ÐÅÏ¢Äþ¾²Öܱ¨-2018ÄêµÚ46ÖÜ

Ðû²¼Ê±¼ä 2018-11-19

Ò»¡¢±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö


2018Äê11ÔÂ12ÈÕÖÁ18ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´52¸ö £¬ÖµµÃ¹Ø×¢µÄÊÇMicrosoft Exchange Server CVE-2018-8581Ô¶³ÌȨÏÞÌáÉý©¶´£»Microsoft Windows BitLocker CVE-2018-8566Äþ¾²¹¦Ð§Èƹý©¶´£»Vmware ESXi/Workstation/Fusion CVE-2018-6981ÌÓÒÝ©¶´£»Elasticsearch Kibana Console²å¼þÈÎÒâ´úÂëÖ´ÐЩ¶´£»Microsoft Outlook CVE-2018-8522Ô¶³Ì´úÂëÖ´ÐЩ¶´ ¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊÇFIAÌåÏÖ×î½üµÄÊý¾Ýй¶Ê¼þÓ°ÏìÁ˼¸ºõËùÓеİͻù˹̹ÒøÐУ»Ñо¿ÍŶÓÅû¶7ÖÖÐÂÈÛ»ÙºÍÓÄÁé¹¥»÷ £¬Intel¡¢AMDºÍARM¾ùÊÜÓ°Ï죻Ñо¿ÍŶӷ¢ÏÖÖ÷ÒªÕë¶Ô°ÍÎ÷½ðÈÚ»ú¹¹µÄ¶ñÒâÈí¼þ·Ö·¢»î¶¯£»Ñо¿»ú¹¹Ðû²¼ÃÀ¹úÐÅÓÿ¨ÆÛÕ©³ÂËߣ»¹ýÈ¥1ÄêÄÚÒÑÓÐ6000ÍòÐÅÓÿ¨ÐÅÏ¢±»ÇÔ£»Áè¼Ý50¸ö¹ú¼ÒÇ©Ê𡶰ÍÀèÍøÂç¿Õ¼äÐÅÈκÍÄþ¾²³«Òé¡· ¡£


ƾ¾ÝÒÔÉÏ×ÛÊö £¬±¾ÖÜÄþ¾²ÍþвΪÖÐ ¡£


¶þ¡¢ÖØÒªÄþ¾²Â©¶´Áбí


1. Microsoft Exchange Server CVE-2018-8581Ô¶³ÌȨÏÞÌáÉý©¶´


Microsoft Exchange ServerÉí·ÝÑéÖ¤ÇëÇó´æÔÚÄþ¾²Â©¶´ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó £¬Ä£ÄâExchange serverµÄÆäËûÈÎÒâÕË»§ ¡£

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8581



2. Microsoft Windows BitLocker CVE-2018-8566Äþ¾²¹¦Ð§Èƹý©¶´


Microsoft Windows BitLockerûÓÐÕýÈ·µÄ¹ÒÆðBitLocker Device Encryption £¬ÔÊÐíµ±µØ¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó £¬»ñÈ¡¼ÓÃÜÊý¾ÝµÄ·ÃÎÊȨÏÞ ¡£

https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2018-8566



3. Vmware ESXi/Workstation/Fusion CVE-2018-6981ÌÓÒÝ©¶´


Vmware ESXi/Workstation/Fusion vmxnet3ÐéÄâÍøÂçÊÊÅäÆ÷ÖдæÔÚδ³õʼ»¯µÄÕ»ÄÚ´æ £¬ÔÊÐíµ±µØ¹¥»÷ÕßÀûÓ鶴¿ÉÌá½»ÌØÊâµÄÇëÇó £¬ÔÚHOST»úÆ÷ÉÏÖ´ÐÐÈÎÒâ´úÂë ¡£

https://www.vmware.com/security/advisories/VMSA-2018-0027.html



4. Elasticsearch Kibana Console²å¼þÈÎÒâ´úÂëÖ´ÐЩ¶´


Elasticsearch Kibana Console²å¼þ´æÔÚÄþ¾²Â©¶´ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴¿ÉÌá½»ÌØÊâµÄÇëÇó £¬ÒÔKibana½ø³ÌȨÏÞÖ´ÐÐÈÎÒâÃüÁî ¡£
https://access.redhat.com/security/cve/cve-2018-17246


5. Microsoft Outlook CVE-2018-8522Ô¶³Ì´úÂëÖ´ÐЩ¶´


Microsoft Office outlook´¦ÖÃÄڴ湤¾ß´æÔÚÄþ¾²Â©¶´ £¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÎļþÇëÇó £¬¿ÉÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë ¡£
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8522




