ÐÅÏ¢°²È«Öܱ¨-2018ÄêµÚ46ÖÜ

°ä²¼¹¦·ò 2018-11-19

Ò»¡¢±¾Öܰ²È«Ì¬ÊÆ×ÛÊö


2018Äê11ÔÂ12ÈÕÖÁ18ÈÕ¹²ÊÕ¼°²È«·ì϶52¸ö£¬£¬£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇMicrosoft Exchange Server CVE-2018-8581Ô¶³ÌȨÏÞÌáÉý·ì϶£»£»£»£»£»£»Microsoft Windows BitLocker CVE-2018-8566°²È«Ö°ÄÜÈÆ¹ý·ì϶£»£»£»£»£»£»Vmware ESXi/Workstation/Fusion CVE-2018-6981ÌÓÒÝ·ì϶£»£»£»£»£»£»Elasticsearch Kibana Console²å¼þËÁÒâ´úÂëÖ´Ðзì϶£»£»£»£»£»£»Microsoft Outlook CVE-2018-8522Ô¶³Ì´úÂëÖ´Ðзì϶¡£¡£¡£¡£¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊÇFIA°µÊ¾×î½üµÄÊý¾Ýй¶ÊÂÎñÓ°ÏìÁËÏÕЩËùÓеİͻùË¹Ì¹ÒøÐУ»£»£»£»£»£»×êÑÐÍŶÓÅû¶7ÖÖÐÂÈۻٺ͹í»ê¹¥»÷£¬£¬£¬£¬£¬Intel¡¢AMDºÍARM¾ùÊÜÓ°Ï죻£»£»£»£»£»×êÑÐÍŶӷ¢ÏÖÖØÒªÕë¶Ô°ÍÎ÷½ðÈÚ»ú¹¹µÄ¶ñÒâÈí¼þ·Ö·¢»î¶¯£»£»£»£»£»£»×êÑлú¹¹°ä²¼ÃÀ¹úÐÅÓþ¿¨Ú²Æ­»ã±¨£»£»£»£»£»£»´Óǰ1ÄêÄÚÒÑÓÐ6000ÍòÐÅÓþ¿¨ÐÅÏ¢±»ÇÔ£»£»£»£»£»£»³¬¹ý50¸ö¹ú¶ÈÇ©Êð¡¶°ÍÀèÍøÂç¿Õ¼äÐÅÀµºÍ°²È«½¨Òé¡·¡£¡£¡£¡£¡£


ƾ¾ÝÒÔÉÏ×ÛÊö£¬£¬£¬£¬£¬±¾Öܰ²È«ÍþвΪÖÓ×£¡£¡£¡£¡£


¶þ¡¢³ÁÒª°²È«·ì϶Áбí


1. Microsoft Exchange Server CVE-2018-8581Ô¶³ÌȨÏÞÌáÉý·ì϶


Microsoft Exchange ServerÉí·ÝÑéÖ¤ÒªÇó´æÔÚ°²È«·ì϶£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬Ä£ÄâExchange serverµÄÆäËûËÁÒâÕË»§¡£¡£¡£¡£¡£

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8581



2. Microsoft Windows BitLocker CVE-2018-8566°²È«Ö°ÄÜÈÆ¹ý·ì϶


Microsoft Windows BitLockerûÓÐÕýÈ·µÄ¹ÒÆðBitLocker Device Encryption£¬£¬£¬£¬£¬ÔÊÐí±¾µØ¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬»ñÈ¡¼ÓÃÜÊý¾ÝµÄ½Ó¼ûȨÏÞ¡£¡£¡£¡£¡£

https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2018-8566



3. Vmware ESXi/Workstation/Fusion CVE-2018-6981ÌÓÒÝ·ì϶


Vmware ESXi/Workstation/Fusion vmxnet3Ðé¹¹ÍøÂçÊÊÅäÆ÷ÖдæÔÚδ³õʼ»¯µÄÕ»Äڴ棬£¬£¬£¬£¬ÔÊÐí±¾µØ¹¥»÷ÕßÀûÓ÷ì϶¿ÉÌá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬ÔÚHOST»úеÉÏÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£

https://www.vmware.com/security/advisories/VMSA-2018-0027.html



4. Elasticsearch Kibana Console²å¼þËÁÒâ´úÂëÖ´Ðзì϶


Elasticsearch Kibana Console²å¼þ´æÔÚ°²È«·ì϶£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶¿ÉÌá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬ÒÔKibana¹ý³ÌȨÏÞÖ´ÐÐËÁÒâºÅÁî¡£¡£¡£¡£¡£
https://access.redhat.com/security/cve/cve-2018-17246


5. Microsoft Outlook CVE-2018-8522Ô¶³Ì´úÂëÖ´Ðзì϶


Microsoft Office outlook´¦ÖÃÄÚ´æ¶ÔÏó´æÔÚ°²È«·ì϶£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÎļþÒªÇ󣬣¬£¬£¬£¬Äܹ»ÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8522




