ÐÅÏ¢Çå¾²Öܱ¨-2019ÄêµÚ36ÖÜ
Ðû²¼Ê±¼ä 2019-09-16> ±¾ÖÜÇå¾²Ì¬ÊÆ×ÛÊö
2019Äê9ÔÂ09ÈÕÖÁ13ÈÕ¹²ÊÕ¼Çå¾²Îó²î48¸ö£¬£¬£¬£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇDabman & Imperial Web Radio Devices telnetºóÃÅÎó²î£»£»£»£»Exim³õʼTLSÎÕÊÖí§Òâ´úÂëÖ´ÐÐÎó²î£»£»£»£»Apache OFBiz template×¢Èë´úÂëÖ´ÐÐÎó²î£»£»£»£»Adobe Flash Player PSDKÄÚ´æ¹ýʧÒýÓÃÎó²î£»£»£»£»Microsoft OfficeÄÚ´æÆÆËð´úÂëÖ´ÐÐÎó²î¡£¡£¡£¡£¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊÇDealer LeadsÒâÍâй¶1.98ÒÚÆû³µÂò¼Ò¼Í¼£»£»£»£»ÐÂNetCAT¹¥»÷¿É´ÓÓ¢ÌØ¶ûCPUÖÐÇÔÈ¡Êý¾Ý£»£»£»£»ÃÀ¹ú¹ú¼Ò±ê×¼ÓëÊÖÒÕÑо¿ÔºÐû²¼Òþ˽¿ò¼Ü³õ¸å£»£»£»£»ºÚ¿ÍʹÓÃDoSÎó²îµ¼ÖÂÃÀ¹úµçÍø·À»ðÇ½ÖØ¸´ÖØÆô£»£»£»£»Telestar±»ÆØTelnetºóÃÅÎó²îÓ°Ïì100¶àÍòIoT×°±¸¡£¡£¡£¡£¡£
> Ö÷ÒªÇå¾²Îó²îÁбí
1. Dabman & Imperial Web Radio Devices telnetºóÃÅÎó²î
https://packetstormsecurity.com/files/154416/Dabman-And-Imperial-Web-Radio-Devices-Undocumented-Telnet-Backdoor.html
2. Exim³õʼTLSÎÕÊÖí§Òâ´úÂëÖ´ÐÐÎó²î
https://www.kb.cert.org/vuls/id/672565/
3. Apache OFBiz template×¢Èë´úÂëÖ´ÐÐÎó²î
https://www.auscert.org.au/bulletins/ESB-2019.3469/
4. Adobe Flash Player PSDKÄÚ´æ¹ýʧÒýÓÃÎó²î
https://www.zerodayinitiative.com/advisories/ZDI-19-818/
5. Microsoft OfficeÄÚ´æÆÆËð´úÂëÖ´ÐÐÎó²î
https://portal.msrc.microsoft.com/zh-CN/security-guidance/advisory/CVE-2019-1264
> Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö
Dealer LeadsµÄElasticsearchÊý¾Ý¿âδÊÜÃÜÂë±£»£»£»£»¤£¬£¬£¬£¬£¬£¬µ¼ÖÂ1.98ÒÚÆû³µÂò¼Ò¼Í¼ÔÚÍøÉÏ̻¶¡£¡£¡£¡£¡£Dealer Leadsͨ¹ýSEOÓÅ»¯µÄÄ¿µÄÍøÕ¾ÍøÂçÍøÂçÓйØÇ±ÔÚÂò¼ÒµÄÐÅÏ¢£¬£¬£¬£¬£¬£¬Çå¾²Ñо¿Ô±Jeremiah FowlerÌåÏÖÕâÐ©ÍøÕ¾Îª·Ã¿ÍÌṩ¹º³µÑо¿ÐÅÏ¢ºÍ·ÖÀà¹ã¸æ£¬£¬£¬£¬£¬£¬ÍøÂçµÄÐÅÏ¢±»·¢Ë͸øÆû³µ¾ÏúÉÌ×÷ΪÏúÊÛÊý¾Ý¡£¡£¡£¡£¡£¸Ã̻¶µÄÊý¾Ý¿â×ܹ²°üÀ¨413GBÐÅÏ¢£¬£¬£¬£¬£¬£¬°üÀ¨Ç±ÔÚ¹º³µÕßµÄÐÕÃû¡¢µç×ÓÓʼþµØµã¡¢µç»°ºÅÂë¡¢ÎïÀíµØµã¡¢IPµØµãÒÔ¼°´û¿îºÍ²ÆÎñÊý¾Ý¡¢³µÁ¾ÐÅÏ¢µÈ¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/198m-car-buyer-records-exposed-online/148231/
