ÐÅÏ¢Çå¾²Öܱ¨-2021ÄêµÚ42ÖÜ
Ðû²¼Ê±¼ä 2021-10-19>±¾ÖÜÇå¾²Ì¬ÊÆ×ÛÊö
±¾Öܹ²ÊÕ¼Çå¾²Îó²î62¸ö£¬£¬£¬£¬£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇMicrosoft SharePoint Server CVE-2021-40487Ô¶³Ì´úÂëÖ´ÐÐÎó²î£»£»£»£»SAP Environmental Compliance XMLÍⲿʵÌå×¢ÈëÎó²î£»£»£»£»JP1/IT Desktop Management 2 31016ЧÀÍ´úÂëÖ´ÐÐÎó²î£»£»£»£»Schneider Electric IGSS³¤¶È¼ì²é´úÂëÖ´ÐÐÎó²î£»£»£»£»ZOHO ManageEngine ADManager PlusÎļþÉÏ´«´úÂëÖ´ÐÐÎó²î¡£¡£¡£¡£¡£¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊÇÑо¿ÍŶӷ¢Ã÷Sky.comЧÀÍÆ÷ÒòÉèÖùýʧй¶´ó×ÚÊý¾Ý£»£»£»£»AppleÐû²¼½ôÆÈ¸üÐÂÐÞ¸´iOSºÍiPadOSÖÐÄÚ´æËð»µ0day£»£»£»£»MicrosoftÐû²¼10Ô¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´4¸ö0dayÔÚÄÚµÄ74¸öÎó²î£»£»£»£»Microsoft³ÆÆäÀֳɵÖÓù¸ß´ï2.4 TbpsµÄDDoS¹¥»÷£»£»£»£»Ñо¿ÍŶӷ¢Ã÷Linux¶ñÒâÍÚ¿óÈí¼þµÄбäÌåÃé×¼»ªÎªÔÆ¡£¡£¡£¡£¡£¡£
ƾ֤ÒÔÉÏ×ÛÊö£¬£¬£¬£¬£¬£¬£¬±¾ÖÜÇå¾²ÍþвΪÖС£¡£¡£¡£¡£¡£
>Ö÷ÒªÇå¾²Îó²îÁбí
1. Microsoft SharePoint Server CVE-2021-40487Ô¶³Ì´úÂëÖ´ÐÐÎó²î
Microsoft SharePoint Server±£´æÎ´Ã÷Çå¾²Îó²î£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬£¬¿ÉÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-40487
2. SAP Environmental Compliance XMLÍⲿʵÌå×¢ÈëÎó²î
SAP Environmental ComplianceÆÊÎöXML±£´æÍⲿʵÌå×¢ÈëÎó²î£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬£¬¿É»ñÈ¡Ãô¸ÐÐÅÏ¢»òʹЧÀͳÌÐòÍ߽⡣¡£¡£¡£¡£¡£
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=587169983
3. JP1/IT Desktop Management 2 31016ЧÀÍ´úÂëÖ´ÐÐÎó²î
JP1/IT Desktop Management 2 31016ЧÀͱ£´æÇå¾²Îó²î£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬£¬¿ÉÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£
https://www.hitachi.com/hirt/security/index.html
4. Schneider Electric IGSS³¤¶È¼ì²é´úÂëÖ´ÐÐÎó²î
Schneider Electric IGSS´¦Öóͷ£±¨Îı£´æ³¤¶È¼ì²éÎó²î£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬£¬¿ÉÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£
