Comparitech³ÆÄ³Ê¢¿ªµÄÊý¾Ý¿âй¼ûÀ¹ú3500Íò¹«ÃñÐÅÏ¢£»ZoomΪºÍ½âÃÀ¹úÓû§µÄ¼¯ÌåËßËÏÔ¸ÒâÖ§¸¶8600ÍòÃÀÔª

°ä²¼¹¦·ò 2021-08-04
1.Comparitech³ÆÄ³Ê¢¿ªµÄÊý¾Ý¿âй¼ûÀ¹ú3500Íò¹«ÃñÐÅÏ¢


1.jpg


Comparitech·¢ÏÖÒ»¸öδÊܱ£»¤µÄElasticsearchÊý¾Ý¿âй¶ÁËÖ¥¼Ó¸ç¡¢Ê¥µØÑǸçºÍÂåɼí¶Ô¼3500Íò¾ÓÃñµÄ¾ßÌåÐÅÏ¢¡£×êÑÐÈËÔ±ÒÉ»ó¸ÃÊý¾Ý¿â¿ÉÄÜÊÇijӪÏú¹«Ë¾Êý¾ÝץȡµÄÁË¾Ö £¬´æ´¢ÔÚÁËÅäÖÃÃýÎóµÄ·þÎñÆ÷ÉÏ¡£ÆäÓÚ2021Äê6ÔÂ26ÈÕ±»·¢ÏÖ £¬ÔÚ7ÔÂ27ÈÕÒÀÈ»Äܹ»½Ó¼û £¬Ä¿Ç°ÎÞ·¨È·¶¨¸ÃÊý¾Ý¿âµÄËùÓÐÕß £¬ÑÇÂíÑ·ÍøÂç·þÎñ(AWS)²»µÃ²»½øÐйýÎʲ¢½«ÆäÇ¿ÐйعØ¡£Õâ´Îй¶µÄÐÅÏ¢Ô̺¬ÐÔ±ð¡¢ÐÕÃû¡¢ÖÖ×å¡¢µ®ÉúÈÕÆÚ¡¢»éÒöÇé¿ö¡¢ÓʼþµØÖ·¡¢ÁªÏµÐÅÏ¢¡¢×ʲú¡¢¹ºÎïϰ¹ß¡¢Ã½Ì寫ºÃ¡¢³èÎï¡¢°®ºÃºÍÐËÖÂÒÔ¼°ÊÕÈëºÍ¾»×ʲúµÈ¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/household-data-database-us-residents-exposed/


2.ÉñÃØµÄ¿Õnpm°ü¡°-¡±ÏÂÔØÁ¿³¬¹ý70Íò´Î £¬»òÒòƴдÃýÎóËùÖÂ


2.jpg


×êÑÐÈËÔ±·¢ÏÖ £¬×Ô2020ÄêÒÔÀ´ £¬Ò»¸öÃûΪ¡°-¡±µÄÉñÃØ¿Õnpm°üÔÚ×¢²á±íÖеÄÏÂÔØÁ¿ÒѸߴï½ü720000´Î¡£¸ÃÈí¼þ°üÖ»ÓÐÒ»¸ö°æ±¾0.0.1 £¬Ô̺¬Èý¸öÎļþ£ºindex.js¡¢package.jsonºÍREADME.md¡£´Ë±í £¬¸Ã°ü»¹Êdz¬¹ý50¸önpm°üµÄÒÀÀµ £¬²¢ÇÒ×÷ÕßûÓÐÃ÷È·µÄÚ¹ÊÍ¡£×êÑÐÈËÔ±³Æ £¬Õâ¿ÉÄÜÊÇÆ´Ð´ÃýÎóËùÖ £¬ÀýÈç×°ÖÃnpm°üsomepackageʱҪָ¶¨Ò»Ð©flag £¬ÃýÎóƴдµÄÖ¸Áînpm i - someFlag  somepackageÖÐ £¬¡°-¡±Óë¡°someFlag¡±Ö®¼äµÄ¿Õ¸ñ¾Í¿ÉÄܵ¼ÖÂnpmÏÂÔØ¡°-¡±°ü¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/software/empty-npm-package-has-over-700-000-downloads-heres-why/


3.ZoomΪºÍ½âÃÀ¹úÓû§µÄ¼¯ÌåËßËÏÔ¸ÒâÖ§¸¶8600ÍòÃÀÔª


3.jpg


ÊÓÆµ»áÒ鹫˾ZoomÒÑÔÞ³ÉÖ§¸¶8600ÍòÃÀÔª £¬À´ºÍ½âÃÀ¹úÓû§µÄ¼¯ÌåËßËÏ¡£¸ÃËßËÏÓÚ2020Äê3ÔÂÔÚ¼ÓÀû¸£ÄáÑDZ±ÇøµÄÃÀ¹ú´¦Ëù·¨ÔºÌá³ö £¬ÆäÖ¸¿ØZoomͨ¹ýÓëFacebook¡¢¹È¸èºÍLinkedIn¹²ÏíÓ×ÎÒÊý¾Ý¼Óº¦ÁËÊý°ÙÍòÓû§µÄÒþÖÔ £¬»¹Ôð¹ÖZoom»Ñ³Æ×Ô¼ºÌṩ¶Ëµ½¶Ë¼ÓÃÜ £¬²¢Î´ÄÜ×èÖ¹ºÚ¿ÍÌáÒé¡°Zoombomb¡±»á»°¡£ÈôÊÇÕâ´ÎÌáÒéµÄºÍ½â»ñµÃºË×¼ £¬Zoom½«Ö§¸¶²Î¼ÓËßËϵĶ©ÔÄÕß15%µÄ¶©ÔÄÍË¿î»ò25ÃÀÔª£¨ÒÔÊý¶î½Ï´óÕßΪ׼£© £¬¶øÆäËûÓû§¿É»ñµÃ15ÃÀÔª¡£


