¹È¸è³Æ³¯ÏʺڿÍÒÑÀûÓÃÉç½»ÍøÂç¶Ô×¼°²È«×êÑÐÈËÔ±£»£» £»£»£»£»£» £»ProtonVPNÓëɱ¶¾Èí¼þì¶Ü£¬£¬ £¬£¬£¬£¬¿Éµ¼ÖÂϵͳÀ¶ÆÁ

°ä²¼¹¦·ò 2021-01-27

1.Apple°²È«¸üУ¬£¬ £¬£¬£¬£¬½¨¸´iOSÖÐ3¸öÒѱ»ÔÚÒ°ÀûÓõÄ0day


1.jpg


Apple°ä²¼ÁËÕë¶ÔiOSµÄ°²È«¸üУ¬£¬ £¬£¬£¬£¬½¨¸´ÁË3¸öÒѱ»ÔÚÒ°ÀûÓõÄ0day¡£¡£¡£¡£ ¡£¡£µÚÒ»¸öΪӰÏìiOS²Ù×÷ϵͳÄں˵ľºÕùǰÌá·ì϶£¨CVE-2021-1782£©£¬£¬ £¬£¬£¬£¬ËüÄܹ»Ê¹¹¥»÷ÕßÌáÉýÆä¹¥»÷´úÂëµÄȨÏÞ¡£¡£¡£¡£ ¡£¡£Áí±íÁ½¸öΪӰÏìWebKitä¯ÀÀÆ÷ÒýÇæµÄÂß¼­·ì϶£¨CVE-2021-1870ºÍCVE-2021-1871£©£¬£¬ £¬£¬£¬£¬¿ÉÔÊÐíÔ¶³Ì¹¥»÷ÕßÔÚÓû§µÄSafariä¯ÀÀÆ÷ÖÐÖ´ÐжñÒâ´úÂë¡£¡£¡£¡£ ¡£¡£ÔÚ·ì϶ÀûÓÃÁ´ÖУ¬£¬ £¬£¬£¬£¬Óû§±»ÒýÓÕµ½Ò»¸ö¶ñÒâÍøÕ¾£¬£¬ £¬£¬£¬£¬¸ÃÍøÕ¾ÀûÓÃWebKit·ì϶ÔËÐдúÂ룬£¬ £¬£¬£¬£¬ËæºóÉý¼¶ÆäÔËÐÐϵͳ¼¶´úÂëµÄȨÏÞ£¬£¬ £¬£¬£¬£¬Î£¼°²Ù×÷ϵͳ¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/apple-fixes-another-three-ios-zero-days-exploited-in-the-wild/


2.¹È¸è³Æ³¯ÏʺڿÍÒÑÀûÓÃÉç½»ÍøÂç¶Ô×¼°²È«×êÑÐÈËÔ±


2.png


GoogleÍþв·ÖÎöÓ××é·¢ÏÖ³¯ÏʺڿÍÒÑÀûÓÃÉç½»ÍøÂç¶Ô×¼°²È«×êÑÐÈËÔ±¡£¡£¡£¡£ ¡£¡£ºÚ¿ÍÊ×ÏÈÔÚTwitter¡¢LinkedIn¡¢Telegram¡¢DiscordºÍKeybaseµÈÉç½»ÍøÂçÉÏÀûÓöàÈ˵ÄÓ×ÎÒ×ÊÁÏ£¬£¬ £¬£¬£¬£¬ÒÔαÔìµÄÉí·Ý½Ó´¥°²È«×êÑÐÈËÔ±¡£¡£¡£¡£ ¡£¡£ÔÚ³ÉÁ¢Á˳õ²½µÄ»¥»»Ö®ºó£¬£¬ £¬£¬£¬£¬ºÚ¿Í»áѯÎÊÖ¸±ê×êÑÐÈËÔ±ÊÇ·ñÔ¸ÒâÔÚ·ì϶×êÑÐÉϽøÐкÏ×÷£¬£¬ £¬£¬£¬£¬¶øºó¸ø×êÑÐÈËÔ±Ò»¸öVisual StudioÏîÄ¿¡£¡£¡£¡£ ¡£¡£¸ÃÏîÄ¿Ô̺¬ÁË×°ÖöñÒâÈí¼þµÄ´úÂ룬£¬ £¬£¬£¬£¬³É¹¦×°Öúó¿É³äÈκóÃŲ¢ÓëÔ¶³ÌºÅÁîºÍ½ÚÔì·þÎñÆ÷ÁªÏµ£¬£¬ £¬£¬£¬£¬ÆÚ´ýºÅÁî¡£¡£¡£¡£ ¡£¡£´Ë±í£¬£¬ £¬£¬£¬£¬¸Ã¶ñÒâÈí¼þÓ볯ÏʳÛÃûºÚ¿Í×éÖ¯LazarusÓйØ¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/google-north-korean-hackers-have-targeted-security-researchers-via-social-media/


