ÐÅÏ¢Äþ¾²Öܱ¨-2018ÄêµÚ15ÖÜ

Ðû²¼Ê±¼ä 2018-04-16

Ò»¡¢±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö
        2018Äê04ÔÂ09ÈÕÖÁ13ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´58¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇMicrosoft Windows Graphics×é¼þȨÏÞÌáÉý©¶´£»Microsoft Chakra½Å±¾ÒýÇæCVE-2018-0980ÄÚ´æÆÆ»µÂ©¶´£»Microsoft Excel CVE-2018-1026Ô¶³Ì´úÂëÖ´ÐЩ¶´£»Microsoft WindowsǶÈëʽ×ÖÌåÔ¶³Ì´úÂëÖ´ÐЩ¶´£»Microsoft Windows 'HTTP.sys'¾Ü¾ø·þÎñ©¶´ ¡£

        ±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊÇ˼¿ÆÂ©¶´£¨CVE-2018-0171£©±»ºÚ¿ÍÀûÓã¬È«ÇòÁè¼Ý20Íǫ̀·ÓÉÆ÷ÖÐÕУ»Ñо¿ÈËÔ±·¢ÏÖÓÃÓÚ·Ö·¢¶ñÒâÈí¼þIcedIDºÍRovnixµÄµöÓã¹¥»÷»î¶¯£»Sodexo FilmologyÔâºÚ¿Í¹¥»÷£¬²¿ÃÅÓû§µÄÐÅÓÿ¨ÐÅϢй¶£»Ê¥Âí¶¡µºµÄ»ù´¡ÉèÊ©Ôâµ½ÍøÂç¹¥»÷£¬¹«¹²·þÎñ±»ÆÈÖжÏ£»Ñо¿ÍŶӳÆÁè¼Ý6.5Íò¸ö·ÓÉÆ÷Ϊ½©Ê¬ÍøÂçºÍAPTÌṩ¶ñÒâÁ÷Á¿ ¡£

        ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖÐ ¡£


¶þ¡¢ÖØÒªÄþ¾²Â©¶´Áбí
1¡¢Microsoft Windows Graphics×é¼þȨÏÞÌáÉý©¶´

        Microsoft Graphics×é¼þ×ֶνâÎö´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓé¶´Ìá½»ÌØÊâµÄÇëÇó£¬ÌáÉýȨÏÞ ¡£

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-1008
2¡¢Microsoft Chakra½Å±¾ÒýÇæCVE-2018-0980ÄÚ´æÆÆ»µÂ©¶´

        Microsoft Edge´¦ÖÃWEBÇëÇó´æÔÚÄÚ´æÆÆ»µÂ©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓé¶´¹¹½¨¶ñÒâWEBÒ³£¬ÓÕʹÓû§½âÎö£¬¿Éʹ·¨Ê½±ÀÀ£»òÖ´ÐÐÈÎÒâ´úÂë ¡£

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0980
3¡¢Microsoft Excel CVE-2018-1026Ô¶³Ì´úÂëÖ´ÐЩ¶´

        Microsoft Excel´¦ÖÃÄڴ湤¾ß·½Ê½ÖдæÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓé¶´Ìá½»ÌØÊâµÄÎļþ£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½±ÀÀ£»òÖ´ÐÐÈÎÒâ´úÂë ¡£

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-1026
4¡¢Microsoft WindowsǶÈëʽ×ÖÌåÔ¶³Ì´úÂëÖ´ÐЩ¶´

        Microsoft Windows´¦ÖÃǶÈëʽ×ÖÌå´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíµ±µØ¹¥»÷ÕßÀûÓé¶´Ìá½»ÌØÊâµÄÇëÇ󣬿ÉʹӦÓ÷¨Ê½±ÀÀ£»òÖ´ÐÐÈÎÒâ´úÂë ¡£

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-1010
5¡¢Microsoft Windows 'HTTP.sys'¾Ü¾ø·þÎñ©¶´

        Microsoft Windows HTTP.sys´¦ÖÃHTTP 2.0ÇëÇó´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓé¶´Ìá½»ÌØÊâµÄÇëÇ󣬽øÐоܾø·þÎñ¹¥»÷ ¡£

        Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0956


Èý¡¢ÖØÒªÄþ¾²Ê¼þ×ÛÊö
1¡¢Ë¼¿ÆÂ©¶´£¨CVE-2018-0171£©±»ºÚ¿ÍÀûÓã¬È«ÇòÁè¼Ý20Íǫ̀·ÓÉÆ÷ÖÐÕÐ

¶«É­¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

        ºÚ¿ÍÍÅ»ïJHTÀûÓÃ˼¿ÆÂ©¶´£¨CVE-2018-0171£©ÌᳫÁËÕë¶Ô¶íÂÞ˹ºÍÒÁÀʵÄÍøÂç»ù´¡ÉèÊ©µÄ¹¥»÷»î¶¯ ¡£¾Ý·͸É籨µÀ£¬ÒÁÀÊͨÐźÍÐÅÏ¢¼¼Êõ²¿ÌåÏÖÈ«ÇòÁè¼Ý20Íǫ̀·ÓÉÆ÷Êܵ½Ó°Ï죬ÆäÖаüÂÞÒÁÀʵÄ3500̨·ÓÉÆ÷ ¡£Ä¿Ç°ÊÜÓ°ÏìµÄÒÁÀÊ·ÓÉÆ÷ÖÐ95%Òѻָ´Õý³£·þÎñ ¡£

        Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/iranian-and-russian-networks-attacked-using-ciscos-cve-2018-0171-vulnerability/

2¡¢Ñо¿ÈËÔ±·¢ÏÖÓÃÓÚ·Ö·¢¶ñÒâÈí¼þIcedIDºÍRovnixµÄµöÓã¹¥»÷»î¶¯

¶«É­¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

        ÔÚ2018Äê2ÔÂÏÂÑ®¼°Õû¸ö3ÔÂÆÚ¼ä£¬Ë¼¿ÆÑо¿ÈËÔ±·¢ÏÖÒ»¸öµöÓãÓʼþ¹¥»÷»î¶¯£¬µ±Óû§´ò¿ª°üÂÞ¶ñÒâºêµÄMicrosoft WordÎĵµ¸½¼þʱ£¬½«»áÏÂÔØ¶ñÒâÈí¼þRovnix£¬²¢ËæºóÏÂÔØÒøÐÐľÂíIcedID ¡£ÁíÍ⣬»¹ÓÐһЩÑù±¾»áÏÂÔØÒ»¸öBytecoinµÄ¶ñÒâÍÚ¿óÈí¼þ ¡£Ñо¿ÈËÔ±»¹·¢ÏÖIcedIDʹÓõļò»¯´úÂë×¢Èë¼¼Êõ±äµÃÔ½·¢ÄÑÒÔ¼ì²â ¡£

        Ô­ÎÄÁ´½Ó£ºhttps://blogs.cisco.com/security/icedid-banking-trojan-teams-up-with-rovnix-for-distribution

3¡¢Sodexo FilmologyÔâºÚ¿Í¹¥»÷£¬²¿ÃÅÓû§µÄÐÅÓÿ¨ÐÅϢй¶

¶«É­¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

        SodexoʳƷ·þÎñºÍÉèÊ©¹ÜÀí¹«Ë¾ÌåÏÖÆäÓ°Ï·¾íƽ̨FilmologyÔâµ½ÓÐÕë¶ÔÐԵĹ¥»÷£¬²¿ÃÅÓû§µÄÐÅÓÿ¨ÐÅϢй¶ ¡£¸Ã¹«Ë¾ÌåÏÖ£¬ÕýÔÚ¶½´ÙÔÚ3ÔÂ19ÈÕÖÁ4ÔÂ3ÈÕÆÚ¼äʹÓÃÁËFilmologyÍøÕ¾µÄÓû§¼ì²éÆäÒøÐп¨Õ˵¥ ¡£¸ÃʼþĿǰ»¹ÔÚ½øÒ»²½µÄÊÓ²ìÖ®ÖÐ ¡£

        Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/71211/data-breach/sodexo-filmology-data-breach.html

4¡¢Ê¥Âí¶¡µºµÄ»ù´¡ÉèÊ©Ôâµ½ÍøÂç¹¥»÷£¬¹«¹²·þÎñ±»ÆÈÖжÏ

¶«É­¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

        ¾Ýµ±µØÃ½ÌåÿÈÕÏÈÇý±¨±¨µÀ£¬4ÔÂ2ÈÕλÓÚ¼ÓÀձȺ£µÄºÉÀ¼ÊôÊ¥Âí¶¡µºÔâµ½ÍøÂç¹¥»÷£¬Õû¸öÕþ¸®µÄ»ù´¡ÉèÊ©±»ÆÈ¹Ø±Õ£¬µ¼Ö¹«¹²·þÎñÖжÏ ¡£½ØÖÁĿǰ³ýÁËÃñʹҺŲ¿ÃÅÍ⣬ÆäÓàÕþ¸®²¿ÃÅÒѾ­»Ö¸´ÁË·þÎñ ¡£Ä¿Ç°Ã»ÓйØÓڴ˴ι¥»÷ʼþµÄ¸ü¶àϸ½Ú ¡£Õþ¸®ÌåÏÖÕâÊÇÒ»ÄêÀ´·¢ÉúµÄµÚ3Æð¹¥»÷ʼþ ¡£

        Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/71236/hacking/sint-maarten-cyber-attack.html

5¡¢Ñо¿ÍŶӳÆÁè¼Ý6.5Íò¸ö·ÓÉÆ÷Ϊ½©Ê¬ÍøÂçºÍAPTÌṩ¶ñÒâÁ÷Á¿

¶«É­¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

        AkamaiÐû²¼³ÂË߳Ƽì²âµ½¹¥»÷ÕßÀûÓÃÁè¼Ý6.5Íò¸ö·ÓÉÆ÷´´½¨µÄÊðÀíÍøÂçʵʩ¶àÖÖ·Ç·¨¹¥»÷»î¶¯ ¡£½©Ê¬ÍøÂçÔËÓªÕߺÍÍøÂç¼äµý×éÖ¯ (APT) ±»Ö¸ÕýÔÚÀÄÓ÷ÓÉÆ÷ʹÓõÄͨÓü´²å¼´Óà (UPnP) ЭÒéÀ´ÊðÀí¶ñÒâÁ÷Á¿²¢¹æ±ÜÊÓ²ìÈËÔ±¼ì²ìÕæÊµµØÀíλÖÃÐÅÏ¢ ¡£²¢¼ì²âµ½Áè¼Ý480Íò¸ö·ÓÉÆ÷Ò×Êܵ½¹¥»÷ ¡£

        Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/over-65-000-home-routers-are-proxying-bad-traffic-for-botnets-apts/