΢ÈíÈ·ÈÏWindows10 1903¸üдæÔÚÃýÎó0x80073701 £»Webmin 0day·ì϶¿ÉÖÂÔ¶³Ì´úÂëÖ´ÐÐ

°ä²¼¹¦·ò 2019-08-19
1¡¢Î¢ÈíÈ·ÈÏWindows10 1903¸üдæÔÚÃýÎó0x80073701

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

΢ÈíÈ·ÈÏWindows10 1903¸üдæÔÚÃýÎó0x80073701


MicrosoftÒÑÈ·ÈÏËûÃÇÔÚ½¨¸´Óû§ÔÚ×°ÖÃеÄv1903¸üÐÂʱÊÕµ½µÄ0x80073701ÃýÎó¡£ÔÚ2019Äê8Ô²¹¶¡ÐÇÆÚ¶þ¸üа䲼ºó£¬Óû§ÆðÍ·»ã±¨ËûÃÇÔÚ³¢ÊÔ×°ÖÃWindows 10°æ±¾1903ÀÛ»ý¸üÐÂʱÊÕµ½ÃýÎó¡£¹ÌÈ»´óÎÞÊýÓû§»ã±¨Åú×¢ÎÊÌâʼÓÚ8ÔÂ13ÈÕ£¬µ«Î¢Èí°µÊ¾£¬ÔÚ°ä²¼2019Äê5ÔÂ29ÈÕKB4497935  ÀÛ»ý¸üÐÂʱ£¬ÎÊÌâÏÖʵÉÏÒѾ­³öÏÖ¡£Ä¿Ç°Éв»Ã÷ÏÔÈκν«À´µÄ½¨¸´·¨Ê½ÊÇ·ñÒ²½«½âÎöÓû§ÔÚ½Ó¹ÜµÄÆäËûÃýÎó´úÂë¡£


Ô­ÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/microsoft/microsoft-confirms-windows-10-1903-update-error-0x80073701-working-on-fix/


2¡¢Bluetana App¿ÉÔÚ3ÃëÄÚ¼ì²â³öÀ¶ÑÀƲÓÍÆ÷

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

½üÄêÀ´£¬·¨Âɲ¿ÃŻ㱨Á˺ܶà¼ÓÓÍÕ¾×°ÖÃÁËÀ¶ÑÀƲÓÍÆ÷¡£ÕâЩÉ豸Äܹ»²¶»ñÖ§¸¶¿¨ÐÅÏ¢£¬Ô̺¬ÐÅÓþ¿¨³Ö¿¨È˵Ŀ¨ºÅ£¬µ½ÆÚÈÕÆÚºÍÈ«Ãû¡£BluetanaÊǼ«¶ÈÓÐЧµÄ£¬Ëü¿ÉÄܼì²âµ½Á½¸ö×°ÖÃÔÚ¼ÓÓͱÃÖв¢ÇÒÁù¸öÔÂÄÚδ±»·¢Ïֵį²ÓÍÆ÷¡£ÔÚÕâÏî×êÑÐÖУ¬¹²ÓÐ44Ãû·¨ÂɺÍÖݵ±¾Ö×ÔÔ¸ÕßÔÚÒ»ÄêÄÚ½¨ÉèÁËBluetanaÀûÓ÷¨Ê½¡£ÔÚ´ËÆÚ¼ä£¬BluetanaÔÚÁù¸öÖݵÄ1,185¸ö¼ÓÓÍÕ¾½øÐÐÀ¶ÑÀɨÃèºó¹²·¢ÏÖÁË64¸öƲÓÍÆ÷¡£


Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/90050/cyber-crime/bluetana-bluetooth-card-skimmers.html


3¡¢Capital OneÊý¾Ýй¶ÊÂÎñÏÓÒÉÈËÉæÏÓ¹¥»÷30¶à¸ö×éÖ¯

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

Áª¹ú¼ì²ì¹Ùй©ÁËÅ寿 ÌÀÆÕÉ­ÔÚCapital OneÊý¾Ýй¶ÊÂÎñ²úÉúºó±»²¶£¬¿ÉÄÜÒѾ­¹¥»÷ÁËÆäËû30¶à¸ö×éÖ¯¡£
½ñÄê7Ô£¬ÃÀ¹úCapital One¹«Ë¾Ôâ·êÊý¾Ýй¶£¬Ð¹Â¶ÁË1.06ÒÚCapital OneÐÅÓþ¿¨ÉêÇëµÄÓ×ÎÒÐÅÏ¢£¬·¨Âɲ¿ÃÅÎÞ·¨Ö¤Ã÷Êý¾ÝÒѱ»ÏúÊÛ»ò·Ö·¢¸øÆäËûºÚ¿Í¡£¾Ý¼ì²ì¹Ù³Æ£¬¾ø´óÎÞÊýÊý¾Ý¶¼Ã»ÓÐÔ̺¬Ó×ÎÒ¼ø±ðÐÅÏ¢¡£µ÷²éÈÔÔÚ½øÐÐÖУ¬Ö¼ÔÚÈ·¶¨ÊÜÓ°ÏìµÄ×éÖ¯¡£


Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/90042/cyber-crime/capital-one-hacked.html


4¡¢DanaBotµÄ¹¥»÷Ö¸±êÒÑÔ̺¬µÂ¹úÔÚÄ򵀮äËüÅ·ÖÞ¹ú¶È

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

DanaBotÒøÄ¾Âí×î³õµÄÖ¸±ê°Ä´óÀûÑǺͲ¨À¼µÄÓû§£¬ÏÖÒÑ´Ó°Ä´óÀûÑÇǨá㵽ŷÖÞ¹ú¶È¡£Ô̺¬À©´óÁËÒâ´óÀû£¬µÂ¹ú£¬°ÂµØÀûµÈ£¬Ä¿Ç°Æä¹¥»÷Ö¸±êÒѱ鲼¸÷´óÖÞ£¬2018Äê³õ´Î·¢ÏÖ£¬Ê¹ÓÃÁËÄ£¿é»¯½á¹¹£¬ÔÊÐíÔËÓªÕßͨ¹ýÔö³¤Ð²å¼þÀ´Ôö³¤ÐÂÖ°ÄÜ¡£¹Û²ì·¢ÏÖÄ£¿éÇåµ¥Ô̺¬ÒøÐÐÍøÕ¾×¢È빤¾ß£¬ÐÅÏ¢ÇÔÈ¡ºÍTorÄ£¿é¡£DanaBotʵÏÖÁËËùÓг£¼ûµÄÒøÐÐľÂíÖ°ÄÜ£¬ËüÀûÓÃÏÂÔØ·¨Ê½×é¼þÆô¶¯¼ÓÔØÆäËûÄ£¿éµÄDLL¡£


Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/90020/malware/danabot-banking-trojan-hit-germany.html


5¡¢Ó¢Ìضû½¨¸´NUC¹Ì¼þºÍÆäËü¹¤¾ßÖеĶà¸ö¸ßΣ·ì϶

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

Ó¢ÌØ¶û°ä²¼Á˰²È«¸üУ¬½â¾öNUC¹Ì¼þ£¬´¦ÖÃÆ÷¼ø±ðʵÓ÷¨Ê½ºÍÍÆËã¸Ä½ø´òËãÖеÄÑϳÁ·ì϶¡£CVE±àºÅÊÇCVE-2019-11140ºÍCVE-2019-11163£¬Ó¢Ìضû»¹½¨¸´ÁËÆäËü×é¼þÖеĶà¸öȱµã£¬ÀýÈçRWC2£¬Intel Authenticate£¬Driver£¦Support AssistantºÍRemote Displays SDK¡£ÃÀ¹úCISA»ú¹¹¶½´ÙÓû§×°ÖÃÓ¢ÌØ¶û°ä²¼µÄ°²È«¸üС£

Ô­ÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/90032/security/intel-flaws-nuc-firmware.html

6¡¢ÏµÍ³ÖÎÀíÔ±¹¤¾ßWebmin´æÔÚ0day·ì϶¿ÉÖÂÔ¶³Ì´úÂëÖ´ÐÐ

GA»Æ½ð¼×¡¤(ÖйúÇø)¹Ù·½ÍøÕ¾

Ê¢ÐеÄϵͳÖÎÀíÔ±¹¤¾ßWebminÔÚ³ÁÖÃÃÜÂëÖ°ÄÜÖз¢ÏÖÁËÒ»¸öÃýÎ󣬸ÃÃýÎóÔÊÐí
¶ñÒâµÚÈý·½ÓÉÓÚ¶ÌȱÊäÈëÑéÖ¤¶øÖ´ÐжñÒâ´úÂë¡££¬ÒÑÖªÔÚ¶Ë¿Ú10000ÉÏÔËÐУ¬²¢ÇÒÓ°Ïì×îа汾1.920£¬WebminÉÐδ°ä²¼¹«¿ªÉêÃ÷»ò²¹¶¡£¬Ä¿Ç°»¥ÁªÍøÉϹ«¿ªµÄWebminÖÁÉÙ³¬¹ý13Íò¸ö¡£


Ô­ÎÄÁ´½Ó£ºhttps://blog.firosolutions.com/exploits/webmin/