ÐÅÏ¢Äþ¾²Öܱ¨-2021ÄêµÚ34ÖÜ

Ðû²¼Ê±¼ä 2021-08-30

 >±¾ÖÜÄþ¾²Ì¬ÊÆ×ÛÊö 


2021Äê08ÔÂ016ÈÕÖÁ08ÔÂ22ÈÕ¹²ÊÕ¼Äþ¾²Â©¶´60£¬ÖµµÃ¹Ø×¢µÄÊÇGoogle chrome V8 CVE-2021-30598ÀàÐÍ»ìÏý´úÂëÖ´ÐЩ¶´£»Motorola MM1000É豸ÅäÖÃWEB·þÎñÆ÷ÌØȨÌáÉý©¶´£»Lenovo Smart CameraÃüÁî×¢È멶´£»Apache HTTP Serverת·¢ÑéÖ¤Èƹý©¶´£»Dell EMC PowerScale OneFSÐÅϢ鶩¶´¡£


±¾ÖÜÖµµÃ¹Ø×¢µÄÍøÂçÄþ¾²Ê¼þÊǺڿÍÉù³ÆÒÑÇÔÈ¡µçÐŹ«Ë¾T-MobileÔ¼1ÒÚ¿Í»§µÄÐÅÏ¢£»KasperskyÐû²¼2021ÄêµÚ¶þ¼¾¶ÈÍþв̬ÊƵķÖÎö³ÂËߣ»KalayÔÆƽ̨ÖеÄÄþ¾²Â©¶´Ó°ÏìÈ«ÇòÊý°ÙÍòIoTÉ豸£»ÐµÄHolesWarmÀûÓÃ20¶à¸öÒÑ֪©¶´·Ö·¢ÍÚ¿óÈí¼þ£»Cisco·¢ÏÖÕë¶ÔÄ«Î÷¸ç½ðÈÚ»ú¹¹µÄÐÂľÂíNeurevt¡£


ƾ¾ÝÒÔÉÏ×ÛÊö£¬±¾ÖÜÄþ¾²ÍþвΪÖС£


>ÖØÒªÄþ¾²Â©¶´Áбí


1.Google chrome V8 CVE-2021-30598ÀàÐÍ»ìÏý´úÂëÖ´ÐЩ¶´


Google chrome V8´æÔÚÀàÐÍ»ìÏý©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄWEBÇëÇó£¬ÓÕʹÓû§½âÎö£¬¿ÉʹӦÓ÷¨Ê½±ÀÀ£»òÒÔÓ¦Ó÷¨Ê½ÉÏÏÂÎÄÖ´ÐÐÈÎÒâ´úÂë¡£

https://www.auscert.org.au/bulletins/ESB-2021.2774


2.Motorola MM1000É豸ÅäÖÃWEB·þÎñÆ÷ÌØȨÌáÉý©¶´


Motorola MM1000É豸ÅäÖÃWEB·þÎñÆ÷´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÌáÉýȨÏÞ£¬Ö´ÐÐÈÎÒâ´úÂë¡£

https://motorolamentor.zendesk.com/hc/en-us/articles/1260804047750


3.Lenovo Smart CameraÃüÁî×¢È멶´


Lenovo Smart Camera´æÔÚÊäÈëÑé֤©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ÉÔÊÐíͨ¹ýÉèÖÃÌØÖƵÄÍøÂçÅäÖÃÀ´½øÐÐÃüÁî×¢Èë¡£

https://iknow.lenovo.com.cn/detail/dc_198417.html


4.Apache HTTP Serverת·¢ÑéÖ¤Èƹý©¶´


Apache HTTP Server´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇó£¬ÈƹýÉí·ÝÑéÖ¤£¬²¢ÓÉmod_proxyת·¢¡£

https://github.com/apache/


5.Dell EMC PowerScale OneFSÐÅϢ鶩¶´


Dell EMC PowerScale OneFS´¦ÖÃÇëÇó·½Ê½´æÔÚÄþ¾²Â©¶´£¬ÔÊÐíÔ¶³Ì¹¥»÷ÕßÀûÓ鶴Ìá½»ÌØÊâµÄÇëÇ󣬿ɻñÈ¡Ãô¸ÐÐÅÏ¢¡£

https://www.dell.com/support/kbdoc/zh-cn/000190408/dsa-2021-142-dell-powerscale-onefs-security-


