Comparitech³ÆÄ³Ê¢¿ªµÄÊý¾Ý¿âй¼ûÀ¹ú3500Íò¹«ÃñÐÅÏ¢£»ZoomΪºÍ½âÃÀ¹úÓû§µÄ¼¯ÌåËßËÏÔ¸ÒâÖ§¸¶8600ÍòÃÀÔª
°ä²¼¹¦·ò 2021-08-04
Comparitech·¢ÏÖÒ»¸öδÊܱ£»¤µÄElasticsearchÊý¾Ý¿âй¶ÁËÖ¥¼Ó¸ç¡¢Ê¥µØÑǸçºÍÂåɼí¶Ô¼3500Íò¾ÓÃñµÄ¾ßÌåÐÅÏ¢¡£×êÑÐÈËÔ±ÒÉ»ó¸ÃÊý¾Ý¿â¿ÉÄÜÊÇijӪÏú¹«Ë¾Êý¾ÝץȡµÄÁ˾֣¬´æ´¢ÔÚÁËÅäÖÃÃýÎóµÄ·þÎñÆ÷ÉÏ¡£ÆäÓÚ2021Äê6ÔÂ26ÈÕ±»·¢ÏÖ£¬ÔÚ7ÔÂ27ÈÕÒÀÈ»Äܹ»½Ó¼û£¬Ä¿Ç°ÎÞ·¨È·¶¨¸ÃÊý¾Ý¿âµÄËùÓÐÕߣ¬ÑÇÂíÑ·ÍøÂç·þÎñ(AWS)²»µÃ²»½øÐйýÎʲ¢½«ÆäÇ¿Ðйعء£Õâ´Îй¶µÄÐÅÏ¢Ô̺¬ÐÔ±ð¡¢ÐÕÃû¡¢ÖÖ×å¡¢µ®ÉúÈÕÆÚ¡¢»éÒöÇé¿ö¡¢ÓʼþµØÖ·¡¢ÁªÏµÐÅÏ¢¡¢×ʲú¡¢¹ºÎïϰ¹ß¡¢Ã½Ì寫ºÃ¡¢³èÎï¡¢°®ºÃºÍÐËÖÂÒÔ¼°ÊÕÈëºÍ¾»×ʲúµÈ¡£
ÔÎÄÁ´½Ó£º
https://www.hackread.com/household-data-database-us-residents-exposed/
2.ÉñÃØµÄ¿Õnpm°ü¡°-¡±ÏÂÔØÁ¿³¬¹ý70Íò´Î£¬»òÒòƴдÃýÎóËùÖÂ

×êÑÐÈËÔ±·¢ÏÖ£¬×Ô2020ÄêÒÔÀ´£¬Ò»¸öÃûΪ¡°-¡±µÄÉñÃØ¿Õnpm°üÔÚ×¢²á±íÖеÄÏÂÔØÁ¿ÒѸߴï½ü720000´Î¡£¸ÃÈí¼þ°üÖ»ÓÐÒ»¸ö°æ±¾0.0.1£¬Ô̺¬Èý¸öÎļþ£ºindex.js¡¢package.jsonºÍREADME.md¡£´Ë±í£¬¸Ã°ü»¹Êdz¬¹ý50¸önpm°üµÄÒÀÀµ£¬²¢ÇÒ×÷ÕßûÓÐÃ÷È·µÄÚ¹ÊÍ¡£×êÑÐÈËÔ±³Æ£¬Õâ¿ÉÄÜÊÇÆ´Ð´ÃýÎóËùÖ£¬ÀýÈç×°ÖÃnpm°üsomepackageʱҪָ¶¨Ò»Ð©flag£¬ÃýÎóƴдµÄÖ¸Áînpm i - someFlag somepackageÖУ¬¡°-¡±Óë¡°someFlag¡±Ö®¼äµÄ¿Õ¸ñ¾Í¿ÉÄܵ¼ÖÂnpmÏÂÔØ¡°-¡±°ü¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/software/empty-npm-package-has-over-700-000-downloads-heres-why/
3.ZoomΪºÍ½âÃÀ¹úÓû§µÄ¼¯ÌåËßËÏÔ¸ÒâÖ§¸¶8600ÍòÃÀÔª

ÊÓÆµ»áÒ鹫˾ZoomÒÑÔÞ³ÉÖ§¸¶8600ÍòÃÀÔª£¬À´ºÍ½âÃÀ¹úÓû§µÄ¼¯ÌåËßËÏ¡£¸ÃËßËÏÓÚ2020Äê3ÔÂÔÚ¼ÓÀû¸£ÄáÑDZ±ÇøµÄÃÀ¹ú´¦Ëù·¨ÔºÌá³ö£¬ÆäÖ¸¿ØZoomͨ¹ýÓëFacebook¡¢¹È¸èºÍLinkedIn¹²ÏíÓ×ÎÒÊý¾Ý¼Óº¦ÁËÊý°ÙÍòÓû§µÄÒþÖÔ£¬»¹Ôð¹ÖZoom»Ñ³Æ×Ô¼ºÌṩ¶Ëµ½¶Ë¼ÓÃÜ£¬²¢Î´ÄÜ×èÖ¹ºÚ¿ÍÌáÒé¡°Zoombomb¡±»á»°¡£ÈôÊÇÕâ´ÎÌáÒéµÄºÍ½â»ñµÃºË×¼£¬Zoom½«Ö§¸¶²Î¼ÓËßËϵĶ©ÔÄÕß15%µÄ¶©ÔÄÍË¿î»ò25ÃÀÔª£¨ÒÔÊý¶î½Ï´óÕßΪ׼£©£¬¶øÆäËûÓû§¿É»ñµÃ15ÃÀÔª¡£
ÔÎÄÁ´½Ó£º
https://www.bbc.com/news/business-58050391
4.Sygnia³ÆÐÂAPTÍÅ»ïPraying Mantis¶Ô×¼ÃÀ¹ú³ÛÃû¹«Ë¾

