ÐÅÏ¢Äþ¾²Öܱ¨-2021ÄêµÚ12ÖÜ

Ðû²¼Ê±¼ä 2021-03-22

> ±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö


2021Äê03ÔÂ15ÈÕÖÁ03ÔÂ21ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´54¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇGoogle Chrome WebRTCÄÚ´æ´íÎóÒýÓôúÂëÖ´ÐЩ¶´£»Synology DiskStation Manager iscsi_snapshot_comm_core»º³åÇøÒç³ö©¶´£»Vmware vCenter Server Element Plug-in´úÂëÖ´ÐЩ¶´£»Cisco RV134W VDSL2 Wireless-AC VPN Routers WEB½Ó¿ÚÃüÁîÖ´ÐЩ¶´£»Apache OpenMeetings NetTest web·þÎñ¾Ü¾ø·þÎñ©¶´ ¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊÇGRIMMÅû¶iSCSIÖÐÒÑ´æÔÚ15ÄêµÄ3¸ö¸ßΣ©¶´£»Azure Active DirectoryÅäÖÃÎÊÌâµ¼ÖÂoffice 365·þÎñÖжÏ£»Êý¾Ý½»Ò×ÍøÕ¾weleakinfoµÄ1Íò¶à¸öÓû§ÐÅÏ¢±»¹ûÈ»£»HackerOneÐû²¼2021ÄêÓйغڿ͵ķÖÎö³ÂËߣ»CISAºÍFBIÁªºÏÐû²¼¹ØÓÚTrickBot¶ñÒâÈí¼þµÄÄþ¾²×Éѯ ¡£


ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖÐ ¡£


> ÖØÒªÄþ¾²Â©¶´Áбí


1.Google Chrome WebRTCÄÚ´æ´íÎóÒýÓôúÂëÖ´ÐЩ¶´


Google Chrome WebRTC´æÔÚÊͷźóʹÓ鶴£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄWEBÇëÇó£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½±ÀÀ£»ò¿ÉÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë ¡£

https://chromereleases.googleblog.com/2021/03/stable-channel-update-for-desktop_12.html


2.Synology DiskStation Manager iscsi_snapshot_comm_core»º³åÇøÒç³ö©¶´


Synology DiskStation Manager iscsi_snapshot_comm_core´æÔÚÔ½½ç¶Á©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉʹӦÓ÷¨Ê½±ÀÀ£»ò¿ÉÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë ¡£

https://www.synology.com/en-global/security/advisory/Synology_SA_20_26


3.Vmware vCenter Server Element Plug-in´úÂëÖ´ÐЩ¶´


Vmware vCenter Server Element Plug-in´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó£¬ÔÚÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë ¡£

https://security.netapp.com/advisory/ntap-20210315-0001/


4.Cisco RV134W VDSL2 Wireless-AC VPN Routers WEB½Ó¿ÚÃüÁîÖ´ÐЩ¶´


Cisco RV134W VDSL2 Wireless-AC VPN Routers WEB½Ó¿Ú´æÔÚÊäÈëÑé֤©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó£¬ÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâÃüÁî ¡£

https://www.cisco.com/c/en/us/support/docs/csa/cisco-sa-rv-132w134w-overflow-Pptt4H2p.html


5.Apache OpenMeetings NetTest web·þÎñ¾Ü¾ø·þÎñ©¶´


Apache OpenMeetings NetTest web·þÎñ´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ɶÔÓ¦Ó÷¨Ê½½øÐоܾø·þÎñ¹¥»÷ ¡£

https://lists.apache.org/thread.html/r9bb615bd70a0197368f5f3ffc887162686caeb0b5fc30592a7a871e9%40%3Cuser.openmeetings.apache.org%3E


