔ²úÎïÌṩÉÌ £¬Æä²úÎï°üÂÞztC±ßÔµ¼ÆËãÉ豸ºÍftServerÈÝ´í·þÎñÆ÷½â¾ö·½°¸µÈ £¬¿Í»§ÎªÒøÐС¢µçÐÅÌṩÉÌ¡¢½ô¼±ºô½ÐÖÐÐĺÍÒ½ÁƱ£½¡»ú¹¹µÈ¡£¸Ã¹«Ë¾³ÆÆäÔÚ3ÔÂ17ÈÕÔâµ½ÀÕË÷Èí¼þ¹¥»÷ £¬¼ì²âµ½¹¥»÷ºóÁ¢¿Ì¹Ø±ÕÁ˲¿ÃÅÍøÂçºÍ·þÎñÒÔ¸ôÀë¹¥»÷ £¬°üÂÞÆäÈÝ´í²úÎïµÄ·þÎñActiveService Network£¨ASN£©ºÍStratus·þÎñÃÅ»§¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/high-availability-server-maker-stratus-hit-by-ransomware/


2.Hobby LobbyÒò´æ´¢Í°ÅäÖôíÎóй¶138GBÃô¸ÐÐÅÏ¢


2.jpg


¹¤ÒÕÆ·ÁãÊÛÉÌHobby LobbyÒòAWS´æ´¢Í°ÅäÖôíÎóй¶138GBÃô¸ÐÐÅÏ¢ £¬Ó°ÏìÁËÔ¼30ÍòÃûÓû§¡£´Ë´Îй¶µÄÐÅÏ¢°üÂÞÓû§ÐÕÃû¡¢²¿ÃÅÖ§¸¶¿¨µÄÏêϸÐÅÏ¢¡¢µç»°ºÅÂë¡¢µØÖ·ºÍÓʼþµØÖ· £¬´ËÍ⻹°üÂÞÓ¦Ó÷¨Ê½µÄÔ´´úÂë¡¢¹«Ë¾Ô±¹¤µÄÐÕÃûºÍµç×ÓÓʼþµØÖ·µÈ¡£Ä¿Ç° £¬¸Ã´æ´¢Í°Òѱ»±£»¤ÆðÀ´ £¬µ«Éв»È·¶¨ÊÇ·ñÓкڿÍÔÚ´Ë֮ǰÇÔÈ¡ÁË̻¶µÄÐÅÏ¢¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/hobby-lobby-customer-data-cloud-misconfiguration/164980/


3.Ó¢¹úÄÉ˰ÈËʹÓõÄÕ˵¥ÌáÐÑϵͳ¿ÉÄÜй¶ÆäÃô¸ÐÊý¾Ý


3.jpg


The RegisteµÄÒ»ÏîÊӲ췢ÏÖÓ¢¹úÄÉ˰ÈËʹÓõÄÕ˵¥ÌáÐÑϵͳ¿ÉÄÜй¶ÆäÃô¸ÐÊý¾Ý¡£¸ÃϵͳÊÇÓÉTelsolutions¿ª·¢ £¬Ö÷Òª¹¦Ð§ÊÇÏòÇ·Õ®Õß·¢ËÍÏûÏ¢À´ÌáÐÑÆä»¹Õ® £¬¸ÃÏûÏ¢Öлá°üÂÞÒ»¸öÖ¸Ïò½ÓÊÕÕ߸öÈËÐÅÏ¢ºÍδÇåÕʵ¥Ò³ÃæµÄURL¡£µ«ÊÇ £¬¹¥»÷Õß¿ÉÒÔͨ¹ý¸ü¸ÄÍøÖ·ÖеÄ×ÖĸºÍÊý×Ö×Ö·ûÀ´²éѯÊôÓÚÆäËûÈ˵ÄÐÅÏ¢ £¬ÉõÖÁ°üÂÞסÔÚ²îÒìµØÓòµÄ¾ÓÃñÐÅÏ¢¡£TelsolutionsÌåÏָé¶´ÏÖÒÑÐÞ¸´¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/debt-chasing-uk-councils-potentially-expose-private-resident-data/


