¶íÂÞ˹Áª°îÇå¾²¾Ö³Ð°üÉÌÔâºÚ¿ÍÈëÇÖ£¬£¬£¬£¬£¬ÉñÃØÏîÄ¿ÆØ¹â£»£»£»£»£»µÂ¹úCERT-BundÅû¶VLCýÌå²¥·ÅÆ÷ÖеÄRCEÎó²î
Ðû²¼Ê±¼ä 2019-07-22
ÔÎÄÁ´½Ó£ºhttps://www.bleepingcomputer.com/news/security/russian-fsb-intel-agency-contractor-hacked-secret-projects-exposed/
2¡¢EmsisoftÐû²¼ÀÕË÷Èí¼þZeroFucksµÄ½âÃܹ¤¾ß
EmsisoftÐû²¼ÀÕË÷Èí¼þZeroFucksµÄ½âÃÜÆ÷¡£¡£¡£¡£¡£¡£ZeroFucksʹÓÃAES-256Ëã·¨¼ÓÃÜÓû§µÄÎļþ£¬£¬£¬£¬£¬²¢Ê¹Óá°.zerofucks¡±À©Õ¹ÃûÌæ»»Ô±¾µÄÎļþÀ©Õ¹Ãû¡£¡£¡£¡£¡£¡£µ±¼ÓÃÜÍê³Éºó£¬£¬£¬£¬£¬¸ÃÀÕË÷Èí¼þÏòÓû§ÀÕË÷¼ÛÖµ400Å·ÔªµÄ±ÈÌØ±ÒÊê½ð£¬£¬£¬£¬£¬²¢Éù³ÆÈôÊÇÓû§Ã»ÓÐÔÚ48СʱÄÚ¸¶¿î£¬£¬£¬£¬£¬Êê½ð½«·±¶£»£»£»£»£»ÈôÊÇÓû§Ã»ÓÐÔÚ96СʱÄÚ¸¶¿î£¬£¬£¬£¬£¬Îļþ½«±»Ïú»Ù¡£¡£¡£¡£¡£¡£ÏÖÔÚÓû§¿ÉÒÔʹÓÃÑо¿Ö°Ô±Ðû²¼µÄ½âÃÜÆ÷À´Ã⺬»ìÃÜÎļþ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://securityaffairs.co/wordpress/88716/hacking/zerofucks-ransomware-decryptor.html
3¡¢ÃÀ¹úÌïÄÉÎ÷ÖÝ¿ÆÀû¶ûά¶ûÕòÔâÀÕË÷Èí¼þRyuk¹¥»÷
¾ÝÍâý±¨µÀ£¬£¬£¬£¬£¬ÃÀ¹úÌïÄÉÎ÷ÖÝ¿ÆÀû¶ûά¶ûÕòÔâµ½ÀÕË÷Èí¼þRyukµÄ¹¥»÷£¬£¬£¬£¬£¬²¿·ÖÅÌËã»úϵͳ̱»¾£¬£¬£¬£¬£¬Ò»Ð©¹«¹²Ð§ÀÍÊܵ½Ó°Ïì¡£¡£¡£¡£¡£¡£¸ÃÕò½²»°ÈËÌåÏÖ±¸·ÝЧÀÍÆ÷ËÆºõÊÇÇå¾²µÄ£¬£¬£¬£¬£¬µ«ITÖ°Ô±ÕýÔÚ½«ËüÃǼÓÈëÍøÂç֮ǰ¶ÔÆä¾ÙÐвâÊÔ¡£¡£¡£¡£¡£¡£ÊÓ²ìÖ°Ô±ÈÔÈ»²»ÖªµÀÀÕË÷²¡¶¾µÄȪԴ£¬£¬£¬£¬£¬µ«ÒÔΪËü¿ÉÄÜÀ´×ÔÓÚµç×ÓÓʼþÖеÄÁ´½Ó¡£¡£¡£¡£¡£¡£¸ÃÕòûÓÐÏòºÚ¿ÍÖ§¸¶Êê½ð£¬£¬£¬£¬£¬²¢ÇÒ֪ͨÁËÁª°îÕþ¸®¡£¡£¡£¡£¡£¡£ÏÖÔÚЧÀÍÒÑÕý³£ÔË×÷¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://www.localmemphis.com/news/local-news/hackers-cause-headaches-on-servers-in-town-of-collierville-with-ransomware-attack/