> ÖØÒªÄþ¾²Ê¼þ×ÛÊö


1¡¢GRIMMÅû¶iSCSIÖÐÒÑ´æÔÚ15ÄêµÄ3¸ö¸ßΣ©¶´


1.jpg


GRIMMµÄÑо¿ÈËÔ±ÔÚLinuxÄÚºË×ÓϵͳiSCSIÖз¢ÏÖÁË3¸ö¸ßΣ©¶´£¬ÕâЩ©¶´×Ô2006ÄêÒѾ­´æÔÚ ¡£Õâ3¸ö©¶´·Ö±ðΪ¶Ñ»º³åÇøÒç³ö©¶´£¨CVE-2021-27365£©£¬¿Éµ¼Öµ±µØÌáȨ¡¢ÐÅϢй¶ºÍ¾Ü¾ø·þÎñ£»ÄÚºËÖ¸Õë鶩¶´£¨CVE-2021-27363£©£¬¿Éµ¼ÖÂÐÅϢй¶£»ÒÔ¼°Ô½½ç¶Áȡ©¶´£¨CVE-2021-27364£©£¬¿Éµ¼ÖÂÐÅϢй¶ºÍ¾Ü¾ø·þÎñ ¡£¹¥»÷Õß¿ÉÒÔÀûÓÃÕâЩ©¶´À´ÈƹýKASLR¡¢SMEP¡¢SMAPºÍKPTIµÈÄþ¾²¹¦Ð§ ¡£Ä¿Ç°£¬ÕâЩ©¶´ÒÑÓÚ3ÔÂ7ÈÕ±»ÐÞ¸´ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/15-year-old-linux-kernel-bugs-let-attackers-gain-root-privileges/


2¡¢Azure Active DirectoryÅäÖÃÎÊÌâµ¼ÖÂoffice 365·þÎñÖжÏ


2.jpg


ÃÀ¹ú¶«²¿Ê±¼äÏÂÎç3:34¿ªÊ¼£¬Óû§·¢ÏÖMicrosoft 365·þÎñÖжÏ£¬µ¼ÖÂÎÞ·¨·ÃÎÊMicrosoft Teams¡¢Exchange Online¡¢Forms¡¢Xbox LiveºÍYammerµÈÓ¦Ó÷¨Ê½£¬ÒÔ¼°MicrosoftÍøÕ¾ ¡£Î¢ÈíÌåÏÖ£¬´Ë´ÎÖжÏÊÇÓÉÓÚAzure Active Directory£¨AAD£©ÅäÖÃÎÊÌ⵼ֵģ¬Óû§ÎÞ·¨·ÃÎÊÒÀÀµAAD·þÎñ½øÐÐÉí·ÝÑéÖ¤µÄÓ¦Óà ¡£½ØÖÁÃÀ¹ú¶«²¿Ê±¼ä3ÔÂ15ÈÕÏÂÎç5:17£¬Î¢ÈíÔÚÔÚÈ«Çò·¶Î§ÄÚ¿ªÕ¹»º½â´ëÊ©£¬²¢Ô¤¼ÆºÜ¿ì¿ÉÒÔÈ«ÃæÐÞ¸´ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-365-outage-knocks-down-teams-exchange-online/


3¡¢Êý¾Ý½»Ò×ÍøÕ¾weleakinfoµÄ1Íò¶à¸öÓû§ÐÅÏ¢±»¹ûÈ»


