ÿÖÜÉý¼¶Í¨¸æ-2022-03-29
Ðû²¼Ê±¼ä 2022-03-29ÐÂÔöʼþ
ʼþÃû³Æ£º | TCP_Äþ¾²Â©¶´_Spring_Cloud_Function_SpEL_±í´ïʽעÈ멶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | SpringCloudFunctionÊÇÀ´×ÔPivotalµÄSpringÍŶӵÄÐÂÏîÄ¿£¬ËüÖÂÁ¦ÓÚ´Ù½øº¯Êý×÷ΪÖ÷ÒªµÄ¿ª·¢µ¥Ôª¡£¸ÃÏîÄ¿ÌṩÁËÒ»¸öͨÓõÄÄ£ÐÍ£¬ÓÃÓÚÔÚÖÖÖÖƽ̨Éϲ¿Êð»ùÓÚº¯ÊýµÄÈí¼þ£¬°üÂÞÏñAmazonAWSLambdaÕâÑùµÄFaaS£¨º¯Êý¼´·þÎñ£¬functionasaservice£©Æ½Ì¨¡£ÓÉÓÚSpringCloudFunctionδ¶ÔHTTPÇëÇóÍ·²¿Êý¾Ý½øÐÐÓÐЧµÄÑéÖ¤£¬¹¥»÷Õß¿ÉÀûÓø鶴ÔÚδÊÚȨµÄÇé¿öÏ£¬½á¹¹¶ñÒâÊý¾Ý½øÐÐÔ¶³Ì´úÂëÖ´ÐЩ¶´¹¥»÷£¬×îÖÕ»ñÈ¡·þÎñÆ÷×î¸ßȨÏÞ¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_node-postgres_´úÂëÖ´ÐЩ¶´[CVE-2017-16082][CNNVD-201806-553] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | node-postgresÔÚ´¦ÖÃÀàÐÍΪRowDescriptionµÄpostgres·µ»Ø°üʱ£¬½«×Ö¶ÎÃûÆ´½Óµ½´úÂëÖС£ÓÉÓÚûÓнøÐкÏÀíתÒ壬µ¼ÖÂÒ»¸öÌØÊâ½á¹¹µÄ×Ö¶ÎÃû¿ÉÌÓÒݳö´úÂëµ¥ÒýºÅÏÞÖÆ£¬Ôì³É´úÂëÖ´ÐЩ¶´ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | TCP_ºóÃÅ_ELF.httpdz_Á¬½Ó·þÎñÆ÷_ÉÏ´«ÇÔÃÜÐÅÏ¢ |
Äþ¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ʼþÃèÊö£º | ¼ì²âµ½ELF.httpdzºóÃÅÁ¬½Ó·þÎñÆ÷²¢ÉÏ´«ÇÔÃÜÐÅÏ¢µÄÐÐΪ¡£ELF.httpdzºóÃÅÊÇÔÚCryptoSinkÍÚ¿ó»î¶¯Öб»ÏÂÔصĺóÃÅÎļþ£¬C++ÓïÑÔ±àд£¬¾ßÓÐÏÂÔضñÒâÁ´½Ó²¢Ö´ÐУ¬ÊÕ¼¯ÓйØÓ²¼þ£¨CPU¡¢ÄÚ´æµÈ£©µÄÐÅÏ¢ÉÏ´«µ½C2·þÎñÆ÷µÈ¹¦Ð§¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | HTTP_Äþ¾²Â©¶´_OracleAccessManager_δÊÚȨ´úÂëÖ´ÐЩ¶´ |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÉ豸ÕýÔÚÀûÓÃOracleAccessManager_δÊÚȨ´úÂëÖ´ÐЩ¶´¹¥»÷Ä¿µÄIPÉ豸¡£¸Ã©¶´½«µ¼ÖÂÔ¶³Ì´úÂëÖ´ÐУ¬ÀÖ³ÉÀûÓø鶴µÄ¹¥»÷Õ߿ɵ½´ï½Ó¹ÜÄ¿±ê·þÎñÆ÷µÄÄ¿µÄ¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | TCP_ºóÃÅ_Gh0stCringe_Á¬½Ó |
Äþ¾²ÀàÐÍ£º | ľÂíºóÃÅ |
