ÐÅÏ¢Çå¾²Öܱ¨-2021ÄêµÚ17ÖÜ

Ðû²¼Ê±¼ä 2021-04-27

> ±¾ÖÜÇå¾²Ì¬ÊÆ×ÛÊö


2021Äê04ÔÂ19ÈÕÖÁ04ÔÂ25ÈÕ¹²ÊÕ¼Çå¾²Îó²î60¸ö£¬£¬£¬£¬£¬£¬ÖµµÃ¹Ø×¢µÄÊÇGoogle Chrome V8¶ÑÒç³ö´úÂëÖ´ÐÐÎó²î£»£»£»£»£»FIBARO Home Center 2 8000¶Ë¿ÚδÊÚȨ»á¼ûÎó²î£»£»£»£»£»Oracle Cloud Infrastructure Storage Gateway CVE-2021-2318´úÂëÖ´ÐÐÎó²î£»£»£»£»£»Cisco SD-WAN vManage CVE-2021-1484²ÎÊý×¢ÈëÎó²î£»£»£»£»£»Dell Technologies Dell PowerScale OneFSδÊÚȨ»á¼ûÎó²î¡£¡£¡£¡£¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÇå¾²ÊÂÎñÊÇTwitterÔÚÈ«Çò¹æÄ£ÄÚЧÀÍÖÐÖ¹£¬£¬£¬£¬£¬£¬ÊÂÎñÈÔÔÚÊÓ²ìÖУ»£»£»£»£»AdvIntel·¢Ã÷RyukʹÓÃKeeThiefµÈй¤¾ßµÄ¹¥»÷»î¶¯£»£»£»£»£»ÃÀ¹úÖÆ²Ã28¸öÓë¶íÂÞ˹¹¥»÷»î¶¯ÓйصļÓÃÜÇ®±ÒµØµã£»£»£»£»£»OracleÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´¶à¸ö²úÆ·ÖеÄ390¸öÎó²î£»£»£»£»£»McAfeeÐû²¼2020ϰëÄêÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£


ƾ֤ÒÔÉÏ×ÛÊö£¬£¬£¬£¬£¬£¬±¾ÖÜÇå¾²ÍþвΪÖС£¡£¡£¡£¡£


> Ö÷ÒªÇå¾²Îó²îÁбí


1.Google Chrome V8¶ÑÒç³ö´úÂëÖ´ÐÐÎó²î


Google Chrome V8ÒýÇæ±£´æ¶ÑÒç³öÎó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄWEBÇëÇ󣬣¬£¬£¬£¬£¬ÓÕʹÓû§ÆÊÎö£¬£¬£¬£¬£¬£¬¿ÉʹӦÓóÌÐòÍ߽⻣»£»£»£»ò¿ÉÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£

https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_20.html


2.FIBARO Home Center 2 8000¶Ë¿ÚδÊÚȨ»á¼ûÎó²î


FIBARO Home Center 2 8000¶Ë¿Ú±£´æÇå¾²Îó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬¿ÉδÊÚȨִÐжñÒâ²Ù×÷£¬£¬£¬£¬£¬£¬Èç¹Ø»ú¡¢ÖØÆô»òÖØÆôµ½»Ö¸´Ä£Ê½¡£¡£¡£¡£¡£

http://seclists.org/fulldisclosure/2021/Apr/27


3.Oracle Cloud Infrastructure Storage Gateway CVE-2021-2318´úÂëÖ´ÐÐÎó²î


Oracle Cloud Infrastructure Storage Gateway±£´æÇå¾²Îó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬¿ÉʹӦÓóÌÐòÍ߽⻣»£»£»£»ò¿ÉÒÔÓ¦ÓóÌÐòÉÏÏÂÎÄÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£

https://www.oracle.com/security-alerts/cpuapr2021.html


4.Cisco SD-WAN vManage CVE-2021-1484²ÎÊý×¢ÈëÎó²î


Cisco SD-WAN vManage×°±¸Ä£°åÉèÖñ£´æÇå¾²Îó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬¿É×¢Èëí§ÒâÏÂÁ£¬£¬£¬£¬£¬»ò¿É¾ÙÐоܾøÐ§À͹¥»÷¡£¡£¡£¡£¡£

https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-vman-cmdinj-nRHKgfHX


5.Dell Technologies Dell PowerScale OneFSδÊÚȨ»á¼ûÎó²î


Dell Technologies Dell PowerScale OneFS¶ÔÃÜÔ¿ÓâÆÚ´¦Öóͷ£±£´æÇå¾²Îó²î£¬£¬£¬£¬£¬£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔʹÓÃÎó²îÌá½»ÌØÊâµÄÇëÇ󣬣¬£¬£¬£¬£¬ÓµÓÐISI_PRIV_LOGIN_SSHµÄÓâÆÚÓû§¿É¼ÌÐøµÇ¼ϵͳ¡£¡£¡£¡£¡£

https://www.dell.com/support/kbdoc/en-sg/000185202/dsa-2021-048-dell-emc-powerscale-onefs-security-update-for-multiple-vulnerabilities


