Dell SupportAssistЩ¶´Ó°ÏìÁè¼Ý3000Íǫ̀¼ÆËã»ú£»Microsoft StoreÈ«ÇòWin10ϵͳÉÏ·þÎñÖжÏ

Ðû²¼Ê±¼ä 2021-06-25

1.Dell SupportAssistЩ¶´Ó°ÏìÁè¼Ý3000Íǫ̀¼ÆËã»ú


1.jpg


EclypsiumÄþ¾²Ñо¿ÈËÔ±ÔÚDell SupportAssistµÄBIOSConnect¹¦Ð§Öз¢ÏÖÁË4¸ö©¶´ £¬Ó°ÏìÁè¼Ý3000Íǫ̀¼ÆËã»ú¡£´ó¶àÊýWindowsϵͳµÄ´÷¶ûÉ豸ÉϾùԤװÁËSupportAssistÈí¼þ £¬BIOSConnectÔòÌṩԶ³Ì¹Ì¼þ¸üкͲÙ×÷ϵͳ»Ö¸´¹¦Ð§¡£ÕâЩ©¶´·Ö±ðΪ²»Äþ¾²µÄTLSÁ¬½ÓÎÊÌ⣨CVE-2021-21571£©ºÍ3¸öÒç³ö©¶´£¨CVE-2021-21572¡¢CVE-2021-21573ºÍCVE-2021-21574£© £¬ÔÊÐí¹¥»÷ÕßÔÚÄ¿±êÉ豸µÄBIOSÖÐÖ´ÐÐÈÎÒâ´úÂë £¬CVSSÆÀ·ÖΪ8.3 £¬Ó°ÏìÁË128¿î´÷¶ûÌõ¼Ç±¾µçÄÔ¡¢Æ½°åµçÄÔºĮ́ʽ»ú¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/dell-devices-biosconnect-code-execution-bugs/


2.°ÍÎ÷×î´óÒ½Áƹ«Ë¾Grupo FleuryѬȾÀÕË÷Èí¼þREvil


2.jpg


°ÍÎ÷Grupo Fleury¹«Ë¾Ñ¬È¾ÀÕË÷Èí¼þREvil £¬ÏµÍ³ÔÝʱÎÞ·¨·ÃÎÊ¡£Grupo FleuryÊǰÍÎ÷×î´óµÄÒ½ÁÆÕï¶Ï¹«Ë¾ £¬ÓµÓÐ200¶à¸ö·þÎñÖÐÐĺÍ10000¶àÃûÔ±¹¤¡£6ÔÂ22ÈÕ £¬¸Ã¹«Ë¾¹ÙÍøÏÔʾϵͳ¹Ø±Õ £¬µ¼ÖÂÒµÎñÔËÓªÖÐ¶Ï £¬»¼ÕßÎÞ·¨ÔÚÏßԤԼʵÑéÊÒ¼ì²â»òÆäËûÁÙ´²¼ì²é¡£Grupo FleuryÉÐδÕýʽȷÈÏÆäÔâµ½ÁËÀÕË÷Èí¼þ¹¥»÷ £¬µ«µ±µØÃ½ÌåÒÑÈ·ÈÏ´ËΪREvilÀÕË÷Èí¼þ¹¥»÷ £¬¶øÇÒÊê½ðÒªÇóΪ500ÍòÃÀÔª¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/healthcare-giant-grupo-fleury-hit-by-revil-ransomware-attack/


3.BlackBerry·¢ÏÖжñÒâÈí¼þChaChiÃé׼ȫÇò½ÌÓý×éÖ¯


3.jpg


BlackBerry·¢ÏÖÒ»ÖÖеÄжñÒâÈí¼þChaChiÃé׼ȫÇò½ÌÓý×éÖ¯¡£ChaChiÓÉGoLang±àд £¬ÓÚ2020ÄêÉϰëÄêÊ״α»·¢ÏÖ¡£ChaChiµÄÃû×ÖÀ´×ÔÓÚÁ½¸öÒªº¦×é¼þ £¬Cha shellºÍChi sel £¬Ç°ÕßÊÇ·´Ïòshell £¬¶ûºóÕßÓÃÓÚ¶Ë¿Úת·¢¡£¸Ã¶ñÒâÈí¼þ×îÔç±»ÓÃÓÚÕë¶Ô·¨¹úµØ·½Õþ¸®×éÖ¯µÄ¹¥»÷ £¬µ«×î½üÖ÷ÒªÕë¶Ô½ÌÓý×éÖ¯¡£Ñо¿ÈËÔ±ÈÏΪ £¬¸ÃľÂíÓÉPYSA/MespinozaÍÅ»ïÓÚ2020Äê³õ¿ª·¢µÄ £¬ÓÃÓÚ·ÃÎʺͿØÖÆÊÜѬȾµÄϵͳ¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/chachi-golang-a-new-go-trojan-focuses-on-attacking-us-schools/