Èý¡¢³ÁÒª°²È«ÊÂÎñ×ÛÊö


1¡¢FIA°µÊ¾×î½üµÄÊý¾Ýй¶ÊÂÎñÓ°ÏìÁËÏÕЩËùÓеİͻùË¹Ì¹ÒøÐÐ

8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


ƾ¾Ý°Í»ù˹̹Áª¹úµ÷²é¾ÖFIAµÄ˵·¨£¬£¬£¬£¬£¬ÏÕЩËùÓеİͻùË¹Ì¹ÒøÐж¼Êܵ½×î½üµÄÊý¾Ýй¶ÊÂÎñµÄÓ°Ïì¡£¡£¡£¡£¡£¾Ý³Æ¸ÃÊÂÎñÓëÔÚ°µÍøÊг¡ÉϳöÏÖµÄÔ¼2ÍòÕŰͻùË¹Ì¹ÒøÐнè¼Ç¿¨ÐÅÏ¢Óйء£¡£¡£¡£¡£¸Ã»ú¹¹ÔÚµ÷²éÓë¸ÃÊÂÎñÓйصÄ100¶àÆðÍøÂç¹¥»÷£¬£¬£¬£¬£¬Ä¿Ç°Éв»Ã÷ÏÔÊý¾Ýй¶ÊÂÎñ²úÉúµÄ¾ßÌ幦·ò£¬£¬£¬£¬£¬Ò²²»ÖªÂ·¹¥»÷ÕßÈôºÎ½øÈëÕâЩ°Í»ùË¹Ì¹ÒøÐеÄϵͳ¡£¡£¡£¡£¡£½ØÖÁÉÏÖÜÄ©£¬£¬£¬£¬£¬Ò»Ð©°Í»ùË¹Ì¹ÒøÐÐÒѾ­ÔÝÍ£ÔÚ¹ú±íʹÓÃËüÃǵĽè¼Ç¿¨£¬£¬£¬£¬£¬²¢½ûÓÃÁËÕâЩ¿¨µÄËùÓйú¼ÊÂòÂô¡£¡£¡£¡£¡£PakCERTͬÑù°ä²¼ÁËÒ»·Ý¹ØÓÚÊý¾Ýй¶µÄ¹¦·ò±íºÍ¹æÄ£µÄ»ã±¨¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/77847/cyber-crime/pakistani-banks-data-breach.html


2¡¢×êÑÐÍŶÓÅû¶7ÖÖÐÂÈۻٺ͹í»ê¹¥»÷£¬£¬£¬£¬£¬Intel¡¢AMDºÍARM¾ùÊÜÓ°Ïì


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


ÓÉ9Ãû×êÑÐÈËÔ±×é³ÉµÄ×êÑÐÓ××éÅû¶ÁË7ÖÖеÄÈۻٺ͹í»ê¹¥»÷£¬£¬£¬£¬£¬ÆäÖÐ2ÖÖÊÇMeltdown¹¥»÷µÄ±äÖÖ£¬£¬£¬£¬£¬Áí±í5ÖÖÊÇSpectre¹¥»÷µÄ±äÖÖ¡£¡£¡£¡£¡£Èý´óÖØÒª´¦ÖÃÆ÷³§ÉÌ-Intel¡¢AMDºÍARM¾ùÊÜÓ°Ïì¡£¡£¡£¡£¡£¸Ã×êÑÐÓ××éÏòIntel¡¢AMDºÍARM»ã±¨ÁËÕâЩ·ì϶£¬£¬£¬£¬£¬ÆäÖÐIntelºÍARMÒѾ­ÈÏ¿ÉÁËËûÃǵÄ×êÑÐÁ˾֡£¡£¡£¡£¡£¸ÃÍŶӻ¹°µÊ¾£¬£¬£¬£¬£¬ÓÉÓÚ¹©¸øÉÌÔÚÖÂÁ¦½¨¸´ÕâЩÎÊÌ⣬£¬£¬£¬£¬ËûÃǾö¶¨Ôݲ»Åû¶ÓйØPoC¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º
https://thehackernews.com/2018/11/meltdown-spectre-vulnerabilities.html