3.jpg


Êý¾Ý½»Ò×ÍøÕ¾weleakinfoÁè¼Ý1Íò¸ö¹ºÖÃÕߵĸöÈËÐÅÏ¢±»¹ûÈ» ¡£¸ÃÍøÕ¾³ÆÓµÓÐÀ´×Ô10000¶à¸ö鶵ÄÊý¾Ý¿âµÄ120ÒÚÌõ¼Ç¼£¬ÒÑÓÚ2020Äê³õ±»ÃÀ¹ú¡¢Ó¢¹ú¡¢ºÉÀ¼¡¢µÂ¹úºÍ±±°®¶ûÀ¼Õþ¸®ÁªºÏµ·»Ù ¡£Cyble·¢ÏÖºÚ¿ÍÓÚ2021Äê3ÔÂ11ÈÕ×¢²áÁËеÄÓòÃûwli.design£¬ÇÔÈ¡²¢¹ûÈ»ÁËÉÏÍò¸öʹÓÃÖ§¸¶·þÎñStripe¹ºÖÃÊý¾ÝµÄ¿Í»§µÄÐÅÏ¢£¬°üÂÞÓʼþµØÖ·¡¢ÐÕÃû¡¢IPµØÖ·¡¢ä¯ÀÀÆ÷Óû§ÊðÀí¡¢ÎïÀíµØÖ·¡¢µç»°ºÅÂëºÍÖ§¸¶½ð¶î£¬ÒÔ¼°²¿ÃÅÐÅÓÿ¨Êý¾Ý ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/115544/data-breach/weleakinfo-leaked-data.html


4¡¢HackerOneÐû²¼2021ÄêÓйغڿ͵ķÖÎö³ÂËß


4.jpg


HackerOneÐû²¼ÁË2021ÄêÓйغڿ͵ķÖÎö³ÂËß ¡£³ÂËß·¢ÏÖ£¬2020ÄêÌύ©¶´µÄºÚ¿ÍÊýÁ¿Ôö¼ÓÁË63£¥ ¡£´ËÍ⣬×Ô´ÓCOVID-19ÒÔÀ´£¬ÓÐ38£¥µÄºÚ¿Í»¨·Ñ¸ü¶àʱ¼ä½øÐй¥»÷£»³ÂËߵĩ¶´Éæ¼°20¸öÀà±ð£¬¶øÕë¶Ô·ÃÎÊ¿ØÖƲ»Í׺ÍÌáȨ©¶´µÄÊýÁ¿Ôö¼ÓÁË53£¥£»ºÚ¿Í²»½ö½öÊÇΪÁËÇ®£¬85%µÄºÚ¿ÍÊÇΪÁËѧϰ£¬62%µÄºÚ¿ÍÊÇΪÁËÖ°ÒµÉú³¤£»ºÚ¿Í¸üרעÓÚÎïÁªÍø¡¢APIºÍAndroidÓ¦Ó÷¨Ê½ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackerone.com/resources/reporting/the-2021-hacker-report


5¡¢CISAºÍFBIÁªºÏÐû²¼¹ØÓÚTrickBot¶ñÒâÈí¼þµÄÄþ¾²×Éѯ


5.jpg


CISAºÍÁª°îÊÓ²ì¾Ö£¨FBI£©Ðû²¼ÁËÓйØTrickBot¶ñÒâÈí¼þµÄÁªºÏÍøÂçÄþ¾²×Éѯ£¨CSA£© ¡£¸Ã×Éѯ½éÉÜÁËTrickBotµÄ¼¼Êõϸ½Ú¡¢MITRE ATT&CK Techniques¡¢Õì²ìÊý¾ÝÒÔ¼°»º½â´ëÊ© ¡£TrickBotÊÇÒ»Öָ߼¶Ä¾Âí£¬Í¨¹ýÓã²æʽµöÓã»î¶¯£¬Ê¹ÓðüÂÞ¶ñÒ⸽¼þ»òÁ´½ÓµÄÌØÖƵç×ÓÓʼþÀ´Á÷´« ¡£¸ÃÄþ¾²×Éѯ½¨Òé×éÖ¯×èÖ¹¿ÉÒɵÄInternetЭÒéµØÖ·¡¢Ê¹ÓÃɱ¶¾Èí¼þÒÔ¼°ÎªÔ±¹¤ÌṩÉç»á¹¤³ÌºÍÍøÂçµöÓãÅàѵµÈ·½Ê½À´·À·¶´ËÀ๥»÷ ¡£


Ô­ÎÄÁ´½Ó£º

https://us-cert.cisa.gov/ncas/current-activity/2021/03/17/cisa-fbi-joint-advisory-trickbot-malware-0