ÃÀ¹ú200¶à¸öµØ·½¾¯¾Ö24ÄêÊý¾Ýй¶£¬£¬£¬£¬£¬£¬£¬£¬±»³ÆÎªBlueLeaks£»£» £»£»¶ñÒâÈí¼þShlayer Mac¿ÉÈÆ¹ýmacOSÄÚÖÃÇå¾²·À»¤

Ðû²¼Ê±¼ä 2020-06-23

1.ÃÀ¹ú200¶à¸öµØ·½¾¯¾Ö24ÄêÊý¾Ýй¶£¬£¬£¬£¬£¬£¬£¬£¬±»³ÆÎªBlueLeaks


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


ËùνµÄBlueLeaksÊÇÒ»¸öÃûΪDistributed Denial of Secrets£¨DDoSecrets£©µÄºÚ¿Í×éÖ¯Ðû²¼µÄ269 GBµÄÊý¾Ý£¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨ÁË200¶à¸ö¾¯¾Ö24ÄêµÄÊý¾Ý¡£¡£¡£Ð¹Â¶Êý¾Ý°üÀ¨¸ß¶ÈÃô¸ÐµÄÐÅÏ¢£¬£¬£¬£¬£¬£¬£¬£¬ÀýÈçACH·ÓɺÅÂë¡¢¹ú¼ÊÒøÐÐÕʺţ¨IBAN£©ºÍÆäËû²ÆÎñÊý¾Ý£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°Ð¡ÎÒ˽¼ÒÉí·ÝÐÅÏ¢£¨PII£©¡¢ÏÓÒÉÈËͼÏñ£¨RFI£©¡¢ÆäËûÖ´·¨ºÍÕþ¸®»ú¹¹±¨¸æ¡£¡£¡£NFCAµÄÊÓ²ìЧ¹ûÅú×¢£¬£¬£¬£¬£¬£¬£¬£¬×ß©Îļþ¿É×·Ëݵ½24ÄêǰµÄ1996Äê8Ô£¬£¬£¬£¬£¬£¬£¬£¬¶ø´Ë´Îй¶ÊǵÄÔ­ÓÉÓڵ¿ËÈøË¹ÖÝÐÝ˹¶ÙµÄÈí¼þ¿ª·¢¹«Ë¾Netsential±¬·¢µÄÊý¾Ýй¶¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/blueleaks-data-dump-exposes-over-24-years-of-police-records/


2.¶ñÒâÈí¼þShlayer Mac»Ø¹é£¬£¬£¬£¬£¬£¬£¬£¬¿ÉÈÆ¹ýmacOSÄÚÖÃÇå¾²·À»¤


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Çå¾²¹«Ë¾IntegoµÄÑо¿Ö°Ô±·¢Ã÷Á˶ñÒâÈí¼þShlayer MacµÄбäÌ壬£¬£¬£¬£¬£¬£¬£¬Æä¿ÉÒÔͨ¹ýGoogleËÑË÷Ч¹ûÈö²¥¡£¡£¡£¸ÃбäÖÖαװ³ÉAdobe Flash Player×°ÖóÌÐò£¨.DMG´ÅÅÌÓ³Ïñ£©ÒÔÌÓ±Üɱ¶¾Èí¼þµÄ¼ì²â¡£¡£¡£IntegoÌåÏÖ£¬£¬£¬£¬£¬£¬£¬£¬¸Ã¶ñÒⲡ¶¾¿ÉÒÔÈÆ¹ýÆ»¹ûÄÚÖõÄmacOSÇå¾²·À»¤£¬£¬£¬£¬£¬£¬£¬£¬µ±ËûÃÇʹÓÃVirusTotalÉÏËùÓеÄɱ¶¾ÒýÇæ¶Ô¸Ã¶ñÒâÈí¼þµÄ×°ÖóÌÐòºÍÓÐÓøºÔؾÙÐмì²âʱ£¬£¬£¬£¬£¬£¬£¬£¬·¢Ã÷¼ì²âÂÊΪ0/60¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬£¬£¬Éв»Ã÷È·Óм¸¶à¸öÕ¾µãÒѱ»ÓÃÀ´Èö²¥¸Ã¶ñÒâÈí¼þ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/105028/malware/shlayer-mac-malware-search-engines.html?utm_source=rss&utm_medium=rss&utm_campaign=shlayer-mac-malware-search-engines


