AppleÐû²¼Äþ¾²¸üУ¬ÐÞ¸´3¸öÒѱ»ÔÚÒ°ÀûÓõÄ0day£»Ñо¿ÈËÔ±³ÆWindows IIS·þÎñÆ÷ÖеÄ©¶´¿ÉÓ°ÏìWinRM
Ðû²¼Ê±¼ä 2021-05-251.AppleÐû²¼Äþ¾²¸üУ¬ÐÞ¸´3¸öÒѱ»ÔÚÒ°ÀûÓõÄ0day
Æ»¹ûÒѾÐû²¼ÁËÄþ¾²¸üУ¬ÐÞ²¹3¸öÒѱ»ÔÚÒ°ÀûÓõÄmacOSºÍtvOS 0day¡£ÆäÖеÄÁ½¸öÊÇÄÚ´æËð»µÂ©¶´£¨CVE-2021-30663ºÍCVE-2021-30665£©£¬Ó°ÏìÁËApple TV 4KºÍApple TV HDÉ豸¡£µÚÈý¸öÊÇTCC¿ò¼ÜÖеÄÌáȨ©¶´£¬Ó°ÏìÁËmacOS Big SurÉ豸£¬ÏÖÒѱ»XCSSET¶ñÒâÈí¼þÓÃÀ´ÈƹýmacOSÒþ˽±£»¤¡£±¾Ô³õ£¬Apple»¹ÐÞ¸´ÁËWebkitÒýÇæÖеÄÁ½¸öiOS 0day¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/apple-fixes-three-zero-days-one-abused-by-xcsset-macos-malware/
2.ÃÀ¹úÔËͨÒò·¢ËÍ400¶àÍòÀ¬»øÓʼþ±»Ó¢¹ú·£¿î9ÍòÓ¢°÷
ÃÀ¹úÔËͨ£¨Amex£©ÒòÔÚÒ»ÄêÄÚÏò¿Í»§·¢ËÍÁè¼Ý400Íò·âÀ¬»øÓʼþ£¬±»Ó¢¹úÊý¾Ý¼à¹Ü»ú¹¹·£¿î90000Ó¢°÷¡£Ó¢¹úICO³Æ£¬ÔÚ2018Äê6ÔÂ1ÈÕÖÁ2019Äê5ÔÂ21ÈÕ£¬Amex·¢ËÍÁË4098841·âÖ¼ÔÚΪAmex´øÀ´¾¼ÃÀûÒæµÄÓªÏúµç×ÓÓʼþ¡£Òòδ¾Í¬ÒâÏòÊÕ¼þÈË·¢ËÍÓªÏúÓʼþ£¬AmexÎ¥·´ÁË2003Äê¡¶Òþ˽ºÍµç×ÓͨÐÅÌõÀý¡·£¨PECR£©µÚ22Ìõ¡£Æ¾¾Ý¸ÃÌõ¿î¿É¶ÔÆä´¦ÒÔ×î¸ß50ÍòÓ¢°÷µÄ·£¿î£¬µ«ÒòÆäûÓйÊÒâÎ¥·´PECR£¬½ö·£¿î9Íò£¬AmexÐëÔÚ6ÔÂ17ÈÕ֮ǰ֧¸¶Õâ±Ê·£¿î¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/amex-fined-90-000-for-sending-4-million-spam-emails-in-a-year/
3.΢ÈíÎ´Ðø¶©ExchangeµÄSSLÖ¤Ê飬ChromeÌáʾ½ûÖ¹·ÃÎÊ
ÃÀ¹ú¶«²¿³ß¶Èʱ¼ä2021Äê5ÔÂ23ÈÕÉÏÎç8µã¿ªÊ¼£¬Óû§·´Ó³ÎÞ·¨µÇ¼ExchangeµÄÍøÕ¾admin.exchange.microsoft.com¡£ÕâÊÇÓÉÓÚ¸ÃÍøÕ¾µÄSSLÖ¤ÊéÒѹýÆÚ¶øMicrosoftÍü¼ÇÐø¶©µ¼Öµġ£ÎªÁËÄþ¾²Æð¼û£¬¹È¸èä¯ÀÀÆ÷ÍêÈ«½ûÖ¹ÁË·ÃÎʸÃÍøÕ¾£¬¶øFirefoxÔò¾¯¸æÁ´½Ó²»Äþ¾²¡£Microsoft³ÆÓû§¿ÉÒÔÁÙʱʹÓÃhttps://outlook.office.com/ecp/Á´½ÓÀ´·ÃÎʸÃÍøÕ¾£¬²¢ÒÑÓÚ5ÔÂ24ÈÕ½â¾ö¸ÃÎÊÌâ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/microsoft/microsoft-exchange-admin-portal-blocked-by-expired-ssl-certificate/
