ÐÅÏ¢Äþ¾²Öܱ¨-2021ÄêµÚ18ÖÜ

Ðû²¼Ê±¼ä 2021-05-06

> ±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö


2021Äê04ÔÂ26ÈÕÖÁ05ÔÂ02ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´66¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇApple macOS Big Sur WebKit CVE-2021-1817ÄÚ´æÆÆ»µ´úÂëÖ´ÐЩ¶´ £»Google Chrome ANGLE¶ÑÒç³ö´úÂëÖ´ÐЩ¶´ £»Cisco Adaptive Security Appliances Software CVE-2021-1504»º³åÇøÒç³ö©¶´ £»PHP FilteredIterator·´ÐòÁл¯´úÂëÖ´ÐЩ¶´ £»Vivotek VIVOTEK IP Camera OSÃüÁî×¢È멶´ ¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊǺڿÍÔÚ°µÍø¹ûȻӡ¶ÈBigBasketÔ¼2000Íò¸öÓû§µÄÐÅÏ¢ £»FacebookÅû¶½üÆÚ2¸ö°ÍÀÕ˹̹ºÚ¿ÍÍÅ»ïµÄ¼äµý»î¶¯ £»µÂ¹úÁª°î¾¯²ì¾ÖÖØÖÃEmotet£¬¸Ã¶ñÒâÈí¼þ½«×Ô¶¯Ð¶ÔØ £»AppleÄþ¾²¸üУ¬ÐÞ¸´macOSÖб»ShlayerÀûÓõÄ0day £»AzureÔÆÕÊ»§ÒòÅäÖôíÎóй¶΢Èí¶à¿î²úÎïµÄÔ´´úÂë ¡£


ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖÐ ¡£


> ÖØÒªÄþ¾²Â©¶´Áбí


1.Apple macOS Big Sur WebKit CVE-2021-1817ÄÚ´æÆÆ»µ´úÂëÖ´ÐЩ¶´


Apple macOS Big Sur WebKit´æÔÚÄÚ´æÆÆ»µÂ©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄWEBÇëÇó£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½±ÀÀ £»òÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë ¡£

https://support.apple.com/zh-cn/HT212325


2.Google Chrome ANGLE¶ÑÒç³ö´úÂëÖ´ÐЩ¶´


Google Chrome ANGLE´æÔÚ¶ÑÒç³ö©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄWEBÇëÇó£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½±ÀÀ £»òÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë ¡£

https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_26.html


3.Cisco Adaptive Security Appliances Software CVE-2021-1504»º³åÇøÒç³ö©¶´


Cisco Adaptive Security Appliances Software HTTPSÇëÇó´æÔÚÊäÈëÑé֤©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ɽøÐоܾø·þÎñ¹¥»÷ ¡£

https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-asa-ftd-vpn-dos-fpBcpEcD


4.PHP FilteredIterator·´ÐòÁл¯´úÂëÖ´ÐЩ¶´


PHP FilteredIterator´æÔÚ·´ÐòÁл¯Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉʹӦÓ÷¨Ê½±ÀÀ £»òÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë ¡£

https://github.com/WordPress/Requests/security/advisories/GHSA-52qp-jpq7-6c54


5.Vivotek VIVOTEK IP Camera OSÃüÁî×¢È멶´


Vivotek VIVOTEK IP Camera NTP Server configuration´¦ÖòÎÊý´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâOSÃüÁî ¡£

