ZeroXÍÅ»ïÔÚ°µÍøÏúÊÛʯÓ͹«Ë¾É³Ìذ¢ÃÀ1TBµÄÊý¾Ý £»ÒÑ´æÔÚ16ÄêµÄ·ì϶ӰÏìÊýÒŲ́»ÝÆÕ¡¢XeroxºÍÈýÐÇ´òÓ¡»ú

°ä²¼¹¦·ò 2021-07-21
1.ZeroXÍÅ»ïÔÚ°µÍøÏúÊÛʯÓ͹«Ë¾É³Ìذ¢ÃÀ1TBµÄÊý¾Ý


1.jpg


±¾Ô£¬Ò»¸öÃûΪZeroXµÄºÚ¿ÍÍÅ»ïÔÚ°µÍøÒÔ500ÍòÃÀÔªµÄ¼ÛÖµÏúÊÛÉ³ÌØ°¢ÃÀ¹«Ë¾1TBµÄÊý¾Ý¡£É³Ìذ¢À­²®Ê¯Ó͹«Ë¾¼ò³ÆÉ³Ìذ¢ÃÀ£¨Saudi Aramco£©£¬ÊÇÊÀ½çÉÏ×î´óµÄ¹«¹²Ê¯ÓͺÍÌìÈ»Æø¹«Ë¾Ö®Ò»£¬Õ¼Óг¬¹ý66000ÃûÔ±¹¤£¬ÄêÊÕÈë½ü2300ÒÚÃÀÔª¡£ZeroX³ÆÕâЩÊý¾ÝÊÇÔÚ2020Äêͨ¹ýÈëÇÖÉ³ÌØ°¢ÃÀµÄÍøÂç¼°·þÎñÆ÷»ñµÃµÄ£¬ÆäÖÐ×îÔçµÄ¿É×·Òäµ½1993Äê¡£Õâ´Îй¶µÄÊý¾ÝÔ̺¬14254ÃûÔ±¹¤µÄÆëÈ«ÐÅÏ¢¡¢¸÷ÀàϵͳµÄÏî²ã´Î×¼ £»ÄÚ²¿ÃÅÎö»ã±¨¡¢ºÍ̸¡¢Ðꝡ¢¶¨¼Û±í £»Scadaµã¡¢Wi-Fi¡¢IPÉãÏñ»úºÍIoTÉ豸µÄÍøÂç²¼¾Ö £»Aramco¿Í»§Ãûµ¥¡¢·¢Æ±ºÍºÏÒ»Ö¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/saudi-aramco-data-breach-sees-1-tb-stolen-data-for-sale/


2.ºÚ¿ÍÔÚ°µÍø¹«¿ªº¬9100Íò±Ê¼Í¼µÄÄ«Î÷¸çÑ¡ÃñÊý¾Ý¿â


2.jpg


ºÚ¿Í×î½üÔÚ°µÍøÉϹ«¿ªÁË2021ÄêµÄÕû¸öÄ«Î÷¸çÑ¡ÃñÊý¾Ý¿â£¬Ô̺¬9100Íò±Ê¼Í¼¡£¹ú¶ÈÑ¡¾Ù×êÑÐËù(INE)³ÆËûÃÇÒѾ­Ïòµ±¾Ö»ã±¨´ËÊÂÎñ£¬²¢°µÊ¾ÆäÔÚ2020Äê5ÔÂ8ÈÕ¾ÍÏòÑ¡¾Ù·¸×ï³ö¸ñ¼ì²ì¹Ù(FEDE)»ã±¨Á˽ӼûºÍ²»µ±Ê¹ÓÃÓëÑ¡¾ÙµÇ¼Ç²áÓйØÊý¾ÝµÄÎÊÌâ¡£Õâ²¢²»ÊÇINEµÚÒ»´Î²úÉúÊý¾Ýй¶ÊÂÎñ£¬ÔçÔÚ2016ÄêÔøÐ¹Â¶¹ý93424710ÃûÄ«Î÷¸ç¹«ÃñµÄÑ¡ÃñµÇ¼ÇÐÅÏ¢¡£


Ô­ÎÄÁ´½Ó£º

https://www.databreaches.net/how-many-leaks-have-there-been-of-mexicos-voter-database/


3.ÒÑ´æÔÚ16ÄêµÄ·ì϶ӰÏìÊýÒŲ́»ÝÆÕ¡¢XeroxºÍÈýÐÇ´òÓ¡»ú


3.jpg


SentinelLabsÅû¶ÔÚHP¡¢SamsungºÍXerox´òÓ¡»úÇý¶¯·¨Ê½Öз¢ÏÖµÄÒ»¸öÑϳÁµÄ»º³åÇøÒç¶Âí½Å¡£¸Ã·ì϶×Ô2005Äê¾ÍÆðÍ·´æÔÚ£¬×·×ÙΪCVE-2021-3438£¬CVSSÆÀ·ÖΪ8.8£¬Ó°Ï쳬¹ý380¿îµÄ»ÝÆÕºÍÈýÐÇ´òÓ¡»ú£¬ÒÔ¼°12ÖÖXerox´òÓ¡»ú¡£¸Ã·ì϶λÓÚ´òÓ¡Çý¶¯·¨Ê½×°Ö÷¨Ê½°üSSPORT.SYSÖУ¬±¾µØ¹¥»÷ÕßÄܹ»ÀûÓø÷ì϶½«È¨ÏÞÌáÉýµ½SYSTEM²¢ÔÚÄÚºËģʽÏÂÔËÐдúÂ룬À´×°Öᢲ鿴¡¢¸ü¸Ä¡¢¼ÓÃÜ»òɾ³ýÊý¾ÝµÈ¡£Ä¿Ç°£¬¸Ã·ì϶ÒѾ­½¨¸´¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/hp-patches-vulnerable-printer-driver-impacting-millions-of-devices/


