ÐÅÏ¢°²È«Öܱ¨-2021ÄêµÚ42ÖÜ
°ä²¼¹¦·ò 2021-10-19>±¾Öܰ²È«Ì¬ÊÆ×ÛÊö
±¾Öܹ²ÊÕ¼°²È«·ì϶62¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇMicrosoft SharePoint Server CVE-2021-40487Ô¶³Ì´úÂëÖ´Ðзì϶£»£»£»SAP Environmental Compliance XMLÍⲿʵÌå×¢Èë·ì϶£»£»£»JP1/IT Desktop Management 2 31016·þÎñ´úÂëÖ´Ðзì϶£»£»£»Schneider Electric IGSS³¤¶È²é³´úÂëÖ´Ðзì϶£»£»£»ZOHO ManageEngine ADManager PlusÎļþÉÏ´«´úÂëÖ´Ðзì϶¡£¡£
±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂ簲ȫÊÂÎñÊÇ×êÑÐÍŶӷ¢ÏÖSky.com·þÎñÆ÷ÒòÅäÖÃÃýÎóй¶´óÁ¿Êý¾Ý£»£»£»Apple°ä²¼´¹Î£¸üÐÂÐÞ¸´iOSºÍiPadOSÖÐÄÚ´æ°Ü»µ0day£»£»£»Microsoft°ä²¼10Ô¸üУ¬ÐÞ¸´4¸ö0dayÔÚÄÚµÄ74¸ö·ì϶£»£»£»Microsoft³ÆÆä³É¹¦Õмܸߴï2.4 TbpsµÄDDoS¹¥»÷£»£»£»×êÑÐÍŶӷ¢ÏÖLinux¶ñÒâÍÚ¿óÈí¼þµÄбäÌå¶Ô×¼»ªÎªÔÆ¡£¡£
ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾Öܰ²È«ÍþвΪÖС£¡£
>ÖØÒª°²È«·ì϶Áбí
1. Microsoft SharePoint Server CVE-2021-40487Ô¶³Ì´úÂëÖ´Ðзì϶
Microsoft SharePoint Server´æÔÚδÃ÷°²È«·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇó£¬Äܹ»ÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2021-40487
2. SAP Environmental Compliance XMLÍⲿʵÌå×¢Èë·ì϶
SAP Environmental Compliance½âÎöXML´æÔÚÍⲿʵÌå×¢Èë·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇ󣬿ɻñÈ¡Ãô¸ÐÐÅÏ¢»òʹ·þÎñ·¨Ê½±ÀÀ£¡£¡£
https://wiki.scn.sap.com/wiki/pages/viewpage.action?pageId=587169983
3. JP1/IT Desktop Management 2 31016·þÎñ´úÂëÖ´Ðзì϶
JP1/IT Desktop Management 2 31016·þÎñ´æÔÚ°²È«·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇó£¬Äܹ»ÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£
https://www.hitachi.com/hirt/security/index.html
