ÐÅÏ¢Äþ¾²Öܱ¨-2021ÄêµÚ17ÖÜ
Ðû²¼Ê±¼ä 2021-04-27> ±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö
2021Äê04ÔÂ19ÈÕÖÁ04ÔÂ25ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´60¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇGoogle Chrome V8¶ÑÒç³ö´úÂëÖ´ÐЩ¶´£»FIBARO Home Center 2 8000¶Ë¿ÚδÊÚȨ·ÃÎÊ©¶´£»Oracle Cloud Infrastructure Storage Gateway CVE-2021-2318´úÂëÖ´ÐЩ¶´£»Cisco SD-WAN vManage CVE-2021-1484²ÎÊý×¢È멶´£»Dell Technologies Dell PowerScale OneFSδÊÚȨ·ÃÎÊ©¶´¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊÇTwitterÔÚÈ«Çò·¶Î§ÄÚ·þÎñÖжϣ¬Ê¼þÈÔÔÚÊÓ²ìÖУ»AdvIntel·¢ÏÖRyukÀûÓÃKeeThiefµÈй¤¾ßµÄ¹¥»÷»î¶¯£»ÃÀ¹úÖƲÃ28¸öÓë¶íÂÞ˹¹¥»÷»î¶¯ÓйصļÓÃÜ»õ±ÒµØÖ·£»OracleÐû²¼Äþ¾²¸üУ¬ÐÞ¸´¶à¸ö²úÎïÖеÄ390¸ö©¶´£»McAfeeÐû²¼2020Ï°ëÄêÍþв̬ÊƵķÖÎö³ÂËß¡£
ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖС£
> ÖØÒªÄþ¾²Â©¶´Áбí
1.Google Chrome V8¶ÑÒç³ö´úÂëÖ´ÐЩ¶´
Google Chrome V8ÒýÇæ´æÔÚ¶ÑÒç³ö©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄWEBÇëÇó£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½±ÀÀ£»ò¿ÉÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£
https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_20.html
2.FIBARO Home Center 2 8000¶Ë¿ÚδÊÚȨ·ÃÎÊ©¶´
FIBARO Home Center 2 8000¶Ë¿Ú´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉδÊÚȨִÐжñÒâ²Ù×÷£¬Èç¹Ø»ú¡¢ÖØÆô»òÖØÆôµ½»Ö¸´Ä£Ê½¡£
http://seclists.org/fulldisclosure/2021/Apr/27
3.Oracle Cloud Infrastructure Storage Gateway CVE-2021-2318´úÂëÖ´ÐЩ¶´
Oracle Cloud Infrastructure Storage Gateway´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉʹӦÓ÷¨Ê½±ÀÀ£»ò¿ÉÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£
