Maze¹¥»÷ÕßÍþв8¼Ò¹«Ë¾£¬£¬£¬£¬£¬£¬ £¬£¬²»Ö§¸¶Êê½ð½«¹ûÕæÃô¸ÐÊý¾Ý£»£»£»£»£»MyKingzʹÓÃTaylor SwiftͼƬÒþ²Øpayload

Ðû²¼Ê±¼ä 2019-12-20

1.΢ÈíÐû²¼´øÍâ¸üУ¬£¬£¬£¬£¬£¬ £¬£¬ÐÞ¸´SharePointÖеÄÐÅϢй¶Îó²î


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾




΢ÈíÐû²¼´øÍâ¸üУ¬£¬£¬£¬£¬£¬ £¬£¬ÐÞ¸´SharePointЧÀÍÆ÷ÖеÄÐÅϢй¶Îó²î£¬£¬£¬£¬£¬£¬ £¬£¬¹¥»÷Õß¿ÉÄÜʹÓøÃÎó²îÀ´»ñÈ¡Ãô¸ÐÐÅÏ¢/¶ÁÈ¡í§ÒâÎļþ¡£¡£¡£¡£ ¡£¡£¡£¡£ÒªÊ¹ÓôËÎó²î£¬£¬£¬£¬£¬£¬ £¬£¬¹¥»÷ÕßÐèÒªÏòÊÜÓ°ÏìµÄSharePoint ServerʵÀý·¢ËͶñÒâÇëÇ󡣡£¡£¡£ ¡£¡£¡£¡£¸ÃÎó²î£¨CVE-2019-1491£©Ó°ÏìÁËSharePoint Enterprise Server 2016¡¢Foundation 2010 SP2ºÍ2013 SP1ÒÔ¼°SharePoint Server 2019¡£¡£¡£¡£ ¡£¡£¡£¡£Î¢ÈíÌåÏÖͨ¹ýÔÚÊÜÓ°ÏìµÄAPIÖиü¸Ä´¦Öóͷ£ÇëÇóµÄ·½·¨½â¾öÁË´ËÎÊÌâ¡£¡£¡£¡£ ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/95345/hacking/sharepoint-flaw-patch.html



2.Drupal¿ª·¢ÍŶÓÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬£¬ £¬£¬ÐÞ¸´¶à¸öÎó²î


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾



±¾ÖÜÈýDrupal¿ª·¢ÍŶÓÐû²¼Ð°汾7.69¡¢8.7.11ºÍ8.8.1£¬£¬£¬£¬£¬£¬ £¬£¬ÐÞ¸´¶à¸öÎó²î¡£¡£¡£¡£ ¡£¡£¡£¡£ÆäÖоßÓÐÑÏÖØÆ·¼¶µÄÎó²îÓëµÚÈý·½¿âArchive_TarÓйØ£¬£¬£¬£¬£¬£¬ £¬£¬Drupal CoreʹÓøÿâÀ´½¨Éè¡¢ÁÐ±í¡¢ÌáÈ¡ÎļþÒÔ¼°½«ÎļþÌí¼Óµ½tar´æµµ¡£¡£¡£¡£ ¡£¡£¡£¡£¸ÃÎó²î±£´æÓÚArchive_Tarͨ¹ý·ûºÅÁ´½Ó½âѹËõÎĵµµÄ·½·¨ÖУ¬£¬£¬£¬£¬£¬ £¬£¬ÈôÊÇʹÓôËÎó²î£¬£¬£¬£¬£¬£¬ £¬£¬¹¥»÷Õß¿ÉÄÜͨ¹ýÉÏ´«¶ñÒâtarÎļþÀ´ÁýÕÖÄ¿µÄЧÀÍÆ÷ÉϵÄÃô¸ÐÎļþ¡£¡£¡£¡£ ¡£¡£¡£¡£¸ÃÎó²î½öÓ°ÏìÉèÖÃΪÔÊÐí²»ÊÜÐÅÈεÄÓû§ÉÏ´«.tar¡¢.tar.gz¡¢.bz2»ò.tlzÎļþµÄDrupalÍøÕ¾¡£¡£¡£¡£ ¡£¡£¡£¡£Æ¾Ö¤Drupal¿ª·¢Ö°Ô±µÄ˵·¨£¬£¬£¬£¬£¬£¬ £¬£¬¸ÃÎó²îµÄPoCÒÑÔÚÒ°Íâ·ºÆð£¬£¬£¬£¬£¬£¬ £¬£¬Òò´Ë¿ÉÄܻᱻºÚ¿ÍÆð¾¢Ê¹Óᣡ£¡£¡£ ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/vulnerability-related-processing-archive-files-patched-drupal



