WebrootÐû²¼2021Äê×î¶ñÁӵĶñÒâÈí¼þ³ÂËߣºÑо¿ÍŶӷ¢ÏÖLinux¶ñÒâÍÚ¿óÈí¼þ

Ðû²¼Ê±¼ä 2021-10-13

MicrosoftÐû²¼10Ô¸üУ¬ÐÞ¸´4¸ö0dayÔÚÄÚµÄ74¸ö©¶´


MicrosoftÐû²¼10Ô¸üУ¬ÐÞ¸´4¸ö0dayÔÚÄÚµÄ74¸ö©¶´.png


MicrosoftÔÚ10ÔÂ12ÈÕÐû²¼Á˱¾ÔµÄÖܶþ²¹¶¡£¬×ܼÆÐÞ¸´ÁË74¸ö©¶´£¨°üÂÞMicrosoft EdgeÔÚÄÚÊÇ81¸ö£©¡£´Ë´Î¸üÐÂ×ܹ²ÐÞ¸´ÁË4¸ö0day£¬°üÂÞWin32kÖеÄÌáȨ©¶´CVE-2021-40449£¬Windows DNS·þÎñÆ÷ÖеÄÔ¶³Ì´úÂëÖ´ÐЩ¶´CVE-2021-40469£¬WindowsÄÚºËÌáȨ©¶´CVE-2021-41335£¬ÒÔ¼°Windows AppContainer ·À»ðǽ¹æÔòÄþ¾²¹¦Ð§Èƹý©¶´CVE-2021-41338¡£´ËÍ⣬KasperskyÑо¿ÈËÔ±ÒѾ­ÔÚÒ°·¢ÏÖÀûÓÃCVE-2021-40449µÄ¹¥»÷»î¶¯¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-october-2021-patch-tuesday-fixes-4-zero-days-71-flaws/


ÒÁÀÊDEV-0343ÍŻ﹥»÷ÃÀ¹úºÍÒÔÉ«ÁеÄOffice 365Óû§


ÒÁÀÊDEV-0343ÍŻ﹥»÷ÃÀ¹úºÍÒÔÉ«ÁеÄOffice 365Óû§.png


MicrosoftÍþвÇ鱨ÖÐÐÄ(MSTIC)ÓÚ2021Äê7ÔÂÏÂÑ®Ê״η¢ÏÖÁËкڿÍÍÅ»ïDEV-0343£¬²¢ÔÚ10ÔÂ11ÈÕÅû¶ÁËÓйظÃÍÅ»ïµÄ¹¥»÷»î¶¯¡£MSTIC³Æ¸ÃÍÅ»ïÓëÒÁÀÊÓйØ£¬Ö÷ÒªÕë¶ÔÃÀ¹úºÍÒÔÉ«Áйú·À¼¼Êõ¹«Ë¾¡¢²¨Ë¹ÍåÈë¾³¿Ú°¶ÒÔ¼°ÔÚÖж«¿ªÕ¹ÒµÎñµÄº£ÉÏÔËÊ乫˾¡£´Ë´Î»î¶¯ÒѾ­¹¥»÷ÁË250¶à¸öOffice 365Óû§£¬µ«Ö»Óв»µ½20¸öÄ¿±ê±»ÈëÇÖ¡£Ñо¿ÈËÔ±½¨ÒéÓû§Í¨¹ýÆôÓöàÒòËØÉí·ÝÑéÖ¤ºÍ×èÖ¹ÄäÃû·þÎñµÄÁ÷Á¿µÈ´ëÊ©À´µÖÓù´ËÀ๥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://www.microsoft.com/security/blog/2021/10/11/iran-linked-dev-0343-targeting-defense-gis-and-maritime-sectors/


ÎÚ¿ËÀ¼¾¯·½´þ²¶ÓµÓÐ10Íò¶ą̀É豸µÄ½©Ê¬ÍøÂçµÄÔËÓªÕß


ÎÚ¿ËÀ¼¾¯·½´þ²¶ÓµÓÐ10Íò¶ą̀É豸µÄ½©Ê¬ÍøÂçµÄÔËÓªÕß.png


ÎÚ¿ËÀ¼Äþ¾²¾Ö£¨SSU£©ÓÚ±¾ÖÜÒ»£¬ÔÚIvano-FrankivskÊдþ²¶ÁËÒ»¸öÇ¿´óµÄ½©Ê¬ÍøÂçµÄÔËÓªÕß¡£¸ÃÄÐ×Ó´´½¨²¢¹ÜÀí×ÅÓÉÁè¼Ý10Íò¶ą̀É豸×é³É½©Ê¬ÍøÂ磬ÓÃÓÚΪ¸¶ÓöȻ§Ö´ÐÐÂþÑÜʽ¾Ü¾ø·þÎñ (DDoS) ºÍÀ¬»øÓʼþ¹¥»÷¡£SSUÌåÏÖ£¬Ëû¶¼ÊÇͨ¹ýºÚ¿ÍÂÛ̳ºÍTelegramѰÕÒ¿Í»§£¬²¢Ê¹ÓöíÂÞ˹µÄ¼´Ê±Ö§¸¶ÏµÍ³WebMoney½øÐи¶¿î¡£µ«ËûÔÚ×¢²áWebmoneyÕË»§Ê±ÓÃÁËÕæÊµµØÖ·£¬Ê¹¾¯·½¿ÉÒÔ×·×Ùµ½ËûµÄסËù¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/10/ukraine-arrests-operator-of-ddos-botnet.html