Èý¡¢ÖØÒªÄþ¾²Ê¼þ×ÛÊö


1¡¢FIAÌåÏÖ×î½üµÄÊý¾Ýй¶Ê¼þÓ°ÏìÁ˼¸ºõËùÓеİͻù˹̹ÒøÐÐ

×ðÁú¶¶È¦ - Ϊdu¶øÉú


ƾ¾Ý°Í»ù˹̹Áª°îÊÓ²ì¾ÖFIAµÄ˵·¨ £¬¼¸ºõËùÓеİͻù˹̹ÒøÐж¼Êܵ½×î½üµÄÊý¾Ýй¶Ê¼þµÄÓ°Ïì ¡£¾Ý³Æ¸ÃʼþÓëÔÚ°µÍøÊг¡ÉÏ·ºÆðµÄÔ¼2ÍòÕÅ°Í»ù˹̹ÒøÐнè¼Ç¿¨ÐÅÏ¢ÓйØ ¡£¸Ã»ú¹¹ÕýÔÚÊÓ²ìÓë¸ÃʼþÓйصÄ100¶àÆðÍøÂç¹¥»÷ £¬Ä¿Ç°Éв»Çå³þÊý¾Ýй¶Ê¼þ·¢ÉúµÄ¾ßÌåʱ¼ä £¬Ò²²»ÖªµÀ¹¥»÷ÕßÈçºÎ½øÈëÕâЩ°Í»ù˹̹ÒøÐеÄϵͳ ¡£½ØÖÁÉÏÖÜÄ© £¬Ò»Ð©°Í»ù˹̹ÒøÐÐÒѾ­ÔÝÍ£ÔÚ¹úÍâʹÓÃËüÃǵĽè¼Ç¿¨ £¬²¢½ûÓÃÁËÕâЩ¿¨µÄËùÓйú¼Ê½»Ò× ¡£PakCERTͬÑùÐû²¼ÁËÒ»·Ý¹ØÓÚÊý¾Ý鶵Äʱ¼ä±íºÍ¹æÄ£µÄ³ÂËß ¡£


Ô­ÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/77847/cyber-crime/pakistani-banks-data-breach.html


2¡¢Ñо¿ÍŶÓÅû¶7ÖÖÐÂÈÛ»ÙºÍÓÄÁé¹¥»÷ £¬Intel¡¢AMDºÍARM¾ùÊÜÓ°Ïì


×ðÁú¶¶È¦ - Ϊdu¶øÉú


ÓÉ9ÃûÑо¿ÈËÔ±×é³ÉµÄÑо¿Ð¡×éÅû¶ÁË7ÖÖеÄÈÛ»ÙºÍÓÄÁé¹¥»÷ £¬ÆäÖÐ2ÖÖÊÇMeltdown¹¥»÷µÄ±äÖÖ £¬ÁíÍâ5ÖÖÊÇSpectre¹¥»÷µÄ±äÖÖ ¡£Èý´óÖ÷Òª´¦ÖÃÆ÷³§ÉÌ-Intel¡¢AMDºÍARM¾ùÊÜÓ°Ïì ¡£¸ÃÑо¿Ð¡×éÏòIntel¡¢AMDºÍARM³ÂËßÁËÕâЩ©¶´ £¬ÆäÖÐIntelºÍARMÒѾ­ÈÏ¿ÉÁËËûÃǵÄÑо¿½á¹û ¡£¸ÃÍŶӻ¹ÌåÏÖ £¬ÓÉÓÚ¹©Ó¦ÉÌÕýÔÚŬÁ¦ÐÞ¸´ÕâЩÎÊÌâ £¬ËûÃǾö¶¨Ôݲ»Åû¶Ïà¹ØPoC ¡£


Ô­ÎÄÁ´½Ó£º
https://thehackernews.com/2018/11/meltdown-spectre-vulnerabilities.html