ʼþÃèÊö£º | ¼ì²âµ½Ô¶¿ØºóÃÅGh0stCringeÊÔͼÁ¬½ÓÔ¶³Ì·þÎñÆ÷£¬Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËGh0stCringe¡£Gh0stCringeÊÇÀûÓÃÒ»¸öƾ¾ÝGh0stÔ¶¿ØµÄÔ´ÂëÐ޸ĶøÀ´µÄºóÃÅ¡£ÔËÐкó¿ÉÒÔÍêÈ«¿ØÖƱ»Ñ¬È¾»úÆ÷¡£¼ì²â±»Ñ¬È¾»úÆ÷ÉÏÊÇ·ñÔËÐÐ×ÅÖ÷Á÷µÄɱ¶¾Èí¼þ£¬ÊÔͼ»ñÈ¡Ãô¸ÐÐÅÏ¢£¬Èç»ñÈ¡µ±Ç°½¹µã´°¿ÚµÄ±êÌâ¡¢¼Ç¼°´¼üÐÅÏ¢µÈ¡£ºóÃÅ×÷Õ߶ÔÍøÂçͨПñʽ×öÁËһЩ´¦Öã¬ÒÔ¶ã±Ü¼ì²â¡£Gh0stCringe½«Äþ¾²ÐԲÕË»§Æ¾Ö¤µ¥±¡ÇÒûÓмà¹ÜµÄÊý¾Ý¿â·þÎñÆ÷°üÂÞMicrosoftSQL,MySQL×÷Ϊ¹¥»÷Ä¿±êµÄ¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | HTTP_×¢Èë¹¥»÷_JACKSON-databind_2670_Ô¶³Ì´úÂëÖ´ÐÐ[CVE-2020-11113][CNNVD-202003-1735] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´ipÕýÔÚÀûÓÃFasterXML_JacksonµÄÔ¶³Ì´úÂëÖ´ÐЩ¶´ÏòÄ¿µÄip½øÐз´ÐòÁл¯¹¥»÷£»FasterXMLJacksonÊÇÃÀ¹úFasterXML¹«Ë¾µÄÒ»¿îÊÊÓÃÓÚJavaµÄÊý¾Ý´¦Öù¤¾ß¡£jackson-databindÊÇÆäÖеÄÒ»¸ö¾ßÓÐÊý¾Ý°ó¶¨¹¦Ð§µÄ×é¼þ¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | HTTP_´úÂëÖ´ÐÐ_Oracle_Business_Intelligence_AMF·´ÐòÁл¯Â©¶´[CVE-2020-2950][CNNVD-202004-810] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´ipÕýÔڽṹ¶ñÒâ·´ÐòÁл¯´úÂë¶ÔOracle_Business_Intelligence½øÐй¥»÷£»Oracle_Business_IntelligenceÊÇÒ»¸ö¼¼ÊõºÍÓ¦Ó÷¨Ê½×éºÏ£¬Ìṩҵ½çµÚÒ»¸ö¼¯³ÉµÄ¶Ëµ½¶ËÆóÒµ¼¨Ð§¹ÜÀíϵͳ¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | HTTP_´úÂëÖ´ÐÐ_WebLogic_·´ÐòÁл¯Â©¶´[CVE-2018-3252][CNNVD-201810-843] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÖ÷»úÕýÔÚÀûÓÃWeblogic½á¹¹¶ñÒâ·´ÐòÁдúÂëÖ´ÐÐÈÎÒâÃüÁOracleWeblogicServerÊÇÓ¦Ó÷¨Ê½·þÎñÆ÷¡£WeblogicÓ¦Ó÷þÎñÆ÷µÄApacheConnectorÄ£¿éÖеÄmod_wlδ¶ÔÓû§Ìá½»µÄÊäÈëÊý¾Ý½øÐÐÕýÈ·¼ì²é£¬Ô¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴½øÐлº³åÇøÒç³ö¹¥»÷£¬¿Éµ¼Ö¾ܾø·þÎñ»òÈÎÒâ´úÂëÖ´Ðй¥»÷¡£¹¥»÷Õß¿ÉÒÔÌá½»°üÂÞ³¬³¤Êý¾ÝµÄPOSTÇëÇó´¥·¢´Ë©¶´£¬¾«ÐĹ¹½¨Ìá½»Êý¾Ý¿Éµ¼ÖÂÒÔÓ¦Ó÷¨Ê½È¨ÏÞÖ´ÐÐÈÎÒâÖ¸Á»ñµÃ·þÎñÆ÷µÄ¿ØÖÆȨ¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | HTTP_ľÂí_Win32.MOOZ.THCCABOÍÚ¿óľÂí_Á¬½ÓC2·þÎñÆ÷_ÉÏ´«ÇÔÃÜÐÅÏ¢ |
Äþ¾²ÀàÐÍ£º | Èä³æ²¡¶¾ |