https://www.oracle.com/security-alerts/cpuapr2021.html
4.Cisco SD-WAN vManage CVE-2021-1484²ÎÊý×¢È멶´
Cisco SD-WAN vManageÉ豸ģ°åÅäÖôæÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿É×¢ÈëÈÎÒâÃüÁ»ò¿É½øÐоܾø·þÎñ¹¥»÷¡£
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-vman-cmdinj-nRHKgfHX
5.Dell Technologies Dell PowerScale OneFSδÊÚȨ·ÃÎÊ©¶´
Dell Technologies Dell PowerScale OneFS¶ÔÃÜÔ¿¹ýÆÚ´¦ÖôæÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó£¬ÓµÓÐISI_PRIV_LOGIN_SSHµÄ¹ýÆÚÓû§¿É¼ÌÐøµÇ¼ϵͳ¡£
https://www.dell.com/support/kbdoc/en-sg/000185202/dsa-2021-048-dell-emc-powerscale-onefs-security-update-for-multiple-vulnerabilities
> ÖØÒªÄþ¾²Ê¼þ×ÛÊö
1¡¢TwitterÔÚÈ«Çò·¶Î§ÄÚ·þÎñÖжϣ¬Ê¼þÈÔÔÚÊÓ²ìÖÐ
TwitterÔÚÉÏÖÜÎåÍíÉÏ·¢ÉúÁ˵ÄÖжϣ¬²¢Ò»Ö±Á¬Ðøµ½ÖÜÁùÉÏÎç¡£Óû§·´Ó³µÄÎÊÌâ°üÂÞÎÞ·¨Õý³£ËÑË÷¡¢ÄÚÈÝÎÞ·¨¼ÓÔØ¡¢Í¼ÏñÎÞ·¨ÏÔʾÉõÖÁÎÞ·¨µÇ¼ÍøÕ¾¡£¾Ýͳ¼Æ´Ë´ÎÖжÏÓ°ÏìÁËÈ«Çò·¶Î§ÄÚµÄÓû§£¬µ«ÂÞÂíÄáÑǵÈһЩ¹ú¼ÒËƺõ²¢Î´Êܵ½Ó°Ïì¡£TwitterÌåÏÖ´Ë´ÎÖжÏÊÇÆä·þÎñÆ÷ÉϵÄÎÊÌ⣬²¢ÒѾÔÚŬÁ¦½â¾öʹһÇо¡¿ì»Ö¸´Õý³££¬µ«ÊDz¢Î´ÌṩÓйش˴ιÊÕϵľßÌåÐÅÏ¢¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/technology/twitter-is-suffering-from-another-worldwide-outage-today/
2¡¢AdvIntel·¢ÏÖRyukÀûÓÃKeeThiefµÈй¤¾ßµÄ¹¥»÷»î¶¯
Äþ¾²¹«Ë¾Advanced Intelligence·¢ÏÖRyukÀûÓÃKeeThiefµÈй¤¾ßµÄ¹¥»÷»î¶¯¡£Ñо¿ÈËÔ±ÊӲ쵽£¬½ñÄêRyukÀÕË÷Èí¼þ¸ü¶àµØÒÀÀµÓÚ¶ÔRDP̻¶µÄÖ÷»ú½øÐдó¹æÄ£±©Á¦ÆƽâºÍÃÜÂëÅçÈ÷¹¥»÷À´ÈëÇÖÄ¿±êÍøÂç¡£´ËÍ⣬ÔÚÕâЩ¹¥»÷Öл¹·¢ÏÖÁËм¼Êõ£¬°üÂÞʹÓôÓKeePassÃÜÂë¹ÜÀíÆ÷ÇÔȡƾ֤µÄ¿ªÔ´¹¤¾ßKeeThief£¬ÒÔ¼°°²×°±ãЯʽ°æ±¾µÄNotepad ++£¬ÔÚPowerShellÖ´ÐÐÊÜÏÞµÄϵͳÉÏÔËÐÐPowerShell½Å±¾¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/ryuk-ransomware-operation-updates-hacking-techniques/
