ÐÅÏ¢°²È«Öܱ¨-2021ÄêµÚ12ÖÜ

°ä²¼¹¦·ò 2021-03-22

> ±¾Öܰ²È«Ì¬ÊÆ×ÛÊö


2021Äê03ÔÂ15ÈÕÖÁ03ÔÂ21ÈÕ¹²ÊÕ¼°²È«·ì϶54¸ö£¬£¬£¬£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇGoogle Chrome WebRTCÄÚ´æÃýÎóÒýÓôúÂëÖ´Ðзì϶£»£»£»£»£»Synology DiskStation Manager iscsi_snapshot_comm_core»º³åÇøÒç¶Âí½Å£»£»£»£»£»Vmware vCenter Server Element Plug-in´úÂëÖ´Ðзì϶£»£»£»£»£»Cisco RV134W VDSL2 Wireless-AC VPN Routers WEB½Ó±êÓïÁîÖ´Ðзì϶£»£»£»£»£»Apache OpenMeetings NetTest web·þÎñ»Ø¾ø·þÎñ·ì϶¡£¡£¡£¡£¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊÇGRIMMÅû¶iSCSIÖÐÒÑ´æÔÚ15ÄêµÄ3¸ö¸ßΣ·ì϶£»£»£»£»£»Azure Active DirectoryÅäÖÃÎÊÌâµ¼ÖÂoffice 365·þÎñÖжÏ£»£»£»£»£»Êý¾ÝÂòÂôÍøÕ¾weleakinfoµÄ1Íò¶à¸öÓû§ÐÅÏ¢±»¹«¿ª£»£»£»£»£»HackerOne°ä²¼2021ÄêÓйغڿ͵ķÖÎö»ã±¨£»£»£»£»£»CISAºÍFBI½áºÏ°ä²¼¹ØÓÚTrickBot¶ñÒâÈí¼þµÄ°²È«Õ÷ѯ¡£¡£¡£¡£¡£


ƾ¾ÝÒÔÉÏ×ÛÊö£¬£¬£¬£¬£¬£¬±¾Öܰ²È«ÍþвΪÖС£¡£¡£¡£¡£


> ³ÁÒª°²È«·ì϶Áбí


1.Google Chrome WebRTCÄÚ´æÃýÎóÒýÓôúÂëÖ´Ðзì϶


Google Chrome WebRTC´æÔÚ¿ªÊͺóʹÓ÷ì϶£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄWEBÒªÇ󣬣¬£¬£¬£¬£¬ÓÕʹÓû§½âÎö£¬£¬£¬£¬£¬£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»£»£»£»£»ò¿ÉÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£

https://chromereleases.googleblog.com/2021/03/stable-channel-update-for-desktop_12.html


2.Synology DiskStation Manager iscsi_snapshot_comm_core»º³åÇøÒç¶Âí½Å


Synology DiskStation Manager iscsi_snapshot_comm_core´æÔÚÔ½½ç¶Á·ì϶£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬¿ÉʹÀûÓ÷¨Ê½±ÀÀ£»£»£»£»£»ò¿ÉÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£

https://www.synology.com/en-global/security/advisory/Synology_SA_20_26


3.Vmware vCenter Server Element Plug-in´úÂëÖ´Ðзì϶


Vmware vCenter Server Element Plug-in´æÔÚ°²È«·ì϶£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬ÔÚÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£

https://security.netapp.com/advisory/ntap-20210315-0001/


4.Cisco RV134W VDSL2 Wireless-AC VPN Routers WEB½Ó±êÓïÁîÖ´Ðзì϶


Cisco RV134W VDSL2 Wireless-AC VPN Routers WEB½Ó¿Ú´æÔÚÊäÈëÑéÖ¤·ì϶£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬ÒÔÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâºÅÁî¡£¡£¡£¡£¡£

https://www.cisco.com/c/en/us/support/docs/csa/cisco-sa-rv-132w134w-overflow-Pptt4H2p.html


5.Apache OpenMeetings NetTest web·þÎñ»Ø¾ø·þÎñ·ì϶


Apache OpenMeetings NetTest web·þÎñ´æÔÚ°²È«·ì϶£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬣¬£¬£¬£¬£¬¿É¶ÔÀûÓ÷¨Ê½½øÐлؾø·þÎñ¹¥»÷¡£¡£¡£¡£¡£

https://lists.apache.org/thread.html/r9bb615bd70a0197368f5f3ffc887162686caeb0b5fc30592a7a871e9%40%3Cuser.openmeetings.apache.org%3E