ʼþÃèÊö£º | MOOZ.THCCABOÍÚ¿óľÂíÊÇʹÓÃAutoIt±àÒëµÄÒ»¿îÍÚ¿ó·¨Ê½£¬Ôø¾ºÍZoom°²×°·¨Ê½À¦°óÔÚÒ»ÆðÁ÷´«¡£MOOZ.THCCABOÍÚ¿óľÂíʹÓÃWindowsManagementInstrumentation£¨WMI²éѯ£©ÊÕ¼¯Í¼Ðδ¦Öõ¥Ôª(GPU)ÐÅÏ¢£¬Ëü»¹ÊÕ¼¯Êܺ¦Ö÷»úµÄCPU¡¢ÏµÍ³¡¢²Ù×÷ϵͳ°æ±¾¡¢ÊÓƵ¿ØÖÆÆ÷ºÍ´¦ÖÃÆ÷µÄÏêϸÐÅÏ¢£¬Ëü»¹»á¼ì²éÊÇ·ñÆôÓÃÁËMicrosoftSmartScreenºÍWindowsDefender£¬ÒÔ¼°ÏµÍ³ÖÐÕýÔÚÔËÐеķÀ²¡¶¾½â¾ö·½°¸£¬ÊÕ¼¯µ½µÄÐÅÏ¢½«Ê¹ÓÃHTTPGETÇëÇó·¢Ë͵½hxxps://2no.co/1IRnc¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | TCP_Äþ¾²É¨Ãè_MSF_̽²âpostgres·þÎñ°æ±¾ |
Äþ¾²ÀàÐÍ£º | Äþ¾²É¨Ãè |
ʼþÃèÊö£º | ¼ì²âµ½Ô´IPÉ豸ÕýÔÚ̽²âÄ¿µÄIPÉ豸postgres·þÎñµÄ°æ±¾ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | TCP_ľÂí_NTMiner(¿ªÔ´¿ó¹¤)_Á¬½Ó·þÎñÆ÷_ÉÏ´«ÇÔÃÜÐÅÏ¢ |
Äþ¾²ÀàÐÍ£º | Èä³æ²¡¶¾ |
ʼþÃèÊö£º | ¿ªÔ´¿ó¹¤(NTMiner)ÊÇÒ»¿îÓÉÖйúÈË¿ª·¢Éè¼ÆµÄÏÔ¿¨ÍÚ¿óÈí¼þ£¬Ö÷ÒªÓÃÓÚÍÚETHµÈÏÔ¿¨±Ò¡£¿ªÔ´¿ó¹¤ÄÚÖõÄËùÓÐÄں˾ùΪ԰棬²»»áÌرðÔö¼Ó¿ó¹¤Ö§³ö£¬ÓÀÔ¶¿ªÔ´£¬ÓÀÔ¶²»»áÈ¥Æƽâ¹úÈË¿ª·¢µÄÄںˡ£ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | HTTP_´úÂëÖ´ÐÐ_PandoraFMSÔ¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2019-20224][CNNVD-202001-324] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´ipÕýÔÚÀûÓÃPandoraFMSµÄÔ¶³Ì´úÂëÖ´ÐЩ¶´½øÐй¥»÷£»PandoraFMSÊÇÒ»¿îÓÃÓÚIT»ù´¡ÉèÊ©¹ÜÀíµÄ¼à¿ØÈí¼þ¡£Ëü°üÂÞÍøÂçÉ豸¡¢WindowsºÍUnix·þÎñÆ÷¡¢ÐéÄâ»ù´¡¼Ü¹¹ºÍËùÓвîÒìÀàÐ͵ÄÓ¦Ó÷¨Ê½¡£PandoraFMS¾ßÓдóÁ¿¹¦Ð§£¬Ê¹Æä³ÉΪº¸ÇÄú×éÖ¯¿ÉÄÜ´æÔÚµÄËùÓмà¿ØÎÊÌâµÄÐÂÒ»´úÈí¼þ¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | HTTP_´úÂëÖ´ÐÐ_WebSVN_Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2021-32305] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ¼ì²âµ½Ô´ipÕýÔÚͨ¹ýWebSVNµÄÔ¶³Ì´úÂëÖ´ÐЩ¶´½øÐй¥»÷£¬WebSVNÊÇÒ»¸ö»ùÓÚWebµÄSubversionRepositoryä¯ÀÀÆ÷£¬¿ÉÒÔ¼ì²ìÎļþ»òÎļþ¼ÐµÄÈÕÖ¾£¬¼ì²ìÎļþµÄ±ä»¯ÁбíµÈ¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | TCP_ľÂí_CPUMiner_Á¬½Ó¿ó³ØÀÖ³É(BTC/LTC) |
Äþ¾²ÀàÐÍ£º | Èä³æ²¡¶¾ |
