Zephyrʵʱ²Ù×÷ϵͳ(RTOS)Çå¾²¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´¶à¸öÎó²î£»£»£»£»£»£»±ÈÀûʱµÚÈý´ó¶¼»áLiege³ÆÆäÔâµ½RyukÀÕË÷Èí¼þ¹¥»÷
Ðû²¼Ê±¼ä 2021-06-241.Zephyrʵʱ²Ù×÷ϵͳ(RTOS)Çå¾²¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´¶à¸öÎó²î

Zephyrʵʱ²Ù×÷ϵͳ(RTOS)Çå¾²¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´ÁË8¸ö¿ÉÄܵ¼Ö¾ܾøÐ§ÀÍ (DoS) ºÍÔ¶³Ì´úÂëÖ´ÐеÄÎó²î¡£¡£¡£¡£¡£¡£ZephyrÊÇСÐ͵Äʵʱ²Ù×÷ϵͳ£¬£¬£¬£¬£¬£¬ÓÃÓÚ×ÊÔ´ÊÜÏÞµÄǶÈëʽ»¥Áª×°±¸£¬£¬£¬£¬£¬£¬»ñµÃÁËFacebook¡¢¹È¸è¡¢IntelµÈ×ÅÃû¹«Ë¾µÄÖ§³Ö£¬£¬£¬£¬£¬£¬Ö§³Ö200¶àÖÖ²î±ðCPU¼Ü¹¹£¨ARM¡¢Cortex-MºÍIntel x86µÈ£©¡£¡£¡£¡£¡£¡£´Ë´ÎÐÞ¸´µÄÎó²î±£´æÓÚZephyrµÄÀ¶ÑÀLEÁ´Â·²ã (LL) ¼°ÆäÂß¼Á´Â·¿ØÖƺÍÊÊÅäÐÒé (L2CAP) ÖУ¬£¬£¬£¬£¬£¬ÆäÖнÏΪÑÏÖØµÄÊÇÐÅϢй¶Îó²î£¨CVE-2021-3435£©ºÍDoSÎó²î£¨CVE-2021-3455£©¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/zephyr-rtos-fixes-bluetooth-bugs-that-may-lead-to-code-execution/
2.Ñо¿Ö°Ô±Åû¶Lexmark´òÓ¡»úÖб£´æí§Òâ´úÂëÖ´ÐÐ0day

Ñо¿Ö°Ô±Åû¶ÀûÃË£¨Lexmark£©´òÓ¡»úÖб£´æí§Òâ´úÂëÖ´ÐÐ0day¡£¡£¡£¡£¡£¡£¸ÃÎó²î±£´æÓÚLexmark´òÓ¡»úÈí¼þG2×°ÖðüÖУ¬£¬£¬£¬£¬£¬ÊÇÓÉLM__bdsvcЧÀÍÖеÄÒ»¸öδ¼ÓÒýºÅµÄЧÀÍ·¾¶Îó²îµ¼Öµģ¬£¬£¬£¬£¬£¬ÆäCVSSv3»ù±¾ÆÀ·ÖΪ8.4¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔʹÓÃÒ»¸öÌØÖÆµÄ¿ÉÖ´ÐÐÎļþÀ´Ê¹ÓøÃÎó²î£¬£¬£¬£¬£¬£¬ÔÚÄ¿µÄϵͳÉÏÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£ÏÖÔÚ¸ÃÎó²îÉÐδÐÞ¸´£¬£¬£¬£¬£¬£¬Ò²Ã»ÓÐÈκοÉÓõĻº½â²½·¥¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/lexmark-printers-code-execution-zero-day/167111/
3.Avast³Æ½©Ê¬ÍøÂçDirtyMoeÒÑѬȾ10Íò¶à¸öWindowsϵͳ

AvastµÄÑо¿Ö°Ô±³Æ½©Ê¬ÍøÂçDirtyMoeÒÑѬȾ10Íò¶à¸öWindowsϵͳ¡£¡£¡£¡£¡£¡£¸Ã½©Ê¬ÍøÂç×Ô2017Äêβ×îÏÈ»îÔ¾£¬£¬£¬£¬£¬£¬Ö÷ÒªÓÃÓÚÍÚ¾ò¼ÓÃÜÇ®±Ò¡£¡£¡£¡£¡£¡£DirtyMoe rootkitÊÇͨ¹ýÀ¬»øÓʼþ·Ö·¢µÄ£¬£¬£¬£¬£¬£¬»òÕßÓÉÍйÜÁËPurpleFox¹¥»÷¹¤¾ß°üµÄ¶ñÒâÍøÕ¾·Ö·¢¡£¡£¡£¡£¡£¡£2020Äêµ×£¬£¬£¬£¬£¬£¬DirtyMoeµÄ¿ª·¢ÕßΪÆäÌí¼ÓÁËÒ»¸öÈ䳿ģ¿£¿£¿é£¬£¬£¬£¬£¬£¬¸ÃÄ£¿£¿£¿éɨÃ軥ÁªÍø²¢¶Ô¿ªÆôÁËSMB¶Ë¿ÚµÄWindowsϵͳִÐб©Á¦¹¥»÷£¬£¬£¬£¬£¬£¬ÕâʹµÃѬȾÂÊÔöÌíÁ˼¸¸öÊýÄ¿¼¶¡£¡£¡£¡£¡£¡£ÆäÖУ¬£¬£¬£¬£¬£¬¶íÂÞ˹¡¢ÎÚ¿ËÀ¼¡¢Ô½ÄϺͰÍÎ÷µÈµØÊÜÓ°Ïì×îÑÏÖØ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/119230/malware/dirtymoe-botnet-growing.html
4.ÐÂÀÕË÷Èí¼þDarkRadiationÖ÷ÒªÕë¶ÔLinuxºÍDockerÈÝÆ÷