3.°Ä´óÀûÑÇ֤ȯ¼à¹Ü»ú¹¹·þÎñÆ÷Öзì϶»òÒѵ¼ÖÂÊý¾Ýй¶


3.png


°Ä´óÀûÑÇ֤ȯºÍͶ×ÊίԱ»á£¨ASIC£©Ð¹Â©·þÎñÆ÷Öзì϶»òÒѵ¼ÖÂÊý¾Ýй¶¡£¡£¡£¡£ ¡£¡£ASICÊǰĴóÀûÑǵ±¾ÖµÄ¶ÀÁ¢Î¯Ô±»á£¬£¬ £¬£¬£¬£¬Õƹܱ£ÏÕ¡¢Ö¤È¯ºÍ½ðÈÚ·þÎñµÄ¼à¹Ü£¬£¬ £¬£¬£¬£¬ÊǰĴóÀûÑǹú¶È¹«Ë¾¼à¹Ü»ú¹¹µÄÏû·ÑÕß±£»£» £»£»£»£»£» £»¤×éÖ¯¡£¡£¡£¡£ ¡£¡£¸ÃÊÂÎñ²úÉúÓÚ2021Äê1ÔÂ15ÈÕ£¬£¬ £¬£¬£¬£¬ÓëÓÃÓÚ´«ÊäÐÅÏ¢µÄAccellionÈí¼þÓйأ¬£¬ £¬£¬£¬£¬·ì϶ӰÏìÁËһ̨Ô̺¬Á˰ĴóÀûÑÇÐÅ´ûÐí¿ÉÖ¤ÉêÇëÓйØÎĵµµÄ·þÎñÆ÷¡£¡£¡£¡£ ¡£¡£ASIC³Æµ÷²éÔÚ½øÐÐÖУ¬£¬ £¬£¬£¬£¬µ«ºÚ¿Í¿ÉÄÜÒѾ­²é¿´²¿ÃÅÐÅÏ¢¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/australian-securities-regulator-discloses-security-breach/


4.WestRockϰȾÀÕË÷Èí¼þ£¬£¬ £¬£¬£¬£¬ITºÍOTϵͳ¾ù±»·ÛËé


4.png


ÃÀ¹ú°ü×°¹«Ë¾WestRockϰȾÀÕË÷Èí¼þ£¬£¬ £¬£¬£¬£¬ITºÍOTϵͳ¾ù±»·ÛËé¡£¡£¡£¡£ ¡£¡£¹¥»÷ÓÚ1ÔÂ23ÈÕ±»·¢ÏÖ£¬£¬ £¬£¬£¬£¬²¢ÊµÊ±²ÉÈ¡ÁËÓ¦¼±ÏàÓ¦´ëÊ©¡£¡£¡£¡£ ¡£¡£WestRock°µÊ¾ÏµÍ³ÔÚ¸´Ô­ÖУ¬£¬ £¬£¬£¬£¬µ«¹¥»÷ÒѾ­µ¼Ö¹«Ë¾²¿ÃÅÒµÎñµÄÑÓÎ󡣡£¡£¡£ ¡£¡£WestRockûÓÐй©ÓйØÕâ´ÎÊÂÎñµÄ¸ü¶à¾ßÌåÐÅÏ¢£¬£¬ £¬£¬£¬£¬Éв»Ã÷ÏÔ¹¥»÷µÄˮƽÒÔ¼°±äÂÒÖÐÊܵ½Ó°ÏìµÄOTϵͳÀàÐÍ¡£¡£¡£¡£ ¡£¡£¸ÃÊÂÎñ±»Åû¶ºó£¬£¬ £¬£¬£¬£¬±¾ÖÜÒ»ÉÏÎçWestRock¹ÉƱµÄ¼ÛÖµ×ÅÂäÁË4£¥ÒÔÉÏ¡£¡£¡£¡£ ¡£¡£    