4¡¢µÂ¹úCERT-BundÅû¶VLCýÌå²¥·ÅÆ÷ÖеÄRCEÎó²î
µÂ¹úÍøÂçÇå¾²î¿Ïµ»ú¹¹CERT-Bund·¢Ã÷VLCýÌå²¥·ÅÆ÷±£´æÒ»¸öRCEÎó²î£¬£¬£¬£¬£¬¸ÃÎó²î£¨CVE-2019-13615£©Ó°ÏìÁËVLCµÄ×îÐÂÎȹ̰汾3.0.7.1¡£¡£¡£¡£¡£¡£¸ÃÎó²îÔ´ÓÚÒ»¸ö»º³åÇøÒç³öÎÊÌ⣬£¬£¬£¬£¬Î´¾ÊÚȨµÄ¹¥»÷Õß¿ÉʹÓøÃÎó²î´¥·¢ÐÅϢй¶¡¢ÎļþÐ޸ĻòЧÀÍÖÐÖ¹¡£¡£¡£¡£¡£¡£¸ÃÎó²î±£´æÓÚ¶à¸öƽ̨µÄVLC°æ±¾ÖУ¬£¬£¬£¬£¬°üÀ¨Windows¡¢LinuxºÍUNIX£¬£¬£¬£¬£¬µ«macOSδÊÜÓ°Ïì¡£¡£¡£¡£¡£¡£¸ÃÎó²îµÄÐÞ¸´²¹¶¡»¹ÔÚ¿ª·¢Àú³ÌÖС£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttps://news.softpedia.com/news/critical-flaw-in-vlc-media-player-discovered-by-german-cybersecurity-agency-526768.shtml
5¡¢Ë¼¿ÆÐÞ¸´Vision DynamicÖеÄÉí·ÝÑéÖ¤ÈÆ¹ýÎó²î
˼¿ÆÐû²¼ÁËVision Dynamic Signage DirectorµÄÇå¾²²¹¶¡£¡£¡£¡£¡£¡£¬£¬£¬£¬£¬ÐÞ¸´Ò»¸ö¿ÉÔÊÐí¹¥»÷ÕßÔÚÍâµØÏµÍ³ÉÏÖ´ÐÐí§Òâ²Ù×÷µÄÇå¾²Îó²î¡£¡£¡£¡£¡£¡£¸ÃÎó²î£¨CVE-2019-1917£©±£´æÓÚVision Dynamic Signage DirectorµÄREST API½çÃæÖУ¬£¬£¬£¬£¬¿É±»Î´¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷ÕßʹÓ㬣¬£¬£¬£¬ÒÔÈÆ¹ýÄ¿µÄϵͳÉϵÄÉí·ÝÑéÖ¤¡£¡£¡£¡£¡£¡£¸ÃÎó²îÊÇÓÉÓÚ¶ÔHTTPÇëÇóµÄÑéÖ¤²»³ä·Öµ¼Öµġ£¡£¡£¡£¡£¡£Ë¼¿ÆÌåÏÖÔÚĬÈÏÇéÐÎÏÂÎÞ·¨½ûÓÃREST API£¬£¬£¬£¬£¬Óû§¿ÉÒÔͨ¹ý×°ÖÃÈí¼þ¸üÐÂÐÞ¸´¸ÃÎó²î¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£ºhttp://www.infosecisland.com/blogview/25211-Cisco-Patches-Critical-Flaw-in-Vision-Dynamic-Signage-Director.html
ÔÎÄÁ´½Ó£ºhttps://threatpost.com/iran-apt34-linkedin-malware/146575/


¾©¹«Íø°²±¸11010802024551ºÅ