ŲÍþÒé»áÓʼþϵͳÔâ¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬¹¤µ³ºÍÖÐÐĵ³¾ùÊÜÓ°Ï죻£»£»CiscoÖÒÑÔÆäIOS XR±£´æ0day²¢Òѱ»ÔÚҰʹÓÃ
Ðû²¼Ê±¼ä 2020-09-021.ŲÍþÒé»áÓʼþϵͳÔâ¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬¹¤µ³ºÍÖÐÐĵ³¾ùÊÜÓ°Ïì

ŲÍþÒé»á£¨Storting£©Ðû²¼ÉùÃ÷£¬£¬£¬£¬£¬£¬£¬£¬ÌåÏÖÓкڿ͹¥»÷Æä³ÉÔ±µÄµç×ÓÓʼþÕÊ»§²¢ÇÔÈ¡Êý¾Ý¡£¡£¡£¡£¡£¸ÃÊÂÎñÕýÔÚÊÓ²ìÖУ¬£¬£¬£¬£¬£¬£¬£¬ÏÖÔÚÉв»ÇåÎú±»µÁÊý¾ÝµÄÊýÄ¿¡¢ÖÖÀàÒÔ¼°¹¥»÷µÄÆÆËðˮƽ¡£¡£¡£¡£¡£Å²Íþ¹¤µ³µÄJarle RoheimH?konsen֤ʵ£¬£¬£¬£¬£¬£¬£¬£¬¹¤µ³³ÉÔ±ºÍÕþ¿ÍÔÚÕâ´Î¹¥»÷ÖоùÊܵ½Ó°Ï죬£¬£¬£¬£¬£¬£¬£¬Í¬Ê±ÖÐÐĵ³Ò²È·ÈÏÆä´ú±íºÍÔ±¹¤Êܵ½ÁËÓ°Ïì¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/hackers-breached-norwegian-parliament-emails-to-steal-data/
2.ÃÀ¹úн×ÊлáÔâµ½¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬Æä»áÔ±ÐÅÓÿ¨ÐÅϢй¶

ÃÀ¹úн×ÊлᣨAPA£©ÌåÏÖÔâµ½ÁËMagecart¹¥»÷£¬£¬£¬£¬£¬£¬£¬£¬Æä»áÔ±ÐÅÓÿ¨ÐÅϢй¶¡£¡£¡£¡£¡£APAÓÚ2020Äê7ÔÂ23ÈÕ×óÓÒ·¢Ã÷ºÚ¿Í¹¥»÷ÁËÆäÍøÕ¾ºÍÔÚÏßÊÐËÁ²¢°²ÅÅÁËÊèÉ¢Æ÷£¬£¬£¬£¬£¬£¬£¬£¬Ö¼ÔÚÍøÂçÃô¸ÐÐÅÏ¢²¢½«Æä·¢Ë͵½¿ØÖÆÐ§ÀÍÆ÷¡£¡£¡£¡£¡£Ôڴ˴ι¥»÷ÖУ¬£¬£¬£¬£¬£¬£¬£¬ºÚ¿ÍʹÓøÃ×éÖ¯µÄÄÚÈÝÖÎÀíϵͳ(CMS)ÖеÄÒ»¸öÇå¾²Îó²î£¬£¬£¬£¬£¬£¬£¬£¬ÈëÇÖÁËAPAµÄÍøÕ¾ºÍÔÚÏßÊÐËÁ£¬£¬£¬£¬£¬£¬£¬£¬»ñµÃÁ˵ǼÐÅÏ¢(¼´Óû§ÃûºÍÃÜÂë)ºÍСÎÒ˽¼ÒÖ§¸¶¿¨ÐÅÏ¢¡£¡£¡£¡£¡£APAµÄÇå¾²ÍŶÓÌåÏÖ£¬£¬£¬£¬£¬£¬£¬£¬¸Ã´Î¹¥»÷¿ÉÒÔ×·Ëݵ½2020Äê5ÔÂ13ÈÕÃÀ¹ú¶«²¿Ê±¼äÏÂÖç7:30×óÓÒ¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/american-payroll-association-discloses-credit-card-theft-incident/
3.CiscoÖÒÑÔÆäIOS XR±£´æ0day²¢Òѱ»ÔÚҰʹÓÃ