4. Schneider Electric IGSS³¤¶È²é³´úÂëÖ´Ðзì϶
Schneider Electric IGSS´¦Öñ¨ÎÄ´æÔÚ³¤¶È²é³·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÒªÇó£¬Äܹ»ÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£
https://us-cert.cisa.gov/ics/advisories/icsa-21-285-03
5. ZOHO ManageEngine ADManager PlusÎļþÉÏ´«´úÂëÖ´Ðзì϶
ZOHO ManageEngine ADManager Plus /RestAPI/WC/Personalize´æÔÚËÁÒâÎļþÉÏ´«·ì϶£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÄܹ»ÀûÓ÷ì϶Ìá½»ÌØÊâµÄÎļþÒªÇó£¬Äܹ»ÀûÓ÷¨Ê½¸ßµÍÎÄÖ´ÐÐËÁÒâ´úÂë¡£¡£
https://zh-cn.tenable.com/security/research/tra-2021-43?tns_redirect=true
>ÖØÒª°²È«ÊÂÎñ×ÛÊö
1¡¢¡¢¡¢×êÑÐÍŶӷ¢ÏÖSky.com·þÎñÆ÷ÒòÅäÖÃÃýÎóй¶´óÁ¿Êý¾Ý
CyberNews×êÑÐÍŶÓÔÚ10ÔÂ8ÈÕÅû¶£¬Sky.com·þÎñÆ÷ÒòÅäÖÃÃýÎóй¶´óÁ¿Êý¾Ý¡£¡£SkyÊÇÅ·ÖÞ×î´óµÄýÌ幫˾£¬Õ¼ÓÐ12%µÄÊг¡·Ý¶î£¬2020ÄêµÄÊÕÈëԼΪ134ÒÚÓ¢°÷¡£¡£×êÑÐÍŶÓÔÚ10ÔÂ7ÈÕ·¢ÏÖÒ»¸öÍйÜÔÚSky.comµÄ¡°upliftmedia¡±×ÓÓòÉϵÄÀûÓ÷¨Ê½µÄÖ÷ÅäÖÃÎļþ£¬ÆäÖÐÔ̺¬Á˶ÔÍйÜÔÚSky.comÓòÃûÉϵÄÊý¾Ý¿âµÄ½Ó¼ûƾ֤¡£¡£CyberNewsÔÚ10ÔÂ8ÈÕ½«´ËÎÊÌâ»ã±¨¸øSky£¬¸Ã¹«Ë¾ÏÖÒѽûÓöÔÅäÖÃÎļþµÄ½Ó¼û¡£¡£
ÔÎÄÁ´½Ó£º£º
https://cybernews.com/news/sky-com-servers-exposed-via-misconfiguration/
2¡¢¡¢¡¢Apple°ä²¼´¹Î£¸üÐÂÐÞ¸´iOSºÍiPadOSÖÐÄÚ´æ°Ü»µ0day
AppleÔÚ10ÔÂ11ÈÕ°ä²¼´¹Î£¸üУ¬ÐÞ¸´ÁËiOS 15.0.2ºÍiPadOS 15.0.2ÖеÄÄÚ´æ°Ü»µ0day¡£¡£¸Ã·ì϶׷×ÙΪCVE-2021-30883£¬ÊÇIOMobileFrameBufferÖеÄÒ»¸öÄÚ´æ°Ü»µ·ì϶£¬¿ÉÓÃÀ´ÔÚÖ¸±êÉ豸ִÐкÅÁî¡£¡£AppleÔÚ°²È«²¼¸æÖгƸ÷ì϶ÒÑÔÚÕëµÐÊÖ»úºÍiPadµÄ¹¥»÷Öб»¿í·ºÀûÓᣡ£´ËÍ⣬ÔÚ·ì϶¹«¿ª²»¾Ã£¬×êÑÐÈËÔ±Saar Amar¾Í°ä²¼Á˹ØÓڸ÷ì϶µÄ¼¼ÊõÎÄÕºÍÀûÓ÷ì϶µÄPoC¡£¡£
ÔÎÄÁ´½Ó£º£º
https://www.bleepingcomputer.com/news/security/emergency-apple-ios-1502-update-fixes-zero-day-used-in-attacks/
