Adobe°ä²¼²¹¶¡·¨Ê½½¨¸´36¸ö·ì϶£»DHS CISAºÍFBI½áºÏ°ä²¼×î³£¼ûµÄÊ®´óÈí¼þ·ì϶

°ä²¼¹¦·ò 2020-05-14

1.Adobe°ä²¼²¹¶¡·¨Ê½ £¬½¨¸´3¿î²úÆ·ÖеÄ36¸ö·ì϶


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


Adobe°ä²¼Adobe Acrobat¡¢ReaderºÍAdobe DNGµÄ·ì϶²¹¶¡ £¬½¨¸´ÁËÕâ3¸ö²úÆ·ÖеÄ36¸ö·ì϶ £¬ÆäÖÐ16¸ö½ÏΪÑϳÁ £¬ÔÊÐí´úÂëÖ´ÐлòÈÆ°²È«Ö°ÄÜÈÆ¹ý¡£Õâ´Î¸üÐÂÖн¨¸´ÁËAcrobatºÍReaderµÄ24¸ö·ì϶ £¬Ô̺¬»Ø¾ø·þÎñ£¨CVE-2020-9610£©¡¢ËÁÒâ´úÂëÖ´ÐÐ?????£¨CVE-2020-9612£©¡¢°²È«Ö°ÄÜÈÆ¹ý£¨CVE-2020-9615¡¢CVE-2020-9597¡¢CVE-2020-9594£©¡¢ÐÅÏ¢Åû¶£¨CVE-2020-9609¡¢CVE-2020-9608¡¢CVE-2020-9603¡¢CVE-2020-9602£©µÈ·ì϶ £¬ÒÔ¼°Adobe DNGÖеÄ12¸ö·ì϶ £¬Ô̺¬ËÁÒâ´úÂëÖ´ÐУ¨CVE-2020-9589¡¢CVE-2020-9590¡¢CVE-2020-962CVE-2020-9621£©?¡¢ÐÅÏ¢Åû¶  £¨CVE-2020-9622¡¢CVE-2020-9623£©??µÈ·ì϶¡£???


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/adobe-fixes-critical-vulnerabilities-in-acrobat-reader-and-dng-sdk/


2.DHS CISAºÍFBI½áºÏ°ä²¼ÁË×î³£¼ûµÄÊ®´óÈí¼þ·ì϶


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


ÃÀ¹úÁ½¼ÒÍøÂ簲ȫ»ú¹¹DHS CISAºÍFBIÔÚ±¾ÖܽáºÏ°ä²¼ÁËÒ»·ÝÇåµ¥ £¬ÁгöÁË´ÓǰËÄÄ꣨2016ÄêÖÁ2019Ä꣩×î³£¼ûµÄÊ®´óÈí¼þ·ì϶¡£ËüÔ̺¬CVE-2017-11882¡¢CVE-2017-0199¡¢CVE-2017-5638¡¢CVE-2012-0158¡¢CVE-2019-0604¡¢CVE-2017-0143¡¢CVE-2018-4878¡¢CVE-2017-8759¡¢CVE-2015-1641ºÍCVE-2018-7600¡£ÆäÖÐÊܵ½¹¥»÷×î¶àµÄÈí¼þÊÇMicrosoft £¬Æä´ÎÊÇApache Struts¡£2020Äê×î³£±»ÀûÓõķì϶ÊÇCitrix VPNÉ豸Öеķì϶£¨CVE-2019-19781£©ºÍPulse Secure VPN·þÎñÆ÷Öеķì϶£¨CVE-2019-11510£©¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/dhs-cisa-and-fbi-share-list-of-top-10-most-exploited-vulnerabilities/


