2020-02-25
Ðû²¼Ê±¼ä 2020-02-25ÐÂÔöÊÂÎñ
ÊÂÎñÃû³Æ£º |
DNS_ºóÃÅ_Trojan.Mozart |
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
ÊÂÎñÐÎò£º |
¼ì²âµ½ºóÃÅÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˺óÃÅ Mozart¡£¡£¡£ Mozart ÊÇÒ»¸ö¹¦Ð§ºÜÊÇǿʢµÄºóÃÅ£¬£¬£¬Ê¹ÓÃDNSÐÒéÓëC&CЧÀÍÆ÷ͨѶ¡£¡£¡£MozartÄܹ»ÍøÂçÅÌËã»úÐÅÏ¢·¢ËÍÖÁЧÀÍÆ÷£¬£¬£¬²¢ÇÒ´ÓЧÀÍÆ÷ÏÂÔØÎļþÖ´ÐС£¡£¡£ |
¸üÐÂʱ¼ä£º |
20200225 |
ÊÂÎñÃû³Æ£º |
HTTP_Çå¾²Îó²î_VMware_SD-WAN_by_VeloCloudÐÅϢй¶Îó²î[CVE-2019-5533] |
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÊÔͼͨ¹ýVMware SD-WAN by VeloCloudÐÅϢй¶Îó²î¹¥»÷Ä¿µÄIPÖ÷»ú¡£¡£¡£ VMware SD-WAN by VeloCloudÊÇÃÀ¹úÍþ¨VMware£©¹«Ë¾µÄÒ»Ì×Èí¼þ½ç˵µÄWAN£¨¹ãÓòÍø£©½â¾ö¼Æ»®¡£¡£¡£¸Ã²úÆ·Ìṩ¶ÔÔÆÊý¾ÝÖÐÐĺÍÓ¦ÓóÌÐòµÄÓÅ»¯»á¼û¡£¡£¡£ VMware SD-WAN by VeloCloud 3.3.0֮ǰµÄ3.x°æ±¾Öб£´æÐÅϢй¶Îó²î¡£¡£¡£¸ÃÎó²îÔ´ÓÚÍøÂçϵͳ»ò²úÆ·ÔÚÔËÐÐÀú³ÌÖб£´æÉèÖõȹýʧ¡£¡£¡£Î´ÊÚȨµÄ¹¥»÷Õß¿ÉʹÓÃÎó²î»ñÈ¡ÊÜÓ°Ïì×é¼þÃô¸ÐÐÅÏ¢¡£¡£¡£ |
¸üÐÂʱ¼ä£º |
20200225 |
ÊÂÎñÃû³Æ£º |
TCP_Jackson_Databind_¿ÉÒÉ·´ÐòÁл¯Àà_xbean[CVE-2020-8840] |
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
ÊÂÎñÐÎò£º |
¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃTCP_Jackson_databind_¿ÉÒÉ·´ÐòÁл¯À๥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¡£¡£¡£ |
¸üÐÂʱ¼ä£º |
20200225 |
ÊÂÎñÃû³Æ£º |
HTTP_CryptoPatronumÀÕË÷²¡¶¾_ÅþÁ¬ |
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
ÊÂÎñÐÎò£º |
¸ÃÊÂÎñÅú×¢µ½ÀÕË÷Èí¼þCryptoPatronumÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£Ô´IPÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËÀÕË÷Èí¼þCryptoPatronum¡£¡£¡£ CryptoPatronumÊÇÒ»¿îÀÕË÷Èí¼þ£¬£¬£¬ÔËÐкó¼ÓÃܱ»Ö²Èë»úеÉϵÄÎļþ£¬£¬£¬²¢ÀÕË÷±ÈÌØ±ÒÀ´½âÃÜ¡£¡£¡£ |
¸üÐÂʱ¼ä£º |
20200225 |
ÊÂÎñÃû³Æ£º |
HTTP_fusionauth_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-7799] |
Çå¾²ÀàÐÍ£º |
Çå¾²Îó²î |
ÊÂÎñÐÎò£º |
¼ì²âµ½Ä¾ÂíÊÔͼÅþÁ¬Ô¶³ÌЧÀÍÆ÷¡£¡£¡£Ô´IPËùÔÚµÄÖ÷»ú¿ÉÄܱ»Ö²ÈëÁËľÂíFileStolen¡£¡£¡£ FileStolenµÄÖ÷Òª¹¦Ð§ÎªÎļþÇÔÈ¡£¡£¡£¬£¬£¬ÇÔȡָ¶¨Âß¼´ÅÅÌÏÂÖ¸¶¨ÎļþÃûµÄÎļþ²¢ÇÒÉÏ´«µ½CCЧÀÍÆ÷£¬£¬£¬ÇÔÈ¡µÄÎļþÀàÐͰüÀ¨£ºtxt¡¢ppt¡¢pptx¡¢pdf¡¢doc¡¢docx¡¢xls¡¢xlsx¡¢zip¡¢7z¡¢rtf¡£¡£¡£ ¸ÃľÂíÔÚAPT×éÖ¯ÂûÁ黨BitterµÄ¹¥»÷ÖÐʹÓᣡ£¡£ |
¸üÐÂʱ¼ä£º |
20200225 |
ÐÞ¸ÄÊÂÎñ
ÊÂÎñÃû³Æ£º |
HTTP_ľÂí_Win32.FileStolen_ÅþÁ¬ |
Çå¾²ÀàÐÍ£º |
ľÂíºóÃÅ |
ÊÂÎñÐÎò£º |
CMS¹¥»÷¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃfusionauth_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-7799]¹¥»÷Ä¿µÄIPÖ÷»úµÄÐÐΪ¡£¡£¡£ |
¸üÐÂʱ¼ä£º |
20200225 |