4.Purple Fox¹¥»÷»î¶¯½ÏÈ¥ÄêÔö³¤600£¥ £¬´ï9Íò¶à´Î


4.jpg


Guardicore LabsÄþ¾²Ñо¿ÈËÔ±·¢ÏÖPurple FoxµÄ¹¥»÷»î¶¯×ÔÈ¥Äê5Ô·ÝÖÁ½ñÔö³¤ÁË600£¥ £¬µ½´ïÁË9Íò¶à´Î¡£Purple FoxÊÇÒ»ÖÖWindows¶ñÒâÈí¼þ £¬ÓÚ2018Äê3ÔÂÊ״α»·¢ÏÖ £¬Í¨¹ý©¶´ÀûÓù¤¾ß°üºÍµöÓãÓʼþÀ´Ñ¬È¾¼ÆËã»ú¡£ÔÚ×î½üµÄ»î¶¯ÖÐ £¬Ñо¿ÈËÔ±·¢ÏÖÁËËüʹÓÃÁËеÄѬȾý½é £¬Í¨¹ýSMBÃÜÂ뱩Á¦ÆÆ½âÃæÏòÍøÂçµÄWindows¼ÆËã»ú¡£´ËÍâ £¬¹¥»÷ÕßÒѽ«Purple FoxËùʹÓõÄÖÖÖÖ¶ñÒâpayloadÍйÜÔÚÓɽü2000̨±»ÈëÇֵķþÎñÆ÷×é³ÉµÄÅÓ´ó½©Ê¬ÍøÂçÉÏ¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/03/purple-fox-rootkit-can-now-spread.html


5.΢Èí¾¯¸æ½üÆÚµöÓã»î¶¯ÒÑÇÔÈ¡40Íò¸öOWAºÍOffice 365ƾ¾Ý


5.jpg


×ÔÈ¥Äê12ÔÂÒÔÀ´ £¬µöÓã»î¶¯ÒÑÇÔÈ¡40Íò¸öOWAºÍOffice 365ƾ¾Ý¡£WMC GlobalÓÚÈ¥ÄêÄê³õ·¢ÏָõöÓã»î¶¯ £¬Î±×°³Éαװ³ÉÊÓÆµ»áÒé·þÎñ¡¢Äþ¾²½â¾ö·½°¸ºÍÉú²ú¹¤¾ßÀ´ÃÔ»óÊܺ¦Õß¡£È¥Äê12Ô £¬ºÚ¿Íð³äÁËOutlook Web AppÀ´ÆÛÆ­Ä¿±êÓû§ÊäÈëÆ¾¾Ý £¬ÏÖÔÚÄê1Ô¸ÄΪģ·ÂOffice 365À´ÇÔȡƾ¾Ý¡£´ËÍâ £¬Î¢Èí·¢Ïָû»¹ÀûÓÃÁËAmazon Simple Email Service£¨SES£©ºÍAppspotÔÆ¼ÆËãÆ½Ì¨À´·¢ËÍÍøÂçµöÓãµç×ÓÓʼþ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/microsoft-warns-of-phishing-attacks-bypassing-email-gateways/


6.CiscoÐû²¼Äþ¾²¸üР£¬ÐÞ¸´JabberÖÐÈÎÒâ´úÂëÖ´ÐЩ¶´


6.jpg


CiscoÐû²¼Äþ¾²¸üР£¬ÐÞ¸´ÁËWindows¡¢macOS¡¢AndroidºÍiOS°æ±¾Jabber clientÖеÄÈÎÒâ´úÂëÖ´ÐЩ¶´¡£JabberÊÇÒ»¸öÍøÂç»áÒéºÍ¼´Ê±ÏûϢͨ±¨Ó¦Óà £¬CiscoÌåÏָ鶴ĿǰÉÐδ±»¹ã·ºÀûÓ᣸é¶´±»×·×ÙΪCVE-2021-1411 £¬ÑÏÖØÆ·¼¶Îª9.9 £¬ÊÇÓɶÔÊäÈëÏûÏ¢ÄÚÈÝÑéÖ¤²»Í×ÒýÆðµÄ¡£´ËÍâ £¬´Ë´Î¸üл¹ÐÞ¸´Á˸òúÎïÖÐµÄÆäËû4¸ö©¶´£¨CVE-2021-1417ºÍ CVE-2021-1418µÈ£© £¬ÒÔ¼°ÆäËû²úÎïÖеÄ37¸ö©¶´¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/cisco-addresses-critical-bug-in-windows-macos-jabber-clients/