https://www.meritlilin.com/assets/uploads/support/file/M00166-TW.pdf


> ÖØÒªÄþ¾²Ê¼þ×ÛÊö


1¡¢ºÚ¿ÍÔÚ°µÍø¹ûȻӡ¶ÈBigBasketÔ¼2000Íò¸öÓû§µÄÐÅÏ¢


1.jpg


BigBasketÊÇÓ¡¶ÈµÄÔÚÏßÔÓ»õÅäËÍ·þÎñ£¬¿ÉÔÚÓû§ÔÚÏß¹ºÖÃÎïÆ·Ö®ºó½«ÆäÔËË͵ּÒÖÐ ¡£4ÔÂ25ÈÕÇ峿£¬ÖøÃûй¶Êý¾ÝÂô¼ÒShinyHunterÔÚ°µÍøÉÏÐû²¼ÁËÒ»¸ö¾Ý³ÆÊÇ´ÓBigBasket͵ȡµÄÊý¾Ý¿â£¬ÆäÖÐÓÐÁè¼Ý2000Íò¸öÓû§µÄ¼Ç¼£¬°üÂÞµç×ÓÓʼþµØÖ·¡¢SHA1¹þÏ£ÃÜÂë¡¢µØÖ·¡¢µç»°ºÅÂëºÍÆäËûÀàÐ͵ÄÐÅÏ¢µÈ ¡£´ËÍ⣬¸ÃºÚ¿Í³ÆÆäÒѾ­Ê¹ÓÃSHA1Ëã·¨ÆƽâÁË200Íò¸öÃÜÂ룬ÆäÖÐ70ÍòÃû¿Í»§Ê¹ÓÃÁË¡°password¡±×÷ΪÃÜÂë ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/hacker-leaks-20-million-alleged-bigbasket-user-records-for-free/


2¡¢FacebookÅû¶½üÆÚ2¸ö°ÍÀÕ˹̹ºÚ¿ÍÍÅ»ïµÄ¼äµý»î¶¯


2.jpg


Facebook½üÆÚ·¢ÏÖÁË2¸ö·Ö±ðÔÚ2019ÄêºÍ2020Ä꿪ʼ»îÔ¾µÄ°ÍÀÕ˹̹ºÚ¿ÍÍÅ»ïµÄ¼äµý»î¶¯ ¡£ÕâÁ½¸ö×éÖ¯Ö®¼äËƺõûÓÐÁªÏµ£¬µ«ËüÃǵÄÄ¿µÄËƺõÏà·´ ¡£ËûÃǾùÀûÓÃÁËiOS¼äµýÈí¼þ£¬²¢ÒÔFacebookµÈÉ罻ýÌåƽ̨ΪÆðµã£¬ÓëÄ¿±ê½¨Á¢ÁªÏµ²¢ÌᳫÉç»á¹¤³Ì¹¥»÷£¬ÓÕʹËûÃǽøÈëµöÓãÒ³ÃæºÍÆäËû¶ñÒâÍøÕ¾ ¡£Ñо¿ÈËÔ±ÍƶÏÆäÖÐÖ®Ò»Óë°ÍÀÕ˹̹Äþ¾²»ú¹¹ÓйØ£¬ÔÚÍÁ¶úÆä¡¢ÒÁÀ­¿Ë¡¢Àè°ÍÄÛºÍÀû±ÈÑÇÒ²Óй¥»÷»î¶¯ ¡£ÁíÒ»×éÓëArid ViperÓйØ£¬Ö÷ÒªÕë¶Ô·¨ËþºÕÕþµ³³ÉÔ±¡¢Õþ¸®¹ÙÔ±¡¢Äþ¾²¶ÓÎéºÍѧÉú ¡£