https://us-cert.cisa.gov/ics/advisories/icsa-21-285-03
5. ZOHO ManageEngine ADManager PlusÎļþÉÏ´«´úÂëÖ´ÐÐÎó²î
ZOHO ManageEngine ADManager Plus /RestAPI/WC/Personalize±£´æí§ÒâÎļþÉÏ´«Îó²î£¬£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÎļþÇëÇ󣬣¬£¬£¬£¬£¬£¬¿ÉÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£
https://zh-cn.tenable.com/security/research/tra-2021-43?tns_redirect=true
>Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö
1¡¢Ñо¿ÍŶӷ¢Ã÷Sky.comЧÀÍÆ÷ÒòÉèÖùýʧй¶´ó×ÚÊý¾Ý
CyberNewsÑо¿ÍŶÓÔÚ10ÔÂ8ÈÕÅû¶£¬£¬£¬£¬£¬£¬£¬Sky.comЧÀÍÆ÷ÒòÉèÖùýʧй¶´ó×ÚÊý¾Ý¡£¡£¡£¡£¡£¡£SkyÊÇÅ·ÖÞ×î´óµÄýÌ幫˾£¬£¬£¬£¬£¬£¬£¬ÓµÓÐ12%µÄÊг¡·Ý¶î£¬£¬£¬£¬£¬£¬£¬2020ÄêµÄÊÕÈëԼΪ134ÒÚÓ¢°÷¡£¡£¡£¡£¡£¡£Ñо¿ÍŶÓÔÚ10ÔÂ7ÈÕ·¢Ã÷Ò»¸öÍйÜÔÚSky.comµÄ¡°upliftmedia¡±×ÓÓòÉϵÄÓ¦ÓóÌÐòµÄÖ÷ÉèÖÃÎļþ£¬£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨Á˶ÔÍйÜÔÚSky.comÓòÃûÉϵÄÊý¾Ý¿âµÄ»á¼ûƾ֤¡£¡£¡£¡£¡£¡£CyberNewsÔÚ10ÔÂ8ÈÕ½«´ËÎÊÌⱨ¸æ¸øSky£¬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÏÖÒѽûÓöÔÉèÖÃÎļþµÄ»á¼û¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://cybernews.com/news/sky-com-servers-exposed-via-misconfiguration/
2¡¢AppleÐû²¼½ôÆÈ¸üÐÂÐÞ¸´iOSºÍiPadOSÖÐÄÚ´æËð»µ0day
AppleÔÚ10ÔÂ11ÈÕÐû²¼½ôÆÈ¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´ÁËiOS 15.0.2ºÍiPadOS 15.0.2ÖеÄÄÚ´æËð»µ0day¡£¡£¡£¡£¡£¡£¸ÃÎó²î×·×ÙΪCVE-2021-30883£¬£¬£¬£¬£¬£¬£¬ÊÇIOMobileFrameBufferÖеÄÒ»¸öÄÚ´æËð»µÎó²î£¬£¬£¬£¬£¬£¬£¬¿ÉÓÃÀ´ÔÚÄ¿µÄ×°±¸Ö´ÐÐÏÂÁî¡£¡£¡£¡£¡£¡£AppleÔÚÇ徲ͨ¸æÖгƸÃÎó²îÒÑÔÚÕëµÐÊÖ»úºÍiPadµÄ¹¥»÷Öб»ÆÕ±éʹÓᣡ£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬ÔÚÎó²î¹ûÕæ²»¾Ã£¬£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±Saar Amar¾ÍÐû²¼Á˹ØÓÚ¸ÃÎó²îµÄÊÖÒÕÎÄÕºÍʹÓÃÎó²îµÄPoC¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/emergency-apple-ios-1502-update-fixes-zero-day-used-in-attacks/
3¡¢MicrosoftÐû²¼10Ô¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´4¸ö0dayÔÚÄÚµÄ74¸öÎó²î
