¹È¸è³Æ³¯ÏʺڿÍÒÑÀûÓÃÉç½»ÍøÂç¶Ô×¼°²È«×êÑÐÈËÔ±£»ProtonVPNÓëɱ¶¾Èí¼þì¶Ü£¬¿Éµ¼ÖÂϵͳÀ¶ÆÁ
°ä²¼¹¦·ò 2021-01-271.Apple°²È«¸üУ¬½¨¸´iOSÖÐ3¸öÒѱ»ÔÚÒ°ÀûÓõÄ0day

Apple°ä²¼ÁËÕë¶ÔiOSµÄ°²È«¸üУ¬½¨¸´ÁË3¸öÒѱ»ÔÚÒ°ÀûÓõÄ0day¡£µÚÒ»¸öΪӰÏìiOS²Ù×÷ϵͳÄں˵ľºÕùǰÌá·ì϶£¨CVE-2021-1782£©£¬ËüÄܹ»Ê¹¹¥»÷ÕßÌáÉýÆä¹¥»÷´úÂëµÄȨÏÞ¡£Áí±íÁ½¸öΪӰÏìWebKitä¯ÀÀÆ÷ÒýÇæµÄÂß¼·ì϶£¨CVE-2021-1870ºÍCVE-2021-1871£©£¬¿ÉÔÊÐíÔ¶³Ì¹¥»÷ÕßÔÚÓû§µÄSafariä¯ÀÀÆ÷ÖÐÖ´ÐжñÒâ´úÂë¡£ÔÚ·ì϶ÀûÓÃÁ´ÖУ¬Óû§±»ÒýÓÕµ½Ò»¸ö¶ñÒâÍøÕ¾£¬¸ÃÍøÕ¾ÀûÓÃWebKit·ì϶ÔËÐдúÂë£¬ËæºóÉý¼¶ÆäÔËÐÐϵͳ¼¶´úÂëµÄȨÏÞ£¬Î£¼°²Ù×÷ϵͳ¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/apple-fixes-another-three-ios-zero-days-exploited-in-the-wild/
2.¹È¸è³Æ³¯ÏʺڿÍÒÑÀûÓÃÉç½»ÍøÂç¶Ô×¼°²È«×êÑÐÈËÔ±

GoogleÍþв·ÖÎöÓ××é·¢ÏÖ³¯ÏʺڿÍÒÑÀûÓÃÉç½»ÍøÂç¶Ô×¼°²È«×êÑÐÈËÔ±¡£ºÚ¿ÍÊ×ÏÈÔÚTwitter¡¢LinkedIn¡¢Telegram¡¢DiscordºÍKeybaseµÈÉç½»ÍøÂçÉÏÀûÓöàÈ˵ÄÓ×ÎÒ×ÊÁÏ£¬ÒÔαÔìµÄÉí·Ý½Ó´¥°²È«×êÑÐÈËÔ±¡£ÔÚ³ÉÁ¢Á˳õ²½µÄ»¥»»Ö®ºó£¬ºÚ¿Í»áѯÎÊÖ¸±ê×êÑÐÈËÔ±ÊÇ·ñÔ¸ÒâÔÚ·ì϶×êÑÐÉϽøÐкÏ×÷£¬¶øºó¸ø×êÑÐÈËÔ±Ò»¸öVisual StudioÏîÄ¿¡£¸ÃÏîÄ¿Ô̺¬ÁË×°ÖöñÒâÈí¼þµÄ´úÂ룬³É¹¦×°Öúó¿É³äÈκóÃŲ¢ÓëÔ¶³ÌºÅÁîºÍ½ÚÔì·þÎñÆ÷ÁªÏµ£¬ÆÚ´ýºÅÁî¡£´Ë±í£¬¸Ã¶ñÒâÈí¼þÓ볯ÏʳÛÃûºÚ¿Í×éÖ¯LazarusÓйء£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/google-north-korean-hackers-have-targeted-security-researchers-via-social-media/
3.°Ä´óÀûÑÇ֤ȯ¼à¹Ü»ú¹¹·þÎñÆ÷Öзì϶»òÒѵ¼ÖÂÊý¾Ýй¶

°Ä´óÀûÑÇ֤ȯºÍͶ×ÊίԱ»á£¨ASIC£©Ð¹Â©·þÎñÆ÷Öзì϶»òÒѵ¼ÖÂÊý¾Ýй¶¡£ASICÊǰĴóÀûÑǵ±¾ÖµÄ¶ÀÁ¢Î¯Ô±»á£¬Õƹܱ£ÏÕ¡¢Ö¤È¯ºÍ½ðÈÚ·þÎñµÄ¼à¹Ü£¬ÊǰĴóÀûÑǹú¶È¹«Ë¾¼à¹Ü»ú¹¹µÄÏû·ÑÕß±£»¤×éÖ¯¡£¸ÃÊÂÎñ²úÉúÓÚ2021Äê1ÔÂ15ÈÕ£¬ÓëÓÃÓÚ´«ÊäÐÅÏ¢µÄAccellionÈí¼þÓйأ¬·ì϶ӰÏìÁËһ̨Ô̺¬Á˰ĴóÀûÑÇÐÅ´ûÐí¿ÉÖ¤ÉêÇëÓйØÎĵµµÄ·þÎñÆ÷¡£ASIC³Æµ÷²éÔÚ½øÐÐÖУ¬µ«ºÚ¿Í¿ÉÄÜÒѾ²é¿´²¿ÃÅÐÅÏ¢¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/australian-securities-regulator-discloses-security-breach/
4.WestRockϰȾÀÕË÷Èí¼þ£¬ITºÍOTϵͳ¾ù±»·ÛËé

