ÐÅÏ¢Äþ¾²Öܱ¨-2018ÄêµÚ24ÖÜ
Ðû²¼Ê±¼ä 2018-06-18
Ò»¡¢±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö
2018Äê06ÔÂ11ÈÕÖÁ17ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´57¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇMicrosoft Windows 'HTTP.sys'Ô¶³Ì´úÂëÖ´ÐЩ¶´£»Microsoft Excel CVE-2018-8248Ô¶³Ì´úÂëÖ´ÐЩ¶´£»Microsoft Windows DNSAPIÔ¶³Ì´úÂëÖ´ÐЩ¶´£»Microsoft Windows CVE-2018-8213ÈÎÒâ´úÂëÖ´ÐЩ¶´£»Cisco Network Services Orchestrator CVE-2018-0274ÈÎÒâÃüÁîÖ´ÐЩ¶´¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊÇÖÇÀûÒøÐÐÔâºÚ¿Í¹¥»÷£¬Êý°Ų̀¼ÆËã»úµÄMBR±»ÆÆ»µ£»º«¹ú¼ÓÃÜ»õ±Ò½»Ò×ËùCoinrailÔâºÚ¿ÍÈëÇÖ£¬ËðʧԼ3000ÍòÖÁ4000ÍòÃÀÔª£»Weight Watchers¹«Ë¾µÄKubernetes·þÎñÆ÷δÉèÖÃÃÜÂ룬²¿ÃÅ»ù´¡ÉèÊ©µÄƾ¾Ýй¶£»AÕ¾ÔâºÚ¿Í¹¥»÷£¬½üǧÍòÓû§µÄÊý¾Ýй¶£»ÁãÊÛ¹«Ë¾Dixons CarphoneÔâºÚ¿ÍÈëÇÖ£¬Ô¼590ÍòÓû§µÄÐÅÓÿ¨ÐÅϢй¶¡£
ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖС£
¶þ¡¢ÖØÒªÄþ¾²Â©¶´Áбí
1¡¢Microsoft Windows 'HTTP.sys'Ô¶³Ì´úÂëÖ´ÐЩ¶´
Microsoft Windows 'HTTP.sys'´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓé¶´Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8231
2¡¢Microsoft Excel CVE-2018-8248Ô¶³Ì´úÂëÖ´ÐЩ¶´
Microsoft Excel´¦ÖÃÄڴ湤¾ß´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓé¶´Ìá½»ÌØÊâµÄÎļþ£¬ÓÕʹÓû§½âÎö£¬¿ÉÖ´ÐÐÈÎÒâ´úÂëÌáÉýȨÏÞ¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8248
3¡¢Microsoft Windows DNSAPIÔ¶³Ì´úÂëÖ´ÐЩ¶´
Microsoft Windows DNSAPI.dll´¦ÖÃDNSÏìÓ¦´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓé¶´Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8225
4¡¢Microsoft Windows CVE-2018-8213ÈÎÒâ´úÂëÖ´ÐЩ¶´
Microsoft Windows´¦ÖÃÄڴ湤¾ß´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓé¶´Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÒÔϵͳÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8213
5¡¢Cisco Network Services Orchestrator CVE-2018-0274ÈÎÒâÃüÁîÖ´ÐЩ¶´
Cisco Network Services Orchestrator CLI½âÎöÆ÷´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓé¶´Ìá½»ÌØÊâµÄÇëÇó£¬ÒÔrootȨÏÞÖ´ÐÐÈÎÒâÃüÁî¡£
Óû§¿É²Î¿¼Èçϳ§ÉÌÌṩµÄÄþ¾²²¹¶¡ÒÔÐÞ¸´¸Ã©¶´£ºhttps://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180606-nso
Èý¡¢ÖØÒªÄþ¾²Ê¼þ×ÛÊö
1¡¢Ñо¿ÈËÔ±·¢ÏÖ½©Ê¬ÍøÂçVPNFilter¾íÍÁÖØÀ´£¬Ö÷ÒªÕë¶ÔÎÚ¿ËÀ¼

5ÔÂ24ÈÕÖÇÀûÒøÐÐÔâºÚ¿Í¹¥»÷£¬¹¥»÷ÕßÊÔͼͨ¹ýÒøÐеÄSWIFTתÕËϵͳÇÔÈ¡×ʽ𣬲¢Í¬Ê±Í¨¹ý´ÅÅ̲Á³ý¶ñÒâÈí¼þÆÆ»µÁËÊý°Ų̀µçÄÔÒÔÊèÉ¢Ô±¹¤µÄ×¢ÒâÁ¦¡£Æ¾¾Ýµ±µØÃ½ÌåµÄ±¨µÀ£¬ËäÈ»ÔÚÏßϵͳÊÂÇéÕý³££¬µ«¸ÃÒøÐеĶà¸öÍøµã·þÎñÍ߽⡣ËäȻûÓÐÃ÷È·Ö¸³ö£¬µ«¸ÃÒøÐÐѬȾµÄ¶ñÒâÈí¼þºÜ¿ÉÄÜÊÇKillDiskµÄбäÌ壬¸Ã±äÌåÖ÷Òª²Á³ý¼ÆËã»úµÄMBR£¬Ç÷ÊÆ¿Æ¼¼Ðû²¼Á˹ØÓڸñäÌåµÄ·ÖÎö³ÂËß¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/hackers-crashed-a-bank-s-computers-while-attempting-a-swift-hack/
2¡¢º«¹ú¼ÓÃÜ»õ±Ò½»Ò×ËùCoinrailÔâºÚ¿ÍÈëÇÖ£¬ËðʧԼ3000ÍòÖÁ4000ÍòÃÀÔª

