Dell SupportAssistÐÂÎó²îÓ°ÏìÁè¼Ý3000Íǫ̀ÅÌËã»ú£»£»£»£»£»£»Microsoft StoreÈ«ÇòWin10ϵͳÉÏЧÀÍÖÐÖ¹
Ðû²¼Ê±¼ä 2021-06-251.Dell SupportAssistÐÂÎó²îÓ°ÏìÁè¼Ý3000Íǫ̀ÅÌËã»ú
EclypsiumÇå¾²Ñо¿Ö°Ô±ÔÚDell SupportAssistµÄBIOSConnect¹¦Ð§Öз¢Ã÷ÁË4¸öÎó²î£¬£¬Ó°ÏìÁè¼Ý3000Íǫ̀ÅÌËã»ú¡£¡£¡£¡£¡£¡£´ó´ó¶¼WindowsϵͳµÄ´÷¶û×°±¸ÉϾùԤװÁËSupportAssistÈí¼þ£¬£¬BIOSConnectÔòÌṩԶ³Ì¹Ì¼þ¸üкͲÙ×÷ϵͳ»Ö¸´¹¦Ð§¡£¡£¡£¡£¡£¡£ÕâЩÎó²î»®·ÖΪ²»Çå¾²µÄTLSÅþÁ¬ÎÊÌ⣨CVE-2021-21571£©ºÍ3¸öÒç³öÎó²î£¨CVE-2021-21572¡¢CVE-2021-21573ºÍCVE-2021-21574£©£¬£¬ÔÊÐí¹¥»÷ÕßÔÚÄ¿µÄ×°±¸µÄBIOSÖÐÖ´ÐÐí§Òâ´úÂ룬£¬CVSSÆÀ·ÖΪ8.3£¬£¬Ó°ÏìÁË128¿î´÷¶ûÌõ¼Ç±¾µçÄÔ¡¢Æ½°åµçÄÔºĮ́ʽ»ú¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.hackread.com/dell-devices-biosconnect-code-execution-bugs/
2.°ÍÎ÷×î´óÒ½Áƹ«Ë¾Grupo FleuryѬȾÀÕË÷Èí¼þREvil
°ÍÎ÷Grupo Fleury¹«Ë¾Ñ¬È¾ÀÕË÷Èí¼þREvil£¬£¬ÏµÍ³ÔÝʱÎÞ·¨»á¼û¡£¡£¡£¡£¡£¡£Grupo FleuryÊǰÍÎ÷×î´óµÄÒ½ÁÆÕï¶Ï¹«Ë¾£¬£¬ÓµÓÐ200¶à¸öЧÀÍÖÐÐĺÍ10000¶àÃûÔ±¹¤¡£¡£¡£¡£¡£¡£6ÔÂ22ÈÕ£¬£¬¸Ã¹«Ë¾¹ÙÍøÏÔʾϵͳ¹Ø±Õ£¬£¬µ¼ÖÂÓªÒµÔËÓªÖÐÖ¹£¬£¬»¼ÕßÎÞ·¨ÔÚÏßԤԼʵÑéÊÒ¼ì²â»òÆäËûÁÙ´²¼ì²é¡£¡£¡£¡£¡£¡£Grupo FleuryÉÐδÕýʽȷÈÏÆäÔâµ½ÁËÀÕË÷Èí¼þ¹¥»÷£¬£¬µ«ÍâµØÃ½ÌåÒÑÈ·ÈÏ´ËΪREvilÀÕË÷Èí¼þ¹¥»÷£¬£¬²¢ÇÒÊê½ðÒªÇóΪ500ÍòÃÀÔª¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/healthcare-giant-grupo-fleury-hit-by-revil-ransomware-attack/
3.BlackBerry·¢Ã÷жñÒâÈí¼þChaChiÃé׼ȫÇò½ÌÓý×éÖ¯
BlackBerry·¢Ã÷Ò»ÖÖеÄжñÒâÈí¼þChaChiÃé׼ȫÇò½ÌÓý×éÖ¯¡£¡£¡£¡£¡£¡£ChaChiÓÉGoLang±àд£¬£¬ÓÚ2020ÄêÉϰëÄêÊ״α»·¢Ã÷¡£¡£¡£¡£¡£¡£ChaChiµÄÃû×ÖÀ´×ÔÓÚÁ½¸öÒªº¦×é¼þ£¬£¬Cha shellºÍChi sel£¬£¬Ç°ÕßÊÇ·´Ïòshell£¬£¬´ËºóÕßÓÃÓÚ¶Ë¿Úת·¢¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ×îÔç±»ÓÃÓÚÕë¶Ô·¨¹úµØ·½Õþ¸®×éÖ¯µÄ¹¥»÷£¬£¬µ«×î½üÖ÷ÒªÕë¶Ô½ÌÓý×éÖ¯¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÒÔΪ£¬£¬¸ÃľÂíÓÉPYSA/MespinozaÍÅ»ïÓÚ2020ÄêÍ·¿ª·¢µÄ£¬£¬ÓÃÓÚ»á¼ûºÍ¿ØÖÆÊÜѬȾµÄϵͳ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/chachi-golang-a-new-go-trojan-focuses-on-attacking-us-schools/