ÃÀ¹ú°ü×°¹«Ë¾WestRockϰȾÀÕË÷Èí¼þ£¬ITºÍOTϵͳ¾ù±»·ÛËé¡£¹¥»÷ÓÚ1ÔÂ23ÈÕ±»·¢ÏÖ£¬²¢ÊµÊ±²ÉÈ¡ÁËÓ¦¼±ÏàÓ¦´ëÊ©¡£WestRock°µÊ¾ÏµÍ³ÔÚ¸´ÔÖУ¬µ«¹¥»÷ÒѾµ¼Ö¹«Ë¾²¿ÃÅÒµÎñµÄÑÓÎó¡£WestRockûÓÐй©ÓйØÕâ´ÎÊÂÎñµÄ¸ü¶à¾ßÌåÐÅÏ¢£¬Éв»Ã÷ÏÔ¹¥»÷µÄˮƽÒÔ¼°±äÂÒÖÐÊܵ½Ó°ÏìµÄOTϵͳÀàÐÍ¡£¸ÃÊÂÎñ±»Åû¶ºó£¬±¾ÖÜÒ»ÉÏÎçWestRock¹ÉƱµÄ¼ÛÖµ×ÅÂäÁË4£¥ÒÔÉÏ¡£
ÔÎÄÁ´½Ó£º
https://www.securityweek.com/packaging-giant-westrock-says-ransomware-attack-impacted-ot-systems
5.ProtonVPNÓëɱ¶¾Èí¼þì¶Ü£¬¿Éµ¼ÖÂϵͳÀ¶ÆÁ

ProtonVPNÓë䶨ÃûµÄɱ¶¾Èí¼þ½â¾ö¹æ»®Ã¬¶Ü£¬¿Éµ¼ÖÂϵͳÀ¶ÆÁ¡£¹ÌÈ»ProtonVPNûÓÐй©ÓйØÀ¶ÆÁÔÒòµÄ¸ü¶àϸ½Ú£¬µ«Ô¼ÄªÁ½ÖÜǰ£¬Ê¹ÓÃÁË×îа汾ProtonVPNµÄÒ»¸öÊÜÓ°ÏìµÄÓû§Ëù°µÊ¾£¬ÔÚÆô¶¯VPNµÄ¿Í»§¶Ëºó»áµ±¼´´¥·¢À¶ÆÁ¡£ÕâÒѲ»ÊǵÚÒ»´ÎÓÐЧ»§·´Ó³ÔÚWindowsϵͳÖÐÔÚʹÓÃProtonVPNʱ»áµ¼ÖÂÀ¶ÆÁ£¬²¢ÇÒ³ÁÐÂ×°Öÿͻ§¶ËºÍÇý¶¯·¨Ê½Ò²±Ë®³µÐ½¡£ProtonVPN½¨ÒéÓû§ÏÈÁÙʱ½ûÓøÃɱ¶¾Èí¼þ£¬»ò½«ProtonVPN½µ¼¶µ½²»±ä°æ±¾¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/software/protonvpn-causes-windows-bsod-crashes-due-to-antivirus-conflicts/
6.kaspersky°ä²¼2021ÄêÍøÂ簲ȫµÄÔ¤²â»ã±¨

kaspersky°ä²¼ÁË2021ÄêÍøÂ簲ȫµÄÔ¤²â»ã±¨¡£¸Ã»ã±¨µ÷²éÁË31¸ö¹ú¶ÈºÍµØÓòµÄ5266ÃûIT¾ö²ßÕߣ¬²¢»áÉÌÁËËûÃÇÓöµ½µÄÍþв¡¢ÍøÂçÊÂÎñ¸´ÔµÄ³É±¾ÒÔ¼°×éÖ¯ÄÚ²¿È·µ±Ç°°²È«×´Ì¬¡£×êÑз¢ÏÖÖ»¹ÜÍøÂç¹¥»÷µÄÊýÁ¿³ÖÐøÔö³¤£¬µ«IT²¿ÃŵݲȫԤËã×ÜÌåÉÏÔÚÏ÷¼õ¡£2020Ä꣬´óÐ͹«Ë¾ITÔ¤Ëã½µÂäÁË26£¥£¬ÖÐÓ×ÐÍÆóÒµÒ²½µÂäÁËÔ¼10£¥¡£´Ë±í£¬µ½2021ÄêÔÚÔÆ·þÎñÉϵÄÖ§³ö½«¿÷ËðITÔ¤ËãµÄÔ¼32£¥£¬Òò¶ø¼à¶½Æ½Ì¨µÄ¼à¶½ºÍ°²È«ÐÔÖÁ¹Ø³ÁÒª¡£
ÔÎÄÁ´½Ó£º
https://www.kaspersky.com/blog/2021-economic-predictions-for-infosec/38553/


¾©¹«Íø°²±¸11010802024551ºÅ