˼¿ÆÉÏÖÜÁùÖÒÑÔ˵£¬£¬£¬£¬£¬£¬£¬£¬ÆäIOS XR±£´æÒ»¸öеÄ0day£¬£¬£¬£¬£¬£¬£¬£¬ÏÖÔÚÒѱ»ºÚ¿ÍÔÚҰʹÓᣡ£¡£¡£¡£¸ÃÎó²î±»¸ú×ÙCVE-2020-3566£¬£¬£¬£¬£¬£¬£¬£¬Ó°ÏìÁ˲Ù×÷ϵͳIOS XR°æ±¾¸½´øµÄ¾àÀëʸÁ¿×鲥·ÓÉÐÒé(DVMRP)¹¦Ð§£¬£¬£¬£¬£¬£¬£¬£¬¸Ã°æ±¾µÄ²Ù×÷ϵͳͨ³£×°ÖÃÔÚµçÐż¶ºÍÊý¾ÝÖÐÐÄ·ÓÉÆ÷ÉÏ¡£¡£¡£¡£¡£Ë¼¿ÆÌåÏÖ£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÎó²îÊÇÓÉÓÚInternet×éÖÎÀíÐÒ飨IGMP£©Êý¾Ý°üµÄÐÐÁÐÖÎÀíȱ·¦ËùÖ£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÒÔͨ¹ý·¢ËÍÌØÖÆµÄIGMPÁ÷Á¿À´Ê¹ÓôËÎó²î¡£¡£¡£¡£¡£ÀÖ³ÉʹÓøÃÎó²î¿Éµ¼ÖÂÄÚ´æºÄ¾¡£¬£¬£¬£¬£¬£¬£¬£¬´Ó¶øµ¼ÖÂÆäËûÀú³Ì£¨ÈçÄÚ²¿ºÍÍⲿ·ÓÉÐÒ飩²»Îȹ̡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/cisco-warns-of-actively-exploited-ios-xr-zero-day/
4.ºÚ¿ÍʹÓÃQNAP NASÖÐÈýÄêǰµÄRCEÎó²î½¨ÉèºóÃÅ

ºÚ¿ÍÕýÔÚɨÃèÔËÐÐQNAP¹Ì¼þ°æ±¾µÄÍøÂ總¼Ó´æ´¢£¨NAS£©×°±¸£¬£¬£¬£¬£¬£¬£¬£¬ÊÔͼʹÓÃQNAPÔÚÏÈǰ°æ±¾ÖÐÐÞ¸´µÄÔ¶³Ì´úÂëÖ´ÐУ¨RCE£©Îó²î½¨ÉèºóÃÅ¡£¡£¡£¡£¡£¸ÃÎó²îÔÊÐíδ¾Éí·ÝÑéÖ¤µÄÔ¶³Ì¹¥»÷ÕßʹÓÃauthLogout.cgi¿ÉÖ´ÐÐÎļþÀ´¾ÙÐÐÉí·ÝÑéÖ¤£¬£¬£¬£¬£¬£¬£¬£¬ÓÉÓÚ¸ÃÎó²î²»¿É¹ýÂËÌØÊâ×Ö·û²¢Å²ÓÃϵͳº¯ÊýÀ´ÔËÐÐÏÂÁî×Ö·û´®£¬£¬£¬£¬£¬£¬£¬£¬Òò´ËËü¿ÉÒÔÔÊÐíÔ¶³Ì×¢Èë´úÂëÖ´ÐС£¡£¡£¡£¡£ÏÖÔÚÉÐδȷ¶¨¹¥»÷ÕßµÄ×îÖÕÄ¿µÄ£¬£¬£¬£¬£¬£¬£¬£¬µ«ËûÃÇ»áÔÚÊÜѬȾµÄ×°±¸Éϰ²ÅÅÁ½¸öÓÐÓøºÔØ£¬£¬£¬£¬£¬£¬£¬£¬ÆäÖÐÖ®Ò»ÊÇTCP/1234¶Ë¿ÚÉϵķ´Ïòshell¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/hackers-are-backdooring-qnap-nas-devices-with-3-year-old-rce-bug/
5.ÒÁÀʺڿÍÔÚ°µÍøÉϳöÊÛ¹¥»÷Ä¿µÄµÄ»á¼ûȨÏÞ

