Zephyrʵʱ²Ù×÷ϵͳ(RTOS)Äþ¾²¸üУ¬ÐÞ¸´¶à¸ö©¶´£»±ÈÀûʱµÚÈý¶àÊý»áLiege³ÆÆäÔâµ½RyukÀÕË÷Èí¼þ¹¥»÷

Ðû²¼Ê±¼ä 2021-06-24

1.Zephyrʵʱ²Ù×÷ϵͳ(RTOS)Äþ¾²¸üУ¬ÐÞ¸´¶à¸ö©¶´


1.jpg


Zephyrʵʱ²Ù×÷ϵͳ(RTOS)Äþ¾²¸üУ¬ÐÞ¸´ÁË8¸ö¿ÉÄܵ¼Ö¾ܾø·þÎñ (DoS) ºÍÔ¶³Ì´úÂëÖ´ÐеÄ©¶´¡£ZephyrÊÇСÐ͵Äʵʱ²Ù×÷ϵͳ£¬ÓÃÓÚ×ÊÔ´ÊÜÏÞµÄǶÈëʽ»¥ÁªÉ豸£¬µÃµ½ÁËFacebook¡¢¹È¸è¡¢IntelµÈÖªÃû¹«Ë¾µÄÖ§³Ö£¬Ö§³Ö200¶àÖÖ²îÒìCPU¼Ü¹¹£¨ARM¡¢Cortex-MºÍIntel x86µÈ£©¡£´Ë´ÎÐÞ¸´µÄ©¶´´æÔÚÓÚZephyrµÄÀ¶ÑÀLEÁ´Â·²ã (LL) ¼°ÆäÂß¼­Á´Â·¿ØÖƺÍÊÊÅäЭÒé (L2CAP) ÖУ¬ÆäÖнÏΪÑÏÖØµÄÊÇÐÅϢй¶©¶´£¨CVE-2021-3435£©ºÍDoS©¶´£¨CVE-2021-3455£©¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/zephyr-rtos-fixes-bluetooth-bugs-that-may-lead-to-code-execution/


2.Ñо¿ÈËÔ±Åû¶Lexmark´òÓ¡»úÖдæÔÚÈÎÒâ´úÂëÖ´ÐÐ0day


2.jpg


Ñо¿ÈËÔ±Åû¶ÀûÃË£¨Lexmark£©´òÓ¡»úÖдæÔÚÈÎÒâ´úÂëÖ´ÐÐ0day¡£¸Ã©¶´´æÔÚÓÚLexmark´òÓ¡»úÈí¼þG2°²×°°üÖУ¬ÊÇÓÉLM__bdsvc·þÎñÖеÄÒ»¸öδ¼ÓÒýºÅµÄ·þÎñ·¾¶Â©¶´µ¼ÖµÄ£¬ÆäCVSSv3»ù±¾ÆÀ·ÖΪ8.4¡£Ñо¿ÈËÔ±³Æ£¬¹¥»÷Õß¿ÉÒÔÀûÓÃÒ»¸öÌØÖÆµÄ¿ÉÖ´ÐÐÎļþÀ´ÀûÓøÃ©¶´£¬ÔÚÄ¿±êϵͳÉÏÖ´ÐÐÈÎÒâ´úÂ롣Ŀǰ¸Ã©¶´ÉÐδÐÞ¸´£¬Ò²Ã»ÓÐÈκοÉÓõĻº½â´ëÊ©¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/lexmark-printers-code-execution-zero-day/167111/


3.Avast³Æ½©Ê¬ÍøÂçDirtyMoeÒÑѬȾ10Íò¶à¸öWindowsϵͳ


3.jpg


AvastµÄÑо¿ÈËÔ±³Æ½©Ê¬ÍøÂçDirtyMoeÒÑѬȾ10Íò¶à¸öWindowsϵͳ¡£¸Ã½©Ê¬ÍøÂç×Ô2017ÄêÄ©¿ªÊ¼»îÔ¾£¬Ö÷ÒªÓÃÓÚÍÚ¾ò¼ÓÃÜ»õ±Ò¡£DirtyMoe rootkitÊÇͨ¹ýÀ¬»øÓʼþ·Ö·¢µÄ£¬»òÕßÓÉÍйÜÁËPurpleFox¹¥»÷¹¤¾ß°üµÄ¶ñÒâÍøÕ¾·Ö·¢¡£2020Äêµ×£¬DirtyMoeµÄ¿ª·¢ÕßΪÆäÌí¼ÓÁËÒ»¸öÈ䳿Ä£¿é£¬¸ÃÄ£¿éɨÃ軥ÁªÍø²¢¶Ô¿ªÆôÁËSMB¶Ë¿ÚµÄWindowsϵͳִÐб©Á¦¹¥»÷£¬ÕâʹµÃѬȾÂÊÔö¼ÓÁ˼¸¸öÊýÁ¿¼¶¡£ÆäÖУ¬¶íÂÞ˹¡¢ÎÚ¿ËÀ¼¡¢Ô½ÄϺͰÍÎ÷µÈµØÊÜÓ°Ïì×îÑÏÖØ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/119230/malware/dirtymoe-botnet-growing.html


