Google³Æ¶íºÚ¿ÍÀûÓÃSafariÖÐ0day¹¥»÷LinkedIn £»SonicWall¾¯¸æÕë¶ÔSMA100ºÍSRA²úÎïµÄÀÕË÷¹¥»÷

Ðû²¼Ê±¼ä 2021-07-16
1.Google³Æ¶íºÚ¿ÍÀûÓÃSafariÖÐ0day¹¥»÷LinkedInÓû§


1.jpg


GoogleÄþ¾²Ñо¿ÈËÔ±Ðû²¼ÁËÓйØ4¸ö0day±»ÔÚÒ°ÀûÓõÄÏêϸÐÅÏ¢¡£ÕâЩ©¶´·Ö±ðÊÇChromeÖеÄCVE-2021-21166ºÍCVE-2021-30551¡¢Internet ExplorerÖеÄCVE-2021-33742£¬ÒÔ¼°WebKit(Safari)ÖеÄCVE-2021-1879¡£ÆäÖУ¬¶íÂÞ˹SVRµÄºÚ¿ÍÍÅ»ïNobeliumÀûÓÃSafariÖеÄ0day£¬Í¨¹ýLinkedIn Messaging·¢ËͶñÒâÁ´½ÓÀ´¹¥»÷Î÷Å·¹ú¼ÒµÄÕþ¸®¹ÙÔ±¡£´ËÍ⣬Google³Æ½ö2021ÄêÉϰëÄê¾ÍÅû¶ÁË33ÆðʹÓÃ0dayµÄ¹¥»÷£¬±È2020ÄêµÄ×ÜÊý¶àÁË11Æð¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/google-russian-svr-hackers-targeted-linkedin-users-with-safari-zero-day/


2.KasperskyÅû¶LuminousMoth APTÕë¶Ô¶«ÄÏÑǵĹ¥»÷


2.jpg


KasperskyÅû¶ÁËAPT×éÖ¯LuminousMothÕë¶Ô¶«ÄÏÑǵĹ¥»÷»î¶¯¡£¸Ã»î¶¯ÖÁÉÙ¿ÉÒÔ×·Ëݵ½2020Äê10Ô£¬ÔçÆÚµÄ¹¥»÷´ó¶àÔÚÃåµéµ«ÏÖÔÚÖ÷ÒªÔÚ·ÆÂɱö£¬Ä¿Ç°·¢ÏÖÃåµé¹²ÓÐ100ÃûÊܺ¦Õß¶ø·ÆÂɱöÓÐ1400Ãû¡£Ñо¿ÈËÔ±³Æ¹¥»÷µÄ¹æÄ£·Ç³£º±¼û£¬Õâ¿ÉÄÜÊÇÓÉÓÚʹÓÃUSBÇý¶¯Æ÷×÷ΪÁ÷´«»úÖÆ¡£¹¥»÷ÕßÀûÓôøÓÐDropboxÏÂÔØÁ´½ÓµÄµöÓãÓʼþ·Ö·¢Î±×°³ÉwordÎĵµµÄrarÎļþ£¬À´°²×°¶ñÒâÈí¼þ¡£Ö®ºó£¬¶ñÒâÈí¼þ»áÀûÓÿÉÒÆ¶¯USBÇý¶¯Æ÷´ø×ÅÇÔÈ¡µÄÎļþÒÆ¶¯µ½ÆäËüµÄϵͳÖÐ


Ô­ÎÄÁ´½Ó£º

https://securelist.com/apt-luminousmoth/103332/


3.Ñо¿ÍŶӷ¢ÏÖ·Ö·¢BazarBackdoorµÄÐÂÒ»ÂÖµöÓã»î¶¯


3.jpg


CofenseÑо¿ÍŶӷ¢ÏÖÁËÒ»¸öеĵöÓã»î¶¯£¬Ê¹ÓöàÖØÑ¹Ëõ¼¼ÊõÀ´·Ö·¢BazarBackdoor¶ñÒâÈí¼þ¡£¹¥»÷ÕßʹÓÃÁËÒÔ¡°»·¾³ÈÕ¡±ÎªÖ÷ÌâµÄÓʼþÀ´ÎüÒýÊܺ¦Õߣ¬Æä¸½¼þÖÐËù¸½µÄZIPºÍRARÎļþ¶¼°üÂÞÁËÒ»¸öJavaScriptÎļþ£¬Ö¼ÔÚÏÂÔØÀ©Õ¹ÃûΪͼÏñµÄpayload¡£Cofense³Æ¹¥»÷ÕßÓÐÒâʹÓöàÖÖÎļþÀàÐÍ£¬¿ÉÒÔµ¼ÖÂÄþ¾²µç×ÓÓʼþÍø¹Ø(SEG)µ½´ï½âѹËõÏÞÖÆ£¬»òÕßÒòΪδ֪µÄ¹éµµÀàÐͶø½âѹʧ°Ü£¬´Ó¶øÊ¹¶ñÒâÎļþ¸üÄѱ»¼ì²âµ½¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/bazarbackdoor-sneaks-in-through-nested-rar-and-zip-archives/


