Webroot°ä²¼2021Äê×î¶ñÁӵĶñÒâÈí¼þ»ã±¨£º×êÑÐÍŶӷ¢ÏÖLinux¶ñÒâÍÚ¿óÈí¼þ

°ä²¼¹¦·ò 2021-10-13

Microsoft°ä²¼10Ô¸üУ¬½¨¸´4¸ö0dayÔÚÄÚµÄ74¸ö·ì϶


Microsoft°ä²¼10Ô¸üУ¬½¨¸´4¸ö0dayÔÚÄÚµÄ74¸ö·ì϶.png


MicrosoftÔÚ10ÔÂ12ÈÕ°ä²¼Á˱¾ÔµÄÖܶþ²¹¶¡£¬×ܼƽ¨¸´ÁË74¸ö·ì϶£¨Ô̺¬Microsoft EdgeÔÚÄÚÊÇ81¸ö£©¡£Õâ´Î¸üÐÂ×ܹ²½¨¸´ÁË4¸ö0day£¬Ô̺¬Win32kÖеÄÌáȨ·ì϶CVE-2021-40449£¬Windows DNS·þÎñÆ÷ÖеÄÔ¶³Ì´úÂëÖ´Ðзì϶CVE-2021-40469£¬WindowsÄÚºËÌáȨ·ì϶CVE-2021-41335£¬ÒÔ¼°Windows AppContainer ·À»ðǽ¹æ¶¨°²È«Ö°ÄÜÈÆ¹ý·ì϶CVE-2021-41338¡£´Ë±í£¬Kaspersky×êÑÐÈËÔ±ÒѾ­ÔÚÒ°·¢ÏÖÀûÓÃCVE-2021-40449µÄ¹¥»÷»î¶¯¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-october-2021-patch-tuesday-fixes-4-zero-days-71-flaws/


ÒÁÀÊDEV-0343ÍŻ﹥»÷ÃÀ¹úºÍÒÔÉ«ÁеÄOffice 365Óû§


ÒÁÀÊDEV-0343ÍŻ﹥»÷ÃÀ¹úºÍÒÔÉ«ÁеÄOffice 365Óû§.png


MicrosoftÍþвµý±¨ÖÐÐÄ(MSTIC)ÓÚ2021Äê7ÔÂÏÂÑ®³õ´Î·¢ÏÖÁËкڿÍÍÅ»ïDEV-0343£¬²¢ÔÚ10ÔÂ11ÈÕÅû¶ÁËÓйظÃÍÅ»ïµÄ¹¥»÷»î¶¯¡£MSTIC³Æ¸ÃÍÅ»ïÓëÒÁÀÊÓйØ£¬ÖØÒªÕë¶ÔÃÀ¹úºÍÒÔÉ«Áйú·À¼¼Êõ¹«Ë¾¡¢²¨Ë¹ÍåÈë¾³¸Û¿ÚÒÔ¼°ÔÚÖж«·¢Õ¹ÒµÎñµÄº£ÉÏÔËÊ乫˾¡£Õâ´Î»î¶¯ÒѾ­¹¥»÷ÁË250¶à¸öOffice 365Óû§£¬µ«Ö»Óв»µ½20¸öÖ¸±ê±»ÈëÇÖ¡£×êÑÐÈËÔ±½¨ÒéÓû§Í¨¹ýÆôÓöà³É·ÖÉí·ÝÑéÖ¤ºÍ×èÖ¹ÄäÃû·þÎñµÄÁ÷Á¿µÈ´ëÊ©À´ÕмܴËÀ๥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://www.microsoft.com/security/blog/2021/10/11/iran-linked-dev-0343-targeting-defense-gis-and-maritime-sectors/


ÎÚ¿ËÀ¼¾¯·½¿ÛÁôÕ¼ÓÐ10Íò¶ą̀É豸µÄ½©Ê¬ÍøÂçµÄÔËÓªÕß


ÎÚ¿ËÀ¼¾¯·½¿ÛÁôÕ¼ÓÐ10Íò¶ą̀É豸µÄ½©Ê¬ÍøÂçµÄÔËÓªÕß.png


ÎÚ¿ËÀ¼°²È«¾Ö£¨SSU£©ÓÚ±¾ÖÜÒ»£¬ÔÚIvano-FrankivskÊпÛÁôÁËÒ»¸ö׳´óµÄ½©Ê¬ÍøÂçµÄÔËÓªÕß¡£¸ÃÄÐ×Ó´´½¨²¢ÖÎÀí×ÅÓɳ¬¹ý10Íò¶ą̀É豸×é³É½©Ê¬ÍøÂ磬ÓÃÓÚΪ¸¶ÓöȻ§Ö´ÐÐÉ¢²¼Ê½»Ø¾ø·þÎñ (DDoS) ºÍÀ¬»øÓʼþ¹¥»÷¡£SSU°µÊ¾£¬Ëû¶¼ÊÇͨ¹ýºÚ¿ÍÂÛ̳ºÍTelegramѰÕÒ¿Í»§£¬²¢Ê¹ÓöíÂÞ˹µÄ¼´Ê±Ö§¸¶ÏµÍ³WebMoney½øÐи¶¿î¡£µ«ËûÔÚ×¢²áWebmoneyÕË»§Ê±ÓÃÁËÕæÊµµØÖ·£¬Ê¹¾¯·½Äܹ»×·×Ùµ½ËûµÄסËù¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/10/ukraine-arrests-operator-of-ddos-botnet.html


