Õë¶ÔÖÐÑǵØÓòµ±¾ÖµÄй¥»÷»î¶¯ £¬ÖØÒª·Ö·¢HAWKBALLºóÃÅ£»FusionPBX¶à¸ö·ì϶ £¬¿Éµ¼ÖÂXSS¡¢ºÅÁî×¢Èë¼°ÐÅϢй¶

°ä²¼¹¦·ò 2019-06-09

¡¾Íþвµý±¨¡¿


Õë¶ÔÖÐÑǵØÓòµ±¾ÖµÄй¥»÷»î¶¯ £¬ÖØÒª·Ö·¢HAWKBALLºóÃÅ

https://www.fireeye.com/blog/threat-research/2019/06/government-in-central-asia-targeted-with-hawkball-backdoor.html


³¬¹ý4Íò¸öÈÝÆ÷Ê·ýÒòʹÓÃĬÈÏÅäÖôæÔÚ¶³ö·çÏÕ

https://www.infosecurity-magazine.com/news/researchers-find-40000-containers-1/


Diebold NixdorfÕë¶ÔÀϾÉOpteva ATMÖеÄRCE·ì϶°ä²¼ÖÒ¸æ

https://www.zdnet.com/article/diebold-nixdorf-warns-customers-of-rce-bug-in-older-atms/


¡¾°²È«·ì϶¡¿


Amcrest HDSeriesÏà»ú¶à¸ö·ì϶ £¬¿Éµ¼ÖÂÉ豸±»ÊÕÊÜ

https://threatpost.com/amcrest-critical-security-issues/145507/


FusionPBX¶à¸ö·ì϶ £¬¿Éµ¼ÖÂXSS¡¢ºÅÁî×¢Èë¼°ÐÅϢй¶
https://securityboulevard.com/2019/06/rce-using-caller-id-multiple-vulnerabilities-in-fusionpbx/