KaseyaÄþ¾²¸üÐÂÐÞ¸´REvilÔÚ¹©Ó¦Á´¹¥»÷ÖÐÓõÄ0day £»Ð¶ñÒâÈí¼þBIOPASSÀûÓÃÖ±²¥Ó¦ÓÃOBSÂ¼ÖÆÄ¿±êµÄÆÁÄ»

Ðû²¼Ê±¼ä 2021-07-13
1.KaseyaÄþ¾²¸üÐÂÐÞ¸´REvilÔÚ¹©Ó¦Á´¹¥»÷ÖÐÓõÄ0day


1.jpg


KaseyaÐû²¼Äþ¾²¸üУ¬ÐÞ¸´REvilÔÚ¹©Ó¦Á´¹¥»÷ÖÐÓõÄ0day¡£4Ô£¬ºÉÀ¼Â©¶´Åû¶Ñо¿Ëù (DIVD)Åû¶ÁËKaseyaµÄ7¸ö©¶´¡£Ö®ºó£¬Kaseya¶ÔÆäVSA SaaS·þÎñÉϵĴó²¿ÃÅ©¶´Ðû²¼Á˲¹¶¡£¬µ«ÉÐδÍê³ÉÄÚ²¿°æ±¾VSAµÄ²¹¶¡¡£¶øREvilÍÅ»ïÏÈÒ»²½ÀûÓÃÁËÕâЩ©¶´£¬ÓÚ7ÔÂ2ÈÕ¶ÔԼĪ60¸öMSPºÍ1500¼ÒÆóÒµ¿Í»§ÌᳫÁË´ó¹æÄ£¹¥»÷¡£Ä¿Ç°£¬KaseyaÐû²¼ÁËVSA 9.5.7a (9.5.7.2994) ¸üÐÂÒÔÐÞ¸´REvilʹÓõÄ©¶´£¬°üÂÞCVE-2021-30116¡¢CVE-2021-30119ºÍCVE-2021-30120µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/kaseya-patches-vsa-vulnerabilities-used-in-revil-ransomware-attack/


2.жñÒâÈí¼þBIOPASSÀûÓÃÖ±²¥Ó¦ÓÃOBSÂ¼ÖÆÄ¿±êµÄÆÁÄ»


2.jpg


Äþ¾²¹«Ë¾Ç÷ÊÆ¿Æ¼¼·¢ÏÖжñÒâÈí¼þBIOPASSÀûÓÃÖ±²¥Ó¦ÓÃOBSÂ¼ÖÆÄ¿±ê¼ÆËã»úµÄÆÁÄ»¡£BIOPASSÊÇÓÃPython±àдµÄÔ¶³Ì·ÃÎÊľÂí (RAT)£¬ÔÚ×î½üÕë¶ÔÔÚÏß¶ÄÇ®¹«Ë¾µÄ¹¥»÷Öб»·¢ÏÖ£¬±»Òþ²ØÔںϷ¨µÄAdobe Flash Player»òMicrosoft SilverlightµÄ°²×°·¨Ê½ÖС£BIOPASS RAT¾ßÓÐÔÚÆäËû¶ñÒâÈí¼þµÄ»ù±¾¹¦Ð§£¬µ«»¹ÓÐÒ»Ïîй¦Ð§£¬¼´ÔÚÄ¿±êϵͳÉϰ²×°OBS StudioÈí¼þ£¬²¢Ê¹ÓøÃÈí¼þµÄ RTMP£¨ÊµÊ±ÏûϢͨ±¨Ð­Ò飩Á÷ýÌ幦ЧÀ´Â¼ÖÆÓû§µÄÆÁÄ»²¢½«Æä¹ã²¥µ½¹¥»÷ÕߵĿØÖÆÌ¨¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/malware-abuses-obs-live-streaming-software-to-record-victims-screens/


3.ÃÀ¹úÏðÊ÷ÁëÒøÐÐ֪ͨÆä¿Í»§ÒòÍøÂç¹¥»÷¸öÈËÐÅϢй¶


3.jpg


ÃÀ¹úÏðÊ÷ÁëÒøÐУ¨Bank Of Oak Ridge£©ÓÚ7ÔÂ9ÈÕÐÇÆÚÎå֪ͨÆä¿Í»§ÒòÍøÂç¹¥»÷¸öÈËÐÅϢй¶¡£¸ÃÒøÐÐ³ÆÆäÔâµ½ÁËÍøÂç¹¥»÷£¬µ¼ÖÂÒøÐеIJ¿ÃÅ·þÎñÔÝʱÖжÏ£¬¾­ÊӲ췢ÏÖ»¹ÓÐδ¾­ÊÚȨµÄ¹¥»÷Õß·ÃÎÊÁËÆäϵͳ¡£´Ë´Î¹¥»÷·¢ÉúÔÚ4ÔÂ26ÈÕºÍ4ÔÂ27ÈÕ£¬ÔÚ2009Äê9ÔÂ30ÈÕ֮ǰ¿ªÉèÕË»§µÄºã¾Ã¿Í»§µÄÐÅÏ¢¿ÉÄÜÒѾ­Ð¹Â¶£¬°üÂÞÉç»áÄþ¾²ºÅÂë¡¢ÒøÐÐÕʺš¢³öÉúÈÕÆÚºÍ¼ÝʻִÕÕºÅÂëµÈ¡£