 >ÖØÒªÄþ¾²Ê¼þ×ÛÊö


1¡¢ºÚ¿ÍÉù³ÆÒÑÇÔÈ¡µçÐŹ«Ë¾T-MobileÔ¼1ÒÚ¿Í»§µÄÐÅÏ¢


ºÚ¿ÍÉù³ÆÒÑÇÔÈ¡µçÐŹ«Ë¾T-MobileÔ¼1ÒÚ¿Í»§µÄÐÅÏ¢.jpg


¹¥»÷ÕßÉù³ÆÔÚÁ½ÖÜÇ°ÈëÇÖÁËT-MobileµÄÓÃÓÚÉú²úºÍ¿ª·¢µÄ·þÎñÆ÷£¬ÒÔ¼°Ò»¸ö°üÂÞÁË¿Í»§ÐÅÏ¢µÄOracleÊý¾Ý¿â·þÎñÆ÷¡£´Ë´Îй¶ÁËT-MobileµÄ1ÒÚ¸ö¿Í»§Ô¼106GBµÄÊý¾Ý£¬°üÂÞIMSI¡¢IMEI¡¢µç»°ºÅÂë¡¢¿Í»§ÐÕÃû¡¢Äþ¾²PIN¡¢Éç»áÄþ¾²ºÅÂë¡¢¼ÝÕÕºÅÂëºÍ³öÉúÈÕÆÚµÈÐÅÏ¢¡£ÍþвÇ鱨¹«Ë¾Hudson RockÌåÏÖ£¬´Ë´ÎºÚ¿ÍµÄ¹¥»÷ÐÐΪ¿ÉÄÜÊÇΪÁËÆÆ»µÃÀ¹úµÄ»ù´¡ÉèÊ©£¬Ö¼ÔÚÅê»÷ÃÀ¹úÔøÓÚ2019Äê°ó¼Ü²¢ÕÛÄ¥ÁËJohn Erin Binns(CIA Raven-1)¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/hacker-claims-to-steal-data-of-100-million-t-mobile-customers/


2¡¢KasperskyÐû²¼2021ÄêµÚ¶þ¼¾¶ÈÍþв̬ÊƵķÖÎö³ÂËß


KasperskyÐû²¼2021ÄêµÚ¶þ¼¾¶ÈÍþв̬ÊƵķÖÎö³ÂËß.jpg


KasperskyÐû²¼ÁË2021ÄêµÚ¶þ¼¾¶ÈÍþв̬ÊƵķÖÎö³ÂËß¡£¸Ã³ÂËß·ÖÎöÁË2021ÄêQ2µÄ¶à¸öÓÐÕë¶ÔÐԵĹ¥»÷»î¶¯£¬°üÂÞÓëCycldekÍÅ»ïÏà¹ØµÄ¹¥»÷»î¶¯£¬ÔÚÒ°ÍâʹÓÃ×ÀÃæ´°¿Ú¹ÜÀíÆ÷ÖÐ0dayµÄ¹¥»÷»î¶¯£¬TunnelSnakeÐж¯£¬PuzzleMaker»î¶¯ºÍFerocious KittenÍÅ»ïÏà¹Ø»î¶¯µÈ¡£´ËÍ⣬³ÂËß»¹·ÖÎöÁ˶à¸ö¶ñÒâÈí¼þ£¬°üÂÞÀÕË÷Èí¼þJSWormºÍBlack Kingdom¡¢ÒøÐÐľÂíGootkitºÍBizarro¡¢APKPureÓ¦ÓÃÖжñÒâ´úÂëºÍBrowser lockersµÈ¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/it-threat-evolution-q2-2021/103597/


