Google³Æ¶íºÚ¿ÍÀûÓÃSafariÖÐ0day¹¥»÷LinkedIn£»SonicWall¾¯¸æÕë¶ÔSMA100ºÍSRA²úÎïµÄÀÕË÷¹¥»÷

Ðû²¼Ê±¼ä 2021-07-16
1.Google³Æ¶íºÚ¿ÍÀûÓÃSafariÖÐ0day¹¥»÷LinkedInÓû§


1.jpg


GoogleÄþ¾²Ñо¿ÈËÔ±Ðû²¼ÁËÓйØ4¸ö0day±»ÔÚÒ°ÀûÓõÄÏêϸÐÅÏ¢¡£ÕâЩ©¶´·Ö±ðÊÇChromeÖеÄCVE-2021-21166ºÍCVE-2021-30551¡¢Internet ExplorerÖеÄCVE-2021-33742 £¬ÒÔ¼°WebKit(Safari)ÖеÄCVE-2021-1879¡£ÆäÖÐ £¬¶íÂÞ˹SVRµÄºÚ¿ÍÍÅ»ïNobeliumÀûÓÃSafariÖеÄ0day £¬Í¨¹ýLinkedIn Messaging·¢ËͶñÒâÁ´½ÓÀ´¹¥»÷Î÷Å·¹ú¼ÒµÄÕþ¸®¹ÙÔ±¡£´ËÍâ £¬Google³Æ½ö2021ÄêÉϰëÄê¾ÍÅû¶ÁË33ÆðʹÓÃ0dayµÄ¹¥»÷ £¬±È2020ÄêµÄ×ÜÊý¶àÁË11Æð¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/google-russian-svr-hackers-targeted-linkedin-users-with-safari-zero-day/


2.KasperskyÅû¶LuminousMoth APTÕë¶Ô¶«ÄÏÑǵĹ¥»÷


2.jpg


KasperskyÅû¶ÁËAPT×éÖ¯LuminousMothÕë¶Ô¶«ÄÏÑǵĹ¥»÷»î¶¯¡£¸Ã»î¶¯ÖÁÉÙ¿ÉÒÔ×·Ëݵ½2020Äê10Ô £¬ÔçÆÚµÄ¹¥»÷´ó¶àÔÚÃåµéµ«ÏÖÔÚÖ÷ÒªÔÚ·ÆÂɱö £¬Ä¿Ç°·¢ÏÖÃåµé¹²ÓÐ100ÃûÊܺ¦Õß¶ø·ÆÂɱöÓÐ1400Ãû¡£Ñо¿ÈËÔ±³Æ¹¥»÷µÄ¹æÄ£·Ç³£º±¼û £¬Õâ¿ÉÄÜÊÇÓÉÓÚʹÓÃUSBÇý¶¯Æ÷×÷ΪÁ÷´«»úÖÆ¡£¹¥»÷ÕßÀûÓôøÓÐDropboxÏÂÔØÁ´½ÓµÄµöÓãÓʼþ·Ö·¢Î±×°³ÉwordÎĵµµÄrarÎļþ £¬À´°²×°¶ñÒâÈí¼þ¡£Ö®ºó £¬¶ñÒâÈí¼þ»áÀûÓÿÉÒÆ¶¯USBÇý¶¯Æ÷´ø×ÅÇÔÈ¡µÄÎļþÒÆ¶¯µ½ÆäËüµÄϵͳÖÐ


Ô­ÎÄÁ´½Ó£º

https://securelist.com/apt-luminousmoth/103332/


3.Ñо¿ÍŶӷ¢ÏÖ·Ö·¢BazarBackdoorµÄÐÂÒ»ÂÖµöÓã»î¶¯


3.jpg


CofenseÑо¿ÍŶӷ¢ÏÖÁËÒ»¸öеĵöÓã»î¶¯ £¬Ê¹ÓöàÖØÑ¹Ëõ¼¼ÊõÀ´·Ö·¢BazarBackdoor¶ñÒâÈí¼þ¡£¹¥»÷ÕßʹÓÃÁËÒÔ¡°»·¾³ÈÕ¡±ÎªÖ÷ÌâµÄÓʼþÀ´ÎüÒýÊܺ¦Õß £¬Æä¸½¼þÖÐËù¸½µÄZIPºÍRARÎļþ¶¼°üÂÞÁËÒ»¸öJavaScriptÎļþ £¬Ö¼ÔÚÏÂÔØÀ©Õ¹ÃûΪͼÏñµÄpayload¡£Cofense³Æ¹¥»÷ÕßÓÐÒâʹÓöàÖÖÎļþÀàÐÍ £¬¿ÉÒÔµ¼ÖÂÄþ¾²µç×ÓÓʼþÍø¹Ø(SEG)µ½´ï½âѹËõÏÞÖÆ £¬»òÕßÒòΪδ֪µÄ¹éµµÀàÐͶø½âѹʧ°Ü £¬´Ó¶øÊ¹¶ñÒâÎļþ¸üÄѱ»¼ì²âµ½¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/bazarbackdoor-sneaks-in-through-nested-rar-and-zip-archives/