Ô­ÎÄÁ´½Ó£º

https://www.rhinotimes.com/featured-article/hackers-steal-critical-customer-data-from-bank-of-oak-ridge/


4.CISA¾¯¸æForgeRock·ÃÎʹÜÀíÖÐÒѱ»ÀûÓõÄREC©¶´


4.jpg


CISA¾¯¸æ¹¥»÷ÕßÕýÔÚ»ý¼«ÀûÓÃForgeRock·ÃÎʹÜÀí(AM)ÖеÄÔ¶³Ì´úÂëÖ´ÐЩ¶´ (CVE-2021-35464)¡£ForgeRock·ÃÎʹÜÀíÊÇÒ»¸ö»ùÓÚ¿ªÔ´·ÃÎʹÜÀí½â¾ö·½°¸OpenAMµÄÉÌÒµ¿ª·Å·ÃÎʹÜÀíµÄ½â¾ö·½°¸¡£ÀûÓôË©¶´µÄ¹¥»÷Õß¿ÉÒÔÔÚµ±Ç°Óû§µÄϵͳÖÐÖ´ÐÐÃüÁӰÏìÁËAM°æ±¾6.0.0.x¡¢6.5.0.x¡¢6.5.1¡¢6.5.2.xºÍ6.5.3¡£Ä¿Ç°£¬¸Ã¹«Ë¾ÒÑÐû²¼ÁËÕë¶Ô¸Ã©¶´µÄ»º½â´ëÊ©¡£


Ô­ÎÄÁ´½Ó£º

https://us-cert.cisa.gov/ncas/current-activity/2021/07/12/critical-forgerock-access-management-vulnerability


5.Security CompassÐû²¼2021ÄêÍþв½¨Ä£µÄÌ¬ÊÆ³ÂËß


5.jpg


Security CompassÐû²¼ÁË2021ÄêÍþв½¨Ä£Ì¬ÊƵķÖÎö³ÂËß¡£¸Ã³ÂËßÖ¼ÔÚÁ˽âÍþв½¨Ä£µÄµ±Ç°Ì¬ÊÆ£¬ÒÔ¼°´óÐÍÆóÒµÔÚ¹¹½¨ºÍ²¿ÊðÓ¦Ó÷¨Ê½Ê±Óöµ½µÄÌôÕ½¡£³ÂËßÖ¸³ö£¬Ö»ÓÐ25%µÄÊÜ·ÃÕßÌåÏÖËûÃǵÄ×éÖ¯ÔÚÈí¼þ¿ª·¢µÄÐèÇóÊÕ¼¯ºÍÉè¼ÆÔçÆÚ½×¶Î½øÐÐÁËÍþв½¨Ä££¬²»µ½10%µÄÊÜ·ÃÕßÌåÏÖËûÃǶÔ90%Ö®ÉϵÄÓ¦ÓýøÐÐÁËÍþв½¨Ä£¡£µ«ÊÇÓÉÓÚCOVID-19£¬Áè¼Ý80%µÄ×éÖ¯²»µÃ²î³ØÆäÍøÂçÄþ¾²´ëÊ©½øÐиıä¡£


Ô­ÎÄÁ´½Ó£º

https://resources.securitycompass.com/research/2021-state-of-threatmodeling


6.BetterCloudÐû²¼2021ÄêÎļþÄþ¾²µÄ·çÏÕ·ÖÎö³ÂËß


6.jpg


BetterCloudÐû²¼ÁË2021ÄêÎļþÄþ¾²µÄ·çÏÕ·ÖÎö³ÂËß¡£¸Ã³ÂËßÊÓ²ìÁË500¶àÃûITºÍÄþ¾²ÈËÔ±ÒÔÁ˽⵱½ñSaaSÎļþÄþ¾²¡£³ÂËßÖ¸³ö£¬½üÒ»°ëµÄ×éÖ¯ÌåÏÖËûÃÇ×îÌåÌùµÄÄþ¾²ÎÊÌâÊDz»ÖªµÀÃô¸ÐÊý¾ÝµÄλÖà £»Áè¼Ý70%µÄ×éÖ¯ÌåÏÖ×î´óµÄÊý¾Ýй¶·çÏÕÊÇÔ±¹¤ £»Ö»ÓÐ35%µÄÊÜ·ÃÕßÏàÐÅÖÕ¶ËÓû§»áÂôÁ¦ÈεطÖÏíºÍ´æ´¢¹«Ë¾Êý¾Ý¡£´ËÍ⣬2021ÄêËæ×ÅÈ«ÇòÒµÎñµÄ»Ö¸´£¬ÎļþÄþ¾²Ê¼þì­ÉýÁË134%¡£


Ô­ÎÄÁ´½Ó£º

https://www.bettercloud.com/monitor/file-security-report-2021/