4.еÄÀÕË÷ÍÅ»ïLVËÆºõ¸ü¸ÄÁËREvil¶þ½øÖÆpayload


4.jpg


Secureworks·¢ÏÖеÄÀÕË÷ÍÅ»ïLVËÆºõ¸ü¸ÄÁËREvil¶þ½øÖÆpayload¡£Ñо¿ÈËÔ±·¢ÏÖLVÀÕË÷Èí¼þºÍREvilÔ´´úÂëµÄ´úÂë½á¹¹ºÍ¹¦Ð§ÍêÈ«Ïàͬ £¬ÍƲâÆäʹÓÃÁËÊ®Áù½øÖƱ༭Æ÷ÐÞ¸ÄÁËREvilµÄpayload £¬²¢ÈƹýÁËREvilµÄ·À¸Ä¶¯¿ØÖÆ¡£´ËÍâ £¬¸ÃÍŻﻹÊÔͼģ·ÂREvilÔÚ°µÍøÉϽ¨Á¢ÁËÒ»¸öÊý¾ÝÐ¹Â¶ÍøÕ¾ £¬µ«ÊǸÃ×éÖ¯´Óδй¶¹ýËûÃÇÔÚÍøÕ¾ÉÏÁгöµÄÊܺ¦ÕßµÄÊý¾Ý £¬Õâ±íÃ÷Æä¿ÉÄÜûÓд洢ÇÔÈ¡µÄÊý¾ÝµÄÄÜÁ¦¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/lv-ransomware-gang-hijacks-revils-binary/


5.Ñо¿ÈËÔ±·¢ÏÖÕë¶ÔÄÏÑǺÍÖÐÑǵÄÕþ¸®ºÍÄÜÔ´×éÖ¯µÄ¹¥»÷


5.jpg


LumenµÄÑо¿ÈËÔ±·¢ÏÖÕë¶ÔÄÏÑǺÍÖÐÑǵØÓòµÄÕþ¸®ºÍÄÜÔ´×éÖ¯µÄ¹¥»÷»î¶¯¡£´Ë´Î¹¥»÷ÖÁÉÙÔÚ2021Äê1Ô¿ªÊ¼ £¬Ö÷ÒªÕë¶ÔÕþ¸®¡¢µçÁ¦µ÷Öκ͵糧µÈ×éÖ¯ £¬Êܺ¦ÕßÖ÷ÒªÂþÑÜÔÚÓ¡¶È £¬Æä´ÎΪ°¢¸»º¹¡£Ôڴ˴ι¥»÷ÖÐ £¬ºÚ¿ÍʹÓÃÁËеÄÔ¶³Ì·ÃÎÊľÂíReverseRat £¬¶øÇÒʹÓÃÁËÁ½¸öѬȾý½é£ºÒ»¸öפÁôÔÚÄÚ´æÖÐ £¬ÁíÒ»¸öÊÇside-loaded £¬Ê¹¹¥»÷Õß¿ÉÒÔÔÚÄ¿±êÖб£³Ö³Ö¾ÃÐÔ¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/06/pakistan-linked-hackers-targeted-indian.html


6.Microsoft StoreÔÚÈ«ÇòµÄWin10ϵͳÉÏ·þÎñÖжÏ


6.jpg


6ÔÂ23ÈÕ £¬Microsoft StoreÔÚÈ«Çò·¶Î§ÄڵĵÄWin10ϵͳÉÏ·þÎñÖжÏ¡£Óû§´ÓMicrosoft StoreÏÂÔØÓ¦Ó÷¨Ê½Ê± £¬Ò»Ö±»á´¦ÓÚ¼ÓÔØÒ³Ãæ¡£×îÖÕ £¬Microsoft Store½«±»ÍêÈ«¹ÒÆð £¬¶øÇÒÖ»ÄÜͨ¹ýÈÎÎñ¹ÜÀíÆ÷»òÔÚ´°¿Ú´¦Óڻ״̬ʱʹÓÃALT+F4À´¹Ø±Õ¡£Íß½âʱ £¬Ê¼þ¼ì²ìÆ÷»á¼Ç¼һÌõ´íÎóÏûÏ¢ £¬Ö¸³öWindowsÓ¦ÓÃÉ̵êÎÞ·¨Óë²Ù×÷ϵͳ½»»¥¡£½ØÖÁÃÀ¹ú¶«²¿Ê±¼ä6ÔÂ23ÈÕÏÂÎç6µã45·Ö £¬¸ÃÎÊÌâÒѱ»½â¾ö¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-store-is-crashing-worldwide-on-windows-10-pcs/