4.CyberArkÅû¶Windows HelloÖпÉÈÆ¹ýÉí·ÝÑéÖ¤µÄ©¶´


4.jpg


CyberArk LabsµÄÑо¿ÈËÔ±Åû¶ÁËWindows HelloÖпÉÈÆ¹ýÉí·ÝÑéÖ¤µÄ©¶´¡£Windows HelloÊÇWin10ÖеÄÒ»ÏЧ £¬ÔÊÐíÓû§ÔÚûÓÐÃÜÂëµÄÇé¿öÏÂʹÓÃPINÂë»òÉúÎïʶ±ðÉí·Ý½øÐÐÑéÖ¤ÒÔ·ÃÎÊÉ豸 £¬Ô¼85%µÄWin10Óû§Ê¹Óøù¦Ð§¡£¸Ã©¶´×·×ÙΪCVE-2021-34466 £¬¹¥»÷Õß¿ÉÒÔ²¶×½»òÖØ½¨Ä¿±êµÄÃæ²¿ÕÕÆ¬ £¬È»ºó²åÈëÌØÖÆµÄUSBÉ豸½«Î±ÔìµÄͼÏñ×¢ÈëÉí·ÝÑéÖ¤Ö÷»ú £¬À´ÈƹýÉí·ÝÑé֤ϵͳ¡£Ä¿Ç° £¬¸Ã©¶´Òѱ»ÐÞ¸´¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/windows-hello-bypass-biometrics-pcs/167771/


5.Cisco TalosÅû¶D-LINK DIR-3040·ÓÉÆ÷Öжà¸ö©¶´


5.jpg


Cisco TalosÅû¶D-LINK DIR-3040ÎÞÏß·ÓÉÆ÷ÖеĶà¸ö©¶´¡£´Ë´Î·¢Ïֵĩ¶´°üÂÞÐÅϢй¶©¶´£¨CVE-2021-21816ºÍCVE-2021-21817£© £¬¿Éͨ¹ýÌØÖÆµÄÍøÂçÇëÇó´¥·¢ £¬À´¼ì²ìÉ豸µÄϵͳÈÕÖ¾£»Ó²±àÂëÃÜÂë©¶´CVE-2021-21818ºÍCVE-2021-21820 £¬ÆäÖÐǰÕß¿ÉÄܵ¼Ö¾ܾø·þÎñ £¬ºóÕßÔÊÐí¹¥»÷ÕßÔÚ·ÓÉÆ÷ÉÏÖ´ÐдúÂ룻ÒÔ¼°´úÂëÖ´ÐЩ¶´(CVE-2021-21819) ¡£


Ô­ÎÄÁ´½Ó£º

https://blog.talosintelligence.com/2021/07/vuln-spotlight-d-link.html    


6.SonicWall¾¯¸æÕë¶ÔÆäSMA100ϵÁкÍSRA²úÎïµÄÀÕË÷¹¥»÷


6.jpg


SonicWallÐû²¼½ô¼±Äþ¾²Í¨Öª £¬¾¯¸æÕë¶ÔÆä²»Ö§³Ö¸üÐÂ(EoL)µÄÄþ¾²Òƶ¯·ÃÎÊ(SMA)100ϵÁкÍÄþ¾²Ô¶³Ì·ÃÎÊ(SRA)²úÎïµÄÀÕË÷Èí¼þ¹¥»÷¡£¸Ã¹«Ë¾ÌåÏÖ £¬¹¥»÷ÕßʹÓõÄÊÇÒ»¸ö¾É©¶´ £¬¸Ã©¶´ÒÑÔÚÆä×îа汾µÄ¹Ì¼þÖÐÐÞ¸´ £¬¿Í»§ÐèÒª¾¡¿ì¸üÐÂÆäÉ豸µÄ¹Ì¼þ¡£Èç¹û×é֯ʹÓõľÉSRAÉ豸ÒÑÊÇEoL״̬¶øÇÒÎÞ·¨¸üе½9.x¹Ì¼þ £¬ÈÔ¼ÌÐøÊ¹ÓÿÉÄÜÔâµ½ÀÕË÷¹¥»÷ £¬¸Ã¹«Ë¾½¨ÒéÁ¢¼´¶Ï¿ªÉ豸Á¬½Ó²¢ÖØÖÃÆä·ÃÎÊÃÜÂë £¬Èç¹û¿ÉÒԵϰÆôÓÃÕÊ»§¶àÖØÉí·ÝÑéÖ¤¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/sonicwall-warns-of-imminent-ransomware-campaign-targeting-its-eol-equipment/