Docker HubÉÏÍйܵĴóÁ¿¾µÏñй¶˽ԿºÍAPIÃÜÔ¿µÈÐÅÏ¢
Ðû²¼Ê±¼ä 2023-07-181¡¢Docker HubÉÏÍйܵĴóÁ¿¾µÏñй¶˽ԿºÍAPIÃÜÔ¿µÈÐÅÏ¢
¾ÝýÌå7ÔÂ16ÈÕ±¨µÀ£¬µÂ¹úÑÇ衹¤Òµ´óѧÑо¿ÈËÔ±·¢ÏÖ£¬Docker HubÉÏÍйܵĴóÁ¿¾µÏñй¶Ãô¸ÐµÄÐÅÏ¢¡£Ñо¿ÈËÔ±·ÖÎöÁËÀ´×ÔDocker HubºÍÊýǧ¸ö˽ÓÐ×¢²á±íµÄ337171¸ö¾µÏñ£¬·¢ÏÖÔ¼8.5%°üÂÞ˽ԿºÍAPIÃÜÔ¿µÈÊý¾Ý¡£Ê¹ÓÃÕýÔò±í´ïʽËÑË÷Ìض¨Êý¾ÝµÄ·ÖÎöÏÔʾ£¬28621¸öDocker¾µÏñй¶ÁË52107¸öÓÐЧ˽ԿºÍ3158¸ö²îÒìµÄAPIÃÜÔ¿¡£´ó¶àÊý鶵ÄÐÅÏ¢£¨95%Ϊ˽Կ£¬90%ΪAPIÃÜÔ¿£©¶¼´æÔÚÓÚµ¥Óû§¾µÏñÖУ¬Õâ±íÃ÷ËüÃÇ¿ÉÄÜÊÇÎÞÒâ¼äй¶µÄ¡£
https://www.bleepingcomputer.com/news/security/thousands-of-images-on-docker-hub-leak-auth-secrets-private-keys/
2¡¢Rapid7͸¶¶à¸öAdobe ColdFusion©¶´Òѱ»Ö÷¶¯ÀûÓÃ
Rapid7ÔÚ7ÔÂ17ÈÕ͸¶£¬ÆäÊӲ쵽Adobe ColdFusion©¶´ÔÚ¶à¸ö¿Í»§ÏµÍ³Öб»ÀûÓõÄÇé¿ö¡£Æ¾¾ÝÏÖÓÐÖ¤¾Ý£¬¹¥»÷ÕߺÃÏñÔÚÀûÓ÷ÃÎÊ¿ØÖÆÈƹý©¶´(CVE-2023-29298)ºÍÁíÒ»¸ö©¶´¡£Ñо¿ÈËÔ±³Æ£¬ÊӲ쵽µÄ¹¥»÷ËƺõÓëCVE-2023-38203Ïà¹Ø¡£´ËÍ⣬AdobeÔÚ7ÔÂ11ÈÕΪCVE-2023-29298ÌṩµÄÐÞ¸´·¨Ê½²¢²»ÍêÕû£¬¾¹ý¼òµ¥Ð޸ĵÄ©¶´ÀûÓÃÈÔÈ»ÊÊÓÃÓÚ×îа汾µÄColdFusion¡£µ«ÒòΪ¸Ã©¶´ÐèÒªÓëÁíÒ»¸ö©¶´½áºÏʹÓã¬ÀýÈçCVE-2023-38203¡£Òò´Ë£¬°²×°×îа汾µÄColdFusionÈÔ¿ÉÒÔ×èֹ©¶´µÄÀûÓá£
https://www.rapid7.com/blog/post/2023/07/17/etr-active-exploitation-of-multiple-adobe-coldfusion-vulnerabilities/
3¡¢¿ÆÂÞÀ¶àÖÝÁ¢´óѧÔâµ½ÀÕË÷¹¥»÷ѧÉúºÍÔ±¹¤µÄÐÅϢй¶
¾Ý7ÔÂ14ÈÕ±¨µÀ£¬¿ÆÂÞÀ¶àÖÝÁ¢´óѧ(CSU)Ôâµ½ÁËClopÀÕË÷¹¥»÷£¬ÏÖÈκÍÇ°ÈÎѧÉúºÍÔ±¹¤µÄ¸öÈËÐÅϢй¶¡£¸Ã´óѧÓÚ7ÔÂ12ÈÕÏòÊÜÓ°ÏìµÄ¸öÈËÐû²¼Í¨Öª¡£´Ë´Îй¶²¢²»ÊÇCSUµÄϵͳÔâµ½¹¥»÷µ¼Öµģ¬¶øÊÇ·þÎñÌṩÉÌ¡¢TIAA¡¢¹ú¼ÒѧÉúÐÅÏ¢½»»»ËùºÍCorebridge FinancialµÈʹÓÃÁËMOVEit TransferÄþ¾²Îļþ´«Êäƽ̨Ôâµ½ÈëÇÖµ¼Öµġ£Ä¿Ç°£¬¸ÃѧУ²»»áÏòCSU»áÔ±ÌṩÉí·Ý͵ÇÔ±£»¤·þÎñ£¬½¨Òé»áÔ±×ñÑFTCÐû²¼µÄ½¨Òé¡£
https://www.bleepingcomputer.com/news/security/colorado-state-university-says-data-breach-impacts-students-staff/
