2020-05-05

Ðû²¼Ê±¼ä 2020-05-06

ÐÂÔöÊÂÎñ


ÊÂÎñÃû³Æ£º

TCP_Oracle_Coherence_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-2915]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃOracle CoherenceÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-2915£©£¬ £¬£¬£¬ÊÔͼ´«ÈëÈ«ÐĽṹµÄ¶ñÒâ´úÂë»òÏÂÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£

Îó²î±£´æµÄCoherence°æ±¾:

Oracle Coherence 3.7.1.0£¬ £¬£¬£¬

Oracle Coherence 12.1.3.0.0£¬ £¬£¬£¬

Oracle Coherence 12.2.1.3.0£¬ £¬£¬£¬

Oracle Coherence 12.2.1.4.0¡£¡£¡£¡£¡£

ÈôÊDZ»¹¥»÷»úеûÓÐÉý¼¶ÏìÓ¦µÄ²¹¶¡£¬ £¬£¬£¬ÔòÓпÉÄܱ»Ö±½Ó»ñµÃȨÏÞ¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200505














ÊÂÎñÃû³Æ£º

TCP_Oracle_WebLogic_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-2963]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃOracle WebLogicÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-2963£©£¬ £¬£¬£¬ÊÔͼ´«ÈëÈ«ÐĽṹµÄ¶ñÒâ´úÂë»òÏÂÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£

Îó²î±£´æµÄweblogic°æ±¾:

WebLogic Server 10.3.6.0.0£¬ £¬£¬£¬

WebLogic Server 12.1.3.0.0£¬ £¬£¬£¬

WebLogic Server 12.2.1.3.0£¬ £¬£¬£¬

WebLogic Server 12.2.1.4.0¡£¡£¡£¡£¡£

ÈôÊDZ»¹¥»÷»úеûÓÐÉý¼¶ÏìÓ¦µÄ²¹¶¡£¬ £¬£¬£¬ÔòÓпÉÄܱ»Ö±½Ó»ñµÃȨÏÞ¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200505














ÊÂÎñÃû³Æ£º

TCP_Oracle_WebLogic_Ô¶³Ì´úÂëÖ´ÐÐÎó²î[CVE-2020-2883]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃOracle WebLogicÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-2883£©£¬ £¬£¬£¬ÊÔͼ´«ÈëÈ«ÐĽṹµÄ¶ñÒâ´úÂë»òÏÂÁîÀ´ÈëÇÖÄ¿µÄIPÖ÷»ú¡£¡£¡£¡£¡£

Îó²î±£´æµÄweblogic°æ±¾:

WebLogic Server 10.3.6.0.0£¬ £¬£¬£¬

WebLogic Server 12.1.3.0.0£¬ £¬£¬£¬

WebLogic Server 12.2.1.3.0£¬ £¬£¬£¬

WebLogic Server 12.2.1.4.0¡£¡£¡£¡£¡£

ÈôÊDZ»¹¥»÷»úеûÓÐÉý¼¶ÏìÓ¦µÄ²¹¶¡£¬ £¬£¬£¬ÔòÓпÉÄܱ»Ö±½Ó»ñµÃȨÏÞ¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200505














ÊÂÎñÃû³Æ£º

TCP_WebLogic_XXE_í§ÒâÎļþ¶ÁÈ¡Îó²î[CVE-2020-2949]

Çå¾²ÀàÐÍ£º

Çå¾²Îó²î

ÊÂÎñÐÎò£º

¼ì²âµ½Ô´IPÖ÷»úÕýÔÚʹÓÃWebLogic XXEí§ÒâÎļþ¶ÁÈ¡Îó²î¶ÔÄ¿µÄÖ÷»ú¾ÙÐй¥»÷µÄÐÐΪ¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200505








ÊÂÎñÃû³Æ£º

TCP_Ô¶³Ì¿ØÖÆÈí¼þ_ÏòÈÕ¿û_V9_½¨Éè¿ØÖÆÅþÁ¬

Çå¾²ÀàÐÍ£º

Çå¾²Éó¼Æ

ÊÂÎñÐÎò£º

¼ì²âµ½ÄúµÄÍøÂçÖÐÓÐһ̨Ö÷»úÕýÔÚÊÔͼʹÓÃÏòÈÕ¿ûÅþÁ¬¶Ô¶Ë×°±¸¡£¡£¡£¡£¡£

ÏòÈÕ¿ûÔ¶³Ì¿ØÖÆÊÇÒ»¿îÃæÏòÆóÒµºÍרҵְԱµÄÔ¶³ÌPCÖÎÀíºÍ¿ØÖƵÄЧÀÍÈí¼þ¡£¡£¡£¡£¡£ÄúÔÚÈκοÉÁ¬È뻥ÁªÍøµÄËùÔÚ£¬ £¬£¬£¬¶¼¿ÉÒÔÇáËÉ»á¼ûºÍ¿ØÖÆ×°ÖÃÁËÏòÈÕ¿ûÔ¶³Ì¿ØÖƿͻ§¶ËµÄÔ¶³ÌÖ÷»ú£¬ £¬£¬£¬Õû¸öÀú³ÌÍêÈ«¿ÉÒÔͨ¹ýä¯ÀÀÆ÷¾ÙÐУ¬ £¬£¬£¬ÎÞÐèÔÙ×°ÖÃÈí¼þ¡£¡£¡£¡£¡£ÏòÈÕ¿ûÔ¶³Ì¿ØÖÆÓµÓÐÎåÃë¿ìËÙ¶øÓÖÇ¿¾¢µÄÄÚÍø´©Í¸¹¦Á¦£¬ £¬£¬£¬ÈÚºÏÁË΢ÈíRDPÔ¶³Ì×ÀÃæ(3389)£¬ £¬£¬£¬Óû§¿ÉÒÔÇáËÉÔÚÏòÈÕ¿ûÔ¶³Ì×ÀÃæÐ­æÅºÍ΢ÈíRDPЭÒéÖÐ×ÔÓÉÇл»£¬ £¬£¬£¬ÏíÊÜ×î¼ÑµÄÔ¶³Ì×ÀÃæÌåÑé¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200505













