WebrootÐû²¼2021Äê×î±°ÁӵĶñÒâÈí¼þ±¨¸æ£ºÑо¿ÍŶӷ¢Ã÷Linux¶ñÒâÍÚ¿óÈí¼þ

Ðû²¼Ê±¼ä 2021-10-13

MicrosoftÐû²¼10Ô¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´4¸ö0dayÔÚÄÚµÄ74¸öÎó²î


MicrosoftÐû²¼10Ô¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´4¸ö0dayÔÚÄÚµÄ74¸öÎó²î.png


MicrosoftÔÚ10ÔÂ12ÈÕÐû²¼Á˱¾ÔµÄÖܶþ²¹¶¡£¡£ ¡£¡£¡£¬£¬£¬£¬£¬£¬×ܼÆÐÞ¸´ÁË74¸öÎó²î£¨°üÀ¨Microsoft EdgeÔÚÄÚÊÇ81¸ö£©¡£¡£ ¡£¡£¡£´Ë´Î¸üÐÂ×ܹ²ÐÞ¸´ÁË4¸ö0day£¬£¬£¬£¬£¬£¬°üÀ¨Win32kÖеÄÌáȨÎó²îCVE-2021-40449£¬£¬£¬£¬£¬£¬Windows DNSЧÀÍÆ÷ÖеÄÔ¶³Ì´úÂëÖ´ÐÐÎó²îCVE-2021-40469£¬£¬£¬£¬£¬£¬WindowsÄÚºËÌáȨÎó²îCVE-2021-41335£¬£¬£¬£¬£¬£¬ÒÔ¼°Windows AppContainer ·À»ðǽ¹æÔòÇå¾²¹¦Ð§ÈƹýÎó²îCVE-2021-41338¡£¡£ ¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬KasperskyÑо¿Ö°Ô±ÒѾ­ÔÚÒ°·¢Ã÷ʹÓÃCVE-2021-40449µÄ¹¥»÷»î¶¯¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-october-2021-patch-tuesday-fixes-4-zero-days-71-flaws/


ÒÁÀÊDEV-0343ÍŻ﹥»÷ÃÀ¹úºÍÒÔÉ«ÁеÄOffice 365Óû§


ÒÁÀÊDEV-0343ÍŻ﹥»÷ÃÀ¹úºÍÒÔÉ«ÁеÄOffice 365Óû§.png


MicrosoftÍþвÇ鱨ÖÐÐÄ(MSTIC)ÓÚ2021Äê7ÔÂÏÂÑ®Ê״η¢Ã÷ÁËкڿÍÍÅ»ïDEV-0343£¬£¬£¬£¬£¬£¬²¢ÔÚ10ÔÂ11ÈÕÅû¶ÁËÓйظÃÍÅ»ïµÄ¹¥»÷»î¶¯¡£¡£ ¡£¡£¡£MSTIC³Æ¸ÃÍÅ»ïÓëÒÁÀÊÓйأ¬£¬£¬£¬£¬£¬Ö÷ÒªÕë¶ÔÃÀ¹úºÍÒÔÉ«Áйú·ÀÊÖÒÕ¹«Ë¾¡¢²¨Ë¹ÍåÈë¾³¿Ú°¶ÒÔ¼°ÔÚÖж«¿ªÕ¹ÓªÒµµÄº£ÉÏÔËÊ乫˾¡£¡£ ¡£¡£¡£´Ë´Î»î¶¯ÒѾ­¹¥»÷ÁË250¶à¸öOffice 365Óû§£¬£¬£¬£¬£¬£¬µ«Ö»Óв»µ½20¸öÄ¿µÄ±»ÈëÇÖ¡£¡£ ¡£¡£¡£Ñо¿Ö°Ô±½¨ÒéÓû§Í¨¹ýÆôÓöàÒòËØÉí·ÝÑéÖ¤ºÍ×èