Stratus¹«Ë¾Ñ¬È¾ÀÕË÷Èí¼þ£¬ÍøÂçºÍ·þÎñÔÝʱÖжϣ»Purple Fox¹¥»÷»î¶¯½ÏÈ¥ÄêÔö³¤600£¥£¬´ï9Íò¶à´Î
Ðû²¼Ê±¼ä 2021-03-251.Stratus¹«Ë¾Ñ¬È¾ÀÕË÷Èí¼þ£¬ÍøÂçºÍ·þÎñÔÝʱÖжÏ
Stratus TechnologiesѬȾÀÕË÷Èí¼þ£¬ÍøÂçºÍ·þÎñÔÝʱÖжϡ£StratusÊÇÖªÃûµÄ¸ß¿ÉÓÃÐÔ²úÎïÌṩÉÌ£¬Æä²úÎï°üÂÞztC±ßÔµ¼ÆËãÉ豸ºÍftServerÈÝ´í·þÎñÆ÷½â¾ö·½°¸µÈ£¬¿Í»§ÎªÒøÐС¢µçÐÅÌṩÉÌ¡¢½ô¼±ºô½ÐÖÐÐĺÍÒ½ÁƱ£½¡»ú¹¹µÈ¡£¸Ã¹«Ë¾³ÆÆäÔÚ3ÔÂ17ÈÕÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬¼ì²âµ½¹¥»÷ºóÁ¢¿Ì¹Ø±ÕÁ˲¿ÃÅÍøÂçºÍ·þÎñÒÔ¸ôÀë¹¥»÷£¬°üÂÞÆäÈÝ´í²úÎïµÄ·þÎñActiveService Network£¨ASN£©ºÍStratus·þÎñÃÅ»§¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/high-availability-server-maker-stratus-hit-by-ransomware/
2.Hobby LobbyÒò´æ´¢Í°ÅäÖôíÎóй¶138GBÃô¸ÐÐÅÏ¢
¹¤ÒÕÆ·ÁãÊÛÉÌHobby LobbyÒòAWS´æ´¢Í°ÅäÖôíÎóй¶138GBÃô¸ÐÐÅÏ¢£¬Ó°ÏìÁËÔ¼30ÍòÃûÓû§¡£´Ë´Îй¶µÄÐÅÏ¢°üÂÞÓû§ÐÕÃû¡¢²¿ÃÅÖ§¸¶¿¨µÄÏêϸÐÅÏ¢¡¢µç»°ºÅÂë¡¢µØÖ·ºÍÓʼþµØÖ·£¬´ËÍ⻹°üÂÞÓ¦Ó÷¨Ê½µÄÔ´´úÂë¡¢¹«Ë¾Ô±¹¤µÄÐÕÃûºÍµç×ÓÓʼþµØÖ·µÈ¡£Ä¿Ç°£¬¸Ã´æ´¢Í°Òѱ»±£»¤ÆðÀ´£¬µ«Éв»È·¶¨ÊÇ·ñÓкڿÍÔÚ´Ë֮ǰÇÔÈ¡ÁË̻¶µÄÐÅÏ¢¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/hobby-lobby-customer-data-cloud-misconfiguration/164980/
3.Ó¢¹úÄÉ˰ÈËʹÓõÄÕ˵¥ÌáÐÑϵͳ¿ÉÄÜй¶ÆäÃô¸ÐÊý¾Ý
The RegisteµÄÒ»ÏîÊӲ췢ÏÖÓ¢¹úÄÉ˰ÈËʹÓõÄÕ˵¥ÌáÐÑϵͳ¿ÉÄÜй¶ÆäÃô¸ÐÊý¾Ý¡£¸ÃϵͳÊÇÓÉTelsolutions¿ª·¢£¬Ö÷Òª¹¦Ð§ÊÇÏòÇ·Õ®Õß·¢ËÍÏûÏ¢À´ÌáÐÑÆä»¹Õ®£¬¸ÃÏûÏ¢Öлá°üÂÞÒ»¸öÖ¸Ïò½ÓÊÕÕ߸öÈËÐÅÏ¢ºÍδÇåÕʵ¥Ò³ÃæµÄURL¡£µ«ÊÇ£¬¹¥»÷Õß¿ÉÒÔͨ¹ý¸ü¸ÄÍøÖ·ÖеÄ×ÖĸºÍÊý×Ö×Ö·ûÀ´²éѯÊôÓÚÆäËûÈ˵ÄÐÅÏ¢£¬ÉõÖÁ°üÂÞסÔÚ²îÒìµØÓòµÄ¾ÓÃñÐÅÏ¢¡£TelsolutionsÌåÏָé¶´ÏÖÒÑÐÞ¸´¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/debt-chasing-uk-councils-potentially-expose-private-resident-data/
