¸çÂ×±ÈÑÇConinsa Ramon H´æ´¢Í°ÅäÖôíÎó1TBÊý¾Ýй¶
Ðû²¼Ê±¼ä 2021-09-27GoogleÐû²¼½ô¼±¸üÐÂÐÞ¸´ChromeÖÐÊͷźóʹÓé¶´
GoogleÔÚ9ÔÂ24ÈÕÐû²¼½ô¼±¸üУ¬ÐÞ¸´½ñÄêµÚ12¸öChromeÖеÄ0day¡£¸Ã©¶´ÎªPortals APIÖеÄÊͷźóʹÓé¶´£¬×·×ÙΪCVE-2021-37973¡£Google³Æ¸Ã©¶´Òѱ»ÔÚÒ°ÀûÓ㬲¢Î´Åû¶ÓйشË©¶´µÄÏêϸÐÅÏ¢¡£¸Ã©¶´ÊÇÔÚAppleÐÞ¸´CVE-2021-30869Ö®ºóµÄµÚ¶þÌìÐû²¼µÄ£¬Ñо¿ÈËÔ±Ö¸³ö£¬Ëü»¹¿ÉÒÔÓëWebKitÖеÄÔ¶³Ì´úÂëÖ´ÐнáºÏʹÓá£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/122561/security/google-chrome-zero-day-flaw.html
CiscoÐû²¼¸üУ¬ÐÞ¸´Æä¶à¿î²úÎïÖеÄ32¸ö©¶´
CiscoÔÚ9ÔÂ22ÈÕÐû²¼¸üУ¬ÐÞ¸´ÁËÆä¶à¿î²úÎïÖеÄ32¸ö©¶´¡£´Ë´ÎÐÞ¸´Á˺±¼ûµÄCVSSÆÀ·ÖΪ10µÄÔ¶³Ì´úÂëÖ´ÐЩ¶´£¨CVE-2021-34770£©£¬´æÔÚÓÚCisco IOS XEÈí¼þµÄÎÞÏß½ÓÈëµã¿ØÖƺÍÅäÖÃÐÒé(CAPWAP)ÖУ¬¿Éµ¼ÖÂRCE»òDoS¡£´ËÍ⣬»¹ÐÞ¸´ÁËÁ½¸öCVSSÆÀ·ÖΪ9.8µÄ©¶´£¬·Ö±ðÊÇSD-WANÖеÄÈí¼þ»º³åÇøÒç³ö©¶´(CVE-2021-34727)ºÍIOS XEÖеÄÉí·ÝÑéÖ¤ÈÆ¹ý©¶´£¨CVE-2021-1619£©¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/critical-cisco-bugs-wireless-sd-wan/174991/
ÃÀ¹úÒ½ÁÆÖÐÐÄUHCÔâµ½Vice SocietyµÄÀÕË÷¹¥»÷
±¾ÖÜ£¬ÀÕË÷ÔËÓªÍÅ»ïVice SocietyÉù³ÆËûÃÇÔÚ8Ô·ݹ¥»÷Á˼ÓÀû¸£ÄáÑÇÖݵÄÃÀ¹úÒ½ÁÆÖÐÐÄUnited Health Centers£¨UHC£©¡£Vice SocietyÊÇÒ»¸öÏà¶Ô½ÏеÄÍŻÓÚ2021Äê6Ô¿ªÊ¼»îÔ¾£¬Æä20%µÄÊܺ¦ÕßÊôÓÚÒ½ÁÆÐÐÒµ¡£8ÔÂ31ÈÕ£¬ÖªÇéÈËʿ͸¶UHCÔâµ½ÁËÀÕË÷¹¥»÷£¬ÏµÍ³ÔÝʱ¹Ø±Õ¡£¹¥»÷Õß³ÆÒÑÇÔÈ¡»¼ÕßÐÅÏ¢¡¢²ÆÕþÎļþ¡¢»¼ÕßʵÑéÊÒ¼ì²é½á¹ûºÍÉ󼯵ÈÐÅÏ¢£¬UHCÉÐδ×÷³ö»ØÓ¦¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/united-health-centers-ransomware-attack-claimed-by-vice-society/
