Android 0day(CVE-2019-2215) PoC£»£»£»£»£»£»£»¹¥»÷ÕßÔÚWAVÒôƵÎļþÖÐÒþ²ØºóÃźÍÍÚ¿óľÂí
Ðû²¼Ê±¼ä 2019-10-18
±¾Ô³õ¹È¸èÇå¾²Ñо¿Ô±Maddie StoneÅû¶ÁËÒ»¸öAndroidÁãÈÕÎó²î£¨CVE-2019-2215£©£¬£¬£¬£¬£¬Æäʱ¹È¸èÌåÏÖ¸ÃÁãÈÕÎó²îÔÚÒ°Íâ±»Æð¾¢Ê¹Óᣡ£¡£¡£¡£¿ËÈÕ·ðÂÞÀï´ï´óѧGrant HernandezÔÚ²©¿ÍÖÐÐû²¼ÁËÒ»¸öеÄPoC¹¤¾ßQu1ckR00t£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉʹÓøù¤¾ß»ñµÃrootȨÏÞ²¢ÍêÈ«¿ØÖÆ×°±¸¡£¡£¡£¡£¡£¸Ã¹¤¾ßûÓÐ×÷Ϊ´ò°üµÄAPKÎļþÐû²¼£¬£¬£¬£¬£¬¶øÊÇÒÔÔ´´úÂëµÄÐÎʽÔÚGitHubÉÏÐû²¼¡£¡£¡£¡£¡£HernandezÌåÏÖËûÖ»ÔÚPixel 2ÊÖ»úÉϲâÊÔ¹ýQu1ckR00t£¬£¬£¬£¬£¬²¢ÖÒÑÔûÓÐÂÄÀúµÄÓû§²»Òª²âÊԸôúÂ룬£¬£¬£¬£¬²»È»»áÓÐϵͳ±äשºÍÊý¾ÝɥʧµÄΣº¦¡£¡£¡£¡£¡£GoogleÒÑÔÚ2019Äê10ÔµÄAndroidÇ徲ͨ¸æ£¨Çå¾²²¹¶¡³ÌÐò¼¶±ð2019-10-06£©ÖÐÐÞ²¹ÁËCVE-2019-2215 ¡£¡£¡£¡£¡£ÎªÁË×èÖ¹·ºÆðÎÊÌ⣬£¬£¬£¬£¬½¨ÒéÓû§×°ÖÃÐëÒªµÄ²¹¶¡³ÌÐò¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/security-researcher-publishes-proof-of-concept-code-for-recent-android-zero-day/2¡¢Êý°ÙÍòÑÇÂíÑ·EchoºÍKindle×°±¸Ò×ÊÜWiFi KRACK¹¥»÷
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/millions-of-amazon-echo-and-kindle-devices-affected-by-wifi-bug/3¡¢¹¥»÷ÕßÔÚWAVÒôƵÎļþÖÐÒþ²ØºóÃźÍÍÚ¿óľÂí

BlackBerry CylanceÑо¿Ö°Ô±·¢Ã÷¹¥»÷ÕßÔÚжñÒâ»î¶¯ÖÐʹÓÃWAVÒôƵÎļþÔÚÄ¿µÄϵͳÉÏÒþ²ØºóÃźͶñÒâ¿ó¹¤¡£¡£¡£¡£¡£ËäÈ»·¸·¨×éÖ¯¾³£Ê¹ÓÃÒþдÊõÔÚJPEG»òPNGͼÏñÎļþÖÐ×¢Èëpayload£¬£¬£¬£¬£¬µ«ÔÚÀÄÓÃWAVÒôƵÎļþÉÏÉÐÊýµÚ¶þ´Î¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬Ã¿¸öWAVÎļþ¶¼ÓëÒ»¸ö¼ÓÔØ³ÌÐò×é¼þÁ¬ÏµÔÚÒ»Æð£¬£¬£¬£¬£¬ÓÃÓÚ½âÂëºÍÖ´ÐÐÒþ²ØÔÚÒôƵÊý¾ÝÖеĶñÒâÄÚÈÝ¡£¡£¡£¡£¡£ÔÚ²¥·Åʱ£¬£¬£¬£¬£¬ÆäÖÐһЩWAVÎļþËù±¬·¢µÄÒôÀÖûÓÐÏÔ×ŵÄÖÊÁ¿ÎÊÌâ»òë´Ì£¬£¬£¬£¬£¬¶øÆäËüÎļþÒ²½ö±¬·¢¾²Ì¬°×ÔëÉù¡£¡£¡£¡£¡£¹¥»÷ÕßÖ÷Òª·Ö·¢MetasploitºóÃźÍXMRig¿ó¹¤¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/attackers-hide-backdoors-and-cryptominers-in-wav-audio-files/4¡¢Ñо¿»ú¹¹·¢Ã÷550¶à¸öÕë¶ÔÃÀ¹úÑ¡¾ÙµÄÐéαÓòÃû