3.PCIÇå¾²±ê׼ίԱ»á¸üÐÂÖ§¸¶×°±¸±ê×¼ÒÔ±£»£» £»£»¤³Ö¿¨ÈËÊý¾Ý


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


PCIÇå¾²±ê׼ίԱ»áÒѸüÐÂÁËÖ§¸¶×°±¸±ê×¼£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ±£»£» £»£»¤³Ö¿¨ÈËÊý¾Ý¡£¡£¡£PTS POI 6.0°æ±¾ÐÄÔÚ±£»£» £»£»¤¿¨Æ¬£¨ÔÚ´ÅÌõ»òEMV¿¨µÄоƬÉÏ£©»òÔÚÒÆ¶¯×°±¸ÖÐʹÓõÄPIN£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°³Ö¿¨ÈËµÄÆäËûÊý¾Ý¡£¡£¡£Ð±ê×¼ÖУ¬£¬£¬£¬£¬£¬£¬£¬½«¹Ì¼þµÄÉóÅúʱ¼äÏÞÖÆÔÚ3ÄêÒÔÄÚ£¬£¬£¬£¬£¬£¬£¬£¬ÒÔÈ·±£¿£¿£¿£¿£¿ÉÒÔÓ¦¶ÔÒ»Ö±Éú³¤µÄÎó²î£»£» £»£»ÒªÇóEMV×°±¸Ö§³ÖÍÖÔ²ÇúÏß¼ÓÃÜ(ECC)£¬£¬£¬£¬£¬£¬£¬£¬ÒÔÌá¸ßEMVµÄ¼ÓÃܼ¶±ð£»£» £»£»Ê¹ÓÃ×ñÕÕCOTS (SPoC)±ê×¼µÄ»ùÓÚÈí¼þµÄPINÊäÈëµÄ½â¾ö¼Æ»®¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.helpnetsecurity.com/2020/06/18/pts-poi-standard/


4.BitDefenderÐÞ¸´ÁËÆäSafepayä¯ÀÀÆ÷×é¼þÖеÄÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


BitDefenderÐÞ¸´ÁËÆäSafepayä¯ÀÀÆ÷×é¼þÖеÄÔ¶³ÌÏÂÁîÖ´ÐÐÎó²î£¨CVE-2020-8102£©£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÎó²îÓ°ÏìÁËBitdefender Total Security 2000֮ǰµÄ°æ±¾¡£¡£¡£¸ÃÎó²îÊÇÓÉÓÚSafepayä¯ÀÀÆ÷×é¼þ±£´æÊäÈëÑéÖ¤Îó²î£¬£¬£¬£¬£¬£¬£¬£¬µ¼ÖºڿͿÉÒÔʹÓÃÌØÖÆµÄÍøÒ³ÔÚSafepayÖÐÔ¶³ÌÖ´ÐÐÏÂÁî¡£¡£¡£Bitdefender¿ÉÒÔ¼ì²éÇå¾²µÄHTTPSÅþÁ¬²¢ÏÔʾ¹ýÊ§Ò³Ãæ£¬£¬£¬£¬£¬£¬£¬£¬¿ÉÊDz¿·ÖÇå¾²ÁîÅÆ»á´Ó¸Ã¹ýÊ§Ò³ÃæÐ¹Â¶£¬£¬£¬£¬£¬£¬£¬£¬µ¼Ö¿ÉÒÔ±»ºÚ¿ÍÓÃÀ´¾ÙÐÐÏÂÁîÖ´ÐУ¬£¬£¬£¬£¬£¬£¬£¬ÉõÖÁÊÇÆô¶¯í§ÒâÓ¦ÓóÌÐò¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/bitdefender-fixes-bug-allowing-attackers-to-run-commands-remotely/


