Ñо¿ÍŶÓÅû¶net¿âÖдæÔÚµÄIPµØÖ·Ñé֤©¶´µÄϸ½Ú£»ÐÂAndroid¶ñÒâÈí¼þFlyTrap½Ù³ÖÊýǧFacebookÕÊ»§
Ðû²¼Ê±¼ä 2021-08-10ÉÏÖÜ£¬Ñо¿ÍŶÓÅû¶GoºÍRustÓïÑÔ³£ÓõÄnet¿âÖеÄIPµØÖ·Ñé֤©¶´µÄϸ½Ú¡£Â©¶´×·×ÙΪCVE-2021-29922£¨ÓÃÓÚRust£©ºÍCVE-2021-29923£¨ÓÃÓÚGolang£©£¬Éæ¼°netÈçºÎ´¦ÖûìºÏ¸ñʽµÄIPµØÖ·£¬»òÕ߸ü¾ßÌåµØËµµ±Ê®½øÖÆIPv4µØÖ·°üÂÞǰµ¼ÁãʱµÄ´¦Ö᣸é¶´¿ÉÄܻᵼÖÂÓ¦Ó÷¨Ê½ÖзºÆð·þÎñÆ÷¶ËÇëÇóαÔì (SSRF) ºÍÔ¶³ÌÎļþ°üÂÞ (RFI) ©¶´£¬Ó°ÏìÁ˳ÉǧÉÏÍòÒÀÀµ¸Ã¿âµÄÓ¦Óá£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/go-rust-net-library-affected-by-critical-ip-address-validation-vulnerability/
2.Ñо¿ÈËÔ±ÑÝʾÈçºÎÓÃÍÏÀ»ú©¶´¹¥»÷Á¸Ê³Éú²ú¹©Ó¦Á´
8ÔÂ8ÈÕ£¬ÔÚDEF CON 29»áÒéÉÏ£¬±»³ÆÎªSick CodesµÄ°Ä´óÀûÑÇÑо¿ÈËÔ±Ïêϸ½éÉÜÁËËûËùνµÄÍÏÀ»ú©¶´£¨tractor load of vulnerabilities£©¡£Sick Codes³Æ·¢ÏÖÁ˶à¸ö©¶´£¬¿ÉÈëÇÖũҵÉ豸¹©Ó¦ÉÌJohn DeereÓÃÀ´´¦ÖÃÐÅÏ¢ºÍ¿ØÖÆÉ豸µÄÔËÓªÖÐÐÄ£¬²¢¿ÉÒÔͨ¹ý¸ÃÖÐÐÄ·ÃÎÊһЩÁªÍøµÄũҵÉ豸¡£Ñо¿ÈËÔ±³Æ£¬¹¥»÷ÕßÀûÓøÃ©¶´£¬¿ÉÄܶÔÈ«ÇòµÄÁ¸Ê³Éú²ú¹©Ó¦Á´Ôì³É¾Þ´óµÄÓ°Ï죬ÀýÈç¹ý¶ÈÅçÈ÷»¯Ñ§Ò©¼Á£¬»òÔ¶³Ì¼ÝÊ»ÍÏÀ»úµÈ¡£
ÔÎÄÁ´½Ó£º
https://www.infosecurity-magazine.com/news/defcon-exploiting-vulnerabilities/
3.ACSC³ÆLockBit 2.0Õë¶Ô°Ä´óÀûÑǵÄÀÕË÷¹¥»÷¼¤Ôö
°Ä´óÀûÑÇÍøÂçÄþ¾²ÖÐÐÄ (ACSC)³Æ£¬´Ó2021Äê7Ô¿ªÊ¼£¬LockBit 2.0Õë¶Ô°Ä´óÀûÑÇ×éÖ¯µÄÀÕË÷Èí¼þ¹¥»÷¼¤Ôö¡£ACSCÖ¸³öLockBitÒÑÀֳɵØÔÚÉæ¼°×¨Òµ·þÎñ¡¢½¨Öþ¡¢ÖÆÔì¡¢ÁãÊÛºÍʳƷÔÚÄڵĸ÷¸öÐÐÒµµÄ¹«Ë¾ÏµÍ³Éϰ²×°ÁËÀÕË÷Èí¼þ¡£´ËÍ⣬¸Ã»ú¹¹»¹Ðû²¼ÁËÒ»·ÝÀÕË÷Èí¼þÅäÖÃÎļþ£¬ÆäÖаüÂÞÓйØLockBitÍÅ»ïµÄÆäËûÐÅÏ¢£¬°üÂÞ³õʼ·ÃÎÊÖ¸±ê¡¢Ä¿±êÐÐÒµºÍ»º½â´ëÊ©µÈ¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/australian-govt-warns-of-escalating-lockbit-ransomware-attacks/