Digital ShadowsÔÚÒ»ÏîÐÂÑо¿Öз¢Ã÷Áè¼Ý550¸öÕë¶ÔÃÀ¹úÑ¡ÃñµÄÐéαѡ¾ÙÍøÕ¾¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾Î±×°³É19¸öÃñÖ÷µ³ºÍ4¸ö¹²ºÍµ³×ÜͳºòÑ¡È˵ÄÑ¡¾ÙÏà¹ØÍøÕ¾£¬£¬£¬£¬£¬ÆäÖдó´ó¶¼ÍøÕ¾£¨68%£©Ö»Êǽ«Óû§Öض¨Ïòµ½ÁíÒ»¸öÓòÃûÉÏ£¨Í¨³£ÊǾºÕùµÐÊÖµÄÓòÃû£©¡£¡£¡£¡£¡£µ«Ò²ÓÐ8%µÄÍøÕ¾½«Óû§Öض¨ÏòÖÁ¿ÉÄÜÇÖռѡÃñÒþ˽/±£´æ¶ñÒâÈí¼þµÄChrome²å¼þÉÏ¡£¡£¡£¡£¡£ÓÐ66¸öÓòÃûÍйÜÔÚͳһ¸öIPµØµãÉÏ£¬£¬£¬£¬£¬²¢ÇÒÊÇͨ¹ýÒþ˽±£»£»£»£»£»£»£»¤Ð§ÀÍWhoisGuard×¢²áµÄ£¬£¬£¬£¬£¬ËüÃÇ¿ÉÄÜÊÇÓÉͳһ¸öÍŶÓÔÚÔËÓª¡£¡£¡£¡£¡£Digital ShadowsÎÞ·¨½«ÕâЩÐéαÓòÃû¹éÒòÓÚÌØ¶¨µÄСÎÒ˽¼Ò»ò×éÖ¯¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.infosecurity-magazine.com/news/over-550-fake-us-election-web/
5¡¢ÐÂÍÚ¿óÈ䳿GraboidÖ÷Ҫͨ¹ýDockerÈÝÆ÷Èö²¥
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/unsecured-docker-hosts-attacked-by-new-graboid-cryptojacking-worm/
6¡¢Å·ÖÞij¹ú¼Ê»ú³¡50%ÒÔÉϵÄϵͳѬȾÍÚ¿óľÂí
CyberbitÑо¿Ö°Ô±·¢Ã÷Å·ÖÞÒ»¸ö¹ú¼Ê»ú³¡µÄ50%ÒÔÉϵÄÊÂÇéվѬȾÁËÃÅÂÞ±ÒÍÚ¿óľÂí¡£¡£¡£¡£¡£CyberbitÌåÏÖ£¬£¬£¬£¬£¬¸ÃÍÚ¿óľÂíÊÇÒ»Äê¶àÒÔǰÓÉZscaler·¢Ã÷µÄXMRigµÄÒ»¸ö±äÖÖ£¬£¬£¬£¬£¬¹¥»÷Õß¶ÔÆä¾ÙÐÐÁ˸üÐÂÒÔÌӱܼì²â¡£¡£¡£¡£¡£¸Ã±äÖÖÔÚVirusTotalÉÏÖ»»ñµÃÁË16/73µÄ¼ì³öÂÊ¡£¡£¡£¡£¡£¸ÃľÂí¿ÉÄÜÒѾ±£´æÁËÊýÔµÄʱ¼ä£¬£¬£¬£¬£¬ÏÖÔÚÉв»ÇåÎúÏêϸµÄѬȾǰÑÔ£¬£¬£¬£¬£¬µ«ºÃÐÂÎÅÊǸûú³¡µÄÔËӪûÓÐÊܵ½Ó°Ïì¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/european-airport-systems-infected-with-monero-mining-malware/