3.¼ÌWannaCryÖ®ºó £¬ÃÀ¹ú¹ÙÔ±³Æ3¿î¶ñÒâÈí¼þÓ볯ÏÊÓйØ


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


5ÔÂ12ÈÕ £¬Ç¡·êÀÕË÷Èí¼þWannaCry·¢×÷ÈýÖÜÄêÖ®¼Ê £¬ÃÀ¹ú¹ÙÔ±ÓÖÅû¶3¿î¶ñÒâÈí¼þ £¬²¢³ÆÆäÓ볯ÏÊÓйØ¡£3¿î¶ñÒâÈí¼þ±ðÀëΪԶ³Ì½Ó¼ûÌØÂåÒÁľÂí£¨RAT£©COPPERHEDGE £¬¿ÉÄÜÖ´ÐÐËÁÒâºÅÁî £¬½øÐÐϵͳ¿úËźÍÊý¾ÝÇÔÈ¡ £¬ÓÐ6¸ö±äÌå£»ÌØÂåÒÁľÂíTAINTEDSCRIBE £¬Äܹ»½Ó¹ÜºÍÖ´Ðй¥»÷ÕߺÅÁî £¬ÓÃFakeTLS½øÐлỰÉí·ÝÑéÖ¤ÒÔ¼°¶ÔʹÓÃLFSRËã·¨µÄÍøÂç¼ÓÃÜ£»ÌØÂåÒÁľÂíPEBBLEDASH £¬ÓµÓÐÏÂÔØ¡¢ÉÏ´«¡¢É¾³ýºÍÖ´ÐÐÎļþµÄÖ°ÄÜ £¬ÆôÓÃWindows CLI £¬²¢Äܹ»´´½¨ºÍÖÕÖ¹¹ý³Ì¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/on-the-three-year-anniversary-of-wannacry-us-exposes-new-north-korean-malware/


4.΢Èí·¢ÏÖд¹µö»î¶¯ £¬ÀûÓÃCOVID-19·Ö·¢Ä¾ÂíLokiBot


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


΢Èí·¢ÏÖеÄÍøÂç´¹µö»î¶¯ £¬ÒÔCOVID-19Ϊµö¶üÀ´·Ö·¢ÐÅÏ¢ÇÔȡľÂíLokiBot¡£LokiBotÒ»µ©³É¹¦Ï°È¾Êܺ¦Õß £¬±ã»áÆä´Óä¯ÀÀÆ÷¡¢FTP¡¢ÓʼþºÍÖÕ¶Ë·¨Ê½ÖÐÇÔÈ¡Òѱ£ÁôµÄµÇ¼ʹ´¦ £¬¶øºó½«Êý¾Ý·¢Ëͻع¥»÷ÕߵķþÎñÆ÷¡£Æ¾¾ÝMicrosoftµÄ˵·¨ £¬Ð´¹µö»î¶¯ÊÇÒÔCOVID-19Ϊµö¶üÓÕÆ­ÊÕ¼þÈË´ò¿ª¶ñÒ⸽¼þµÄ £¬¹¥»÷Õß¼Ù×°³É¼²²¡½ÚÔìÖÐÐÄ£¨CDC£© £¬·¢ËͲ¡¶¾µÄ×îÐÂÐÅÏ¢ÒÔ¼°×îеÄÒµÎñÂ½ÐøÐÔ´òËã²¼¸æ¡£Ö®ºó £¬¸½¼þÖÐÔ̺¬¼Ù×°³ÉPDFµÄ¿ÉÖ´ÐÐÎļþ £¬Ò»µ©Êܺ¦Õß´ò¿ª¸½¼þ¾Í»áϰȾLokiBotľÂí¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/microsoft-warns-of-covid-19-phishing-spreading-info-stealing-malware/