4.ÐÂAndroid¶ñÒâÈí¼þFlyTrap½Ù³ÖÊýǧFacebookÕÊ»§
ZimperiumÑо¿ÈËÔ±·¢ÏÖÁËÒ»ÖÖÃûΪFlyTrapµÄÐÂÐÍAndroidľÂí¡£×Ô3ÔÂÒÔÀ´£¬FlyTrapÒÑͨ¹ýGoogle PlayÉ̵êºÍµÚÈý·½Ó¦Ó÷¨Ê½Êг¡ÉϵĶñÒâÓ¦ÓÃÁ÷´«µ½ÖÁÉÙ144¸ö¹ú¼ÒºÍµØÓò¡£ÆäÖУ¬ÔÚÔ½ÄϵĹ¥»÷»î¶¯Ö¼ÔÚ½Ù³ÖFacebookÕÊ»§¡£¹¥»÷ÕßʹÓöàÖÖÊÖ¶ÎÀ´·Ö·¢¸Ã¶ñÒâÈí¼þ£¬ÈçÃâ·ÑNetflixÓÅ»Ýȯ´úÂë¡¢Google AdWordsÓÅ»Ýȯ´úÂ룬ÒÔ¼°×î¼ÑÇò¶Ó»òÇòÔ±µÄͶƱ¡£Ò»µ©Ä¿±êÀֳɰ²×°£¬Æä¾Í»áÇÔÈ¡Facebook ID¡¢Î»Öá¢ÓʼþµØÖ·¡¢IPµØÖ·£¬ÒÔ¼°Ïà¹ØµÄcookieºÍ´ú±Ò¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/android-malware-flytrap-facebook/168463/
5.KasperskyÐû²¼2021ÄêQ2À¬»øÓʼþºÍµöÓã»î¶¯µÄ³ÂËß
KasperskyÐû²¼ÁËÓйØ2021ÄêQ2À¬»øÓʼþºÍµöÓã»î¶¯µÄ·ÖÎö³ÂËß¡£2021ÄêQ2£¬ÆóÒµÕË»§ÈÔÈ»Êǹ¥»÷ÕßµÄÖ÷ҪĿ±êÖ®Ò»¡£ÎªÁËÔö¼ÓµöÓãÓʼþÖÐÁ´½ÓµÄ¿ÉÐŶȣ¬¹¥»÷Õßαװ³ÆÀ´×ÔÔÆ·þÎñµÄÓʼþ£¬ÀýÈçMicrosoft Teams»áÒéµÄ֪ͨµÈ¡£À¬»øÓʼþÊýÁ¿µÄÕ¼±ÈÔÚ3Ô·ݴ¥µ×£¨45.10%£©ºó£¬ÔÚ4Ô·ÝС·ùÉÏÉý£¨45.29%£©£¬µ½6Ô£¨48.03%£©Óë2020ÄêQ4Ï൱¡£À¬»øÓʼþÀ´Ô´×î¶àµÄ¹ú¼ÒΪ¶íÂÞ˹£¨26.07%£©£¬Æä´ÎÊǵ¹ú£¨13.97%£©ºÍÃÀ¹ú£¨11.24%£©¡£×î³£¼ûµÄ¶ñÒ⸽¼þÊÇBadun¼Ò×壨7.09%£©¡£
ÔÎÄÁ´½Ó£º
https://securelist.com/spam-and-phishing-in-q2-2021/103548/
6.Digital ShadowÐû²¼2021ÄêQ2ÀÕË÷¹¥»÷µÄ·ÖÎö³ÂËß
Digital ShadowÐû²¼ÁË2021ÄêQ2ÀÕË÷¹¥»÷Ì¬ÊÆµÄ·ÖÎö³ÂËß¡£³ÂËßÖ¸³ö£¬2021ÄêQ2ÊÇ×îÖØÒªµÄÀÕË÷Èí¼þʱÆÚÖ®Ò»£¬·¢ÉúÁ˼¸ÆðÖØ´óʼþ£¬ÈçDarkSide¶ÔColonial PipelineµÄ¹¥»÷¡¢JBS¶ÔÈ«Çò×î´óÈâÀà¼Ó¹¤É̵Ĺ¥»÷£¬ÒÔ¼°ÃÀ¹úºÍÅ·ÖÞµÄÖ´·¨Ðж¯µÈ¡£½öÔÚQ2¾ÍÓÐ740¼Ò¹«Ë¾µÄÐÅÏ¢±»Ðû²¼µ½ÀÕË÷ÍÅ»ïµÄÊý¾ÝÐ¹Â¶ÍøÕ¾£¬±ÈQ1Ôö³¤ÁË47%¡£´ËÍ⣬ContiÍÅ»ï×îΪ»îÔ¾£¬Æä´ÎΪAvaddon¡¢PYSAºÍREvil¡£
ÔÎÄÁ´½Ó£º
https://www.digitalshadows.com/blog-and-research/q2-2021-ransomware-roll-up/