4.Ñо¿ÈËÔ±³ÆWindows IIS·þÎñÆ÷ÖеÄ©¶´¿ÉÓ°ÏìWinRM
Ñо¿ÈËÔ±im DeVries³ÆWindows IIS·þÎñÆ÷ÖеÄ©¶´¿ÉÓ°ÏìWinRM¡£¸Ã©¶´ÊÇWindows IIS·þÎñÆ÷ʹÓõÄHTTPÐÒéÕ»£¨http.sys£©ÖеÄÔ¶³ÌÖ´ÐдúÂë©¶´£¬±»×·×ÙΪCVE-2021-31166£¬ÒÑͨ¹ýMicrosoftÐû²¼µÄ5Ô·ÝÄþ¾²¸üÐÂÐÞ¸´¡£ÉÏÖÜÄ©£¬Axel SouchetÐû²¼Á˸é¶´µÄPoC£¬¿ÉÀûÓÃÌØÖÆµÄÊý¾Ý°üµ¼ÖÂÀ¶ÆÁËÀ»ú¡£µ«ÊÇ£¬Jim DeVries·¢ÏÖËü»¹»áÓ°ÏìÔËÐÐÁËWinRM·þÎñ£¨WindowsÔ¶³Ì¹ÜÀí£©µÄWindows 10ϵͳºÍ·þÎñÆ÷¡£Will Dormann³Æ£¬ÓÐÁè¼Ý200Íò¸öWinRM·þÎñ̻¶µÄWindowsϵͳ¿ÉÒÔͨ¹ýInternet·ÃÎÊ¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/118189/security/cve-2021-31166-windows-http-flaw.html
5.ProofpointÐû²¼2021ÄêQ2ÆóÒµµç×ÓÓʼþÄþ¾²µÄ³ÂËß
ProofpointÐû²¼ÁË2021ÄêQ2ÆóÒµµç×ÓÓʼþÄþ¾²µÄ³ÂËß¡£¸Ã³ÂËß»ùÓÚ25¸ö³ß¶È¶Ô15¸öÆóÒµµç×ÓÓʼþ·þÎñÌṩÉ̽øÐÐÁËÆÀ¹À£¬Éæ¼°Èý¸ö·½Ã棺µ±Ç°²úÎï¡¢¼ÆÄ±ºÍÊг¡Õ¼ÓÐÂÊ¡£ÔÚÆÀ¹ÀµÄ¹©Ó¦ÉÌÖУ¬ProofpointÊǽöÓеÄÎå¸öÁìÏÈÕßÖ®Ò»¡£³ÂËßÖ¸³ö£¬×î¼ÑµÄµç×ÓÓʼþÄþ¾²½â¾ö·½°¸½«¿Í»§»·¾³ÓëEDR¡¢WebÄÚÈÝÄþ¾²ÐÔ£¨°üÂÞä¯ÀÀÆ÷¸ôÀ룩ÒÔ¼°Äþ¾²ÒâʶºÍÅàѵ£¨SA£¦T£©µÈ½â¾ö·½°¸¼¯³ÉÔÚÒ»Æð¡£
ÔÎÄÁ´½Ó£º
https://www.proofpoint.com/us/resources/analyst-reports/forrester-wave-report-enterprise-email-security
6.LookoutÐû²¼ÓйؽðÈÚ·þÎñµÄÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß
LookoutÐû²¼ÁËÓйؽðÈÚ·þÎñ2019ÄêÖÁ2020ÄêÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß¡£LookoutÊý¾ÝÏÔʾ£¬½ðÈÚ×é֯ÿ¼¾¶Èƽ¾ùÔâÊܵÄÍøÂçµöÓã¹¥»÷Ôö¼ÓÁË125£¥£¬¶ñÒâÓ¦Ó÷¨Ê½Ôö¼ÓÁË400£¥£¬Òƶ¯É豸¹ÜÀí£¨MDM£©Ê¹ÓÃÂÊÌá¸ßÁË50£¥£¬¼¸ºõ50£¥µÄµöÓã¹¥»÷¶¼ÊÔͼÇÔÈ¡¹«Ë¾µÇ¼ƾ¾Ý£¬½ü20£¥µÄÒÆ¶¯ÒøÐпͻ§¶Ë×°ÓÐľÂíÓ¦Ó᣸óÂËß½¨Òé½ðÈÚ»ú¹¹ÐèÒª½ÓÄÉÏÖ´úÄþ¾²¼¼ÊõºÍ¼ÆÄ±£¬À´±£Ö¤Ô±¹¤ºÍ¿Í»§³£ÓÃÉ豸Éϱ£³ÖÄþ¾²ÐÔ¡¢¾ºÕùÁ¦ºÍÏà¹ØÐÔ¡£
ÔÎÄÁ´½Ó£º
https://www.lookout.com/info/financial-services-threat-report-lp