Ô­ÎÄÁ´½Ó£º

https://www.wired.com/story/palestine-hacking-ios-custom-spyware/


3¡¢µÂ¹úÁª°î¾¯²ì¾ÖÖØÖÃEmotet£¬¸Ã¶ñÒâÈí¼þ½«×Ô¶¯Ð¶ÔØ


3.jpg


µÂ¹úÁª°î¾¯²ì¾ÖBundeskriminalamtÖØÖÃÁËEmotet£¬¸Ã¶ñÒâÈí¼þ½«ÔÚËùÓÐÊÜѬȾµÄϵͳÖÐ×Ô¶¯Ð¶ÔØ ¡£EmotetÊǽüÆÚ×îΣÏÕµÄÀ¬»øÓʼþ½©Ê¬ÍøÂçÖ®Ò»£¬Æä»ù´¡ÉèÊ©ÓÚ½ñÄê1Ô·ÝÓɶà¹úÖ´·¨²¿ÃÅÁªºÏµ·»Ù ¡£ÔÚ´Ë´ÎÐж¯ÖУ¬µÂ¹ú¾¯·½ÂôÁ¦¿ª·¢ºÍÍÆËÍжÔØÄ£¿é£¬ÆäΪÁËÊÕ¼¯Ö¤¾ÝºÍÐÅÏ¢¶øÍƳÙÁ˸ÃжÔØÄ£¿éµÄÐû²¼ ¡£¸Ã»ú¹¹Í¨¹ýÆä¿ØÖƵÄC2·þÎñÆ÷£¬½«32λEmotetLoader.dllÐÎʽµÄÐÂEmotetÄ£¿é·Ö·¢¸øËùÓÐÊÜѬȾµÄϵͳ£¬Ê¹ÕâЩϵͳÔÚ2021Äê4ÔÂ25ÈÕ×Ô¶¯Ð¶ÔظöñÒâÈí¼þ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/emotet-malware-nukes-itself-today-from-all-infected-computers-worldwide/


4¡¢AppleÄþ¾²¸üУ¬ÐÞ¸´macOSÖб»ShlayerÀûÓõÄ0day


4.jpg


AppleÐû²¼Äþ¾²¸üУ¬ÐÞ¸´macOS Big Sur 11.3ÖÐÒѱ»ÀûÓõÄ0day ¡£Äþ¾²ÍŶÓJamf·¢ÏÖ£¬´Ó2021Äê1Ô¿ªÊ¼¶ñÒâÈí¼þShlayerÀûÓÃÁËÒ»¸ö0day£¨CVE-2021-30657£©£¬À´ÈƹýAppleµÄÎļþ¸ôÀë¡¢GatekeeperºÍ¹«Ö¤Äþ¾²¼ì²é£¬²¢ÏÂÔصڶþ½×¶ÎËùʹÓõÄpayload ¡£´ËÍ⣬´Ë´Î¸üл¹ÐÞ¸´ÁËiOS¡¢iPadOSºÍwatchOSÖеĶà¸ö0day£¬°üÂÞWebKit StorageµÄÄÚ´æËð»µÂ©¶´£¨CVE-2021-30661£©¡¢Ô¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2020-27930£©¡¢ÄÚºËÄÚ´æ鶩¶´£¨CVE-2020-27950£©ºÍÄÚºËÌØȨÌáÉý©¶´£¨CVE-2020-27932£© ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/apple-fixes-macos-zero-day-bug-exploited-by-shlayer-malware/


5¡¢AzureÔÆÕÊ»§ÒòÅäÖôíÎóй¶΢Èí¶à¿î²úÎïµÄÔ´´úÂë


5.jpg


vpnMentorÑо¿ÍŶӷ¢ÏÖÒ»¸öÅäÖôíÎóµÄMicrosoft Azure BlobÔÆÕÊ»§Ð¹Â¶ÁË΢Èí¶à¿î²úÎïµÄÔ´´úÂë ¡£Ð¹Â¶Êý¾ÝµÄ×ܾÞϸΪ63GB£¬°üÂÞÁè¼Ý3800¸öÎļþ£¬Éæ¼°ÉÏ°Ù¼Ò¹«Ë¾µÄÈÚ×ÊÑݽ²¸åºÍ10-15ÖÖ²úÎïµÄÔ´´úÂ룬ÓÚ2021Äê1ÔÂ7ÈÕ±»·¢ÏÖ²¢ÒÑÔÚ2021Äê2ÔÂ23Èյõ½± £»¤ ¡£ÕâЩÎļþΪÖڶ๫˾ÏòMicrosoft Dynamics×ö³öµÄһϵÁÐÉÌÒµÐû´«ºÍ²úÎï˵Ã÷£¬¿ÉÄÜÀ´×Ô΢Èí¹«Ë¾ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.vpnmentor.com/blog/report-microsoft-dynamics-leak/