Zephyrʵʱ²Ù×÷ϵͳ(RTOS)°²È«¸üУ¬£¬£¬£¬£¬£¬£¬£¬½¨¸´¶à¸ö·ì϶£»£»£»£»£»£»±ÈÀûʱµÚÈý´ó³ÇÊÐLiege³ÆÆäÔâµ½RyukÀÕË÷Èí¼þ¹¥»÷
°ä²¼¹¦·ò 2021-06-241.Zephyrʵʱ²Ù×÷ϵͳ(RTOS)°²È«¸üУ¬£¬£¬£¬£¬£¬£¬£¬½¨¸´¶à¸ö·ì϶

Zephyrʵʱ²Ù×÷ϵͳ(RTOS)°²È«¸üУ¬£¬£¬£¬£¬£¬£¬£¬½¨¸´ÁË8¸ö¿ÉÄܵ¼Ö»ؾø·þÎñ (DoS) ºÍÔ¶³Ì´úÂëÖ´Ðеķì϶¡£¡£¡£¡£¡£¡£¡£ZephyrÊÇÓ×Ð͵Äʵʱ²Ù×÷ϵͳ£¬£¬£¬£¬£¬£¬£¬£¬ÓÃÓÚ×ÊÔ´ÊÜÏÞµÄǶÈëʽ»¥ÁªÉ豸£¬£¬£¬£¬£¬£¬£¬£¬µÃµ½ÁËFacebook¡¢¹È¸è¡¢IntelµÈ³ÛÃû¹«Ë¾µÄÖ§³Ö£¬£¬£¬£¬£¬£¬£¬£¬Ö§³Ö200¶àÖÖ·ÖÆçCPU¼Ü¹¹£¨ARM¡¢Cortex-MºÍIntel x86µÈ£©¡£¡£¡£¡£¡£¡£¡£Õâ´Î½¨¸´µÄ·ì϶´æÔÚÓÚZephyrµÄÀ¶ÑÀLEÁ´Â·²ã (LL) ¼°ÆäÂß¼Á´Â·½ÚÔìºÍÊÊÅäºÍ̸ (L2CAP) ÖУ¬£¬£¬£¬£¬£¬£¬£¬ÆäÖнÏΪÑϳÁµÄÊÇÐÅϢй¶·ì϶£¨CVE-2021-3435£©ºÍDoS·ì϶£¨CVE-2021-3455£©¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/zephyr-rtos-fixes-bluetooth-bugs-that-may-lead-to-code-execution/
2.×êÑÐÈËÔ±Åû¶Lexmark´òÓ¡»úÖдæÔÚËÁÒâ´úÂëÖ´ÐÐ0day

×êÑÐÈËÔ±Åû¶ÀûÃË£¨Lexmark£©´òÓ¡»úÖдæÔÚËÁÒâ´úÂëÖ´ÐÐ0day¡£¡£¡£¡£¡£¡£¡£¸Ã·ì϶´æÔÚÓÚLexmark´òÓ¡»úÈí¼þG2×°ÖðüÖУ¬£¬£¬£¬£¬£¬£¬£¬ÊÇÓÉLM__bdsvc·þÎñÖеÄÒ»¸öδ¼ÓÒýºÅµÄ·þÎñõè¾¶·ì϶µ¼Öµģ¬£¬£¬£¬£¬£¬£¬£¬ÆäCVSSv3¸ù»ùÆÀ·ÖΪ8.4¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±³Æ£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÄܹ»ÀûÓÃÒ»¸öÌØÔìµÄ¿ÉÖ´ÐÐÎļþÀ´ÀûÓø÷ì϶£¬£¬£¬£¬£¬£¬£¬£¬ÔÚÖ¸±êϵͳÉÏÖ´ÐÐËÁÒâ´úÂë¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°¸Ã·ì϶ÉÐ佨¸´£¬£¬£¬£¬£¬£¬£¬£¬Ò²Ã»ÓÐÈκοÉÓõĻº½â´ëÊ©¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/lexmark-printers-code-execution-zero-day/167111/
3.Avast³Æ½©Ê¬ÍøÂçDirtyMoeÒÑϰȾ10Íò¶à¸öWindowsϵͳ