> Ö÷ÒªÇå¾²ÊÂÎñ×ÛÊö


1¡¢TwitterÔÚÈ«Çò¹æÄ£ÄÚЧÀÍÖÐÖ¹£¬£¬£¬£¬£¬£¬ÊÂÎñÈÔÔÚÊÓ²ìÖÐ


1.jpg


TwitterÔÚÉÏÖÜÎåÍíÉϱ¬·¢Á˵ÄÖÐÖ¹£¬£¬£¬£¬£¬£¬²¢Ò»Ö±Ò»Á¬µ½ÖÜÁùÉÏÎç¡£¡£¡£¡£¡£Óû§·´Ó¦µÄÎÊÌâ°üÀ¨ÎÞ·¨Õý³£ËÑË÷¡¢ÄÚÈÝÎÞ·¨¼ÓÔØ¡¢Í¼ÏñÎÞ·¨ÏÔʾÉõÖÁÎÞ·¨µÇÂ¼ÍøÕ¾¡£¡£¡£¡£¡£¾Ýͳ¼Æ´Ë´ÎÖÐÖ¹Ó°ÏìÁËÈ«Çò¹æÄ£ÄÚµÄÓû§£¬£¬£¬£¬£¬£¬µ«ÂÞÂíÄáÑǵÈһЩ¹ú¼ÒËÆºõ²¢Î´Êܵ½Ó°Ïì¡£¡£¡£¡£¡£TwitterÌåÏÖ´Ë´ÎÖÐÖ¹ÊÇÆäЧÀÍÆ÷ÉϵÄÎÊÌ⣬£¬£¬£¬£¬£¬²¢ÒѾ­ÔÚÆð¾¢½â¾öʹһÇо¡¿ì»Ö¸´Õý³££¬£¬£¬£¬£¬£¬¿ÉÊDz¢Î´ÌṩÓйش˴ιÊÕϵÄÏêϸÐÅÏ¢¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/technology/twitter-is-suffering-from-another-worldwide-outage-today/


2¡¢AdvIntel·¢Ã÷RyukʹÓÃKeeThiefµÈй¤¾ßµÄ¹¥»÷»î¶¯


2.jpg


Çå¾²¹«Ë¾Advanced Intelligence·¢Ã÷RyukʹÓÃKeeThiefµÈй¤¾ßµÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÊӲ쵽£¬£¬£¬£¬£¬£¬½ñÄêRyukÀÕË÷Èí¼þ¸ü¶àµØÒÀÀµÓÚ¶ÔRDP̻¶µÄÖ÷»ú¾ÙÐдó¹æÄ£±©Á¦ÆÆ½âºÍÃÜÂëÅçÈ÷¹¥»÷À´ÈëÇÖÄ¿µÄÍøÂç¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬ÔÚÕâЩ¹¥»÷Öл¹·¢Ã÷ÁËÐÂÊÖÒÕ£¬£¬£¬£¬£¬£¬°üÀ¨Ê¹ÓôÓKeePassÃÜÂëÖÎÀíÆ÷ÇÔȡƾ֤µÄ¿ªÔ´¹¤¾ßKeeThief£¬£¬£¬£¬£¬£¬ÒÔ¼°×°ÖñãЯʽ°æ±¾µÄNotepad ++£¬£¬£¬£¬£¬£¬ÔÚPowerShellÖ´ÐÐÊÜÏÞµÄϵͳÉÏÔËÐÐPowerShell¾ç±¾¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/ryuk-ransomware-operation-updates-hacking-techniques/


