¡¶Î¬ËûÃü¡·ÖðÈÕÇå¾²¼òѶ20190116

Ðû²¼Ê±¼ä 2019-01-16
1¡¢OracleÐû²¼1ÔÂÇå¾²¸üУ¬ £¬£¬£¬£¬£¬£¬ÐÞ¸´284¸öÇå¾²Îó²î

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


OracleÐû²¼2019Äê1ÔµÄÖ÷Òª²¹¶¡¸üУ¬ £¬£¬£¬£¬£¬£¬¹²ÐÞ¸´ÁË284¸öÇå¾²Îó²î ¡£¡£¡£¡£¡£¡£¡£ÆäÖаüÀ¨Ó°ÏìOracle Database ServerµÄRDBMS×é¼þµÄÁ½¸öÎó²î£¨CVE-2019-2444¡¢CVE-2019-2406£©ºÍJava VM×é¼þµÄÒ»¸öÎó²î£¨CVE-2019-2547£© ¡£¡£¡£¡£¡£¡£¡£Oracle CommunicationsÖÐÐÞ¸´ÁË33¸öÎó²î£¬ £¬£¬£¬£¬£¬£¬ÆäÖÐ29¸ö¿Éͨ¹ýÍøÂçÔ¶³ÌʹÓöøÎÞÐèÓû§Æ¾Ö¤ ¡£¡£¡£¡£¡£¡£¡£ÆäËüÊÜÓ°ÏìµÄ²úÆ·»¹°üÀ¨E-BusinessÌ×¼þ¡¢ÆóÒµÖÎÀíÆ÷¡¢Financial Services¡¢FusionÖÐÐļþµÈ£¬ £¬£¬£¬£¬£¬£¬ÏêϸÎó²îÁбíÇë²Î¿¼ÒÔÏÂÁ´½Ó ¡£¡£¡£¡£¡£¡£¡£

  

 Ô­ÎÄÁ´½Ó£º

https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html


2¡¢ZDIÅû¶¿Éµ¼ÖÂRCEµÄWindows VCard 0day

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Çå¾²Ñо¿Ö°Ô±John Page£¨@hyp3rlinx£©·¢Ã÷Windows vCardÎļþÖеÄÒ»¸ö0day£¬ £¬£¬£¬£¬£¬£¬¸ÃÎó²î¿ÉÔÊÐíÔ¶³Ì¹¥»÷ÕßÖ´ÐÐí§Òâ´úÂë ¡£¡£¡£¡£¡£¡£¡£ZDIÔÚ6¸öÔÂǰÏò΢Èí±¨¸æÁË´ËÎó²î£¬ £¬£¬£¬£¬£¬£¬µ«Î¢ÈíÌåÏÖ²»¾ÙÐÐÐÞ¸´ ¡£¡£¡£¡£¡£¡£¡£vCardÎļþÓÃÓڴ洢СÎÒ˽¼Ò»òÆóÒµµÄÁªÏµÐÅÏ¢£¬ £¬£¬£¬£¬£¬£¬Æ¾Ö¤Ñо¿Ö°Ô±µÄ˵·¨£¬ £¬£¬£¬£¬£¬£¬¹¥»÷Õ߿ɽ«ÎļþÖеÄÁªÏµÈËÍøÕ¾URLÖ¸ÏòÍâµØ¿ÉÖ´ÐÐÎļþ£¬ £¬£¬£¬£¬£¬£¬µ±Óû§µã»÷¸ÃURLʱ£¬ £¬£¬£¬£¬£¬£¬Windows½«Ö´ÐжñÒâ¿ÉÖ´ÐÐÎļþ¶ø²»ÏÔʾÈκÎÖÒÑÔÐÅÏ¢ ¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²îÉÐδ±»·ÖÅÉÈκÎCVE±àºÅ£¬ £¬£¬£¬£¬£¬£¬ÆäCVSS 3.0ÆÀ·ÖΪ7.8£¬ £¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±»¹Ðû²¼ÁËÏà¹ØPOC´úÂë ¡£¡£¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2019/01/vcard-windows-hacking.html