4.Purple Fox¹¥»÷»î¶¯½ÏÈ¥ÄêÔö³¤600£¥£¬´ï9Íò¶à´Î
Guardicore LabsÄþ¾²Ñо¿ÈËÔ±·¢ÏÖPurple FoxµÄ¹¥»÷»î¶¯×ÔÈ¥Äê5Ô·ÝÖÁ½ñÔö³¤ÁË600£¥£¬µ½´ïÁË9Íò¶à´Î¡£Purple FoxÊÇÒ»ÖÖWindows¶ñÒâÈí¼þ£¬ÓÚ2018Äê3ÔÂÊ״α»·¢ÏÖ£¬Í¨¹ý©¶´ÀûÓù¤¾ß°üºÍµöÓãÓʼþÀ´Ñ¬È¾¼ÆËã»ú¡£ÔÚ×î½üµÄ»î¶¯ÖУ¬Ñо¿ÈËÔ±·¢ÏÖÁËËüʹÓÃÁËеÄѬȾý½é£¬Í¨¹ýSMBÃÜÂ뱩Á¦ÆÆ½âÃæÏòÍøÂçµÄWindows¼ÆËã»ú¡£´ËÍ⣬¹¥»÷ÕßÒѽ«Purple FoxËùʹÓõÄÖÖÖÖ¶ñÒâpayloadÍйÜÔÚÓɽü2000̨±»ÈëÇֵķþÎñÆ÷×é³ÉµÄÅÓ´ó½©Ê¬ÍøÂçÉÏ¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/03/purple-fox-rootkit-can-now-spread.html
5.΢Èí¾¯¸æ½üÆÚµöÓã»î¶¯ÒÑÇÔÈ¡40Íò¸öOWAºÍOffice 365ƾ¾Ý
×ÔÈ¥Äê12ÔÂÒÔÀ´£¬µöÓã»î¶¯ÒÑÇÔÈ¡40Íò¸öOWAºÍOffice 365ƾ¾Ý¡£WMC GlobalÓÚÈ¥ÄêÄê³õ·¢ÏָõöÓã»î¶¯£¬Î±×°³Éαװ³ÉÊÓÆµ»áÒé·þÎñ¡¢Äþ¾²½â¾ö·½°¸ºÍÉú²ú¹¤¾ßÀ´ÃÔ»óÊܺ¦Õß¡£È¥Äê12Ô£¬ºÚ¿Íð³äÁËOutlook Web AppÀ´ÆÛÆÄ¿±êÓû§ÊäÈëÆ¾¾Ý£¬ÏÖÔÚÄê1Ô¸ÄΪģ·ÂOffice 365À´ÇÔȡƾ¾Ý¡£´ËÍ⣬΢Èí·¢Ïָû»¹ÀûÓÃÁËAmazon Simple Email Service£¨SES£©ºÍAppspotÔÆ¼ÆËãÆ½Ì¨À´·¢ËÍÍøÂçµöÓãµç×ÓÓʼþ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/microsoft-warns-of-phishing-attacks-bypassing-email-gateways/
6.CiscoÐû²¼Äþ¾²¸üУ¬ÐÞ¸´JabberÖÐÈÎÒâ´úÂëÖ´ÐЩ¶´
CiscoÐû²¼Äþ¾²¸üУ¬ÐÞ¸´ÁËWindows¡¢macOS¡¢AndroidºÍiOS°æ±¾Jabber clientÖеÄÈÎÒâ´úÂëÖ´ÐЩ¶´¡£JabberÊÇÒ»¸öÍøÂç»áÒéºÍ¼´Ê±ÏûϢͨ±¨Ó¦Óã¬CiscoÌåÏָ鶴ĿǰÉÐδ±»¹ã·ºÀûÓ᣸é¶´±»×·×ÙΪCVE-2021-1411£¬ÑÏÖØÆ·¼¶Îª9.9£¬ÊÇÓɶÔÊäÈëÏûÏ¢ÄÚÈÝÑéÖ¤²»Í×ÒýÆðµÄ¡£´ËÍ⣬´Ë´Î¸üл¹ÐÞ¸´Á˸òúÎïÖÐµÄÆäËû4¸ö©¶´£¨CVE-2021-1417ºÍ CVE-2021-1418µÈ£©£¬ÒÔ¼°ÆäËû²úÎïÖеÄ37¸ö©¶´¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/cisco-addresses-critical-bug-in-windows-macos-jabber-clients/