3.Maze¹¥»÷ÕßÍþв8¼Ò¹«Ë¾£¬£¬£¬£¬£¬£¬ £¬£¬²»Ö§¸¶Êê½ð½«¹ûÕæÃô¸ÐÊý¾Ý


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾




ÀÕË÷Èí¼þMazeµÄÊܺ¦ÕßÏÖÔÚÃæÁÙ×ÅÁíÒ»ÖÖΣº¦£¬£¬£¬£¬£¬£¬ £¬£¬ËûÃǵÄÊý¾Ý²»µ«±»¼ÓÃÜ£¬£¬£¬£¬£¬£¬ £¬£¬²¢ÇÒ±»¹¥»÷ÕßÍþвҪÔÚÏßÐû²¼¡£¡£¡£¡£ ¡£¡£¡£¡£Maze¹¥»÷ÕßÒѾ­½¨ÉèÁËÒ»¸öÍøÕ¾£¬£¬£¬£¬£¬£¬ £¬£¬²¢ÔÚÍøÕ¾ÉÏÐû²¼ÁË8¼Ò¾Ý³ÆÊǾܾøÖ§¸¶Êê½ðµÄ¹«Ë¾µÄÃûµ¥¡£¡£¡£¡£ ¡£¡£¡£¡£¸ÃÍøÕ¾ÉϵÄÊý¾Ý»¹°üÀ¨¹¥»÷µÄÏêϸÈÕÆÚ¡¢Ò»Ð©±»µÁÎĵµ£¨Office¡¢Îı¾ºÍPDFÎļþ£©¡¢±»µÁÊý¾ÝµÄ¾ÞϸÒÔ¼°±»Ñ¬È¾Ð§ÀÍÆ÷µÄIPµØµãºÍÅÌËã»úÃû³ÆÁбí¡£¡£¡£¡£ ¡£¡£¡£¡£ÕâÒ»ÐÐΪÁîÈËÕ𾪣¬£¬£¬£¬£¬£¬ £¬£¬²¢½«ÀÕË÷Èí¼þ¹¥»÷´øµ½Á˸ü¸ßµÄÍþвˮƽ£¬£¬£¬£¬£¬£¬ £¬£¬¿ÉÒÔÔ¤¼ÆÆäËüÍøÂç·¸·¨ÍŻォ½ÓÄÉÀàËÆµÄÕ½ÂÔÀ´ÀÕË÷Êܺ¦Õß²¢Ç¿ÆÈËûÃÇÖ§¸¶Êê½ð¡£¡£¡£¡£ ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/95356/malware/maze-ransomware-data-leak.html



4.µÂ¹úBSIÖÒÑÔÖ¼ÔÚ·Ö·¢ÒøÐÐľÂíEmotetµÄÀ¬»øÓʼþ»î¶¯


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾



µÂ¹úÁª°îÍøÂçÇå¾²»ú¹¹BSIÖÒÑԳƣ¬£¬£¬£¬£¬£¬ £¬£¬Ò»¸öÆð¾¢µÄÀ¬»øÓʼþ»î¶¯ÕýÔÚÉ¢²¼ÎÛÃûÕÑÖøµÄÒøÐÐľÂíEmotet¡£¡£¡£¡£ ¡£¡£¡£¡£¸ÃÀ¬»øÓʼþαװ³ÉµÂ¹úÁª°îÕþ¸®·¢Ë͵ÄÐÅÏ¢£¬£¬£¬£¬£¬£¬ £¬£¬ÒÑÓжà¸öÁª°î»ú¹¹ÊÕµ½ÁË´ËÀàÓʼþ¡£¡£¡£¡£ ¡£¡£¡£¡£ÔÚÒÑÍùµÄ¼¸ÌìÖУ¬£¬£¬£¬£¬£¬ £¬£¬Òѱ¬·¢ÁËÊýÆðEmotetѬȾÊÂÎñ¡£¡£¡£¡£ ¡£¡£¡£¡£ÐÒÔ˵ÄÊÇ£¬£¬£¬£¬£¬£¬ £¬£¬Õþ¸®¼ì²âµ½Íþв²¢ÕûÀíÁËÊÜѬȾµÄϵͳ¡£¡£¡£¡£ ¡£¡£¡£¡£BSIÏÖÔÚÕýÔÚÊÓ²ìÕâЩѬȾÊÂÎñ£¬£¬£¬£¬£¬£¬ £¬£¬²¢ÕýÔÚÓëËùÓÐÓйØÕþ¸®ÏàÖúÒÔ¼õÇá¸ÃÍþвµÄΣº¦¡£¡£¡£¡£ ¡£¡£¡£¡£



Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/95336/malware/bsi-warns-emotet-campaign.html



5.ÍÚ¿ó½©Ê¬ÍøÂçMyKingzʹÓÃTaylor SwiftͼƬÒþ²Øpayload


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾



ÍÚ¿ó½©Ê¬ÍøÂçMyKingzÕýÔÚʹÓÃÊ¢ÐиèÊÖÌ©ÀÕ¡¤Ë¹Íþ·òÌØ£¨Taylor Swift£©µÄͼƬÀ´Òþ²ØÆä¶ñÒâpayload£¬£¬£¬£¬£¬£¬ £¬£¬×÷ΪÆäѬȾÁ´µÄÒ»²¿·Ö¡£¡£¡£¡£ ¡£¡£¡£¡£MyKingzÓÚ2017Äêµ×Ê״α»·¢Ã÷£¬£¬£¬£¬£¬£¬ £¬£¬¹¥»÷ÕßÖ÷ÒªÕë¶ÔWindowsϵͳ¡£¡£¡£¡£ ¡£¡£¡£¡£¾Ý±¨µÀ£¬£¬£¬£¬£¬£¬ £¬£¬ÔÚMyKingz½µÉúµÄÍ·¼¸¸öÔ£¬£¬£¬£¬£¬£¬ £¬£¬ËüѬȾÁËÁè¼Ý52.5Íò¸öWindowsϵͳ£¬£¬£¬£¬£¬£¬ £¬£¬ÎªÆä´´Á¢Õß´øÀ´Á˼ÛÖµÁè¼Ý230ÍòÃÀÔªµÄÃÅÂÞ±Ò£¨XMR£©¡£¡£¡£¡£ ¡£¡£¡£¡£Ó¢¹úÇå¾²³§ÉÌSophos·¢Ã÷Á˸ý©Ê¬ÍøÂçµÄ×îÐÂÉú³¤£¬£¬£¬£¬£¬£¬ £¬£¬¼´Ê¹ÓÃÒþдÊõÀ´Òþ²ØÆä¶ñÒâÈí¼þ¡£¡£¡£¡£ ¡£¡£¡£¡£Æ¾Ö¤SophosµÄÔ¤¼Æ£¬£¬£¬£¬£¬£¬ £¬£¬ÏÖÔÚMyKingz¹¥»÷Õ߯½¾ùÌìÌì¿É׬ȡԼ300ÃÀÔª¡£¡£¡£¡£ ¡£¡£¡£¡£



Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/cryptocurrency-mining-botnet-uses-a-taylor-swift-image-to-hide-malware-payloads/



6.2.67ÒÚ¸öFacebookÓû§µÄµç»°ºÅÂëÔÚÍøÉÏ̻¶


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾



Çå¾²Ñо¿Ô±±«²ª¡¤µÏÑÇÇÙ¿Æ£¨Bob Diachenko£©ÔÚÒ»¸ö²»Çå¾²µÄÊý¾Ý¿âÖз¢Ã÷ÁËÁè¼Ý2.67ÒÚ¸öFacebookÓû§ID¡¢µç»°ºÅÂëºÍÐÕÃû¡£¡£¡£¡£ ¡£¡£¡£¡£ÕâЩÊý¾ÝºÜ¿ÉÄÜÊÇһȺԽÄϺڿÍͨ¹ý²»·¨×¥È¡»òÀÄÓÃFacebook APIÍøÂçµ½µÄ£¬£¬£¬£¬£¬£¬ £¬£¬´ó´ó¶¼ÊÜÓ°ÏìµÄÓû§À´×ÔÃÀ¹ú¡£¡£¡£¡£ ¡£¡£¡£¡£¹¥»÷Õß¿ÉÄÜʹÓÃÕâЩÊý¾Ý¾ÙÐдó¹æÄ£µÄÀ¬»øÓʼþºÍ´¹ÂÚ¹¥»÷¡£¡£¡£¡£ ¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷¸ÃЧÀÍÆ÷»¹°üÀ¨Ò»¸öµÇÂ¼Ò³Ãæ¡¢µÇÂ¼Ãæ°åºÍÔ½ÄÏÓïµÄ½Ó´ý¿ÚºÅ¡£¡£¡£¡£ ¡£¡£¡£¡£¸ÃÊý¾Ý¿âÒÑÔÚÍøÉÏ̻¶Á˳¤´ïÁ½ÖܵÄʱ¼ä¡£¡£¡£¡£ ¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/267m-facebook-phone-numbers-exposed-online/151327/