Comparitech³ÆÄ³Ê¢¿ªµÄÊý¾Ý¿âй¼ûÀ¹ú3500Íò¹«ÃñÐÅÏ¢£»£»£»£»£» £»£»ZoomΪºÍ½âÃÀ¹úÓû§µÄ¼¯ÌåËßËÏÔ¸ÒâÖ§¸¶8600ÍòÃÀÔª

°ä²¼¹¦·ò 2021-08-04
1.Comparitech³ÆÄ³Ê¢¿ªµÄÊý¾Ý¿âй¼ûÀ¹ú3500Íò¹«ÃñÐÅÏ¢


1.jpg


Comparitech·¢ÏÖÒ»¸öδÊܱ£»£»£»£»£» £»£»¤µÄElasticsearchÊý¾Ý¿âй¶ÁËÖ¥¼Ó¸ç¡¢Ê¥µØÑǸçºÍÂåɼí¶Ô¼3500Íò¾ÓÃñµÄ¾ßÌåÐÅÏ¢¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±ÒÉ»ó¸ÃÊý¾Ý¿â¿ÉÄÜÊÇijӪÏú¹«Ë¾Êý¾ÝץȡµÄÁ˾Ö£¬£¬£¬£¬£¬´æ´¢ÔÚÁËÅäÖÃÃýÎóµÄ·þÎñÆ÷ÉÏ¡£¡£¡£¡£¡£¡£ÆäÓÚ2021Äê6ÔÂ26ÈÕ±»·¢ÏÖ£¬£¬£¬£¬£¬ÔÚ7ÔÂ27ÈÕÒÀÈ»Äܹ»½Ó¼û£¬£¬£¬£¬£¬Ä¿Ç°ÎÞ·¨È·¶¨¸ÃÊý¾Ý¿âµÄËùÓÐÕߣ¬£¬£¬£¬£¬ÑÇÂíÑ·ÍøÂç·þÎñ(AWS)²»µÃ²»½øÐйýÎʲ¢½«ÆäÇ¿ÐйعØ¡£¡£¡£¡£¡£¡£Õâ´Îй¶µÄÐÅÏ¢Ô̺¬ÐÔ±ð¡¢ÐÕÃû¡¢ÖÖ×å¡¢µ®ÉúÈÕÆÚ¡¢»éÒöÇé¿ö¡¢ÓʼþµØÖ·¡¢ÁªÏµÐÅÏ¢¡¢×ʲú¡¢¹ºÎïϰ¹ß¡¢Ã½Ì寫ºÃ¡¢³èÎï¡¢°®ºÃºÍÐËÖÂÒÔ¼°ÊÕÈëºÍ¾»×ʲúµÈ¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/household-data-database-us-residents-exposed/


2.ÉñÃØµÄ¿Õnpm°ü¡°-¡±ÏÂÔØÁ¿³¬¹ý70Íò´Î£¬£¬£¬£¬£¬»òÒòƴдÃýÎóËùÖÂ


2.jpg


×êÑÐÈËÔ±·¢ÏÖ£¬£¬£¬£¬£¬×Ô2020ÄêÒÔÀ´£¬£¬£¬£¬£¬Ò»¸öÃûΪ¡°-¡±µÄÉñÃØ¿Õnpm°üÔÚ×¢²á±íÖеÄÏÂÔØÁ¿ÒѸߴï½ü720000´Î¡£¡£¡£¡£¡£¡£¸ÃÈí¼þ°üÖ»ÓÐÒ»¸ö°æ±¾0.0.1£¬£¬£¬£¬£¬Ô̺¬Èý¸öÎļþ£ºindex.js¡¢package.jsonºÍREADME.md¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬¸Ã°ü»¹Êdz¬¹ý50¸önpm°üµÄÒÀÀµ£¬£¬£¬£¬£¬²¢ÇÒ×÷ÕßûÓÐÃ÷È·µÄÚ¹ÊÍ¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±³Æ£¬£¬£¬£¬£¬Õâ¿ÉÄÜÊÇÆ´Ð´ÃýÎóËùÖ£¬£¬£¬£¬£¬ÀýÈç×°ÖÃnpm°üsomepackageʱҪָ¶¨Ò»Ð©flag£¬£¬£¬£¬£¬ÃýÎóƴдµÄÖ¸Áînpm i - someFlag  somepackageÖУ¬£¬£¬£¬£¬¡°-¡±Óë¡°someFlag¡±Ö®¼äµÄ¿Õ¸ñ¾Í¿ÉÄܵ¼ÖÂnpmÏÂÔØ¡°-¡±°ü¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/software/empty-npm-package-has-over-700-000-downloads-heres-why/