Ô­ÎÄÁ´½Ó£º

https://www.bbc.com/news/business-58050391


4.Sygnia³ÆÐÂAPTÍÅ»ïPraying Mantis¶Ô×¼ÃÀ¹ú³ÛÃû¹«Ë¾


4.jpg


ÒÔÉ«ÁÐÍøÂ簲ȫ¹«Ë¾Sygnia·¢ÏÖÐÂAPTÍÅ»ïPraying Mantis£¨ÓÖ³ÆTG2021£©¶Ô×¼ÃÀ¹ú³ÛÃû¹«Ë¾¡£×êÑÐÈËÔ±Ö¸³ö £¬TG1021ʹÓÃÁËÌØÔìµÄ¶ñÒâÈí¼þ¿ò¼Ü £¬ÖØÒªÕë¶ÔMicrosoft IIS ·þÎñÆ÷¡£´Ë±í £¬¸ÃÍŻﻹÊÇÀûÓÃÁËASP.NETÖеĶà¸ö·ì϶ £¬Ô̺¬RCE·ì϶CVE-2021-27852¡¢VIEWSTATE·´ÐòÁл¯·ì϶¡¢Altserialization·´ÐòÁл¯·ì϶ÒÔ¼°Telerik-UIÖеķì϶CVE-2019-18935ºÍCVE-2017-11317¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/08/new-apt-hacking-group-targets-microsoft.html


5.Cisco½¨¸´Firepower FDM On-BoxÖеĴúÂëÖ´Ðзì϶


5.jpg


Cisco½¨¸´ÁËFirepowerÉ豸ÖÎÀíÆ÷(FDM)On-BoxÈí¼þÖеÄËÁÒâ´úÂëÖ´Ðзì϶¡£FDM On-BoxÔÊÐíÖÎÀíÔ±ÔÚûÓÐFMCµÈ¼¯ÖÐÖÎÀíÆ÷µÄÇé¿öÏÂÖÎÀí·À»ðǽ £¬²¢ÌṩÕï¶ÏÖ°ÄÜ¡£¸Ã·ì϶׷×ÙΪCVE-2021-1518 £¬ÊÇÓÉÓÚ¶ÔÌØ¶¨REST APIºÅÁîµÄÓû§ÊäÈëûÓнøÐгä·ÖµÄËãÕÊËùÖ¡£¹¥»÷ÕßÄܹ»Í¨¹ýÏòÖ¸±êÉ豸µÄAPI×Óϵͳ·¢ËÍÌØÔìµÄHTTPÒªÇóÀ´ÀûÓô˷ì϶ £¬³É¹¦µÄÀûÓúóÄܹ»ÔÚϵͳÉÏÖ´ÐÐËÁÒâ´úÂë £¬µ«Ç°ÌáÊǹ¥»÷Õß±ØÒª»ñµÃµÍȨÏÞÓû§Í´´¦¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/120761/security/cisco-firepower-device-manager.html


6.Cybereason°ä²¼ÓйØDeadRinger¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨


6.jpg


Cybereason°ä²¼ÁËÓйØDeadRinger¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨¡£»ã±¨Åû¶ÁË3ÆðÖØÒªÕë¶ÔµçÐŹ«Ë¾µÄ¼äµý»î¶¯ £¬Í³³ÆÎªDeadRinger¡£×êÑÐÈËÔ±·ÖÎö £¬Õâ3Æð¹¥»÷»î¶¯±ðÀëÀ´×ÔSoft Cell APT¡¢Naikon APTºÍEmissary Panda£¨APT27£©¡£Cybereason°µÊ¾ £¬ÕâЩ¹¥»÷»î¶¯Õë¶ÔµçÐŹ«Ë¾µÄÖ÷ÕŶ¼ÊÇÍøÂçÃô¸ÐÐÅÏ¢ºÍ·ÛËéóÒ××ʲú£¨ÈçCDRÊý¾ÝÒÔ¼°Óò½ÚÔìÆ÷µÈÍøÂç×é¼þ£©¡£´Ë±í £¬ÕâЩ¹¥»÷»î¶¯¶¼ÓÐËù³Áµþ £¬µ«ÈÔÎÞ·¨Ã÷È·ËûÃÇÊǶÀÁ¢¹¤×÷»¹ÊǶ¼ÔÚͳһÖÐÑëÓ××éµÄÁ쵼Ϲ¤×÷¡£


Ô­ÎÄÁ´½Ó£º

https://www.cybereason.com/blog/deadringer-exposing-chinese-threat-actors-targeting-major-telcos