4.еÄMosaicLoader¿ÉÀûÓÃWindows DefenderÈÆ¹ý¼ì²â


4.jpg


Bitdefender×êÑÐÈËÔ±·¢ÏÖжñÒâÈí¼þMosaicLoader¿ÉÀûÓÃWindows DefenderÈÆ¹ý¼ì²â¡£¸Ã¶ñÒâÈí¼þͨ¹ýËÑË÷ÒýÇæÁ˾ּÙ×°³ÉÆÆ½âÈí¼þ£¬ÓµÓи´ÔÓµÄÄÚ²¿½á¹¹£¬Ö¼ÔÚÈÆ¹ý¶ñÒâÈí¼þ·ÖÎö¡£Æä·ÂÕÕÀàËÆÓںϷ¨Èí¼þµÄÎļþÐÅÏ¢²¢Ê¹ÓÃÓ׿éºÍÎÞÐòÖ´Ðа¤´Î½øÐдúÂë»ìºÏ¡£Ôڳɹ¦Ï°È¾Ö¸±êºó£¬×î³õµÄ»ùÓÚDelphiµÄdropper»á´ÓÔ¶³Ì·þÎñÆ÷»ñÈ¡ÏÂÒ»½×¶ÎµÄpayload£¬²¢ÔÚWindows DefenderÖÐΪÏÂÔØµÄ¿ÉÖ´ÐÐÎļþÔö³¤±¾µØÅųýÏîÒÔÈÆ¹ýɱ¶¾Èí¼þµÄɨÃè¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/07/this-new-malware-hides-itself-among.html    


5.NSO GroupÀûÓÃiMessageÖÐ0day×°ÖüäµýÈí¼þPegasus


5.jpg


´óÉâ¹ú¼ÊºÍForbidden StoriesÅû¶ÒÔÉ«ÁÐNSO GroupÀûÓÃiMessageÖеÄÁãµã»÷0day×°ÖüäµýÈí¼þPegasus¡£×êÑÐÈËÔ±³Æ£¬Ó¡¶È¼ÇÕߣ¨CODE INJRN1£©ÔËÐÐÁË×îа汾iOS 14.6µÄiPhone XRÓÚ2021Äê6ÔÂ16ÈÕÔâµ½ÈëÇÖ£¬6ÔÂ24ÈÕ£¬Ò»»îÔ¾ÈËÊ¿(CODE RWHRD1)µÄiPhone XÒ²Ôâµ½ÁËÈëÇÖ¡£Æ»¹û¹«Ë¾Ä¿Ç°ÔÚµ÷²é´ËÊ£¬²¢°µÊ¾ÏñÉÏÊöÄÇÑùµÄ¹¥»÷¼«¶È¸´ÔÓ£¬¿ª·¢³É±¾ÎªÊý°ÙÍòÃÀÔª£¬Í¨³£ÓÐЧ¹¦·òºÜ¶Ì£¬²¢ÇÒ½öÓÃÓÚÕë¶ÔÌØ¶¨µÄÓ×ÎÒ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/iphones-running-latest-ios-hacked-to-deploy-nso-group-spyware/


6.Unit42°ä²¼ÀûÓÃTrap FlagÈÆ¹ýɳºÐµÄ¹¥»÷µÄ·ÖÎö»ã±¨


6.jpg


Unit 42ÔÚIntel CPU¼Ä·ÅÆ÷Öз¢ÏÖÁËÒ»¸öÌØÊâµÄbit¡ª¡ªÏÝÚå±êÖ¾£¨Trap Flag£©£¬¶ñÒâÈí¼þͨ³ £»áÀûÓøÃλÀ´ÌÓ±ÜɳÏä¼ì²â¡£¸Ã»ã±¨·ÖÎöÁ˶ñÒâÈí¼þÈôºÎÔÚCPU¼Ä·ÅÆ÷ÖÐÖ»ÓÃÒ»¸öbitµÄÇé¿öϼì²âÐé¹¹»ú»òÎïÀí»úCPUÐÐΪµÄ²î¾à¡£ÏÝÚå±êÖ¾(TF)ÊÇIntel x86 CPU¼Ü¹¹µÄEFLAGs¼Ä·ÅÆ÷ÖеĵÚ8¸öbit¡£ÆäÖÐÕë¶ÔÆÏÌÑÑÀÓû§µÄLampionʹÓÃx86»ã±àÖ¸ÁîÒÔ¼°ÖÁÉÙµÄWindows APIŲÓþÍʵÏÖÁËËùÓÐϵͳµÄ²é³­£¬µ±ËüÈ·ÈÏÔÚVMÖÐÔËÐкó¾Í»á×Ô¶¯ÖÕÖ¹¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/single-bit-trap-flag-intel-cpu/