ÐÅÏ¢Äþ¾²Öܱ¨-2021ÄêµÚ27ÖÜ

Ðû²¼Ê±¼ä 2021-07-05

> ±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö


2021Äê06ÔÂ28ÈÕÖÁ07ÔÂ04ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´62¸ö£¬ÖµµÃ¹Ø×¢µÄÊÇAcrobat Reader DC CVE-2021-28562ÄÚ´æ´íÎóÒýÓôúÂëÖ´ÐЩ¶´£»HelpcomÔ¶³ÌÃüÁîÖ´ÐЩ¶´£»helpUS ShellExecutionExA´úÂëÖ´ÐЩ¶´£»Huawei AnyOffice V200R006C10·´ÐòÁл¯´úÂëÖ´ÐЩ¶´£»MVISION EDR 'execute reaction'Ô¶³ÌÃüÁîÖ´ÐЩ¶´¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊÇ΢Èí³ÆÆäÔâµ½SolarWinds¹¥»÷±³ºóÍÅ»ïNobeliumµÄÈëÇÖ£»GitGuardianÐû²¼2021ÄêGitHubÉÏÊý¾Ýй¶µÄ·ÖÎö³ÂËߣ»ºÚ¿ÍÔÚRaidForums³öÊÛ7ÒÚ¶àÌõLinkedInÓû§µÄ¼Ç¼£»ÃÀ¹úFINRA¾¯¸æαװ³ÉFINRA SupportµÄµöÓã¹¥»÷»î¶¯£»Î¢ÈíÐû²¼Äþ¾²¸üУ¬ÐÞ¸´Edgeä¯ÀÀÆ÷ÖеĶà¸ö©¶´¡£


ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖС£


> ÖØÒªÄþ¾²Â©¶´Áбí


1.Acrobat Reader DC CVE-2021-28562ÄÚ´æ´íÎóÒýÓôúÂëÖ´ÐЩ¶´


Acrobat Reader DC´æÔÚÊͷźóʹÓ鶴£¬ÔÊÐíÔ¶³Ì¹¥»÷Õß¿ÉÒÔÀûÓ鶴Ìá½»ÌØÊâµÄWEBÇëÇó£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½±ÀÀ£»òÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

https://helpx.adobe.com/security/products/acrobat/apsb21-29.html


2.HelpcomÔ¶³ÌÃüÁîÖ´ÐЩ¶´


Helpcom´æÔÚÊäÈëÑé֤©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

https://www.boho.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=36095


3.helpUS ShellExecutionExA´úÂëÖ´ÐЩ¶´


helpUS ShellExecutionExA´æÔÚÊäÈëÑé֤©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

https://www.boho.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=36088


4.Huawei AnyOffice V200R006C10·´ÐòÁл¯´úÂëÖ´ÐЩ¶´


Huawei AnyOffice´æÔÚ·´ÐòÁл¯Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210619-01-injection-en


5.MVISION EDR 'execute reaction'Ô¶³ÌÃüÁîÖ´ÐЩ¶´


MVISION EDR 'execute reaction'´æÔÚÊäÈëÑé֤©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

https://kc.mcafee.com/corporate/index?page=content&id=SB10342


> ÖØÒªÄþ¾²Ê¼þ×ÛÊö


1¡¢Î¢Èí³ÆÆäÔâµ½SolarWinds¹¥»÷±³ºóÍÅ»ïNobeliumµÄÈëÇÖ


1.jpg


΢Èí³ÆÆäÔâµ½Á˺ڿÍÍÅ»ïNobeliumµÄ¹¥»÷¡£NobeliumÊǶíÂÞ˹¹ú¼Ò×ÊÖúµÄºÚ¿Í×éÖ¯£¬ÓëSolarWinds¹©Ó¦Á´¹¥»÷ÓйØ£¬Î¢ÈíÌåÏָúڿÍ×éÖ¯Ò»Ö±ÔÚ½øÐÐÃÜÂëÅçÈ÷¹¥»÷ºÍ±©Á¦¹¥»÷£¬ÒÔ»ñÈ¡¶Ô¹«Ë¾ÍøÂçµÄ·ÃÎÊȨÏÞ¡£Í¨¹ýÊӲ죬΢ÈíÔÚÆä¿Í»§Ö§³ÖÊðÀíµÄ¼ÆËã»úÉϼì²âµ½Ò»¸öÐÅÏ¢ÇÔȡľÂí£¬ÇÔÈ¡Á˲¿ÃÅ¿Í»§µÄ¸öÈËÐÅÏ¢£¬¶øNobelium½«Ê¹ÓÃÕâЩÐÅÏ¢¶Ô΢ÈíµÄ¿Í»§½øÐÐÓÐÕë¶ÔÐÔµÄÍøÂçµöÓã¹¥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/nobelium-hackers-accessed-microsoft-customer-support-tools/


2¡¢GitGuardianÐû²¼2021ÄêGitHubÉÏÊý¾Ýй¶µÄ·ÖÎö³ÂËß


2.jpg


GitGuardianÐû²¼ÁË2021ÄêGitHubÉÏÊý¾Ýй¶µÄ·ÖÎö³ÂËß¡£×Ô2017ÄêÒÔÀ´£¬GitGuardianÒ»Ö±ÔÚɨÃèÔÚGitHubÉϹûÈ»Ìá½»µÄÿһ¸öSecret£¬²¢ºâÁ¿Á˹«¹²´æ´¢¿âÖÐÊý¾Ý鶵ÄÇé¿ö¡£ÖÁ½ñÓÐÁè¼Ý5000Íò¿ª·¢ÈËԱʹÓÃGitHub£¬Ò»ÄêÄÚÓÐ6000Íò¸öн¨µÄ´æ´¢¿â£¬Ìá½»´ÎÊýÁè¼Ý20ÒڴΡ£³ÂËßÖ¸³ö£¬¹«¹²GitHubÖÐÊý¾Ý鶵ÄÊýÁ¿Í¬±ÈÔö³¤ÁË20%£¬ÆäÖÐ15%µÄй¿à´×ÔÓÚ×éÖ¯µÄ¹«¹²´æ´¢¿âÖУ¬¶ø85%µÄй¿à´×ÔÓÚ¿ª·¢ÈËÔ±µÄ¸öÈË´æ´¢¿âÖС£