3¡¢SCPЭÒé±£´æ4¸ö¾ßÓÐ36ÄêÀúÊ·µÄÇå¾²Îó²î

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


F-SecureÑо¿Ö°Ô±Harry Sintonen·¢Ã÷Çå¾²¸´ÖÆÐ­Ò飨SCP£©Öб£´æ4¸ö¾ßÓÐ36ÄêÀúÊ·µÄÇå¾²Îó²î£¬ £¬£¬£¬£¬£¬£¬¶ñÒâЧÀÍÆ÷»òÖÐÐÄÈ˹¥»÷Õß¿ÉʹÓÃÕâЩÎó²îÁýÕÖ¿Í»§¶ËϵͳÉϵÄí§ÒâÎļþ ¡£¡£¡£¡£¡£¡£¡£Îó²îÓëSCP¿Í»§¶ËµÄÑéÖ¤²»µ±ÓйØ£¬ £¬£¬£¬£¬£¬£¬°üÀ¨Ä¿Â¼Ãû³ÆµÄ²»×¼È·ÑéÖ¤£¨CVE-2018-20685£©¡¢ÎüÊÕµ½µÄ¹¤¾ßµÄÃû³ÆÑé֤ȱʧ£¨CVE-2019-6111£©¡¢¹¤Ç©×Ö³ÆÓÕÆ­£¨CVE-2019-6109£©ºÍstderrÓÕÆ­£¨CVE-2019-6110£© ¡£¡£¡£¡£¡£¡£¡£ÓÉÓÚÎó²îÓ°ÏìSCPЭÒéµÄʵÑ飬 £¬£¬£¬£¬£¬£¬ËùÓÐSCP¿Í»§¶ËÓ¦ÓóÌÐò£¨°üÀ¨OpenSSH¡¢PuTTYºÍWinSCP£©¶¼»áÊܵ½Ó°Ï죬 £¬£¬£¬£¬£¬£¬½¨ÒéÓû§ÊµÊ±¹Ø×¢ÕâЩ²úÆ·µÄÇå¾²¸üР¡£¡£¡£¡£¡£¡£¡£
  Ô­ÎÄÁ´½Ó£º
https://thehackernews.com/2019/01/scp-software-vulnerabilities.html


4¡¢ÃÀ¹ú·À²¿×îб¨¸æ³ÆÎå½Ç´óÂ¥ÈÔ±£´æÍøÂçÇ徲Σº¦

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


2019Äê1ÔÂ9ÈÕÃÀ¹ú¹ú·À²¿×ܼà²ì³¤°ì¹«ÊÒÐû²¼ÁËÒ»·ÝÄê¶ÈÉ󼯱¨¸æ£¬ £¬£¬£¬£¬£¬£¬Õâ·Ý±¨¸æÖ¸³öÎå½Ç´óÂ¥ÔÚ´¦Öóͷ£Õë¶ÔÍøÂçÇ徲Σº¦µÄ½¨Òé·½ÃæÈÔȻȱ·¦£¬ £¬£¬£¬£¬£¬£¬ÈÔÓÐ266Ïî´ý½â¾öµÄÍøÂçÇå¾²Ïà¹Ø½¨Ò飬 £¬£¬£¬£¬£¬£¬ÕâЩ½¨Òé×îÔç¿É×·ËÝÖÁ2008Äê ¡£¡£¡£¡£¡£¡£¡£Õâ·Ý±¨¸æ»¹°üÀ¨×ܼà²ì³¤°ì¹«ÊÒÉó¼ÆÁË2017Äê7ÔÂ1ÈÕÖÁ2018Äê6ÔÂ30ÈÕʱ´úGAOºÍ¹ú·À²¿î¿Ïµ²¿·ÖÐû²¼µÄ4·ÝÉñÃØ±¨¸æºÍ20·Ý·ÇÉñÃØ±¨¸æµÄЧ¹û ¡£¡£¡£¡£¡£¡£¡£Îå½Ç´óÂ¥Õë¶ÔÉÏÊö±¨¸æÖÐÌá³öµÄ159ÏÒéÖеÄ19Ïî½ÓÄÉÁËÐж¯£¬ £¬£¬£¬£¬£¬£¬µ«ÈÔÓÐÖÚ¶àÍøÂçÇå¾²ÎÊÌâÐèÒª½â¾ö ¡£¡£¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/hundreds-of-cybersecurity-risks-still-affecting-the-pentagon/