3¡¢¡¢¡¢Microsoft°ä²¼10Ô¸üУ¬ÐÞ¸´4¸ö0dayÔÚÄÚµÄ74¸ö·ì϶
MicrosoftÔÚ10ÔÂ12ÈÕ°ä²¼Á˱¾ÔµÄÖܶþ²¹¶¡£¬×ܼÆÐÞ¸´ÁË74¸ö·ì϶£¨Ô̺¬Microsoft EdgeÔÚÄÚÊÇ81¸ö£©¡£¡£Õâ´Î¸üÐÂ×ܹ²ÐÞ¸´ÁË4¸ö0day£¬Ô̺¬Win32kÖеÄÌáȨ·ì϶CVE-2021-40449£¬Windows DNS·þÎñÆ÷ÖеÄÔ¶³Ì´úÂëÖ´Ðзì϶CVE-2021-40469£¬WindowsÄÚºËÌáȨ·ì϶CVE-2021-41335£¬ÒÔ¼°Windows AppContainer ·À»ðǽ¹æ¶¨°²È«Ö°ÄÜÈÆ¹ý·ì϶CVE-2021-41338¡£¡£´ËÍ⣬Kaspersky×êÑÐÈËÔ±ÒѾÔÚÒ°·¢ÏÖÀûÓÃCVE-2021-40449µÄ¹¥»÷»î¶¯¡£¡£
ÔÎÄÁ´½Ó£º£º
https://www.bleepingcomputer.com/news/microsoft/microsoft-october-2021-patch-tuesday-fixes-4-zero-days-71-flaws/
4¡¢¡¢¡¢Microsoft³ÆÆä³É¹¦Õмܸߴï2.4 TbpsµÄDDoS¹¥»÷
Microsoft×êÑÐÈËÔ±Amir DahanÔÚ10ÔÂ11Èճƣ¬ËûÃÇÔÚ8ÔµÄ×îºóÒ»Öܳɹ¦ÕмÜÁËÊ·ÉÏ×î¸ßµÄDDoS¹¥»÷¡£¡£Amir Dahan°µÊ¾£¬ÕâÊÇÕë¶ÔÆäÅ·ÖÞAzure¿Í»§µÄ¹¥»÷£¬ÓÉÖØÒªÉ¢²¼ÔÚÑÇÌ«µØÓòºÍÃÀ¹úµÄÔ¼70000̨É豸ÌáÒéµÄ¡£¡£Õâ´ÎµÄ¹¥»÷ÏòÁ¿ÎªUDP·´É䣬³ÖÐø¹¦·ò³¬¹ý10·ÖÖÓ£¬·¢×÷¹¦·ò¼«¶È¶Ì£¬Ã¿´Î·¢×÷³ÇÊÐÔÚ¼¸ÃëÖÓÄÚÉÏÉýµ½TBÁ¿¼¶£¬×ܹ²³öÏÖÁËÁËÈý¸öÖØÒª·åÖµ£¬±ðÀëΪ2.4 Tbps¡¢¡¢¡¢0.55 TbpsºÍ1.7 Tbps¡£¡£
ÔÎÄÁ´½Ó£º£º
https://azure.microsoft.com/en-us/blog/business-as-usual-for-azure-customers-despite-24-tbps-ddos-attack/
5¡¢¡¢¡¢×êÑÐÍŶӷ¢ÏÖLinux¶ñÒâÍÚ¿óÈí¼þµÄбäÌå¶Ô×¼»ªÎªÔÆ
TrendMicroµÄ×êÑÐÈËÔ±·¢ÏÖÒÔǰÓÃÓÚÕë¶ÔDockerÈÝÆ÷µÄLinux¶ñÒâÍÚ¿óÈí¼þµÄбäÌ壬ÆðÍ·Õë¶ÔÏñ»ªÎªÔÆÕâÑùµÄÐÂÔÆ·þÎñÌṩÉÌ¡£¡£¾ßÌåµØËµ£¬ÐÂÑù±¾ÒѾע½âµôÁË·À»ðǽ¹æ¶¨´´½¨Ö°ÄÜ£¬²¢³ÖÐøÊ¹ÓÃÍøÂçɨÃèÆ÷À´Ñ°ÕÒÆäËûÓµÓÐapiÓйض˿ڵÄÖ÷»ú¡£¡£»£»£»ªÎªÔÆÊǽÏеÄÔÆÌṩÉÌ£¬Ðû³ÆËüÒѾΪ³¬¹ý300Íò¿Í»§Ìṩ·þÎñ¡£¡£×êÑÐÈËÔ±Òѽ«Õâ´Î¹¥»÷֪ͨ¸Ã¹«Ë¾£¬µ«ÉÐδÊÕµ½»Ø¸´¡£¡£
ÔÎÄÁ´½Ó£º£º
https://www.bleepingcomputer.com/news/security/huawei-cloud-targeted-by-updated-cryptomining-malware/


¾©¹«Íø°²±¸11010802024551ºÅ