AvastµÄ×êÑÐÈËÔ±³Æ½©Ê¬ÍøÂçDirtyMoeÒÑϰȾ10Íò¶à¸öWindowsϵͳ¡£¡£¡£¡£¡£¡£¡£¸Ã½©Ê¬ÍøÂç×Ô2017ËêĺÆðÍ·»îÔ¾£¬£¬£¬£¬£¬£¬£¬£¬ÖØÒªÓÃÓÚÍÚ¾ò¼ÓÃÜÇ®±Ò¡£¡£¡£¡£¡£¡£¡£DirtyMoe rootkitÊÇͨ¹ýÀ¬»øÓʼþ·Ö·¢µÄ£¬£¬£¬£¬£¬£¬£¬£¬»òÕßÓÉÍйÜÁËPurpleFox¹¥»÷¹¤¾ß°üµÄ¶ñÒâÍøÕ¾·Ö·¢¡£¡£¡£¡£¡£¡£¡£2020Äêµ×£¬£¬£¬£¬£¬£¬£¬£¬DirtyMoeµÄ¿ª·¢ÕßΪÆäÔö³¤ÁËÒ»¸öÈ䳿ģ¿£¿£¿£¿£¿£¿£¿é£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÄ£¿£¿£¿£¿£¿£¿£¿éɨÃ軥ÁªÍø²¢¶Ô¿ªÆôÁËSMB¶Ë¿ÚµÄWindowsϵͳִÐб©Á¦¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬ÕâʹµÃϰȾÂÊÔö³¤Á˼¸¸öÊýÁ¿¼¶¡£¡£¡£¡£¡£¡£¡£ÆäÖУ¬£¬£¬£¬£¬£¬£¬£¬¶íÂÞ˹¡¢ÎÚ¿ËÀ¼¡¢Ô½ÄϺͰÍÎ÷µÈµØÊÜÓ°Ïì×îÑϳÁ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/119230/malware/dirtymoe-botnet-growing.html
4.ÐÂÀÕË÷Èí¼þDarkRadiationÖØÒªÕë¶ÔLinuxºÍDockerÈÝÆ÷

×êÑÐÍŶӷ¢ÏÖÐÂÀÕË÷Èí¼þDarkRadiationÆëÂúÊÇÓÃBash±àдµÄ£¬£¬£¬£¬£¬£¬£¬£¬ÖØÒªÕë¶ÔLinuxºÍDockerÈÝÆ÷¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÔÚ5ÔÂÏÂÑ®³õ´Î±»TwitterÓû§@r3dbU7z°ÑÎȵ½£¬£¬£¬£¬£¬£¬£¬£¬Ä¿Ç°²¢Ã»ÓÐÆä·Ö·¢²½Öè»òÔÚÒ°¹¥»÷µÄÓйØÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬µ«×êÑÐÈËÔ±³ÆÆäÖ¸±êÊÇRed Hat/CentOSºÍDebian Linux¿¯Ðа档¡£¡£¡£¡£¡£¡£¸ÃÀÕË÷Èí¼þʹÓÃÁËÒ»×鸴ÔÓµÄBash¾ç±¾ºÍÖÁÉÙ6¸öc2(ËüÃÇĿǰ¶¼´¦ÓÚÀëÏß״̬)£¬£¬£¬£¬£¬£¬£¬£¬Í¨¹ýÓ²±àÂëµÄAPIÃÜÔ¿ÓëTelegram»úеÈËͨѶ£¬£¬£¬£¬£¬£¬£¬£¬»¹Ê¹ÓÃÁËOpenSSLµÄAESËã·¨ºÍCBCģʽÀ´¼ÓÃܸ÷ÀàĿ¼ÖеÄÎļþ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.sentinelone.com/blog/darkradiation-abusing-bash-for-linux-and-docker-container-ransomware/
5.±ÈÀûʱµÚÈý´ó³ÇÊÐLiege³ÆÆäÔâµ½RyukÀÕË÷Èí¼þ¹¥»÷