4.еÄÀÕË÷ÍÅ»ïLVËÆºõ¸ü¸ÄÁËREvil¶þ½øÖÆpayload
Secureworks·¢Ã÷еÄÀÕË÷ÍÅ»ïLVËÆºõ¸ü¸ÄÁËREvil¶þ½øÖÆpayload¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷LVÀÕË÷Èí¼þºÍREvilÔ´´úÂëµÄ´úÂë½á¹¹ºÍ¹¦Ð§ÍêÈ«Ïàͬ£¬£¬ÍƲâÆäʹÓÃÁËÊ®Áù½øÖÆ±à¼Æ÷ÐÞ¸ÄÁËREvilµÄpayload£¬£¬²¢ÈƹýÁËREvilµÄ·À¸Ä¶¯¿ØÖÆ¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬¸ÃÍŻﻹÊÔͼģÄâREvilÔÚ°µÍøÉϽ¨ÉèÁËÒ»¸öÊý¾ÝÐ¹Â¶ÍøÕ¾£¬£¬¿ÉÊǸÃ×éÖ¯´Óδй¶¹ýËûÃÇÔÚÍøÕ¾ÉÏÁгöµÄÊܺ¦ÕßµÄÊý¾Ý£¬£¬ÕâÅú×¢Æä¿ÉÄÜûÓд洢ÇÔÈ¡µÄÊý¾ÝµÄÄÜÁ¦¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://therecord.media/lv-ransomware-gang-hijacks-revils-binary/
5.Ñо¿Ö°Ô±·¢Ã÷Õë¶ÔÄÏÑǺÍÖÐÑǵÄÕþ¸®ºÍÄÜÔ´×éÖ¯µÄ¹¥»÷
LumenµÄÑо¿Ö°Ô±·¢Ã÷Õë¶ÔÄÏÑǺÍÖÐÑǵØÇøµÄÕþ¸®ºÍÄÜÔ´×éÖ¯µÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£´Ë´Î¹¥»÷ÖÁÉÙÔÚ2021Äê1ÔÂ×îÏÈ£¬£¬Ö÷ÒªÕë¶ÔÕþ¸®¡¢µçÁ¦µ÷ÀíºÍµç³§µÈ×éÖ¯£¬£¬Êܺ¦ÕßÖ÷ÒªÂþÑÜÔÚÓ¡¶È£¬£¬Æä´ÎΪ°¢¸»º¹¡£¡£¡£¡£¡£¡£Ôڴ˴ι¥»÷ÖУ¬£¬ºÚ¿ÍʹÓÃÁËеÄÔ¶³Ì»á¼ûľÂíReverseRat£¬£¬²¢ÇÒʹÓÃÁËÁ½¸öѬȾǰÑÔ£ºÒ»¸öפÁôÔÚÄÚ´æÖУ¬£¬ÁíÒ»¸öÊÇside-loaded£¬£¬Ê¹¹¥»÷Õß¿ÉÒÔÔÚÄ¿µÄÖмá³Ö³¤ÆÚÐÔ¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://thehackernews.com/2021/06/pakistan-linked-hackers-targeted-indian.html
6.Microsoft StoreÔÚÈ«ÇòµÄWin10ϵͳÉÏЧÀÍÖÐÖ¹
6ÔÂ23ÈÕ£¬£¬Microsoft StoreÔÚÈ«Çò¹æÄ£ÄڵĵÄWin10ϵͳÉÏЧÀÍÖÐÖ¹¡£¡£¡£¡£¡£¡£Óû§´ÓMicrosoft StoreÏÂÔØÓ¦ÓóÌÐòʱ£¬£¬Ò»Ö±»á´¦ÓÚ¼ÓÔØÒ³Ãæ¡£¡£¡£¡£¡£¡£×îÖÕ£¬£¬Microsoft Store½«±»ÍêÈ«¹ÒÆð£¬£¬²¢ÇÒÖ»ÄÜͨ¹ýʹÃüÖÎÀíÆ÷»òÔÚ´°¿Ú´¦Óڻ״̬ʱʹÓÃALT+F4À´¹Ø±Õ¡£¡£¡£¡£¡£¡£Íß½âʱ£¬£¬ÊÂÎñÉó²éÆ÷»á¼Í¼һÌõ¹ýʧÐÂÎÅ£¬£¬Ö¸³öWindowsÓ¦ÓÃÊÐËÁÎÞ·¨Óë²Ù×÷ϵͳ½»»¥¡£¡£¡£¡£¡£¡£×èÖ¹ÃÀ¹ú¶«²¿Ê±¼ä6ÔÂ23ÈÕÏÂÖç6µã45·Ö£¬£¬¸ÃÎÊÌâÒѱ»½â¾ö¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/microsoft/microsoft-store-is-crashing-worldwide-on-windows-10-pcs/