5.Ò½Áƹ«Ë¾MagellanÔâÀÕË÷Èí¼þ¹¥»÷ £¬Êý¾Ýй¶


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


Ò½ÁƱ£½¡¹«Ë¾Magellan HealthÔÚ5ÔÂ12ÈÕ°ä·¢ £¬ÆäÓÚ4ÔÂ11ÈÕ·¢ÏÖÔâµ½ÁËÀÕË÷Èí¼þ¹¥»÷ £¬²¢µ¼ÖÂÆä¹«Ë¾ÖеÄÒ»¸ö·þÎñÆ÷Êý¾Ý±»µÁ¡£¾Ý¸Ã¹«Ë¾µÄÊ×ϯºÏ¹æ¹Ù John J. DiBernardi Jr˵ £¬ºÚ¿ÍÔÚ4ÔÂ6ÈÕ¼ÙÒâMagellanµÄ¿Í»§·¢ËÍ´¹µöÓʼþ £¬³É¹¦ºó½Ó¼ûÁ˸ù«Ë¾ÏµÍ³¡£Õâ´Î±»µÁÊý¾ÝΪ¸Ã¹«Ë¾Ò»¸ö·þÎñÆ÷ÖеIJ¿ÃÅÊý¾Ý £¬Ô̺¬ÐÕÃû¡¢µØÖ·¡¢Ô±¹¤IDºÅ¡¢Éç»á±£ÏպŻòÄÉ˰ÈËIDºÅ¡¢Óû§ÃûºÍÃÜÂëµÈ¡£Ä¿Ç°MagellanÒѾ­Í¨ÖªÁËÊÜÓ°ÏìÓû§ £¬²¢°µÊ¾ÆäÒѾ­¶Ô´ËÊ·¢Õ¹Á˵÷²é¡£Õâ²¢²»ÊǸù«Ë¾µÚÒ»´ÎÔâµ½¹¥»÷ £¬ÆäÔÚÈ¥Äê9ÔÂ17ÈÕºÍ11ÔÂ27ÈÕ°ä·¢Ôâµ½ÁË´¹µö¹¥»÷ £¬²¢ÇÒÓ°ÏìÁËÈý¼Ò×Ó¹«Ë¾¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/healthcare-giant-magellan-health-hit-by-ransomware-attack/


6.ÊýǧAndroidÀûÓÃÒòFirebaseÅäÖÃÎÊÌâй¶Óû§ÐÅÏ¢


±¦ÔËÀ³¡¤(ÖйúÇø)×îйٷ½ÍøÕ¾


³¬¹ý4000¸öAndroidÀûÓ÷¨Ê½ÓÉÓÚ¶ÔÓÚÆäʹÓõÄGoogleÔÆÍйÜÊý¾Ý¿âFirebaseÅäÖò»µ± £¬µ¼ÖÂÓû§Ãô¸ÐÐÅϢй¶¡£Ð¹Â¶Êý¾ÝÔ̺¬Óû§µç×ÓÓʼþµØÖ·¡¢Óû§Ãû¡¢ÃÜÂë¡¢µç»°ºÅÂë¡¢ÐÕÃû¡¢Ì¸ÌìÐÂÎź͵ØÎ»Êý¾Ý¡£Æ¾¾ÝSecurity DiscoveryºÍComparitechµÄ½áºÏ·ÖÎö £¬µ÷²éÁË15735¸öAndroidÀûÓ÷¢ÏÖÁ˳¬¹ý4000ÀûÓôæÔÚ´ËÎÊÌâ £¬Ô¼Õ¼Google PlayÉ̵êÖÐËùÓÐÀûÓõÄ18£¥¡£×êÑÐÈËÔ±»¹ÖÒ¸æËµ £¬ÓÉÓÚFirebaseÊÇ¿çÆ½Ì¨¹¤¾ß £¬ÅäÖò»µ±µÄÎÊÌâͬÑùÒ²¿ÉÄÜ»áÓ°Ïìµ½iOSºÍWebÀûÓ÷¨Ê½¡£GoogleÔÚÄõ½´Ë·ÖÎöÁ˾ֺó°µÊ¾ £¬ÔÚÓ뿪·¢ÈËÔ±ÁªÏµÒÔ½â¾ö´ËÎÊÌâ¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2020/05/android-firebase-database-security.html