Ñо¿ÍŶӷ¢Ã÷ÐÂÀÕË÷Èí¼þDarkRadiationÍêÈ«ÊÇÓÃBash±àдµÄ£¬£¬£¬£¬£¬£¬Ö÷ÒªÕë¶ÔLinuxºÍDockerÈÝÆ÷¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÔÚ5ÔÂÏÂÑ®Ê״α»TwitterÓû§@r3dbU7z×¢ÖØµ½£¬£¬£¬£¬£¬£¬ÏÖÔÚ²¢Ã»ÓÐÆä·Ö·¢ÒªÁì»òÔÚÒ°¹¥»÷µÄÏà¹ØÐÅÏ¢£¬£¬£¬£¬£¬£¬µ«Ñо¿Ö°Ô±³ÆÆäÄ¿µÄÊÇRed Hat/CentOSºÍDebian Linux¿¯Ðа档¡£¡£¡£¡£¡£¸ÃÀÕË÷Èí¼þʹÓÃÁËÒ»×éÖØ´óµÄBash¾ç±¾ºÍÖÁÉÙ6¸öc2(ËüÃÇÏÖÔÚ¶¼´¦ÓÚÀëÏß״̬)£¬£¬£¬£¬£¬£¬Í¨¹ýÓ²±àÂëµÄAPIÃÜÔ¿ÓëTelegram»úеÈËͨѶ£¬£¬£¬£¬£¬£¬»¹Ê¹ÓÃÁËOpenSSLµÄAESËã·¨ºÍCBCģʽÀ´¼ÓÃÜÖÖÖÖĿ¼ÖеÄÎļþ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.sentinelone.com/blog/darkradiation-abusing-bash-for-linux-and-docker-container-ransomware/
5.±ÈÀûʱµÚÈý´ó¶¼»áLiege³ÆÆäÔâµ½RyukÀÕË÷Èí¼þ¹¥»÷

±ÈÀûʱµÚÈý´ó¶¼»áLiege³ÆÆäÔâµ½RyukÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬ITÍøÂçºÍÔÚÏßЧÀÍÔâµ½ÆÆË𡣡£¡£¡£¡£¡£¹¥»÷±¬·¢ÓÚ6ÔÂ22ÈÕ£¬£¬£¬£¬£¬£¬¸ÃÊйÙÔ±³Æ´ó²¿·ÖÊÐÃñЧÀ;ùÒÑÖÐÖ¹£¬£¬£¬£¬£¬£¬ÀýÈçÊÐÕþÌü¡¢³öÉú¹ÒºÅ¡¢»éÀñºÍÉ¥ÔáЧÀ͵ÄÔ¤Ô¼¶¼±»×÷·ÏÁË£¬£¬£¬£¬£¬£¬±ðµÄ£¬£¬£¬£¬£¬£¬»î¶¯ÔÊÐíºÍ¸¶·ÑÍ£³µµÄÍøÉÏÉêÇë±íÒ²ïÔÌÁË¡£¡£¡£¡£¡£¡£ËäÈ»¹Ù·½½ö½«´Ë´ÎÊÂÎñÐÎòΪÅÌËã»ú¹¥»÷£¬£¬£¬£¬£¬£¬µ«±ÈÀûʱµÄÁ½¼Ò¹ã²¥µç̨ºÍµçÊǪ́±¨µÀ³Æ£¬£¬£¬£¬£¬£¬´Ë´Î¹¥»÷ÊÇRyukÀÕË÷Èí¼þÍÅ»ïËùΪ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://therecord.media/city-of-liege-belgium-hit-by-ransomware/
6.ºÚ¿ÍÔÚ°µÍø¹ûÕæ°Í»ù˹̹PatariÍøÕ¾Áè¼Ý25ÍòÓû§µÄÐÅÏ¢

ºÚ¿ÍÔÚÓ¢ÓïºÍ¶íÓïÂÛ̳ÉϹûÕæÁ˰ͻù˹̹×î´óµÄÒôÀÖÁ÷ýÌåÍøÕ¾PatariµÄÁè¼Ý257000¸öÓû§µÄÐÅÏ¢¡£¡£¡£¡£¡£¡£Êý¾Ýй¶¼òÖ±ÇÐÈÕÆÚÈÔȻδ֪£¬£¬£¬£¬£¬£¬µ«¸ÃÊý¾Ý¿âÒÑÓÚ2021Äê6ÔÂ13ÈÕÔÚÏßת´¢¡£¡£¡£¡£¡£¡£´Ë´Îй¶µÄÐÅÏ¢°üÀ¨Óû§ÐÕÃûºÍÓû§Ãû¡¢µç×ÓÓʼþµØµã¡¢ÃÜÂë¡¢²¥·ÅÁбíºÍÍ·ÏñÁ´½ÓµÈ¡£¡£¡£¡£¡£¡£¾ÝºÚ¿Í³Æ£¬£¬£¬£¬£¬£¬ËûÃÇÔÚ2021Äê5Ô·¢Ã÷ÁËPatariÉèÖùýʧµÄMongoDBÊý¾Ý¿âй¶ÁËÆäÊý¾Ý±¸·Ý¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÓÚÒ»ÖÜǰÏòPatariת´ïÁ˸ÃÊÂÎñ£¬£¬£¬£¬£¬£¬µ«ÖÁ½ñÈÔδÊÕµ½ÈκλØÓ¦¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.hackread.com/pakistani-music-streaming-site-patari-hacked/


¾©¹«Íø°²±¸11010802024551ºÅ