Microsoft³ÆÆä³É¹¦Õмܸߴï2.4 TbpsµÄDDoS¹¥»÷


Microsoft³ÆÆä³É¹¦Õмܸߴï2.4 TbpsµÄDDoS¹¥»÷.png


Microsoft×êÑÐÈËÔ±Amir DahanÔÚ10ÔÂ11Èճƣ¬ËûÃÇÔÚ8ÔµÄ×îºóÒ»Öܳɹ¦ÕмÜÁËÊ·ÉÏ×î¸ßµÄDDoS¹¥»÷¡£Amir Dahan°µÊ¾£¬ÕâÊÇÕë¶ÔÆäÅ·ÖÞAzure¿Í»§µÄ¹¥»÷£¬ÓÉÖØÒªÉ¢²¼ÔÚÑÇÌ«µØÓòºÍÃÀ¹úµÄÔ¼70000̨É豸ÌáÒéµÄ¡£Õâ´ÎµÄ¹¥»÷ÏòÁ¿ÎªUDP·´É䣬³ÖÐø¹¦·ò³¬¹ý10·ÖÖÓ£¬·¢×÷¹¦·ò¼«¶È¶Ì£¬Ã¿´Î·¢×÷³ÇÊÐÔÚ¼¸ÃëÖÓÄÚÉÏÉýµ½TBÁ¿¼¶£¬×ܹ²³öÏÖÁËÁËÈý¸öÖØÒª·åÖµ£¬±ðÀëΪ2.4 Tbps¡¢0.55 TbpsºÍ1.7 Tbps¡£


Ô­ÎÄÁ´½Ó£º

https://azure.microsoft.com/en-us/blog/business-as-usual-for-azure-customers-despite-24-tbps-ddos-attack/


×êÑÐÍŶӷ¢ÏÖLinux¶ñÒâÍÚ¿óÈí¼þµÄбäÌå¶Ô×¼»ªÎªÔÆ


×êÑÐÍŶӷ¢ÏÖLinux¶ñÒâÍÚ¿óÈí¼þµÄбäÌå¶Ô×¼»ªÎªÔÆ.png


TrendMicroµÄ×êÑÐÈËÔ±·¢ÏÖÒÔǰÓÃÓÚÕë¶ÔDockerÈÝÆ÷µÄLinux¶ñÒâÍÚ¿óÈí¼þµÄбäÌ壬ÆðÍ·Õë¶ÔÏñ»ªÎªÔÆÕâÑùµÄÐÂÔÆ·þÎñÌṩÉÌ¡£¾ßÌåµØËµ£¬ÐÂÑù±¾ÒѾ­×¢½âµôÁË·À»ðǽ¹æ¶¨´´½¨Ö°ÄÜ£¬²¢³ÖÐøÊ¹ÓÃÍøÂçɨÃèÆ÷À´Ñ°ÕÒÆäËûÓµÓÐapiÓйض˿ڵÄÖ÷»ú¡ £»ªÎªÔÆÊǽÏеÄÔÆÌṩÉÌ£¬Ðû³ÆËüÒѾ­Îª³¬¹ý300Íò¿Í»§Ìṩ·þÎñ¡£×êÑÐÈËÔ±Òѽ«Õâ´Î¹¥»÷֪ͨ¸Ã¹«Ë¾£¬µ«ÉÐδÊÕµ½»Ø¸´¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/huawei-cloud-targeted-by-updated-cryptomining-malware/


Webroot°ä²¼¹ØÓÚ2021Äê×î¶ñÁӵĶñÒâÈí¼þµÄ»ã±¨


Webroot°ä²¼¹ØÓÚ2021Äê×î¶ñÁӵĶñÒâÈí¼þµÄ»ã±¨.png


Webroot°µÊ¾£¬2021ÄêÊÇÍøÂçÍþвռ¾ÝÐÂÎÅÍ·ÌõµÄÒ»Ä꣬ÀÕË÷Èí¼þÀÕË÷ÒÑ´ÓÒ»ÖÖÇ÷ÏòÑݱäΪһÖÖг£Ì¬¡£¸Ã¹«Ë¾ÔÚÆä»ã±¨ÖÐÁгöµÄ2021Äê×î¶ñÁӵĶñÒâÈí¼þÔ̺¬£º³ÛÃûµÄ½©Ê¬ÍøÂçLemonDuck¡¢ÀÕË÷Èí¼þREvil¡¢ÒøÐÐľÂíTrickbot¡¢ÒøÐÐľÂíºÍÐÅÏ¢ÇÔÈ¡·¨Ê½Dridex¡¢ÀÕË÷Èí¼þConti¡¢ÉøÈë²âÊÔ¹¤¾ßCobalt Strike£¬ÒÔ¼°Hello KittyºÍDarkSide¡£


Ô­ÎÄÁ´½Ó£º

https://community.webroot.com/news-announcements-3/nastiest-malware-2021-348560