4¡¢Cyble·¢ÏÖð³äTeamViewer°²×°·¨Ê½·Ö·¢njRATµÄ»î¶¯
7ÔÂ13ÈÕ£¬CybleÅû¶ÁËð³äTeamViewer°²×°·¨Ê½·Ö·¢Ä¾ÂínjRAT£¨ÓÖÃûBladabindi£©µÄ»î¶¯¡£njRAT×î³õÓÚ2012Äê±»·¢ÏÖ£¬Ö÷ÒªÓÃÓÚÕë¶ÔÖж«¹ú¼ÒµÄ×éÖ¯¡£Ñо¿ÈËÔ±·¢ÏֵĶñÒâÈí¼þÑù±¾ÊÇÒ»¸ö32λÖÇÄÜ°²×°·¨Ê½£¬Ëü»á°²×°Ò»¸öÕý°æTeamViewerÓ¦ÓúͶñÒâÈí¼þnjRAT¡£Ö´Ðк󣬻áÆô¶¯TeamViewerÓ¦Óò¢´¥·¢njRAT¡£ÎªÁËÈ·±£³Ö¾ÃÐÔ£¬njRAT»¹ÐÞ¸ÄϵͳÉèÖ㬴ӶøÈƹýÄþ¾²¾¯¸æÌáʾ¡£²¢ÔÚϵͳע²á±íÖд´½¨×Ô¶¯ÔËÐÐÌõÄ¿£¬ÒÔ±£Ö¤Ã¿´ÎϵͳÆô¶¯Ê±×Ô¶¯ÔËÐС£
https://blog.cyble.com/2023/07/13/trojanized-application-preying-on-teamviewer-users/
5¡¢ZimbraÌáÐÑÓû§ÊÖ¶¯ÐÞ¸´ÆäZCSÖÐÒѱ»ÀûÓõÄXSS©¶´
7ÔÂ13ÈÕ±¨µÀ³Æ£¬ZimbraÌáÐÑÓû§ÊÖ¶¯ÐÞ¸´Zimbra Collaboration Suite(ZCS)µç×ÓÓʼþ·þÎñÆ÷ÖÐÒѱ»ÀûÓõÄXSS©¶´¡£ËäÈ»ZimbraûÓÐ͸¶¸Ã©¶´±»ÓÃÓÚ¹¥»÷£¬µ«Google TAGÌåÏÖ£¬¸ÃXSS©¶´ÊÇÔÚÒ»´ÎÓÐÕë¶ÔÐԵĹ¥»÷Öб»·¢Ïֵġ£ZimbraÉÐδÌṩÄþ¾²²¹¶¡À´ÐÞ¸´Õâ¸öÁãÈÕ©¶´£¬µ«ËüȷʵÌṩÁËÒ»¸öÐÞ¸´·¨Ê½£¬²¢½¨Òé¹ÜÀíÔ±ÊÖ¶¯Ó¦ÓøÃÐÞ¸´·¨Ê½À´ÐÞ¸´´Ë©¶´¡£´ËÍ⣬Zimbra³Æ¸ÃÐÞ¸´·¨Ê½¼Æ»®ÔÚ7Ô·ݵIJ¹¶¡ÖÐÌṩ¡£
https://securityaffairs.com/148429/hacking/zimbra-collaboration-suite-zeroday.html
6¡¢Check PointÐû²¼2023ÄêQ2ÍøÂç¹¥»÷̬ÊƵķÖÎö³ÂËß
7ÔÂ13ÈÕ£¬Check PointÐû²¼2023ÄêµÚ¶þ¼¾¶ÈÍøÂç¹¥»÷̬ÊƵķÖÎö³ÂËß¡£2023ÄêQ2£¬È«Çòƽ¾ùÿÖܹ¥»÷´ÎÊý½ÏÉÏÄêÔö¼Ó8%£¬Ã¿¸ö×é֯ÿÖܵÄƽ¾ù¹¥»÷´ÎÊýµ½´ï1258´Î¡£½ÌÓýºÍÑо¿ÐÐÒµÔâµ½µÄ¹¥»÷´ÎÊý×î¶à£¬Ã¿¸ö×é֯ƽ¾ùÿÖܱ»¹¥»÷2179´Î£¬Óë2022ÄêQ2Ïà±ÈϽµÁË6% ¡£Õþ¸®ºÍ¾üʲ¿ÃÅ´ÎÖ®£¬Æ½¾ùÿÖÜ1772´Î¹¥»÷£¬±ÈÈ¥ÄêͬÆÚÔö³¤9%¡£·ÇÖÞµÄ×éÖ¯Ôâµ½µÄ¹¥»÷×î¶à£¬±ÈÈ¥Äêͬ±ÈÔö³¤23%¡£Æä´ÎÊÇÑÇÌ«µØÓò£¬Ôö³¤ÁË22%¡£È«Çòÿ44¸ö×éÖ¯ÖоÍÓÐ1¸öÔâµ½ÁËÀÕË÷¹¥»÷£¬ÆäÖÐÕþ¸®ºÍ¾üÊÂÐÐÒµÔâµ½´ËÀ๥»÷µÄ´ÎÊý×î¶à¡£
https://blog.checkpoint.com/security/average-weekly-global-cyberattacks-peak-with-the-highest-number-in-2-years-marking-an-8-growth-year-over-year-according-to-check-point-research/