ZeroXÍÅ»ïÔÚ°µÍø³öÊÛʯÓ͹«Ë¾É³ÌØ°¢ÃÀ1TBµÄÊý¾Ý£»ÒÑ´æÔÚ16ÄêµÄ©¶´Ó°ÏìÊýÒŲ́»ÝÆÕ¡¢XeroxºÍÈýÐÇ´òÓ¡»ú
Ðû²¼Ê±¼ä 2021-07-21±¾Ô£¬Ò»¸öÃûΪZeroXµÄºÚ¿ÍÍÅ»ïÔÚ°µÍøÒÔ500ÍòÃÀÔªµÄ¼Û¸ñ³öÊÛɳÌØ°¢ÃÀ¹«Ë¾1TBµÄÊý¾Ý¡£É³ÌØ°¢À²®Ê¯Ó͹«Ë¾¼ò³ÆɳÌØ°¢ÃÀ£¨Saudi Aramco£©£¬ÊÇÊÀ½çÉÏ×î´óµÄ¹«¹²Ê¯ÓͺÍÌìÈ»Æø¹«Ë¾Ö®Ò»£¬ÓµÓÐÁè¼Ý66000ÃûÔ±¹¤£¬ÄêÊÕÈë½ü2300ÒÚÃÀÔª¡£ZeroX³ÆÕâЩÊý¾ÝÊÇÔÚ2020Äêͨ¹ýÈëÇÖɳÌØ°¢ÃÀµÄÍøÂç¼°·þÎñÆ÷»ñµÃµÄ£¬ÆäÖÐ×îÔçµÄ¿É×·Ëݵ½1993Äê¡£´Ë´Î鶵ÄÊý¾Ý°üÂÞ14254ÃûÔ±¹¤µÄÍêÕûÐÅÏ¢¡¢ÖÖÖÖϵͳµÄÏîÄ¿¹æ·¶£»ÄÚ²¿ÃÅÎö³ÂËß¡¢ÐÒé¡¢Ðź¯¡¢¶©¼Û±í£»Scadaµã¡¢Wi-Fi¡¢IPÉãÏñ»úºÍIoTÉ豸µÄÍøÂç½á¹¹£»Aramco¿Í»§Ãûµ¥¡¢·¢Æ±ºÍºÏͬµÈ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/saudi-aramco-data-breach-sees-1-tb-stolen-data-for-sale/
2.ºÚ¿ÍÔÚ°µÍø¹ûÈ»º¬9100ÍòÌõ¼Ç¼µÄÄ«Î÷¸çÑ¡ÃñÊý¾Ý¿â
ºÚ¿Í×î½üÔÚ°µÍøÉϹûÈ»ÁË2021ÄêµÄÕû¸öÄ«Î÷¸çÑ¡ÃñÊý¾Ý¿â£¬°üÂÞ9100ÍòÌõ¼Ç¼¡£¹ú¼ÒÑ¡¾ÙÑо¿Ëù(INE)³ÆËûÃÇÒѾÏòÕþ¸®³ÂËß´Ëʼþ£¬²¢ÌåÏÖÆäÔÚ2020Äê5ÔÂ8ÈÕ¾ÍÏòÑ¡¾Ù·¸×ïÌرð¼ì²ì¹Ù(FEDE)³ÂËßÁË·ÃÎʺͲ»Í×ʹÓÃÓëÑ¡¾Ù¹ÒºÅ²áÏà¹ØÊý¾ÝµÄÎÊÌâ¡£Õâ²¢²»ÊÇINEµÚÒ»´Î·¢ÉúÊý¾Ýй¶Ê¼þ£¬ÔçÔÚ2016ÄêÔøй¶¹ý93424710ÃûÄ«Î÷¸ç¹«ÃñµÄÑ¡Ãñ¹ÒºÅÐÅÏ¢¡£
ÔÎÄÁ´½Ó£º
https://www.databreaches.net/how-many-leaks-have-there-been-of-mexicos-voter-database/
3.ÒÑ´æÔÚ16ÄêµÄ©¶´Ó°ÏìÊýÒŲ́»ÝÆÕ¡¢XeroxºÍÈýÐÇ´òÓ¡»ú
SentinelLabsÅû¶ÔÚHP¡¢SamsungºÍXerox´òÓ¡»úÇý¶¯·¨Ê½Öз¢ÏÖµÄÒ»¸öÑÏÖصĻº³åÇøÒç³ö©¶´¡£¸Ã©¶´×Ô2005Äê¾Í¿ªÊ¼´æÔÚ£¬×·×ÙΪCVE-2021-3438£¬CVSSÆÀ·ÖΪ8.8£¬Ó°ÏìÁè¼Ý380¿îµÄ»ÝÆÕºÍÈýÐÇ´òÓ¡»ú£¬ÒÔ¼°12ÖÖXerox´òÓ¡»ú¡£¸Ã©¶´Î»ÓÚ´òÓ¡Çý¶¯·¨Ê½°²×°·¨Ê½°üSSPORT.SYSÖУ¬µ±µØ¹¥»÷Õß¿ÉÒÔÀûÓø鶴½«È¨ÏÞÌáÉýµ½SYSTEM²¢ÔÚÄÚºËģʽÏÂÔËÐдúÂ룬À´°²×°¡¢¼ì²ì¡¢¸ü¸Ä¡¢¼ÓÃÜ»òɾ³ýÊý¾ÝµÈ¡£Ä¿Ç°£¬¸Ã©¶´ÒѾÐÞ¸´¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/hp-patches-vulnerable-printer-driver-impacting-millions-of-devices/