3¡¢ÃÀ¹úÖÆ²Ã28¸öÓë¶íÂÞ˹¹¥»÷»î¶¯ÓйصļÓÃÜÇ®±ÒµØµã


3.jpg


ÃÀ¹úÕþ¸®ÔÚ±¾ÖÜÖÆ²ÃÁË28¸ö¼ÓÃÜÇ®±ÒµØµã£¬£¬£¬£¬£¬£¬¾Ý³ÆÕâЩµØµãÓëÉæ¼°¶íÂÞË¹ÍøÂç¹¥»÷»ò×ÌÈÅÑ¡¾Ù»î¶¯µÄ×éÖ¯ºÍСÎÒ˽¼ÒÓйØ¡£¡£¡£¡£¡£ÃÀ¹úÕþ¸®»¹ÌåÏÖ£¬£¬£¬£¬£¬£¬ÕâЩ»î¶¯ÊÇÓɶíÂÞ˹Áª°îÇå¾²¾Ö£¨FSB£©ºÍ¶íÂÞ˹Ö÷ÒªÇ鱨¾Ö£¨GRU£©¿ªÕ¹µÄ£¬£¬£¬£¬£¬£¬²¢ÇÒÒѾ­»ñµÃÁËÁù¼ÒÓë¶íÂÞ˹ÓÐÏàÖúµÄ¹«Ë¾µÄ×ÊÖú¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬ÃûΪSESµÄ°Í»ù˹̹¹«Ë¾Ïò»¥ÁªÍøÑо¿»ú¹¹(IRA)ÌṩÐéαÉí·ÝÀ´ÌÓ±ÜÃÀ¹úµÄÖÆ²Ã£¬£¬£¬£¬£¬£¬Æä¼ÓÃÜÇ®±ÒµØµãÒÑͨ¹ý26900±ÊÉúÒâÊÕµ½Á˼ÛÖµÁè¼Ý250ÍòÃÀÔªµÄÊý×ÖÇ®±Ò¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-sanctions-cryptocurrency-addresses-linked-to-russian-cyberactivities/


4¡¢OracleÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´¶à¸ö²úÆ·ÖеÄ390¸öÎó²î


4.jpg


OracleÒÑÓÚ2021Äê4ÔÂÐû²¼ÁËÖ÷Òª²¹¶¡¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´Á˶à¸ö²úÆ·ÖеÄ390¸öÎó²î¡£¡£¡£¡£¡£´Ë´ÎÐÞ¸´µÄ½ÏΪÑÏÖØµÄÎó²îΪOracleͨѶӦÓóÌÐòÖÐCVSSÆÀ·ÖΪ9.8µÄCVE-2020-11612¡¢CVE-2019-0228¡¢CVE-2020-11612ºÍCVE-2020-28052£¬£¬£¬£¬£¬£¬Instantis EnterpriseTrackÖеÄCVE-2019-0219£¬£¬£¬£¬£¬£¬ÆóÒµÖÎÀíÆ÷»ù´¡Æ½Ì¨ÖеÄCVE-2019-17195ÒÔ¼°OracleÉÌÒµÖÇÄÜÆóÒµ°æÖеÄCVE-2020-9480µÈÎó²î¡£¡£¡£¡£¡£OracleÇ¿ÁÒ½¨Òé¿Í»§¾¡¿ìÓ¦ÓÃÇå¾²²¹¶¡¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.oracle.com/security-alerts/cpuapr2021.html


5¡¢McAfeeÐû²¼2020ϰëÄêÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ


5.jpg


McAfeeÐû²¼ÁË2020ϰëÄêÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£±¨¸æ³Æ£¬£¬£¬£¬£¬£¬2020ÄêQ4ƽ¾ùÿ·ÖÖӿɼì²âµ½648¸öÍþв£¬£¬£¬£¬£¬£¬±ÈQ3ÔöÌíÁË10£¥£¬£¬£¬£¬£¬£¬±ÈQ2ÔöÌíÁË40£¥£¬£¬£¬£¬£¬£¬Ê¼ÖÕ³ÊÒ»Á¬ÉÏÉýÇ÷ÊÆ¡£¡£¡£¡£¡£±¨¸æ»¹Ö¸³ö2020ÄêϰëÄêÔÚÒ°Íâ·¢Ã÷µÄ¹¥»÷ÊýÄ¿¼¤ÔöµÄÖ÷ÒªÔµ¹ÊÔ­ÓÉÊÇÒÔCOVIDΪÖ÷ÌâµÄ¹¥»÷ºÍPowerShellľÂíµÄ¼¤Ôö£¬£¬£¬£¬£¬£¬ÒÔ¼°SolarWindsÎó²îºÍSunburst¶ñÒâÈí¼þµÄÒ»Á¬ÉìÕÅ¡£¡£¡£¡£¡£Ïà±ÈÓÚQ3 £¬£¬£¬£¬£¬£¬Q4µÄPowerShellÊýÄ¿ÔöÌíÁË208%£¬£¬£¬£¬£¬£¬Õë¶ÔofficeµÄ¶ñÒâÈí¼þÊýÄ¿ÔöÌíÁË199%¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.mcafee.com/enterprise/en-us/lp/threats-reports/apr-2021.html