ÊÂÎñÃû³Æ£º

ľÂíºóÃÅ

Çå¾²ÀàÐÍ£º

Çå¾²Éó¼Æ

ÊÂÎñÐÎò£º

¼ì²âµ½LeetHozerÊÔͼÅþÁ¬C&CЧÀÍÆ÷¡£¡£¡£¡£¡£Ô´IPÖ÷»ú¿ÉÄܱ»Ö²ÈëÁ˽©Ê¬ÍøÂçLeetHozer¡£¡£¡£¡£¡£

LeetHozerÊÇÒ»¸ö½©Ê¬ÍøÂ磬 £¬£¬£¬Ö÷ÒªÊǶÔÖ¸¶¨Ä¿µÄÌᳫDDoS¹¥»÷¡£¡£¡£¡£¡£Í¨¹ý9530¶Ë¿ÚÎó²îÒÔ¼°Telnet Èõ¿ÚÁîÈö²¥×ÔÉí¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200505











ÐÞ¸ÄÊÂÎñ


ÊÂÎñÃû³Æ£º

TCP_RDPÔ¶³Ì×ÀÃæµÇ¼_»á»°ÅþÁ¬

Çå¾²ÀàÐÍ£º

Çå¾²Éó¼Æ

ÊÂÎñÐÎò£º

 ÕâÊÇÒ»Ìõ»ù´¡ÊÂÎñ£¬ £¬£¬£¬µ¥¶ÀÉϱ¨ÎÞÒâÒå¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200505






ÊÂÎñÃû³Æ£º

HTTP_ľÂíºóÃÅ_webshell_china_chopper_aspx¿ØÖÆÏÂÁî

Çå¾²ÀàÐÍ£º

ľÂíºóÃÅ

ÊÂÎñÐÎò£º

¸ÃÊÂÎñÅú×¢Ô´IPµØµãÖ÷»úÉϵÄÖйú²Ëµ¶¿Í»§¹æÔòÔÚÏòÄ¿µÄIPµØµãÖ÷»úÉϵÄwebshellЧÀÍÆ÷¶Ë·¢³ö¿ØÖÆÏÂÁî¡£¡£¡£¡£¡£

webshellÊÇwebÈëÇֵľ籾¹¥»÷¹¤¾ß¡£¡£¡£¡£¡£¼òÆÓ˵£¬ £¬£¬£¬webshell¾ÍÊÇÒ»¸öÓÃasp»òphpµÈ±àдµÄľÂíºóÃÅ£¬ £¬£¬£¬¹¥»÷ÕßÔÚÈëÇÖÁËÒ»¸öÍøÕ¾ºó£¬ £¬£¬£¬¾­³£½«ÕâЩasp»òphpµÈľÂíºóÃÅÎļþ°²ÅÅÔÚÍøÕ¾Ð§ÀÍÆ÷µÄwebĿ¼ÖУ¬ £¬£¬£¬ÓëÕý³£µÄÍøÒ³Îļþ»ìÔÚÒ»Æð¡£¡£¡£¡£¡£È»ºó¹¥»÷Õ߾ͿÉÒÔÓÃwebµÄ·½·¨£¬ £¬£¬£¬Í¨¹ý¸ÃľÂíºóÃÅ¿ØÖÆÍøÕ¾Ð§ÀÍÆ÷£¬ £¬£¬£¬°üÀ¨ÉÏ´«ÏÂÔØÎļþ¡¢Éó²éÊý¾Ý¿â¡¢Ö´ÐÐí§Òâ³ÌÐòÏÂÁîµÈ¡£¡£¡£¡£¡£webshell¿ÉÒÔ´©Ô½·À»ðǽ£¬ £¬£¬£¬ÓÉÓÚÓë±»¿ØÖƵÄЧÀÍÆ÷»òÔ¶³ÌÖ÷»ú½»Á÷µÄÊý¾Ý¶¼ÊÇͨ¹ý80¶Ë¿Úת´ïµÄ£¬ £¬£¬£¬Òò´Ë²»»á±»·À»ðǽ×èµ²¡£¡£¡£¡£¡£²¢ÇÒʹÓÃwebshellÒ»Ñùƽ³£²»»áÔÚϵͳÈÕÖ¾ÖÐÁôϼͼ£¬ £¬£¬£¬Ö»»áÔÚÍøÕ¾µÄwebÈÕÖ¾ÖÐÁôÏÂһЩÊý¾ÝÌá½»¼Í¼£¬ £¬£¬£¬ÖÎÀíÔ±½ÏÄÑ¿´ÊÕÖ§ÇÖºÛ¼£¡£¡£¡£¡£¡£

¸üÐÂʱ¼ä£º

20200505