3.ZoomΪºÍ½âÃÀ¹úÓû§µÄ¼¯ÌåËßËÏÔ¸ÒâÖ§¸¶8600ÍòÃÀÔª


3.jpg


ÊÓÆµ»áÒ鹫˾ZoomÒÑÔÞ³ÉÖ§¸¶8600ÍòÃÀÔª£¬£¬£¬£¬£¬À´ºÍ½âÃÀ¹úÓû§µÄ¼¯ÌåËßËÏ¡£¡£¡£¡£¡£¡£¸ÃËßËÏÓÚ2020Äê3ÔÂÔÚ¼ÓÀû¸£ÄáÑDZ±ÇøµÄÃÀ¹ú´¦Ëù·¨ÔºÌá³ö£¬£¬£¬£¬£¬ÆäÖ¸¿ØZoomͨ¹ýÓëFacebook¡¢¹È¸èºÍLinkedIn¹²ÏíÓ×ÎÒÊý¾Ý¼Óº¦ÁËÊý°ÙÍòÓû§µÄÒþÖÔ£¬£¬£¬£¬£¬»¹Ôð¹ÖZoom»Ñ³Æ×Ô¼ºÌṩ¶Ëµ½¶Ë¼ÓÃÜ£¬£¬£¬£¬£¬²¢Î´ÄÜ×èÖ¹ºÚ¿ÍÌáÒé¡°Zoombomb¡±»á»°¡£¡£¡£¡£¡£¡£ÈôÊÇÕâ´ÎÌáÒéµÄºÍ½â»ñµÃºË×¼£¬£¬£¬£¬£¬Zoom½«Ö§¸¶²Î¼ÓËßËϵĶ©ÔÄÕß15%µÄ¶©ÔÄÍË¿î»ò25ÃÀÔª£¨ÒÔÊý¶î½Ï´óÕßΪ׼£©£¬£¬£¬£¬£¬¶øÆäËûÓû§¿É»ñµÃ15ÃÀÔª¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bbc.com/news/business-58050391


4.Sygnia³ÆÐÂAPTÍÅ»ïPraying Mantis¶Ô×¼ÃÀ¹ú³ÛÃû¹«Ë¾


4.jpg


ÒÔÉ«ÁÐÍøÂ簲ȫ¹«Ë¾Sygnia·¢ÏÖÐÂAPTÍÅ»ïPraying Mantis£¨ÓÖ³ÆTG2021£©¶Ô×¼ÃÀ¹ú³ÛÃû¹«Ë¾¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±Ö¸³ö£¬£¬£¬£¬£¬TG1021ʹÓÃÁËÌØÔìµÄ¶ñÒâÈí¼þ¿ò¼Ü£¬£¬£¬£¬£¬ÖØÒªÕë¶ÔMicrosoft IIS ·þÎñÆ÷¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬¸ÃÍŻﻹÊÇÀûÓÃÁËASP.NETÖеĶà¸ö·ì϶£¬£¬£¬£¬£¬Ô̺¬RCE·ì϶CVE-2021-27852¡¢VIEWSTATE·´ÐòÁл¯·ì϶¡¢Altserialization·´ÐòÁл¯·ì϶ÒÔ¼°Telerik-UIÖеķì϶CVE-2019-18935ºÍCVE-2017-11317¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/08/new-apt-hacking-group-targets-microsoft.html


5.Cisco½¨¸´Firepower FDM On-BoxÖеĴúÂëÖ´Ðзì϶


5.jpg


Cisco½¨¸´ÁËFirepowerÉ豸ÖÎÀíÆ÷(FDM)On-BoxÈí¼þÖеÄËÁÒâ´úÂëÖ´Ðзì϶¡£¡£¡£¡£¡£¡£FDM On-BoxÔÊÐíÖÎÀíÔ±ÔÚûÓÐFMCµÈ¼¯ÖÐÖÎÀíÆ÷µÄÇé¿öÏÂÖÎÀí·À»ðǽ£¬£¬£¬£¬£¬²¢ÌṩÕï¶ÏÖ°ÄÜ¡£¡£¡£¡£¡£¡£¸Ã·ì϶׷×ÙΪCVE-2021-1518£¬£¬£¬£¬£¬ÊÇÓÉÓÚ¶ÔÌØ¶¨REST APIºÅÁîµÄÓû§ÊäÈëûÓнøÐгä·ÖµÄËãÕÊËùÖ¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÄܹ»Í¨¹ýÏòÖ¸±êÉ豸µÄAPI×Óϵͳ·¢ËÍÌØÔìµÄHTTPÒªÇóÀ´ÀûÓô˷ì϶£¬£¬£¬£¬£¬³É¹¦µÄÀûÓúóÄܹ»ÔÚϵͳÉÏÖ´ÐÐËÁÒâ´úÂ룬£¬£¬£¬£¬µ«Ç°ÌáÊǹ¥»÷Õß±ØÒª»ñµÃµÍȨÏÞÓû§Í´´¦¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/120761/security/cisco-firepower-device-manager.html


6.Cybereason°ä²¼ÓйØDeadRinger¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨


6.jpg


Cybereason°ä²¼ÁËÓйØDeadRinger¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£»ã±¨Åû¶ÁË3ÆðÖØÒªÕë¶ÔµçÐŹ«Ë¾µÄ¼äµý»î¶¯£¬£¬£¬£¬£¬Í³³ÆÎªDeadRinger¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±·ÖÎö£¬£¬£¬£¬£¬Õâ3Æð¹¥»÷»î¶¯±ðÀëÀ´×ÔSoft Cell APT¡¢Naikon APTºÍEmissary Panda£¨APT27£©¡£¡£¡£¡£¡£¡£Cybereason°µÊ¾£¬£¬£¬£¬£¬ÕâЩ¹¥»÷»î¶¯Õë¶ÔµçÐŹ«Ë¾µÄÖ÷ÕŶ¼ÊÇÍøÂçÃô¸ÐÐÅÏ¢ºÍ·ÛËéóÒ××ʲú£¨ÈçCDRÊý¾ÝÒÔ¼°Óò½ÚÔìÆ÷µÈÍøÂç×é¼þ£©¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬ÕâЩ¹¥»÷»î¶¯¶¼ÓÐËù³Áµþ£¬£¬£¬£¬£¬µ«ÈÔÎÞ·¨Ã÷È·ËûÃÇÊǶÀÁ¢¹¤×÷»¹ÊǶ¼ÔÚͳһÖÐÑëÓ××éµÄÁ쵼Ϲ¤×÷¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.cybereason.com/blog/deadringer-exposing-chinese-threat-actors-targeting-major-telcos