MicrosoftÔÚ10ÔÂ12ÈÕÐû²¼Á˱¾ÔµÄÖܶþ²¹¶¡£¬£¬£¬£¬£¬£¬£¬×ܼÆÐÞ¸´ÁË74¸öÎó²î£¨°üÀ¨Microsoft EdgeÔÚÄÚÊÇ81¸ö£©¡£¡£¡£¡£¡£¡£´Ë´Î¸üÐÂ×ܹ²ÐÞ¸´ÁË4¸ö0day£¬£¬£¬£¬£¬£¬£¬°üÀ¨Win32kÖеÄÌáȨÎó²îCVE-2021-40449£¬£¬£¬£¬£¬£¬£¬Windows DNSЧÀÍÆ÷ÖеÄÔ¶³Ì´úÂëÖ´ÐÐÎó²îCVE-2021-40469£¬£¬£¬£¬£¬£¬£¬WindowsÄÚºËÌáȨÎó²îCVE-2021-41335£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°Windows AppContainer ·À»ðǽ¹æÔòÇå¾²¹¦Ð§ÈƹýÎó²îCVE-2021-41338¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬KasperskyÑо¿Ö°Ô±ÒѾÔÚÒ°·¢Ã÷ʹÓÃCVE-2021-40449µÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/microsoft/microsoft-october-2021-patch-tuesday-fixes-4-zero-days-71-flaws/
4¡¢Microsoft³ÆÆäÀֳɵÖÓù¸ß´ï2.4 TbpsµÄDDoS¹¥»÷
MicrosoftÑо¿Ö°Ô±Amir DahanÔÚ10ÔÂ11Èճƣ¬£¬£¬£¬£¬£¬£¬ËûÃÇÔÚ8ÔµÄ×îºóÒ»ÖÜÀֳɵÖÓùÁËÊ·ÉÏ×î¸ßµÄDDoS¹¥»÷¡£¡£¡£¡£¡£¡£Amir DahanÌåÏÖ£¬£¬£¬£¬£¬£¬£¬ÕâÊÇÕë¶ÔÆäÅ·ÖÞAzure¿Í»§µÄ¹¥»÷£¬£¬£¬£¬£¬£¬£¬ÓÉÖ÷ÒªÂþÑÜÔÚÑÇÌ«µØÇøºÍÃÀ¹úµÄÔ¼70000̨װ±¸ÌᳫµÄ¡£¡£¡£¡£¡£¡£´Ë´ÎµÄ¹¥»÷ÏòÁ¿ÎªUDP·´É䣬£¬£¬£¬£¬£¬£¬Ò»Á¬Ê±¼äÁè¼Ý10·ÖÖÓ£¬£¬£¬£¬£¬£¬£¬±¬·¢Ê±¼äºÜÊǶ̣¬£¬£¬£¬£¬£¬£¬Ã¿´Î±¬·¢¶¼»áÔÚ¼¸ÃëÖÓÄÚÉÏÉýµ½TBÁ¿¼¶£¬£¬£¬£¬£¬£¬£¬×ܹ²·ºÆðÁËÁËÈý¸öÖ÷Òª·åÖµ£¬£¬£¬£¬£¬£¬£¬»®·ÖΪ2.4 Tbps¡¢0.55 TbpsºÍ1.7 Tbps¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://azure.microsoft.com/en-us/blog/business-as-usual-for-azure-customers-despite-24-tbps-ddos-attack/
5¡¢Ñо¿ÍŶӷ¢Ã÷Linux¶ñÒâÍÚ¿óÈí¼þµÄбäÌåÃé×¼»ªÎªÔÆ
TrendMicroµÄÑо¿Ö°Ô±·¢Ã÷ÒÔǰÓÃÓÚÕë¶ÔDockerÈÝÆ÷µÄLinux¶ñÒâÍÚ¿óÈí¼þµÄбäÌ壬£¬£¬£¬£¬£¬£¬×îÏÈÕë¶ÔÏñ»ªÎªÔÆÕâÑùµÄÐÂÔÆÐ§ÀÍÌṩÉÌ¡£¡£¡£¡£¡£¡£ÏêϸµØËµ£¬£¬£¬£¬£¬£¬£¬ÐÂÑù±¾ÒѾעÊ͵ôÁË·À»ðǽ¹æÔò´´Á¢¹¦Ð§£¬£¬£¬£¬£¬£¬£¬²¢¼ÌÐøÊ¹ÓÃÍøÂçɨÃèÆ÷À´Ñ°ÕÒÆäËû¾ßÓÐapiÏà¹Ø¶Ë¿ÚµÄÖ÷»ú¡£¡£¡£¡£¡£¡£»£»£»£»ªÎªÔÆÊǽÏеÄÔÆÌṩÉÌ£¬£¬£¬£¬£¬£¬£¬Éù³ÆËüÒѾΪÁè¼Ý300Íò¿Í»§ÌṩЧÀÍ¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±Òѽ«´Ë´Î¹¥»÷֪ͨ¸Ã¹«Ë¾£¬£¬£¬£¬£¬£¬£¬µ«ÉÐδÊÕµ½»Ø¸´¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/huawei-cloud-targeted-by-updated-cryptomining-malware/