ÍøÂçÇå¾²¹«Ë¾Crowdstrike·¢Ã÷£¬£¬£¬£¬£¬£¬£¬£¬ÒÁÀʺڿÍ×éÖ¯Pioneer Kitten£¨Ò²³ÆÎªFox Kitten»òParisite£©ÔÚ°µÍø³öÊÛ¹¥»÷Ä¿µÄµÄ»á¼ûȨÏÞ¡£¡£¡£¡£¡£¸Ã×éÖ¯ÒÑÔÚ2019ÄêºÍ2020Äêͨ¹ýVPN ºÍÍøÂç×°±¸ÖеÄÎó²îÈëÇÖÆóÒµÍøÂçÈ磬£¬£¬£¬£¬£¬£¬£¬Pulse SecureÆóÒµVPN£¨CVE-2019-11510£©¡¢Fortinet VPNЧÀÍÆ÷£¨CVE-2018-13379£©¡¢Global Protect VPNЧÀÍÆ÷£¨CVE-2019-1579£©¡¢CitrixÍøÂçÍø¹ØºÍADCЧÀÍÆ÷£¨CVE-2019-19781£©¡¢F5 Networks BIG-IP¸ºÔØÆ½ºâÆ÷£¨CVE-2020-5902£©¡£¡£¡£¡£¡£¾Ý±¨¸æ£¬£¬£¬£¬£¬£¬£¬£¬¸Ã×éÖ¯Ò»Ö±ÔÚʹÓÃÉÏÊöÎó²îÇÖÈëÍøÂç×°±¸¡¢Ö²ÈëºóÃÅ£¬£¬£¬£¬£¬£¬£¬£¬È»ºóΪÆäËûÒÁÀʺڿÍ×éÖ¯£¬£¬£¬£¬£¬£¬£¬£¬ÈçAPT33 (Shamoon)¡¢Oilrig (APT34)»òChaferÌṩ»á¼ûȨÏÞ¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/iranian-hackers-are-selling-access-to-compromised-companies-on-an-underground-forum/
6.APWGÐû²¼2020ÄêµÚ¶þ¼¾¶È´¹ÂڻÇ÷ÊÆ±¨¸æ

·´ÍøÂç´¹ÂÚÊÂÇé×飨APWG£©ÓÚ±¾ÖÜÒ»Ðû²¼2020ÄêµÚ¶þ¼¾¶È´¹ÂڻÇ÷ÊÆ±¨¸æ¡£¡£¡£¡£¡£¾Ý±¨¸æ£¬£¬£¬£¬£¬£¬£¬£¬2020ÄêQ2ºÚ¿Í×éÖ¯ÔÚÿ´ÎBEC¹¥»÷ÖÐÆ½¾ù׬Ǯ8ÍòÃÀÔª£¬£¬£¬£¬£¬£¬£¬£¬Ô¶¸ßÓÚQ1µÄ5.4ÍòÃÀÔª¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬£¬APWG»¹·¢Ã÷ÁËÒ»¸öеĶíÂÞ˹BEC×éÖ¯Cosmic Lynx£¬£¬£¬£¬£¬£¬£¬£¬¸Ã×éÖ¯×Ô2019Äê7ÔÂÒÔÀ´Ò»Ö±»îÔ¾£¬£¬£¬£¬£¬£¬£¬£¬ÆäÕë¶ÔÁù´óÖÞµÄ46¸öʵÌ忪չÁË200¶à´Î¹¥»÷»î¶¯£¬£¬£¬£¬£¬£¬£¬£¬Ã¿´Î¹¥»÷µÄƽ¾ù׬ǮΪ127ÍòÃÀÔª¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/average-bec-attempts-are-now-80k-but-one-group-is-aiming-for-1-27m-per-attack/


¾©¹«Íø°²±¸11010802024551ºÅ