ʼþÃèÊö£º | ¼ì²âµ½µ½ÍÚ¿óľÂíCPUMinerÁ¬½Ó¿ó³ØÀֳɵÄÐÐΪ¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerľÂí¡£CPUMinerÊÇÒ»¿îÍÚ¿ó¶ñÒⷨʽ£¬ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | TCP_ľÂí_CPUMiner_»ñÈ¡ÍÚ¿óÈÎÎñ(BTC/LTC) |
Äþ¾²ÀàÐÍ£º | Èä³æ²¡¶¾ |
ʼþÃèÊö£º | ¼ì²âµ½ÍÚ¿óľÂíCPUMiner¿ó»ú»ñÈ¡ÍÚ¿óÈÎÎñµÄÐÐΪ¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerÍÚ¿óľÂí¡£CPUMinerÊÇÒ»¿îÍÚ¿ó¶ñÒⷨʽ£¬ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | TCP_ľÂí_CPUMiner_ÍÚ¿ó¿ØÖÆÃüÁîͨÐÅ_ÄѶȵ÷Õû(BTC/LTC) |
Äþ¾²ÀàÐÍ£º | Èä³æ²¡¶¾ |
ʼþÃèÊö£º | ¼ì²âµ½ÍÚ¿óľÂíÓÉ¿ó³Ø¿ØÖÆ¿ó»úµ÷ÕûÍÚ¿óÄѶȡ£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËCPUMinerÍÚ¿óľÂí¡£CPUMinerÊÇÒ»¿îÍÚ¿ó¶ñÒⷨʽ£¬ÍÚ¿ó·¨Ê½»áÕ¼ÓÃCPU×ÊÔ´£¬¿ÉÄܵ¼ÖÂÊܺ¦Ö÷»ú±äÂý¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | TCP_Äþ¾²Â©¶´_Jackson_Databind_¿ÉÒÉ·´ÐòÁл¯Àà_dbcp2[CVE-2020-36180/CVE-2020-36182/CVE-2020-36184/CVE-2020-36185][CNNVD-202101-326/CNNVD-202101-325/CNNVD-202101-344/CNNVD-202101-337] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | JacksonÊÇÒ»¸öÄܹ»½«java¹¤¾ßÐòÁл¯ÎªJSON×Ö·û´®£¬Ò²Äܹ»½«JSON×Ö·û´®·´ÐòÁл¯Îªjava¹¤¾ßµÄ¿ò¼Ü¡£¹¥»÷Õß¿ÉÄÜÀûÓÃjacksonµÄ¿ÉÒÉ·´ÐòÁл¯Ààorg.apache.tomcat.dbcp.dbcp.datasources.PerUserPoolDataSource»òorg.apache.tomcat.dbcp.dbcp.datasources.SharedPoolDataSource¹¥»÷Ä¿µÄIPÖ÷»ú¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ÐÞ¸Äʼþ
ʼþÃû³Æ£º | TCP_½©Ê¬ÍøÂç_IoT.Moobot_Á¬½Ó |
Äþ¾²ÀàÐÍ£º | ÆäËûʼþ |
ʼþÃèÊö£º | ¼ì²âµ½MoobotÊÔͼÁ¬½ÓC&C·þÎñÆ÷¡£Ô´IPÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçMoobot¡£MoobotÊÇÒ»¸öIoT½©Ê¬ÍøÂ磬Ö÷Òª¹¦Ð§ÊǶÔÖ¸¶¨Ä¿±êÌᳫDDoS¹¥»÷£¬Í¨¹ýÖÖÖÖ©¶´Á÷´«×ÔÉí¡£ |
¸üÐÂʱ¼ä£º | 20220329 |
ʼþÃû³Æ£º | TCP_Äþ¾²Â©¶´_Apache_Log4j2_Ô¶³Ì´úÂëÖ´ÐЩ¶´[CVE-2021-44228][CNNVD-202112-799] |
Äþ¾²ÀàÐÍ£º | Äþ¾²Â©¶´ |
ʼþÃèÊö£º | ApacheLog4j2ÊÇÒ»¸öÓÃÓÚJavaµÄÈÕÖ¾¼Ç¼¿â£¬ÆäÖ§³ÖÆô¶¯Ô¶³ÌÈÕÖ¾·þÎñÆ÷¡£ÔÚApacheLog4j22.15.0_rc1֮ǰµÄ2.x°æ±¾ÖдæÔÚÄþ¾²Â©¶´¡£¹¥»÷Õß¿ÉÀûÓø鶴Զ³ÌÖ´ÐÐÈÎÒâ´úÂë |
¸üÐÂʱ¼ä£º | 20220329 |