4.еÄMosaicLoader¿ÉÀûÓÃWindows DefenderÈƹý¼ì²â
BitdefenderÑо¿ÈËÔ±·¢ÏÖжñÒâÈí¼þMosaicLoader¿ÉÀûÓÃWindows DefenderÈƹý¼ì²â¡£¸Ã¶ñÒâÈí¼þͨ¹ýËÑË÷ÒýÇæ½á¹ûαװ³ÉÆƽâÈí¼þ£¬¾ßÓÐÅÓ´óµÄÄÚ²¿½á¹¹£¬Ö¼ÔÚÈƹý¶ñÒâÈí¼þ·ÖÎö¡£ÆäÄ£·ÂÀàËÆÓںϷ¨Èí¼þµÄÎļþÐÅÏ¢²¢Ê¹ÓÃС¿éºÍÎÞÐòÖ´ÐÐ˳Ðò½øÐдúÂë»ìÏý¡£ÔÚÀÖ³ÉѬȾĿ±êºó£¬×î³õµÄ»ùÓÚDelphiµÄdropper»á´ÓÔ¶³Ì·þÎñÆ÷»ñÈ¡ÏÂÒ»½×¶ÎµÄpayload£¬²¢ÔÚWindows DefenderÖÐΪÏÂÔصĿÉÖ´ÐÐÎļþÌí¼Óµ±µØÅųýÏîÒÔÈƹýɱ¶¾Èí¼þµÄɨÃè¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/07/this-new-malware-hides-itself-among.html
5.NSO GroupÀûÓÃiMessageÖÐ0day°²×°¼äµýÈí¼þPegasus
´óÉâ¹ú¼ÊºÍForbidden StoriesÅû¶ÒÔÉ«ÁÐNSO GroupÀûÓÃiMessageÖеÄÁãµã»÷0day°²×°¼äµýÈí¼þPegasus¡£Ñо¿ÈËÔ±³Æ£¬Ó¡¶È¼ÇÕߣ¨CODE INJRN1£©ÔËÐÐÁË×îа汾iOS 14.6µÄiPhone XRÓÚ2021Äê6ÔÂ16ÈÕÔâµ½ÈëÇÖ£¬6ÔÂ24ÈÕ£¬Ò»»îÔ¾ÈËÊ¿(CODE RWHRD1)µÄiPhone XÒ²Ôâµ½ÁËÈëÇÖ¡£Æ»¹û¹«Ë¾Ä¿Ç°ÕýÔÚÊÓ²ì´ËÊ£¬²¢ÌåÏÖÏñÉÏÊöÄÇÑùµÄ¹¥»÷·Ç³£ÅӴ󣬿ª·¢³É±¾ÎªÊý°ÙÍòÃÀÔª£¬Í¨³£ÓÐЧʱ¼äºÜ¶Ì£¬¶øÇÒ½öÓÃÓÚÕë¶ÔÌض¨µÄ¸öÈË¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/iphones-running-latest-ios-hacked-to-deploy-nso-group-spyware/
6.Unit42Ðû²¼ÀûÓÃTrap FlagÈƹýɳºÐµÄ¹¥»÷µÄ·ÖÎö³ÂËß
Unit 42ÔÚIntel CPU¼Ä´æÆ÷Öз¢ÏÖÁËÒ»¸öÌØÊâµÄbit¡ª¡ªÏÝÚå±êÖ¾£¨Trap Flag£©£¬¶ñÒâÈí¼þͨ³£»áÀûÓøÃλÀ´ÌÓ±ÜɳÏä¼ì²â¡£¸Ã³ÂËß·ÖÎöÁ˶ñÒâÈí¼þÈçºÎÔÚCPU¼Ä´æÆ÷ÖÐÖ»ÓÃÒ»¸öbitµÄÇé¿öϼì²âÐéÄâ»ú»òÎïÀí»úCPUÐÐΪµÄ²îÒì¡£ÏÝÚå±êÖ¾(TF)ÊÇIntel x86 CPU¼Ü¹¹µÄEFLAGs¼Ä´æÆ÷ÖеĵÚ8¸öbit¡£ÆäÖÐÕë¶ÔÆÏÌÑÑÀÓû§µÄLampionʹÓÃx86»ã±àÖ¸ÁîÒÔ¼°×îÉÙµÄWindows APIµ÷ÓþÍʵÏÖÁËËùÓÐϵͳµÄ¼ì²é£¬µ±ËüÈ·ÈÏÔÚVMÖÐÔËÐкó¾Í»á×Ô¶¯ÖÕÖ¹¡£
ÔÎÄÁ´½Ó£º
https://unit42.paloaltonetworks.com/single-bit-trap-flag-intel-cpu/