3¡¢Ñо¿ÍŶӷ¢ÏÖÖ÷ÒªÕë¶Ô°ÍÎ÷½ðÈÚ»ú¹¹µÄ¶ñÒâÈí¼þ·Ö·¢»î¶¯


×ðÁú¶¶È¦ - Ϊdu¶øÉú


˼¿ÆTalosÍŶӷ¢ÏÖÁ½¸öÕýÔÚ½øÐÐÖеĶñÒâÈí¼þ·Ö·¢»î¶¯ £¬ÕâЩ»î¶¯ÓÃÓÚÏò°ÍÎ÷µÄ½ðÈÚ»ú¹¹Óû§Á÷´«ÒøÐÐľÂí ¡£¹¥»÷»î¶¯·¢ÉúÔÚ10Ôµ׺Í11Ô³õ £¬ÕâÁ½¸ö¹¥»÷»î¶¯Ê¹ÓÃÁ˲îÒìµÄ³õʼѬȾÎļþÀàÐͺÍÁ½¸ö²îÒìµÄÒøÐÐľÂí £¬µ«ÔÚѬȾ¹ý³ÌÖжÔÖÖÖÖÎļþʹÓÃÁËÏàͬµÄÃüÃû¹æÔò £¬²¢¶¼Ê¹ÓÃÁ˶ÌÁ´½ÓÀ´Òþ²Øʵ¼ÊµÄ·Ö·¢·þÎñÆ÷µØÖ· ¡£ÔÚ·ÖÎöÕâЩ»î¶¯Ê± £¬Talos»¹·¢ÏÖÁËÒ»¸öеÄÀ¬»øÓʼþ½©Ê¬ÍøÂç ¡£


Ô­ÎÄÁ´½Ó£º
https://blog.talosintelligence.com/2018/11/metamorfo-brazilian-campaigns.html


4¡¢Ñо¿»ú¹¹Ðû²¼ÃÀ¹úÐÅÓÿ¨ÆÛÕ©³ÂËß £¬¹ýÈ¥1ÄêÄÚÒÑÓÐ6000ÍòÐÅÓÿ¨ÐÅÏ¢±»ÇÔ


×ðÁú¶¶È¦ - Ϊdu¶øÉú


ƾ¾ÝGemini AdvisoryÐû²¼µÄÃÀ¹úÐÅÓÿ¨ÆÛÕ©³ÂËß £¬¾¡¹Ü2015ÄêÃÀ¹ú½ðÈÚÒµ¾ÍÒÑ´ó¹æģǨÒƵ½EMVоƬ¿¨³ß¶È £¬µ«ÔÚ¹ýÈ¥12¸öÔÂÄÚÈÔÓÐ6000ÍòÕÅÐÅÓÿ¨µÄÐÅÏ¢±»ÇÔ ¡£ÆäÖÐ4580Íò£¨75%£©µÄÐÅÓÿ¨ÐÅÏ¢ÊÇͨ¹ýPoS»úÉϵÄʵ¿¨½»Ò×±»Ç﵀ £¬Ö»ÓÐ25%µÄÐÅÓÿ¨ÐÅÏ¢±»ÔÚÏßÇÔÈ¡ ¡£ÕâЩʵ¿¨ÖÐ90%ÊÇEMV¿¨ ¡£¹ýÈ¥12¸öÔÂÄÚÔÚµç×ÓÉÌÎñÖб»ÇÔµÄÐÅÓÿ¨ÊýÁ¿Ôö³¤ÁË14% £¬ÕâÒâζÕß·¸×ï·Ö×ÓÕýÔÚ´Óʵ¿¨½»Ò×תÏòÎÞ¿¨ÆÛÕ© ¡£


Ô­ÎÄÁ´½Ó£º
https://geminiadvisory.io/card-fraud-on-the-rise/


5¡¢Áè¼Ý50¸ö¹ú¼ÒÇ©Ê𡶰ÍÀèÍøÂç¿Õ¼äÐÅÈκÍÄþ¾²³«Òé¡·


×ðÁú¶¶È¦ - Ϊdu¶øÉú


51¸ö¹ú¼Ò¡¢224¼Ò¹«Ë¾ÒÔ¼°92¸ö·ÇÓªÀû×éÖ¯ÔÚ·¨¹úÕþ¸®µÄÍƶ¯ÏÂÇ©ÊðÁËÕâÏ°ÍÀèÍøÂç¿Õ¼äÐÅÈκÍÄþ¾²³«Ò顷ЭÒé £¬°üÂÞ΢Èí¡¢¹È¸è¡¢FacebookºÍÈýÐǵȶà¼Ò¿Æ¼¼¾ÞÍ· ¡£Õâ·Ý³«ÒéÊéÖ÷ÒªÊÇΪÁËÓ¦¶Ô¹ýÈ¥¼¸Äê·ºÆðµÄÍøÂçÕ½ £¬µ«ÃÀ¹ú¡¢¶íÂÞ˹¡¢Ó¢¹ú¡¢ÒÁÀÊ¡¢ÒÔÉ«ÁС¢³¯ÏÊÒÔ¼°ÎÒ¹ú¶¼Ã»ÓÐÇ©Ãû ¡£


Ô­ÎÄÁ´½Ó£º
https://www.zdnet.com/article/us-russia-china-dont-sign-macrons-cyber-pact/


ÉùÃ÷£º±¾×ÊѶÓɶ¶È¦Îª¶Ä¶øÉúάËûÃüÄþ¾²Ð¡×é·­ÒëºÍÕûÀí