±ÈÀûʱµÚÈý´ó³ÇÊÐLiege³ÆÆäÔâµ½RyukÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬ITÍøÂçºÍÔÚÏß·þÎñÔâµ½·ÛËé¡£¡£¡£¡£¡£¡£¡£¹¥»÷²úÉúÓÚ6ÔÂ22ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÊйÙÔ±³Æ´ó²¿ÃÅÊÐÃñ·þÎñ¾ùÒÑÖжϣ¬£¬£¬£¬£¬£¬£¬£¬ÀýÈçÊÐÕþÌü¡¢µ®ÉúµÇ¼Ç¡¢»éÀñºÍÉ¥Ôá·þÎñµÄÔ¤Ô¼¶¼±»È¡µÞÁË£¬£¬£¬£¬£¬£¬£¬£¬´Ë±í£¬£¬£¬£¬£¬£¬£¬£¬»î¶¯Ðí¿ÉºÍ¸¶·ÑÍ£³µµÄÍøÉÏÉêÇë±íÒ²Ï÷¼õÁË¡£¡£¡£¡£¡£¡£¡£¹ÌÈ»¹Ù·½½ö½«Õâ´ÎÊÂÎñÃèÊöÎªÍÆËã»ú¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬µ«±ÈÀûʱµÄÁ½¼Ò¹ã²¥µç̨ºÍµçÊǪ́±¨Â·³Æ£¬£¬£¬£¬£¬£¬£¬£¬Õâ´Î¹¥»÷ÊÇRyukÀÕË÷Èí¼þÍÅ»ïËùΪ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://therecord.media/city-of-liege-belgium-hit-by-ransomware/
6.ºÚ¿ÍÔÚ°µÍø¹«¿ª°Í»ù˹̹PatariÍøÕ¾³¬¹ý25ÍòÓû§µÄÐÅÏ¢

ºÚ¿ÍÔÚÓ¢ÓïºÍ¶íÓïÂÛ̳ÉϹ«¿ªÁ˰ͻù˹̹×î´óµÄÒôÀÖÁ÷ýÌåÍøÕ¾PatariµÄ³¬¹ý257000¸öÓû§µÄÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£Êý¾Ýй¶¼òÖ±ÇÐÈÕÆÚÒÀȻδ֪£¬£¬£¬£¬£¬£¬£¬£¬µ«¸ÃÊý¾Ý¿âÒÑÓÚ2021Äê6ÔÂ13ÈÕÔÚÏßת´¢¡£¡£¡£¡£¡£¡£¡£Õâ´Îй¶µÄÐÅÏ¢Ô̺¬Óû§ÐÕÃûºÍÓû§Ãû¡¢µç×ÓÓʼþµØÖ·¡¢ÃÜÂë¡¢²¥·ÅÁбíºÍÍ·ÏñÁ´½ÓµÈ¡£¡£¡£¡£¡£¡£¡£¾ÝºÚ¿Í³Æ£¬£¬£¬£¬£¬£¬£¬£¬ËûÃÇÔÚ2021Äê5Ô·¢ÏÖÁËPatariÅäÖÃÃýÎóµÄMongoDBÊý¾Ý¿âй¶ÁËÆäÊý¾Ý±¸·Ý¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±ÓÚÒ»ÖÜǰÏòPatari´«µÝÁ˸ÃÊÂÎñ£¬£¬£¬£¬£¬£¬£¬£¬µ«ÖÁ½ñÈÔδÊÕµ½ÈκλØÓ¦¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.hackread.com/pakistani-music-streaming-site-patari-hacked/


¾©¹«Íø°²±¸11010802024551ºÅ