ÒÔÉ«ÁÐÍøÂ簲ȫ¹«Ë¾Sygnia·¢ÏÖÐÂAPTÍÅ»ïPraying Mantis£¨ÓÖ³ÆTG2021£©¶Ô×¼ÃÀ¹ú³ÛÃû¹«Ë¾¡£×êÑÐÈËÔ±Ö¸³ö£¬TG1021ʹÓÃÁËÌØÔìµÄ¶ñÒâÈí¼þ¿ò¼Ü£¬ÖØÒªÕë¶ÔMicrosoft IIS ·þÎñÆ÷¡£´Ë±í£¬¸ÃÍŻﻹÊÇÀûÓÃÁËASP.NETÖеĶà¸ö·ì϶£¬Ô̺¬RCE·ì϶CVE-2021-27852¡¢VIEWSTATE·´ÐòÁл¯·ì϶¡¢Altserialization·´ÐòÁл¯·ì϶ÒÔ¼°Telerik-UIÖеķì϶CVE-2019-18935ºÍCVE-2017-11317¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/08/new-apt-hacking-group-targets-microsoft.html
5.Cisco½¨¸´Firepower FDM On-BoxÖеĴúÂëÖ´Ðзì϶

Cisco½¨¸´ÁËFirepowerÉ豸ÖÎÀíÆ÷(FDM)On-BoxÈí¼þÖеÄËÁÒâ´úÂëÖ´Ðзì϶¡£FDM On-BoxÔÊÐíÖÎÀíÔ±ÔÚûÓÐFMCµÈ¼¯ÖÐÖÎÀíÆ÷µÄÇé¿öÏÂÖÎÀí·À»ðǽ£¬²¢ÌṩÕï¶ÏÖ°ÄÜ¡£¸Ã·ì϶׷×ÙΪCVE-2021-1518£¬ÊÇÓÉÓÚ¶ÔÌØ¶¨REST APIºÅÁîµÄÓû§ÊäÈëûÓнøÐгä·ÖµÄËãÕÊËùÖ¡£¹¥»÷ÕßÄܹ»Í¨¹ýÏòÖ¸±êÉ豸µÄAPI×Óϵͳ·¢ËÍÌØÔìµÄHTTPÒªÇóÀ´ÀûÓô˷ì϶£¬³É¹¦µÄÀûÓúóÄܹ»ÔÚϵͳÉÏÖ´ÐÐËÁÒâ´úÂ룬µ«Ç°ÌáÊǹ¥»÷Õß±ØÒª»ñµÃµÍȨÏÞÓû§Í´´¦¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/120761/security/cisco-firepower-device-manager.html
6.Cybereason°ä²¼ÓйØDeadRinger¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨

Cybereason°ä²¼ÁËÓйØDeadRinger¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨¡£»ã±¨Åû¶ÁË3ÆðÖØÒªÕë¶ÔµçÐŹ«Ë¾µÄ¼äµý»î¶¯£¬Í³³ÆÎªDeadRinger¡£×êÑÐÈËÔ±·ÖÎö£¬Õâ3Æð¹¥»÷»î¶¯±ðÀëÀ´×ÔSoft Cell APT¡¢Naikon APTºÍEmissary Panda£¨APT27£©¡£Cybereason°µÊ¾£¬ÕâЩ¹¥»÷»î¶¯Õë¶ÔµçÐŹ«Ë¾µÄÖ÷ÕŶ¼ÊÇÍøÂçÃô¸ÐÐÅÏ¢ºÍ·ÛËéóÒ××ʲú£¨ÈçCDRÊý¾ÝÒÔ¼°Óò½ÚÔìÆ÷µÈÍøÂç×é¼þ£©¡£´Ë±í£¬ÕâЩ¹¥»÷»î¶¯¶¼ÓÐËù³Áµþ£¬µ«ÈÔÎÞ·¨Ã÷È·ËûÃÇÊǶÀÁ¢¹¤×÷»¹ÊǶ¼ÔÚͳһÖÐÑëÓ××éµÄÁ쵼Ϲ¤×÷¡£
ÔÎÄÁ´½Ó£º
https://www.cybereason.com/blog/deadringer-exposing-chinese-threat-actors-targeting-major-telcos


¾©¹«Íø°²±¸11010802024551ºÅ