Ô­ÎÄÁ´½Ó£º

https://blog.gitguardian.com/state-of-secrets-sprawl-2021/


3¡¢ºÚ¿ÍÔÚRaidForums³öÊÛ7ÒÚ¶àÌõLinkedInÓû§µÄ¼Ç¼


3.jpg


Privacy SharksÑо¿ÈËÔ±·¢ÏÖÃûΪ¡°GOD User TomLiner¡±µÄºÚ¿ÍÕýÔÚRaidForumsÉϳöÊÛLinkedInÓû§µÄÊý¾Ý¡£¸Ã¹ã¸æÓÚ6ÔÂ22ÈÕÐû²¼£¬Éù³Æ°üÂÞ7ÒÚÌõ¼Ç¼£¬²¢¹ûÈ»ÁË100ÍòÌõÑù±¾×÷Ϊ֤¾Ý¡£´Ë´Î鶵ÄÐÅÏ¢°üÂÞ·¢ÏּǼ°üÂÞÈ«Ãû¡¢ÐԱ𡢵ç×ÓÓʼþµØÖ·¡¢µç»°ºÅÂëºÍÐÐÒµÐÅÏ¢¡£Ä¿Ç°Éв»Çå³þÊý¾ÝµÄÀ´Ô´ÊÇʲô£¬µ«Ñо¿ÈËÔ±ÍƲâ´Ë´ÎÊý¾Ýй¶Óë4Ô·ݳöÊÛµÄ5ÒÚÌõLinkedIn¼Ç¼¿ÉÄÜÊÇͬһÀ´Ô´¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/data-700m-linkedin-users-cyber-underground/167362/


4¡¢ÃÀ¹úFINRA¾¯¸æαװ³ÉFINRA SupportµÄµöÓã¹¥»÷»î¶¯


4.jpg


ÃÀ¹ú֤ȯҵ¼à¹Ü»ú¹¹FINRA¾¯¸æαװ³ÉFINRA SupportµÄµöÓã¹¥»÷»î¶¯¡£FINRAÊÇÕþ¸®ÊÚȨµÄ·ÇÓªÀû×éÖ¯£¬ÂôÁ¦¼à¹ÜÔÚÃÀ¹ú¹ûÈ»»î¶¯µÄËùÓн»Ò×ËùÊг¡ºÍ֤ȯ¹«Ë¾£¬Ã¿Ìì·ÖÎöÊýÊ®ÒÚ¸öÊг¡½»Òס£ÕâЩÓʼþÉù³ÆÀ´×Ô¡°FINRA SUPPORT¡±£¬µØַΪ¡°support@westour.org¡±¡£¸ÃÓʼþÒªÇóÊÕ¼þÈË×¢ÒâÏÂÃæËù¸½µÄ³ÂËß²¢Á¢¼´»Ø¸´£¬»¹Ö¸³ö¸½¼þ°üÂÞ¸üÐµĹ«¹²Õþ²ßÐÅÏ¢£¬µ«ÕâЩµç×ÓÓʼþ¿ÉÄÜ»ù´¡Ã»Óи½¼þ¡£ÔçÔÚ½ñÄê3ÔºÍ6Ô³õ£¬FINRA»¹¾¯¸æÁËαÔì³É¡°FINRAºÏ¹æÉó¼Æ¡±ºÍÒÔ´¦·£ÎªÓÕ¶üµÄÁ½´ÎµöÓã»î¶¯¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/us-brokerage-firms-warned-of-finra-support-phishing-attacks/


5¡¢Î¢ÈíÐû²¼Äþ¾²¸üУ¬ÐÞ¸´Edgeä¯ÀÀÆ÷ÖеĶà¸ö©¶´


5.jpg


΢ÈíÐû²¼Äþ¾²¸üУ¬ÐÞ¸´ÁËEdgeä¯ÀÀÆ÷ÖеÄ2¸ö©¶´¡£ÆäÖнÏΪÑÏÖصÄÊÇÄþ¾²Èƹý©¶´£¨CVE-2021-34506£©£¬Ê¹ÓÃEdgeä¯ÀÀÆ÷ÄÚÖõÄMicrosoft Translator¹¦Ð§×Ô¶¯·­ÒëÍøҳʱ´¥·¢µÄ¿çÕ¾µã½Å±¾(UXSS)©¶´µ¼ÖµÄ£¬¿ÉÒÔÓÃÀ´ÔÚÍøÕ¾ÉÏÔ¶³ÌÖ´ÐÐÈÎÒâ´úÂë¡£Ñо¿ÈËÔ±³Æ¸Ã©¶´µÄÅÓ´óÐԺܵÍ£¬¹¥»÷Õß¿ÉÒÔÔÚ²»ÐèÒªÈκÎȨÏÞµÄÇé¿öÏÂʵÏÖ¡£´Ë´ÎÐÞ¸´µÄÁíÒ»¸ö©¶´ÎªÌØȨÌáÉý©¶´£¨CVE-2021-34475£©¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/06/microsoft-edge-bug-couldve-let-hackers.html