3¡¢ÃÀ¹úÖƲÃ28¸öÓë¶íÂÞ˹¹¥»÷»î¶¯ÓйصļÓÃÜ»õ±ÒµØÖ·
ÃÀ¹úÕþ¸®ÔÚ±¾ÖÜÖƲÃÁË28¸ö¼ÓÃÜ»õ±ÒµØÖ·£¬¾Ý³ÆÕâЩµØÖ·ÓëÉæ¼°¶íÂÞ˹ÍøÂç¹¥»÷»ò×ÌÈÅÑ¡¾Ù»î¶¯µÄ×éÖ¯ºÍ¸öÈËÓйء£ÃÀ¹úÕþ¸®»¹ÌåÏÖ£¬ÕâЩ»î¶¯ÊÇÓɶíÂÞ˹Áª°îÄþ¾²¾Ö£¨FSB£©ºÍ¶íÂÞ˹Ö÷ÒªÇ鱨¾Ö£¨GRU£©¿ªÕ¹µÄ£¬¶øÇÒÒѾµÃµ½ÁËÁù¼ÒÓë¶íÂÞ˹ÓкÏ×÷µÄ¹«Ë¾µÄ×ÊÖú¡£´ËÍ⣬ÃûΪSESµÄ°Í»ù˹̹¹«Ë¾Ïò»¥ÁªÍøÑо¿»ú¹¹(IRA)ÌṩÐé¼ÙÉí·ÝÀ´ÌÓ±ÜÃÀ¹úµÄÖƲã¬Æä¼ÓÃÜ»õ±ÒµØÖ·ÒÑͨ¹ý26900±Ê½»Ò×ÊÕµ½Á˼ÛÖµÁè¼Ý250ÍòÃÀÔªµÄÊý×Ö»õ±Ò¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/us-sanctions-cryptocurrency-addresses-linked-to-russian-cyberactivities/
4¡¢OracleÐû²¼Äþ¾²¸üУ¬ÐÞ¸´¶à¸ö²úÎïÖеÄ390¸ö©¶´
OracleÒÑÓÚ2021Äê4ÔÂÐû²¼ÁËÖØÒª²¹¶¡¸üУ¬ÐÞ¸´Á˶à¸ö²úÎïÖеÄ390¸ö©¶´¡£´Ë´ÎÐÞ¸´µÄ½ÏΪÑÏÖصÄ©¶´ÎªOracleͨÐÅÓ¦Ó÷¨Ê½ÖÐCVSSÆÀ·ÖΪ9.8µÄCVE-2020-11612¡¢CVE-2019-0228¡¢CVE-2020-11612ºÍCVE-2020-28052£¬Instantis EnterpriseTrackÖеÄCVE-2019-0219£¬ÆóÒµ¹ÜÀíÆ÷»ù´¡Æ½Ì¨ÖеÄCVE-2019-17195ÒÔ¼°OracleÉÌÒµÖÇÄÜÆóÒµ°æÖеÄCVE-2020-9480µÈ©¶´¡£OracleÇ¿ÁÒ½¨Òé¿Í»§¾¡¿ìÓ¦ÓÃÄþ¾²²¹¶¡¡£
ÔÎÄÁ´½Ó£º
https://www.oracle.com/security-alerts/cpuapr2021.html
5¡¢McAfeeÐû²¼2020Ï°ëÄêÍþв̬ÊƵķÖÎö³ÂËß
McAfeeÐû²¼ÁË2020Ï°ëÄêÍþв̬ÊƵķÖÎö³ÂËß¡£³ÂË߳ƣ¬2020ÄêQ4ƽ¾ùÿ·ÖÖӿɼì²âµ½648¸öÍþв£¬±ÈQ3Ôö¼ÓÁË10£¥£¬±ÈQ2Ôö³¤ÁË40£¥£¬Ê¼ÖÕ³ÊÁ¬ÐøÉÏÉýÇ÷ÊÆ¡£³ÂËß»¹Ö¸³ö2020ÄêÏ°ëÄêÔÚÒ°Íâ·¢ÏֵĹ¥»÷ÊýÁ¿¼¤ÔöµÄÖ÷ÒªÔÒòÊÇÒÔCOVIDΪÖ÷ÌâµÄ¹¥»÷ºÍPowerShellľÂíµÄ¼¤Ôö£¬ÒÔ¼°SolarWinds©¶´ºÍSunburst¶ñÒâÈí¼þµÄÁ¬ÐøÂûÑÓ¡£Ïà±ÈÓÚQ3 £¬Q4µÄPowerShellÊýÁ¿Ôö¼ÓÁË208%£¬Õë¶ÔofficeµÄ¶ñÒâÈí¼þÊýÁ¿Ôö¼ÓÁË199%¡£
ÔÎÄÁ´½Ó£º
https://www.mcafee.com/enterprise/en-us/lp/threats-reports/apr-2021.html