5¡¢ÐÂÎ÷À¼¼ÓÃÜÇ®±ÒÉúÒâËùCryptopiaÔâºÚ¿ÍÈëÇÖ

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ÐÂÎ÷À¼¼ÓÃÜÇ®±ÒÉúÒâËùCryptopiaÐû²¼Ôâµ½ºÚ¿ÍÈëÇÖ²¢ÔâÊÜÖØ´óËðʧ£¬ £¬£¬£¬£¬£¬£¬µ«¸ÃÉúÒâËù²¢Î´Åû¶ÈëÇÖÊÂÎñµÄÏêÇ飬 £¬£¬£¬£¬£¬£¬Ò²Ã»ÓÐÅû¶Êܵ½ËðʧµÄÏêϸ½ð¶î ¡£¡£¡£¡£¡£¡£¡£CryptopiaÉù³ÆÒѾ­Í¨ÖªÁËÏà¹ØÕþ¸®²¿·Ö£¬ £¬£¬£¬£¬£¬£¬²¢ÇÒÔÝÍ£ÁËÒ»ÇÐÉúÒâ ¡£¡£¡£¡£¡£¡£¡£¸ÃÐÂÎÅÊÇÔÚTwitterÉÏÐû²¼µÄ£¬ £¬£¬£¬£¬£¬£¬1ÔÂ14ÈÕÏÂÖçCryptopiaÐû²¼ÍÆÎijÆÉúÒâËùÕýÔÚ¾ÙÐÐÍýÏëÍâά»¤£¬ £¬£¬£¬£¬£¬£¬²¢ÕýÔÚÆð¾¢¾¡¿ì»Ö¸´Ð§ÀÍ£¬ £¬£¬£¬£¬£¬£¬µ«µÚ¶þÌì¸ÃÉúÒâËùÐû²¼ÍÆÎijÆÔâµ½ºÚ¿ÍÈëÇÖ ¡£¡£¡£¡£¡£¡£¡£

  

Ô­ÎÄÁ´½Ó£º

https://blokt.com/news/cryptopia-notifies-its-users-of-security-breach-with-substantial-losses


6¡¢Ð´¹ÂڻʹÓöñÒâRTFÎĵµÈö²¥HawkeyeľÂí

¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Ò»¸öеÄÍøÂç´¹ÂڻʹÓöñÒâµÄRTFÎĵµ¸½¼þ·Ö·¢¼üÅ̼ͼľÂíHawkeye ¡£¡£¡£¡£¡£¡£¡£¸Ã»î¶¯Ö÷ÒªÕë¶ÔÖÐСÐÍÆóÒµ£¬ £¬£¬£¬£¬£¬£¬²¢Ê¹ÓÃOffice¹«Ê½±à¼­Æ÷Îó²îCVE-2017-1182¾ÙÐÐÈö²¥£¬ £¬£¬£¬£¬£¬£¬¶ñÒâÎĵµµÄ²¿·ÖÒ³ÃæÊÇÓÉÔ½ÄÏÓï±àдµÄ ¡£¡£¡£¡£¡£¡£¡£µ±Êܺ¦Õß·­¿ª¶ñÒâÎĵµÊ±£¬ £¬£¬£¬£¬£¬£¬¾Í»áÓëhttp[:]//bit[.]ly/2D1Ob77ͨѶ²¢´Óhttp[:]//aoiap[.]org/q.pngÏÂÔØHawkeyeľÂí ¡£¡£¡£¡£¡£¡£¡£ËäÈ»¸ÃÎļþ¿´ËÆÊÇÒ»¸öͼƬÎļþ£¬ £¬£¬£¬£¬£¬£¬µ«ÏÖʵÉÏÊÇÒ»¸öÐÞ¸ÄÁËÀ©Õ¹ÃûµÄexeÎļþ ¡£¡£¡£¡£¡£¡£¡£

 

 Ô­ÎÄÁ´½Ó£º

https://cyware.com/news/malicious-rtf-docs-used-to-deliver-hawkeye-keylogger-trojan-in-a-new-phishing-campaign-03e71fd5


ÉùÃ÷£º±¾×ÊѶÓÉ¿­·¢k8άËûÃüÇ徲С×é·­ÒëºÍÕûÀí