4.ÐÂÀÕË÷Èí¼þDarkRadiationÖ÷ÒªÕë¶ÔLinuxºÍDockerÈÝÆ÷


4.jpg


Ñо¿ÍŶӷ¢ÏÖÐÂÀÕË÷Èí¼þDarkRadiationÍêÈ«ÊÇÓÃBash±àдµÄ£¬Ö÷ÒªÕë¶ÔLinuxºÍDockerÈÝÆ÷¡£¸Ã¶ñÒâÈí¼þÔÚ5ÔÂÏÂÑ®Ê״α»TwitterÓû§@r3dbU7z×¢Òâµ½£¬Ä¿Ç°²¢Ã»ÓÐÆä·Ö·¢ÒªÁì»òÔÚÒ°¹¥»÷µÄÏà¹ØÐÅÏ¢£¬µ«Ñо¿ÈËÔ±³ÆÆäÄ¿±êÊÇRed Hat/CentOSºÍDebian Linux¿¯Ðаæ¡£¸ÃÀÕË÷Èí¼þʹÓÃÁËÒ»×éÅÓ´óµÄBash½Å±¾ºÍÖÁÉÙ6¸öc2(ËüÃÇĿǰ¶¼´¦ÓÚÀëÏß״̬)£¬Í¨¹ýÓ²±àÂëµÄAPIÃÜÔ¿ÓëTelegram»úÆ÷ÈËͨÐÅ£¬»¹Ê¹ÓÃÁËOpenSSLµÄAESËã·¨ºÍCBCģʽÀ´¼ÓÃÜÖÖÖÖĿ¼ÖеÄÎļþ¡£


Ô­ÎÄÁ´½Ó£º

https://www.sentinelone.com/blog/darkradiation-abusing-bash-for-linux-and-docker-container-ransomware/


5.±ÈÀûʱµÚÈý¶àÊý»áLiege³ÆÆäÔâµ½RyukÀÕË÷Èí¼þ¹¥»÷


5.jpg


±ÈÀûʱµÚÈý¶àÊý»áLiege³ÆÆäÔâµ½RyukÀÕË÷Èí¼þ¹¥»÷£¬ITÍøÂçºÍÔÚÏß·þÎñÔâµ½ÆÆ»µ¡£¹¥»÷·¢ÉúÓÚ6ÔÂ22ÈÕ£¬¸ÃÊйÙÔ±³Æ´ó²¿ÃÅÊÐÃñ·þÎñ¾ùÒÑÖжÏ£¬ÀýÈçÊÐÕþÌü¡¢³öÉú¹ÒºÅ¡¢»éÀñºÍÉ¥Ôá·þÎñµÄÔ¤Ô¼¶¼±»È¡ÏûÁË£¬´ËÍ⣬»î¶¯Ðí¿ÉºÍ¸¶·ÑÍ£³µµÄÍøÉÏÉêÇë±íÒ²¼õÉÙÁË¡£ËäÈ»¹Ù·½½ö½«´Ë´ÎʼþÃèÊöΪ¼ÆËã»ú¹¥»÷£¬µ«±ÈÀûʱµÄÁ½¼Ò¹ã²¥µç̨ºÍµçÊǪ́±¨µÀ³Æ£¬´Ë´Î¹¥»÷ÊÇRyukÀÕË÷Èí¼þÍÅ»ïËùΪ¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/city-of-liege-belgium-hit-by-ransomware/


6.ºÚ¿ÍÔÚ°µÍø¹ûÈ»°Í»ù˹̹PatariÍøÕ¾Áè¼Ý25ÍòÓû§µÄÐÅÏ¢


6.jpg


ºÚ¿ÍÔÚÓ¢ÓïºÍ¶íÓïÂÛ̳ÉϹûÈ»Á˰ͻù˹̹×î´óµÄÒôÀÖÁ÷ýÌåÍøÕ¾PatariµÄÁè¼Ý257000¸öÓû§µÄÐÅÏ¢¡£Êý¾Ýй¶¼òÖ±ÇÐÈÕÆÚÈÔȻδ֪£¬µ«¸ÃÊý¾Ý¿âÒÑÓÚ2021Äê6ÔÂ13ÈÕÔÚÏßת´¢¡£´Ë´Îй¶µÄÐÅÏ¢°üÂÞÓû§ÐÕÃûºÍÓû§Ãû¡¢µç×ÓÓʼþµØÖ·¡¢ÃÜÂë¡¢²¥·ÅÁбíºÍÍ·ÏñÁ´½ÓµÈ¡£¾ÝºÚ¿Í³Æ£¬ËûÃÇÔÚ2021Äê5Ô·¢ÏÖÁËPatariÅäÖôíÎóµÄMongoDBÊý¾Ý¿âй¶ÁËÆäÊý¾Ý±¸·Ý¡£Ñо¿ÈËÔ±ÓÚÒ»ÖÜǰÏòPatariͨ±¨Á˸Ãʼþ£¬µ«ÖÁ½ñÈÔδÊÕµ½ÈκλØÓ¦¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/pakistani-music-streaming-site-patari-hacked/