5.Windows DefenderȨÏÞÌáÉýÎó²î£¨CVE-2020-1170£©ÆÊÎö


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Microsoft Windows DefenderÖб£´æÈ¨ÏÞÌáÉýÎó²î£¨CVE-2020-1170£©£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿Éͨ¹ýÔËÐÐÌØÖÆµÄÓ¦ÓóÌÐòʹÓøÃÎó²îɾ³ýϵͳÉÏí§ÒâÎļþ£¬£¬£¬£¬£¬£¬£¬£¬ÒÔϲúÆ·¼°°æ±¾Êܵ½Ó°Ï죺Microsoft Forefront Endpoint Protection 2010¡¢Microsoft Security Essentials¡¢Microsoft System Center 2012 Endpoint Protection¡¢Microsoft System Center 2012 R2 Endpoint Protection¡¢Microsoft System Center Endpoint Protection¡£¡£¡£¸ÃÎó²îÓëWindows DefenderÈÕÖ¾ÎļþµÄ´¦Öóͷ£·½·¨Óйأ¬£¬£¬£¬£¬£¬£¬£¬°üÀ¨µÍÌØÈ¨Óû§Ò²¿ÉÒÔͨ¹ýÏÂÁîÐÐÀú³ÌÀ´´¥·¢ÈÕÖ¾ÎļþдÈë²Ù×÷£¬£¬£¬£¬£¬£¬£¬£¬ÈκÎÓû§¶¼¿ÉÒÔÔÚC:\Windows\Temp\Öн¨ÉèÎļþºÍĿ¼£¬£¬£¬£¬£¬£¬£¬£¬ÈÕÖ¾ÂÖ»»»úÖÆ°ü¹ÜÈÕÖ¾ÉÙÓÚ16MB¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://itm4n.github.io/cve-2020-1170-windows-defender-eop/


6.Windows LNKÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¨CVE-2020-1299£©ÆÊÎö


¿­·¢¡¤k8(ÖйúÓÎ)¹Ù·½ÍøÕ¾


Windows LNK±£´æÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬£¬£¬£¬£¬£¬£¬ÔÚ´¦Öóͷ£.lnkÎļþʱ£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÎó²î¿ÉÄÜÔÊÐíÔ¶³Ì´úÂëÖ´ÐУ¬£¬£¬£¬£¬£¬£¬£¬ÀÖ³ÉʹÓøÃÎó²îµÄ¿ÉÒÔ»ñµÃÓëÍâµØÓû§ÏàͬµÄÓû§È¨ÏÞ¡£¡£¡£¹¥»÷Õß¿ÉÏòÓû§·Ö·¢°üÀ¨¶ñÒâµÄ.LNKÎļþºÍ¶ñÒâ¶þ½øÖÆÎļþµÄ¿ÉÒÆ¶¯Çý¶¯Æ÷»òÔ¶³Ì¹²ÏíÎļþ¡£¡£¡£µ±Óû§ÔÚWindows×ÊÔ´ÖÎÀíÆ÷»òÈÎºÎÆäËûÆÊÎö.LNKÎļþµÄÓ¦ÓóÌÐòÖз­¿ª´ËÇý¶¯Æ÷£¨»òÔ¶³Ì¹²ÏíÎļþ£©Ê±£¬£¬£¬£¬£¬£¬£¬£¬¶ñÒâ¶þ½øÖÆÎļþ½«ÔÚÄ¿µÄϵͳÉÏÖ´Ðй¥»÷ÕßËùÉèÖõĴúÂë¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://blog.vincss.net/2020/06/cve49-microsoft-windows-lnk-remote-code-execution-vuln-cve-2020-1299-eng.html