Microsoft³ÆÆäÀֳɵÖÓù¸ß´ï2.4 TbpsµÄDDoS¹¥»÷


Microsoft³ÆÆäÀֳɵÖÓù¸ß´ï2.4 TbpsµÄDDoS¹¥»÷.png


MicrosoftÑо¿ÈËÔ±Amir DahanÔÚ10ÔÂ11Èճƣ¬ËûÃÇÔÚ8ÔµÄ×îºóÒ»ÖÜÀֳɵÖÓùÁËÊ·ÉÏ×î¸ßµÄDDoS¹¥»÷¡£Amir DahanÌåÏÖ£¬ÕâÊÇÕë¶ÔÆäÅ·ÖÞAzure¿Í»§µÄ¹¥»÷£¬ÓÉÖ÷ÒªÂþÑÜÔÚÑÇÌ«µØÓòºÍÃÀ¹úµÄÔ¼70000̨É豸ÌᳫµÄ¡£´Ë´ÎµÄ¹¥»÷ÏòÁ¿ÎªUDP·´É䣬Á¬ÐøÊ±¼äÁè¼Ý10·ÖÖÓ£¬·¢×÷ʱ¼ä·Ç³£¶Ì£¬Ã¿´Î·¢×÷¶¼ÊÐÔÚ¼¸ÃëÖÓÄÚÉÏÉýµ½TBÁ¿¼¶£¬×ܹ²·ºÆðÁËÁËÈý¸öÖ÷Òª·åÖµ£¬·Ö±ðΪ2.4 Tbps¡¢0.55 TbpsºÍ1.7 Tbps¡£


Ô­ÎÄÁ´½Ó£º

https://azure.microsoft.com/en-us/blog/business-as-usual-for-azure-customers-despite-24-tbps-ddos-attack/


Ñо¿ÍŶӷ¢ÏÖLinux¶ñÒâÍÚ¿óÈí¼þµÄбäÌåÃé×¼»ªÎªÔÆ


Ñо¿ÍŶӷ¢ÏÖLinux¶ñÒâÍÚ¿óÈí¼þµÄбäÌåÃé×¼»ªÎªÔÆ.png


TrendMicroµÄÑо¿ÈËÔ±·¢ÏÖÒÔǰÓÃÓÚÕë¶ÔDockerÈÝÆ÷µÄLinux¶ñÒâÍÚ¿óÈí¼þµÄбäÌ壬¿ªÊ¼Õë¶ÔÏñ»ªÎªÔÆÕâÑùµÄÐÂÔÆ·þÎñÌṩÉÌ¡£¾ßÌåµØËµ£¬ÐÂÑù±¾ÒѾ­×¢Ê͵ôÁË·À»ðǽ¹æÔò´´½¨¹¦Ð§£¬²¢¼ÌÐøÊ¹ÓÃÍøÂçɨÃèÆ÷À´Ñ°ÕÒÆäËû¾ßÓÐapiÏà¹Ø¶Ë¿ÚµÄÖ÷»ú¡ £»ªÎªÔÆÊǽÏеÄÔÆÌṩÉÌ£¬Éù³ÆËüÒѾ­ÎªÁè¼Ý300Íò¿Í»§Ìṩ·þÎñ¡£Ñо¿ÈËÔ±Òѽ«´Ë´Î¹¥»÷֪ͨ¸Ã¹«Ë¾£¬µ«ÉÐδÊÕµ½»Ø¸´¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/huawei-cloud-targeted-by-updated-cryptomining-malware/


WebrootÐû²¼¹ØÓÚ2021Äê×î¶ñÁӵĶñÒâÈí¼þµÄ³ÂËß


WebrootÐû²¼¹ØÓÚ2021Äê×î¶ñÁӵĶñÒâÈí¼þµÄ³ÂËß.png


WebrootÌåÏÖ£¬2021ÄêÊÇÍøÂçÍþвռ¾ÝÐÂÎÅÍ·ÌõµÄÒ»Ä꣬ÀÕË÷Èí¼þÀÕË÷ÒÑ´ÓÒ»ÖÖÇ÷ÊÆÑݱäΪһÖÖг£Ì¬¡£¸Ã¹«Ë¾ÔÚÆä³ÂËßÖÐÁгöµÄ2021Äê×î¶ñÁӵĶñÒâÈí¼þ°üÂÞ£ºÖøÃûµÄ½©Ê¬ÍøÂçLemonDuck¡¢ÀÕË÷Èí¼þREvil¡¢ÒøÐÐľÂíTrickbot¡¢ÒøÐÐľÂíºÍÐÅÏ¢ÇÔÈ¡·¨Ê½Dridex¡¢ÀÕË÷Èí¼þConti¡¢ÉøÍ¸²âÊÔ¹¤¾ßCobalt Strike£¬ÒÔ¼°Hello KittyºÍDarkSide¡£


Ô­ÎÄÁ´½Ó£º

https://community.webroot.com/news-announcements-3/nastiest-malware-2021-348560