> ³ÁÒª°²È«ÊÂÎñ×ÛÊö


1¡¢GRIMMÅû¶iSCSIÖÐÒÑ´æÔÚ15ÄêµÄ3¸ö¸ßΣ·ì϶


1.jpg


GRIMMµÄ×êÑÐÈËÔ±ÔÚLinuxÄÚºË×ÓϵͳiSCSIÖз¢ÏÖÁË3¸ö¸ßΣ·ì϶£¬£¬£¬£¬£¬£¬ÕâЩ·ì϶×Ô2006ÄêÒѾ­´æÔÚ¡£¡£¡£¡£¡£Õâ3¸ö·ì϶±ðÀëΪ¶Ñ»º³åÇøÒç¶Âí½Å£¨CVE-2021-27365£©£¬£¬£¬£¬£¬£¬¿Éµ¼Ö±¾µØÌáȨ¡¢ÐÅϢй¶ºÍ»Ø¾ø·þÎñ£»£»£»£»£»ÄÚºËÖ¸Õëй¶·ì϶£¨CVE-2021-27363£©£¬£¬£¬£¬£¬£¬¿Éµ¼ÖÂÐÅϢй¶£»£»£»£»£»ÒÔ¼°Ô½½ç¶ÁÈ¡·ì϶£¨CVE-2021-27364£©£¬£¬£¬£¬£¬£¬¿Éµ¼ÖÂÐÅϢй¶ºÍ»Ø¾ø·þÎñ¡£¡£¡£¡£¡£¹¥»÷ÕßÄܹ»ÀûÓÃÕâЩ·ì϶À´ÈƹýKASLR¡¢SMEP¡¢SMAPºÍKPTIµÈ°²È«Ö°ÄÜ¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬ÕâЩ·ì϶ÒÑÓÚ3ÔÂ7ÈÕ±»½¨¸´¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/15-year-old-linux-kernel-bugs-let-attackers-gain-root-privileges/


2¡¢Azure Active DirectoryÅäÖÃÎÊÌâµ¼ÖÂoffice 365·þÎñÖжÏ


2.jpg


ÃÀ¹ú¶«²¿¹¦·òÏÂÎç3:34ÆðÍ·£¬£¬£¬£¬£¬£¬Óû§·¢ÏÖMicrosoft 365·þÎñÖжÏ£¬£¬£¬£¬£¬£¬µ¼ÖÂÎÞ·¨½Ó¼ûMicrosoft Teams¡¢Exchange Online¡¢Forms¡¢Xbox LiveºÍYammerµÅצÓ÷¨Ê½£¬£¬£¬£¬£¬£¬ÒÔ¼°MicrosoftÍøÕ¾¡£¡£¡£¡£¡£Î¢Èí°µÊ¾£¬£¬£¬£¬£¬£¬Õâ´ÎÖжÏÊÇÓÉÓÚAzure Active Directory£¨AAD£©ÅäÖÃÎÊÌ⵼ֵ쬣¬£¬£¬£¬£¬Óû§ÎÞ·¨½Ó¼ûÒÀÀµAAD·þÎñ½øÐÐÉí·ÝÑéÖ¤µÄÀûÓᣡ£¡£¡£¡£½ØÖÁÃÀ¹ú¶«²¿¹¦·ò3ÔÂ15ÈÕÏÂÎç5:17£¬£¬£¬£¬£¬£¬Î¢ÈíÔÚÔÚÈ«ÇòÁìÓòÄÚ·¢Õ¹»º½â´ëÊ©£¬£¬£¬£¬£¬£¬²¢Ô¤¼ÆºÜ¿ìÄܹ»È«Ã潨¸´¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-365-outage-knocks-down-teams-exchange-online/