ÉÏÖÜÈÕº«¹ú¼ÓÃÜ»õ±Ò½»Ò×ËùCoinrailÔâºÚ¿Í¹¥»÷£¬ÈëÇÖÕßÇÔÈ¡ÁËPundi X£¨NPXS£©¡¢NPER£¨NPER£©ºÍAston£¨ATX£©µÄ²¿ÃÅICO´ú±Ò£¬½»Ò×ËùûÓÐÅû¶Ïà¹Ø±»µÁ×ʽðµÄ¾ßÌåÊý×Ö£¬µ«ÓÐÓû§¸ú×ÙÁËÈëÇÖÕßµÄÕË»§µØÖ·£¬ÈÏΪÏà¹Ø±»µÁ×ʽð¼ÛÖµÔÚ3000Íòµ½4000ÍòÃÀÔªÖ®¼ä£¬ÆäÖÐÔ¼Ò»°ëΪNPXS´ú±Ò¡£Coinrail³ÆÕýÓëÊÜÓ°ÏìµÄICO¹«Ë¾ºÏ×÷ÒÔ¶³½á±»µÁµÄ´ú±Ò¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/south-korean-cryptocurrency-exchange-coinrail-gets-hacked/
3¡¢Weight Watchers¹«Ë¾µÄKubernetes·þÎñÆ÷δÉèÖÃÃÜÂ룬²¿ÃÅ»ù´¡ÉèÊ©µÄƾ¾Ýй¶

µÂ¹úÄþ¾²³§ÉÌKromtechµÄÑо¿ÈËÔ±·¢ÏÖWeight Watchers¹«Ë¾µÄKubernetes·þÎñÆ÷δÉèÖÃÃÜÂ룬ÕâʹµÃÈκÎÈ˶¼¿ÉÒÔͨ¹ý¶Ë¿Ú10250·ÃÎʸ÷þÎñÆ÷¡£Ñо¿ÈËÔ±Ôڸ÷þÎñÆ÷ÉÏ·¢ÏÖÁËWeight Watchers¹«Ë¾µÄIT»ù´¡ÉèÊ©µÄÅäÖÃÐÅÏ¢£¬°üÂÞ¹ÜÀíԱƾ¾Ý¡¢102¸öÓòµÄ·ÃÎÊÃÜÔ¿¡¢AWS·ÃÎÊÃÜÔ¿µÈ¡£Weight Watchers³ÆÕâ²»ÊÇÒ»¸öÉú²úÍøÂç¡£
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/weight-watchers-it-infrastructure-exposed-via-no-password-kubernetes-server/
4¡¢AÕ¾ÔâºÚ¿Í¹¥»÷£¬½üǧÍòÓû§µÄÊý¾Ýй¶

½ñÈÕÁ賿AcFunÐû²¼Í¨¸æ³ÆÆäÔâºÚ¿Í¹¥»÷£¬½üǧÍòÓû§µÄÊý¾Ýй¶£¬°üÂÞÓû§ID¡¢êdzơ¢¼ÓÃÜ´æ´¢µÄÃÜÂëµÈ¡£ÔÚ2017Äê7ÔÂ7ÈÕ֮ǰµÇ¼¹ýAcFunµÄÓû§ÊÜÓ°Ï죬µ«Ò²½¨ÒéÃÜÂë¹ýÓÚ¼òµ¥µÄÆäËüÓû§ÐÞ¸ÄÃÜÂë¡£AcFun³ÆÒѾÁªºÏÄÚ²¿ºÍÍⲿµÄ¼¼Êõר¼Ò¶ÔÎÊÌâ½øÐÐÅŲ飬²¢Éý¼¶ÏµÍ³µÄÄþ¾²Æ·¼¶¡£
ÔÎÄÁ´½Ó£ºhttp://www.sohu.com/a/235455264_250147
5¡¢ÁãÊÛ¹«Ë¾Dixons CarphoneÔâºÚ¿ÍÈëÇÖ£¬Ô¼590ÍòÓû§µÄÐÅÓÿ¨ÐÅϢй¶

ÁãÊÛ¹«Ë¾Dixons CarphoneÅû¶һ¸öÉæ¼°Ô¼590ÍòÕÅÐÅÓÿ¨ºÍ120ÍòÌõ¸öÈËÊý¾Ý¼Ç¼µÄÄþ¾²Ê¼þ¡£¸Ã¹«Ë¾³ÆºÚ¿Í·ÃÎÊÁË´æ´¢ÔÚÆäCurrys PC WorldºÍDixons TravelÉ̵êµÄϵͳÖеÄÔ¼590ÍòÕÅÐÅÓÿ¨Êý¾Ý£¬ÆäÖÐ580ÍòÕÅÐÅÓÿ¨¾ßÓÐоƬºÍPINÂë±£»¤£¬ÕâÒâζןڿͻñÈ¡µÄÊý¾Ý¼ÈûÓаüÂÞPINÂë¡¢CVV£¬Ò²Ã»ÓаüÂÞÈκοÉÒÔ½øÐгֿ¨ÈËʶ±ðºÍ¹ºÖÃÐÐΪµÄÑéÖ¤Êý¾Ý¡£¸Ã¹«Ë¾ÕýÔÚÁªÏµÊÜÓ°ÏìµÄÓû§£¬²¢ÏòËûÃǸøÓ轨Òé¡£
ÔÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/73479/data-breach/dixons-carphone-hacked.html