¸çÂ×±ÈÑÇConinsa Ramon H´æ´¢Í°ÅäÖôíÎó1TBÊý¾Ýй¶
Äþ¾²¹«Ë¾WizCase·¢ÏÖ¸çÂ×±ÈÑÇ·¿µØ²ú¾¼Í¹«Ë¾Coninsa Ramon HµÄ´æ´¢Í°ÅäÖôíÎ󣬵¼ÖÂ1TBÊý¾Ýй¶¡£´Ë´Îй¶ÁËÁè¼Ý550Íò¸öÎļþ£¬Éæ¼°µ½10Íò¶à¿Í»§µÄ¸öÈËÐÅÏ¢£¬°üÂÞÐÕÃû¡¢µç»°ºÅÂë¡¢ÓʼþµØÖ·¡¢¾ÓסµØÖ·¡¢Ö§¸¶½ð¶îÒÔ¼°×ʲú¼ÛÖµµÈ¡£´ËÍ⣬Ñо¿ÈËÔ±»¹Ôڴ洢ͰÖз¢ÏÖÁ˺óÃÅ´úÂ룬¿É±»ÀûÓÃÀ´¶ÔÍøÕ¾½øÐÐÁ¬Ðø·ÃÎÊ£¬²¢½«ºÁÎÞ½äÐĵķÃÎÊÕßÖØ¶¨Ïòµ½Õ©ÆÍøÕ¾¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/09/colombian-real-estate-agency-leak.html
Äþ¾²¹«Ë¾·¢ÏÖÀûÓÃVMware vCenterÖÐRCEµÄ¹¥»÷»î¶¯
Äþ¾²¹«Ë¾Bad PacketsÔÚ9ÔÂ22ÈÕ·¢ÏÖÀûÓÃVMware vCenterÖÐRCE©¶´£¨CVE-2021-22005£©µÄ¹¥»÷»î¶¯¡£¸Ã©¶´ÒÑÔÚ9ÔÂ21ÈÕÐÞ¸´£¬Ñо¿ÈËÔ±ÔÚ9ÔÂ22ÈÕ16:21(GMT)·¢ÏÖÀ´×ÔÀ´×Ô¼ÓÄôó¡¢ÃÀ¹ú¡¢ÂÞÂíÄáÑÇ¡¢ºÉÀ¼¡¢ÖйúºÍÐÂ¼ÓÆÂµÄ¹¥»÷ʵÑé¡£Ñо¿ÈËÔ±ÓÚ9ÔÂ24ÈÕÐû²¼Á˲»ÍêÕû©¶´ÀûÓôúÂ룬BleepingComputerÔÚµ±Ìì17:41·¢ÏÖºÚ¿ÍÀûÓøôúÂëµÄ¹¥»÷»î¶¯¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/hackers-exploiting-critical-vmware-vcenter-cve-2021-22005-bug/
ComparitechÐû²¼ÀÕË÷Èí¼þ¶Ô¹É¼ÛÓ°ÏìµÄ·ÖÎö³ÂËß
ComparitechÔÚ9ÔÂ23ÈÕÐû²¼ÁËÀÕË÷Èí¼þ¶Ô¹É¼ÛÓ°ÏìµÄ·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬¹«Ë¾¹É¼ÛÔÚÀÕË÷¹¥»÷ºóµÄ24СʱÄڻᱩµø22.9%£¬µ«µÚ¶þÌìÁ¢¼´»ØÉý£¬µ½µÚ10Ì죬ƽ¾ù¹É¼Û»á±È¹¥»÷ǰ¸ü¸ß£»ÔÚËùÓÐÀÕË÷Èí¼þÖУ¬Ryuk¶Ô¹É¼ÛµÄ¸ºÃæÓ°Ïì×î´ó£»¾¡¹ÜÔÚÅû¶¹¥»÷»î¶¯ºó¿Æ¼¼¹«Ë¾µÄ¹É¼ÛÆð³õµø·ù½Ï´ó£¬µ«ËüÃÇÔÚ6¸öÔºóµÄÌåÏÖÓÅÓڷǿƼ¼¹«Ë¾¡£
ÔÎÄÁ´½Ó£º
https://www.comparitech.com/blog/information-security/ransomware-share-price-analysis/