3¡¢Êý¾ÝÂòÂôÍøÕ¾weleakinfoµÄ1Íò¶à¸öÓû§ÐÅÏ¢±»¹«¿ª


3.jpg


Êý¾ÝÂòÂôÍøÕ¾weleakinfo³¬¹ý1Íò¸ö²É°ìÕßµÄÓ×ÎÒÐÅÏ¢±»¹«¿ª¡£¡£¡£¡£¡£¸ÃÍøÕ¾³ÆÕ¼ÓÐÀ´×Ô10000¶à¸öй¶µÄÊý¾Ý¿âµÄ120Òڱʼͼ£¬£¬£¬£¬£¬£¬ÒÑÓÚ2020ËêÊ×±»ÃÀ¹ú¡¢Ó¢¹ú¡¢ºÉÀ¼¡¢µÂ¹úºÍ±±°®¶ûÀ¼µ±¾Ö½áºÏµ·»Ù¡£¡£¡£¡£¡£Cyble·¢ÏÖºÚ¿ÍÓÚ2021Äê3ÔÂ11ÈÕ×¢²áÁËеÄÓòÃûwli.design£¬£¬£¬£¬£¬£¬ÇÔÈ¡²¢¹«¿ªÁËÉÏÍò¸öʹÓÃÖ§¸¶·þÎñStripe²É°ìÊý¾ÝµÄ¿Í»§µÄÐÅÏ¢£¬£¬£¬£¬£¬£¬Ô̺¬ÓʼþµØÖ·¡¢ÐÕÃû¡¢IPµØÖ·¡¢ä¯ÀÀÆ÷Óû§´úÀí¡¢ÎïÀíµØÖ·¡¢µç»°ºÅÂëºÍÖ§¸¶½ð¶î£¬£¬£¬£¬£¬£¬ÒÔ¼°²¿ÃÅÐÅÓþ¿¨Êý¾Ý¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/115544/data-breach/weleakinfo-leaked-data.html


4¡¢HackerOne°ä²¼2021ÄêÓйغڿ͵ķÖÎö»ã±¨


4.jpg


HackerOne°ä²¼ÁË2021ÄêÓйغڿ͵ķÖÎö»ã±¨¡£¡£¡£¡£¡£»ã±¨·¢ÏÖ£¬£¬£¬£¬£¬£¬2020ÄêÌá½»·ì϶µÄºÚ¿ÍÊýÁ¿Ôö³¤ÁË63£¥¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬×Ô´ÓCOVID-19ÒÔÀ´£¬£¬£¬£¬£¬£¬ÓÐ38£¥µÄºÚ¿ÍÆÆ·Ñ¸ü¶à¹¦·ò½øÐй¥»÷£»£»£»£»£»»ã±¨µÄ·ìÏ¶Éæ¼°20¸öÀà±ð£¬£¬£¬£¬£¬£¬¶øÕë¶Ô½Ó¼û½ÚÔì²»µ±ºÍÌáȨ·ì϶µÄÊýÁ¿Ôö³¤ÁË53£¥£»£»£»£»£»ºÚ¿Í²»½ö½öÊÇΪÁËÇ®£¬£¬£¬£¬£¬£¬85%µÄºÚ¿ÍÊÇΪÁ˽ø½¨£¬£¬£¬£¬£¬£¬62%µÄºÚ¿ÍÊÇΪÁËÖ°Òµ·¢Õ¹£»£»£»£»£»ºÚ¿Í¸üרһÓÚÎïÁªÍø¡¢APIºÍAndroidÀûÓ÷¨Ê½¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackerone.com/resources/reporting/the-2021-hacker-report


5¡¢CISAºÍFBI½áºÏ°ä²¼¹ØÓÚTrickBot¶ñÒâÈí¼þµÄ°²È«Õ÷ѯ


5.jpg


CISAºÍÁª¹úµ÷²é¾Ö£¨FBI£©°ä²¼ÁËÓйØTrickBot¶ñÒâÈí¼þµÄ½áºÏÍøÂ簲ȫÕ÷ѯ£¨CSA£©¡£¡£¡£¡£¡£¸ÃÕ÷ѯ½éÉÜÁËTrickBotµÄ¼¼Êõϸ½Ú¡¢MITRE ATT&CK Techniques¡¢¿úËÅÊý¾ÝÒÔ¼°»º½â´ëÊ©¡£¡£¡£¡£¡£TrickBotÊÇÒ»Öָ߼¶Ä¾Âí£¬£¬£¬£¬£¬£¬Í¨¹ýÓã²æÊ½´¹µö»î¶¯£¬£¬£¬£¬£¬£¬Ê¹ÓÃÔ̺¬¶ñÒ⸽¼þ»òÁ´½ÓµÄÌØÔìµç×ÓÓʼþÀ´´«²¼¡£¡£¡£¡£¡£¸Ã°²È«Õ÷ѯ½¨Òé×éÖ¯×èÖ¹¿ÉÒɵÄInternetºÍ̸µØÖ·¡¢Ê¹ÓÃɱ¶¾Èí¼þÒÔ¼°ÎªÔ±¹¤ÌṩÉç»á¹¤³ÌºÍÍøÂç´¹µöÅàѵµÈ·½Ê½À´·À±¸´ËÀ๥»÷¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://us-cert.cisa.gov/ncas/current-activity/2021/03/17/cisa-fbi-joint-advisory-trickbot-malware-0