2¡¢ÐÂNetCAT¹¥»÷¿É´ÓÓ¢ÌØ¶ûCPUÖÐÇÔÈ¡Êý¾Ý
Ñо¿Ö°Ô±·¢Ã÷Ò»ÖÖеIJàÐŵÀ¹¥»÷£¬£¬£¬£¬£¬£¬ËüÓ°ÏìÁË×Ô2012ÄêÒÔÀ´ÖÆÔìµÄËùÓÐÏÖ´úÓ¢ÌØ¶ûЧÀÍÆ÷´¦Öóͷ£Æ÷¡£¡£¡£¡£¡£¸Ã¹¥»÷±»³ÆÎªNetCAT£¨ÍøÂ绺´æ¹¥»÷£©£¬£¬£¬£¬£¬£¬ÓëÓ¢ÌØ¶ûµÄÊý¾ÝÖ±½ÓI/OÊÖÒÕ£¨DDIO£©Óйأ¬£¬£¬£¬£¬£¬DDIOÔÚ×îеÄÓ¢ÌØ¶ûЧÀÍÆ÷¼¶´¦Öóͷ£Æ÷ÖÐĬÈÏ·¿ª£¬£¬£¬£¬£¬£¬°üÀ¨Intel Xeon E5¡¢E7ºÍSP´¦Öóͷ£Æ÷ϵÁС£¡£¡£¡£¡£¸ÃÎó²î£¨CVE-2019-11184£©µÄʹÓÃÄѶȽϸߣ¬£¬£¬£¬£¬£¬¹¥»÷ÕßÐèÒª¾ÙÐÐÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬£¬²¢ÇÒÐèÒªÓëÄ¿µÄϵͳ½¨ÉèÖ±½ÓÍøÂçÅþÁ¬¡£¡£¡£¡£¡£Ó¢Ìضû½«¸ÃÎó²îµÄCVSSÆÀ·ÖÈ·¶¨Îª2.6·Ö£¬£¬£¬£¬£¬£¬²¢½¨ÒéÔÚÊÜÓ°ÏìµÄCPUÉϽûÓÃDDIOºÍRDMA¹¦Ð§£¬£¬£¬£¬£¬£¬»òÏÞÖÆ´ÓÍⲿ²»ÊÜÐÅÈεÄÍøÂçÖ±½Ó»á¼ûÒ×Êܹ¥»÷µÄϵͳ¡£¡£¡£¡£¡£ÌØÁíÍ⻺½â²½·¥°üÀ¨Ê¹ÓÃÄܹ»¶Ô¿¹×¼Ê±¹¥»÷µÄÈí¼þÄ£¿£¿£¿£¿£¿£¿é»òʹÓúã׼ʱ¼äÑùʽµÄ´úÂë¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2019/09/netcat-intel-side-channel.html
3¡¢ÃÀ¹ú¹ú¼Ò±ê×¼ÓëÊÖÒÕÑо¿ÔºÐû²¼Òþ˽¿ò¼Ü³õ¸å
ÔÎÄÁ´½Ó£º
https://www.executivegov.com/2019/09/nist-issues-preliminary-draft-of-privacy-framework/4¡¢ºÚ¿ÍʹÓÃDoSÎó²îµ¼ÖÂÃÀ¹úµçÍø·À»ðÇ½ÖØ¸´ÖØÆô
±±ÃÀµçÁ¦¿É¿¿ÐÔ¹«Ë¾£¨NERC£©ÉÏÖÜÌåÏÖ½ñÄêÔçЩʱ¼äÓ°ÏìÃÀ¹úµçÍøÊµÌåµÄÍøÂçÇå¾²ÊÂÎñ²¢Ã»ÓÐ×î³õÉèÏëµÄÄÇÑùΣÏÕ¡£¡£¡£¡£¡£NERCÔÚÒ»·Ý±¨¸æÖÐÖ¸³ö£¬£¬£¬£¬£¬£¬ºÚ¿ÍÔÚ2019Äê3ÔÂ5ÈÕʹÓÃDoSÎó²îµ¼ÖµçÍø·À»ðǽÔÚ10СʱÄÚÖØ¸´ÖØÆô£¬£¬£¬£¬£¬£¬¸ÃÊÂÎñÖ»Ó°ÏìÁËһЩµÍÓ°Ïì¼¶·¢µçÕ¾µãµÄÍøÂçÍâΧ·À»ðǽ£¬£¬£¬£¬£¬£¬²¢Ã»ÓÐÔì³ÉµçÁ¦¹©Ó¦µÄÈκÎÖÐÖ¹¡£¡£¡£¡£¡£ËæºóµÄÆÊÎöÈ·¶¨ÖØÆôÊÇÓÉʹÓÃÒÑÖª·À»ðǽÎó²îµÄÍⲿʵÌåÌᳫµÄ£¬£¬£¬£¬£¬£¬ÔËÓªÉÌ×îÖÕ·¢Ã÷ËûÃÇδÄÜΪÊܵ½¹¥»÷µÄ·À»ðǽӦÓù̼þ¸üУ¬£¬£¬£¬£¬£¬ÔÚ²Ù×÷Ô±°²ÅÅÊʵ±µÄ²¹¶¡ºó£¬£¬£¬£¬£¬£¬·À»ðǽ²»ÔÙÖØÆô¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/cyber-security-incident-at-us-power-grid-entity-linked-to-unpatched-firewalls/
https://www.zdnet.com/article/critical-vulnerabilities-impact-over-a-million-iot-radio-devices/