4.CyberArkÅû¶Windows HelloÖпÉÈÆ¹ýÉí·ÝÑéÖ¤µÄ©¶´


4.jpg


CyberArk LabsµÄÑо¿ÈËÔ±Åû¶ÁËWindows HelloÖпÉÈÆ¹ýÉí·ÝÑéÖ¤µÄ©¶´¡£Windows HelloÊÇWin10ÖеÄÒ»ÏЧ£¬ÔÊÐíÓû§ÔÚûÓÐÃÜÂëµÄÇé¿öÏÂʹÓÃPINÂë»òÉúÎïʶ±ðÉí·Ý½øÐÐÑéÖ¤ÒÔ·ÃÎÊÉ豸£¬Ô¼85%µÄWin10Óû§Ê¹Óøù¦Ð§¡£¸Ã©¶´×·×ÙΪCVE-2021-34466£¬¹¥»÷Õß¿ÉÒÔ²¶×½»òÖØ½¨Ä¿±êµÄÃæ²¿ÕÕÆ¬£¬È»ºó²åÈëÌØÖÆµÄUSBÉ豸½«Î±ÔìµÄͼÏñ×¢ÈëÉí·ÝÑéÖ¤Ö÷»ú£¬À´ÈƹýÉí·ÝÑé֤ϵͳ¡£Ä¿Ç°£¬¸Ã©¶´Òѱ»ÐÞ¸´¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/windows-hello-bypass-biometrics-pcs/167771/


5.Cisco TalosÅû¶D-LINK DIR-3040·ÓÉÆ÷Öжà¸ö©¶´


5.jpg


Cisco TalosÅû¶D-LINK DIR-3040ÎÞÏß·ÓÉÆ÷ÖеĶà¸ö©¶´¡£´Ë´Î·¢Ïֵĩ¶´°üÂÞÐÅϢй¶©¶´£¨CVE-2021-21816ºÍCVE-2021-21817£©£¬¿Éͨ¹ýÌØÖÆµÄÍøÂçÇëÇó´¥·¢£¬À´¼ì²ìÉ豸µÄϵͳÈÕÖ¾ £»Ó²±àÂëÃÜÂë©¶´CVE-2021-21818ºÍCVE-2021-21820£¬ÆäÖÐǰÕß¿ÉÄܵ¼Ö¾ܾø·þÎñ£¬ºóÕßÔÊÐí¹¥»÷ÕßÔÚ·ÓÉÆ÷ÉÏÖ´ÐдúÂë £»ÒÔ¼°´úÂëÖ´ÐЩ¶´(CVE-2021-21819) ¡£


Ô­ÎÄÁ´½Ó£º

https://blog.talosintelligence.com/2021/07/vuln-spotlight-d-link.html    


6.SonicWall¾¯¸æÕë¶ÔÆäSMA100ϵÁкÍSRA²úÎïµÄÀÕË÷¹¥»÷


6.jpg


SonicWallÐû²¼½ô¼±Äþ¾²Í¨Öª£¬¾¯¸æÕë¶ÔÆä²»Ö§³Ö¸üÐÂ(EoL)µÄÄþ¾²Òƶ¯·ÃÎÊ(SMA)100ϵÁкÍÄþ¾²Ô¶³Ì·ÃÎÊ(SRA)²úÎïµÄÀÕË÷Èí¼þ¹¥»÷¡£¸Ã¹«Ë¾ÌåÏÖ£¬¹¥»÷ÕßʹÓõÄÊÇÒ»¸ö¾É©¶´£¬¸Ã©¶´ÒÑÔÚÆä×îа汾µÄ¹Ì¼þÖÐÐÞ¸´£¬¿Í»§ÐèÒª¾¡¿ì¸üÐÂÆäÉ豸µÄ¹Ì¼þ¡£Èç¹û×é֯ʹÓõľÉSRAÉ豸ÒÑÊÇEoL״̬¶øÇÒÎÞ·¨¸üе½9.x¹Ì¼þ£¬ÈÔ¼ÌÐøÊ¹ÓÿÉÄÜÔâµ½ÀÕË÷¹¥»÷£¬¸Ã¹«Ë¾½¨ÒéÁ¢¼´¶Ï¿ªÉ豸Á¬½Ó²¢ÖØÖÃÆä·ÃÎÊÃÜÂ룬Èç¹û¿ÉÒԵϰÆôÓÃÕÊ»§¶àÖØÉí·ÝÑéÖ¤¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/sonicwall-warns-of-imminent-ransomware-campaign-targeting-its-eol-equipment/