3¡¢×êÑÐÍŶӷ¢ÏÖÖØÒªÕë¶Ô°ÍÎ÷½ðÈÚ»ú¹¹µÄ¶ñÒâÈí¼þ·Ö·¢»î¶¯


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


˼¿ÆTalosÍŶӷ¢ÏÖÁ½¸öÔÚ½øÐÐÖеĶñÒâÈí¼þ·Ö·¢»î¶¯£¬£¬£¬£¬£¬ÕâЩ»î¶¯ÓÃÓÚÏò°ÍÎ÷µÄ½ðÈÚ»ú¹¹Óû§´«²¼ÒøÐÐľÂí¡£¡£¡£¡£¡£¹¥»÷»î¶¯²úÉúÔÚ10Ôµ׺Í11Ô³õ£¬£¬£¬£¬£¬ÕâÁ½¸ö¹¥»÷»î¶¯Ê¹ÓÃÁË·ÖÆçµÄ³õʼϰȾÎļþÀàÐͺÍÁ½¸ö·ÖÆçµÄÒøÐÐľÂí£¬£¬£¬£¬£¬µ«ÔÚϰȾ¹ý³ÌÖжԸ÷ÀàÎļþʹÓÃÁËÒ»ÑùµÄ¶¨Ãû¹æ¶¨£¬£¬£¬£¬£¬²¢¶¼Ê¹ÓÃÁ˶ÌÁ´½ÓÀ´°µ²ØÏÖʵµÄ·Ö·¢·þÎñÆ÷µØÖ·¡£¡£¡£¡£¡£ÔÚ·ÖÎöÕâЩ»î¶¯Ê±£¬£¬£¬£¬£¬Talos»¹·¢ÏÖÁËÒ»¸öеÄÀ¬»øÓʼþ½©Ê¬ÍøÂç¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º
https://blog.talosintelligence.com/2018/11/metamorfo-brazilian-campaigns.html


4¡¢×êÑлú¹¹°ä²¼ÃÀ¹úÐÅÓþ¿¨Ú²Æ­»ã±¨£¬£¬£¬£¬£¬´Óǰ1ÄêÄÚÒÑÓÐ6000ÍòÐÅÓþ¿¨ÐÅÏ¢±»ÇÔ


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


ƾ¾ÝGemini Advisory°ä²¼µÄÃÀ¹úÐÅÓþ¿¨Ú²Æ­»ã±¨£¬£¬£¬£¬£¬Ö»¹Ü2015ÄêÃÀ¹ú½ðÈÚÒµ¾ÍÒÑ´ó¹æÄ£Ç¨áãµ½EMVоƬ¿¨³ß¶È£¬£¬£¬£¬£¬µ«ÔÚ´Óǰ12¸öÔÂÄÚÈÔÓÐ6000ÍòÕÅÐÅÓþ¿¨µÄÐÅÏ¢±»ÇÔ¡£¡£¡£¡£¡£ÆäÖÐ4580Íò£¨75%£©µÄÐÅÓþ¿¨ÐÅÏ¢ÊÇͨ¹ýPoS»úÉϵÄʵ¿¨ÂòÂô±»ÇԵ쬣¬£¬£¬£¬Ö»ÓÐ25%µÄÐÅÓþ¿¨ÐÅÏ¢±»ÔÚÏßÇÔÈ¡¡£¡£¡£¡£¡£ÕâЩʵ¿¨ÖÐ90%ÊÇEMV¿¨¡£¡£¡£¡£¡£´Óǰ12¸öÔÂÄÚº­µç×ÓÉÌÎñÖб»ÇÔµÄÐÅÓþ¿¨ÊýÁ¿Ôö³¤ÁË14%£¬£¬£¬£¬£¬ÕâÒâζÕß·¸×ï·Ö×ÓÔÚ´Óʵ¿¨ÂòÂôתÏòÎÞ¿¨Ú²Æ­¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º
https://geminiadvisory.io/card-fraud-on-the-rise/


5¡¢³¬¹ý50¸ö¹ú¶ÈÇ©Êð¡¶°ÍÀèÍøÂç¿Õ¼äÐÅÀµºÍ°²È«½¨Òé¡·


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


51¸ö¹ú¶È¡¢224¼Ò¹«Ë¾ÒÔ¼°92¸ö·ÇͶ»ú×éÖ¯ÔÚ·¨¹úµ±¾ÖµÄÍÆ¶¯ÏÂÇ©ÊðÁËÕâÏî¡¶°ÍÀèÍøÂç¿Õ¼äÐÅÀµºÍ°²È«½¨Òé¡·ºÍ̸£¬£¬£¬£¬£¬Ô̺¬Î¢Èí¡¢¹È¸è¡¢FacebookºÍÈýÐǵȶà¼Ò¿Æ¼¼¾ÞÍ·¡£¡£¡£¡£¡£Õâ·Ý½¨ÒéÊéÖØÒªÊÇΪÁËÓ¦¶Ô´Óǰ¼¸Äê³öÏÖµÄÍøÂçÕ½£¬£¬£¬£¬£¬µ«ÃÀ¹ú¡¢¶íÂÞ˹¡¢Ó¢¹ú¡¢ÒÁÀÊ¡¢ÒÔÉ«ÁÓ×¢³¯ÏÊÒÔ¼°ÎÒ¶¼³ÇûÓÐÊðÃû¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º
https://www.zdnet.com/article/us-russia-china-dont-sign-macrons-cyber-pact/


ÉêÃ÷£º±¾×ÊѶÓÉ8827Ì«Ñô¼¯ÍÅάËûÃü°²È«Ó××é·­ÒëºÍÕû¶Ù