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/packaging-giant-westrock-says-ransomware-attack-impacted-ot-systems


5.ProtonVPNÓëɱ¶¾Èí¼þì¶Ü£¬£¬ £¬£¬£¬£¬¿Éµ¼ÖÂϵͳÀ¶ÆÁ


5.png


ProtonVPNÓë䶨ÃûµÄɱ¶¾Èí¼þ½â¾ö¹æ»®Ã¬¶Ü£¬£¬ £¬£¬£¬£¬¿Éµ¼ÖÂϵͳÀ¶ÆÁ¡£¡£¡£¡£ ¡£¡£¹ÌÈ»ProtonVPNûÓÐй©ÓйØÀ¶ÆÁÔ­ÒòµÄ¸ü¶àϸ½Ú£¬£¬ £¬£¬£¬£¬µ«Ô¼ÄªÁ½ÖÜǰ£¬£¬ £¬£¬£¬£¬Ê¹ÓÃÁË×îа汾ProtonVPNµÄÒ»¸öÊÜÓ°ÏìµÄÓû§Ëù°µÊ¾£¬£¬ £¬£¬£¬£¬ÔÚÆô¶¯VPNµÄ¿Í»§¶Ëºó»áÁ¢¼´´¥·¢À¶ÆÁ¡£¡£¡£¡£ ¡£¡£ÕâÒѲ»ÊǵÚÒ»´ÎÓÐЧ»§·´Ó³ÔÚWindowsϵͳÖÐÔÚʹÓÃProtonVPNʱ»áµ¼ÖÂÀ¶ÆÁ£¬£¬ £¬£¬£¬£¬²¢ÇÒ³ÁÐÂ×°Öÿͻ§¶ËºÍÇý¶¯·¨Ê½Ò²±­Ë®³µÐ½¡£¡£¡£¡£ ¡£¡£ProtonVPN½¨ÒéÓû§ÏÈÁÙʱ½ûÓøÃɱ¶¾Èí¼þ£¬£¬ £¬£¬£¬£¬»ò½«ProtonVPN½µ¼¶µ½²»±ä°æ±¾¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/software/protonvpn-causes-windows-bsod-crashes-due-to-antivirus-conflicts/


6.kaspersky°ä²¼2021ÄêÍøÂ簲ȫµÄÔ¤²â»ã±¨


6.png


kaspersky°ä²¼ÁË2021ÄêÍøÂ簲ȫµÄÔ¤²â»ã±¨¡£¡£¡£¡£ ¡£¡£¸Ã»ã±¨µ÷²éÁË31¸ö¹ú¶ÈºÍµØÓòµÄ5266ÃûIT¾ö²ßÕߣ¬£¬ £¬£¬£¬£¬²¢»áÉÌÁËËûÃÇÓöµ½µÄÍþв¡¢ÍøÂçÊÂÎñ¸´Ô­µÄ³É±¾ÒÔ¼°×éÖ¯ÄÚ²¿È·µ±Ç°°²È«×´Ì¬¡£¡£¡£¡£ ¡£¡£×êÑз¢ÏÖÖ»¹ÜÍøÂç¹¥»÷µÄÊýÁ¿³ÖÐøÔö³¤£¬£¬ £¬£¬£¬£¬µ«IT²¿ÃŵݲȫԤËã×ÜÌåÉÏÔÚÏ÷¼õ¡£¡£¡£¡£ ¡£¡£2020Ä꣬£¬ £¬£¬£¬£¬´óÐ͹«Ë¾ITÔ¤Ëã½µÂäÁË26£¥£¬£¬ £¬£¬£¬£¬ÖÐÓ×ÐÍÆóÒµÒ²½µÂäÁËÔ¼10£¥¡£¡£¡£¡£ ¡£¡£´Ë±í£¬£¬ £¬£¬£¬£¬µ½2021ÄêÔÚÔÆ·þÎñÉϵÄÖ§³ö½«¿÷ËðITÔ¤ËãµÄÔ¼32£¥£¬£¬ £¬£¬£¬£¬Òò¶ø¼à¶½Æ½Ì¨µÄ¼à¶½ºÍ°²È«ÐÔÖÁ¹Ø³ÁÒª¡£¡£¡£¡£ ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.kaspersky.com/blog/2021-economic-predictions-for-infosec/38553/