3¡¢KalayÔÆƽ̨ÖеÄÄþ¾²Â©¶´Ó°ÏìÈ«ÇòÊý°ÙÍòIoTÉ豸


KalayÔÆƽ̨ÖеÄÄþ¾²Â©¶´Ó°ÏìÈ«ÇòÊý°ÙÍòIoTÉ豸.jpg


FireEyeµÄMandiantÔÚ2020Äêµ×·¢ÏÖÁËKalayÔÆƽ̨ÖеÄ©¶´£¬²¢ÓëÃÀ¹úCISAºÍThroughTekºÏ×÷£¬Ð­µ÷Åû¶·½°¸²¢¿ª·¢»º½âÒªÁì¡£¸Ã©¶´ÊÇÒ»¸öÉ豸ģÄ⩶´£¬×·×ÙΪCVE-2021-28372£¬ÆÀ·ÖΪ9.6·Ö¡£Ö»ÐèҪĿ±êÓû§µÄKalayΨһ±êʶ·û(UID)£¬Ô¶³Ì¹¥»÷Õ߾ͿÉÒÔÀûÓø鶴À´½Ó¹ÜÎïÁªÍøÉ豸¡£Ñо¿È˳Æ£¬»¹¿ÉÒÔ½«¸Ã©¶´ÓëÉ豸RPC½Ó¿ÚÖеÄ©¶´Ïà½áºÏÀ´ÍêÈ«ÈëÇÖÉ豸¡£Â©¶´Ó°ÏìÁËÈ«ÇòÊý°ÙÍòͨ¹ýThroughTekµÄKalay IoTÔÆƽ̨Á¬½ÓµÄÉ豸¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/121226/hacking/kalay-cloud-platform-critical-flaw.html


4¡¢ÐµÄHolesWarmÀûÓÃ20¶à¸öÒÑ֪©¶´·Ö·¢ÍÚ¿óÈí¼þ


еÄHolesWarmÀûÓÃ20¶à¸öÒÑ֪©¶´·Ö·¢ÍÚ¿óÈí¼þ.jpg


еĽ©Ê¬ÍøÂçHolesWarm×Ô½ñÄê6ÔÂÒÔÀ´¿ªÊ¼»îÔ¾£¬ÀûÓÃÁË20¶à¸öÒÑ֪©¶´ÈëÇÖWindowsºÍLinux·þÎñÆ÷£¬È»ºó°²×°ÍÚ¿ó¶ñÒâÈí¼þ¡£Ä¿Ç°¹¥»÷»î¶¯Ö÷Òª·¢ÉúÔÚÖйú¸÷µØ£¬µ«Æ¾¾ÝÑо¿ÈËÔ±·ÖÎö£¬Ô¤¼ÆHolesWarm»áÀ©´óÆä¹¥»÷·¶Î§£¬²¢ÔÚδÀ´¼¸¸öÔÂÄÚÃé׼ȫÇò¡£¸Ã½©Ê¬ÍøÂçµÄC2·þÎñÆ÷Ϊm[.] windowsupdatesupsupport [.]org£¬ÆäÀûÓÃÁËDocker¡¢Jenkins¡¢Apache Tomcat¡¢Oracle WebLogicºÍSpring BootµÈÓ¦ÓÃÖеÄ©¶´¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/new-holeswarm-botnet-targets-windows-and-linux-servers/


5¡¢Cisco·¢ÏÖÕë¶ÔÄ«Î÷¸ç½ðÈÚ»ú¹¹µÄÐÂľÂíNeurevt


Cisco Talos.png


Cisco TalosÓÚ2021Äê6Ô¼ì²âµ½ÐÂNeurevtľÂí¡£¸Ã¶ñÒâÈí¼þ½«ºóÃźÍÐÅÏ¢ÇÔÈ¡·¨Ê½½áºÏÔÚÒ»Æð£¬Ö÷ÒªÕë¶ÔÄ«Î÷¸ç½ðÈÚ»ú¹¹µÄÓû§¡£¹¥»÷ÕßÒ»µ©ÀÖ³ÉѬȾĿ±êÉ豸£¬¾Í¿ÉÒÔ·ÃÎÊÄ¿±êϵͳ²¢ÐÞ¸ÄËûÃǵÄÉèÖÃÒÔÒþ²Ø×Ô¼º¡£¸ÃľÂí¿ÉÒÔͨ¹ý·ÃÎÊÊܺ¦ÕßµÄϵͳ·þÎñÁîÅÆÀ´ÌáȨ£¬´Ó¶ø·ÃÎʲÙ×÷ϵͳ¡¢Óû§ÕÊ»§ÐÅÏ¢¡¢ÒøÐÐÍøվƾ¾Ý¡¢½ØÈ¡ÆÁÄ»½Øͼ²¢·¢Ë͵½C2·þÎñÆ÷ÒÔÇÔÈ¡Ä¿±êµÄÐÅÏ¢¡£ 


Ô­ÎÄÁ´½Ó£º

https://blog.talosintelligence.com/2021/08/neurevt-trojan-takes-aim-at-mexican.html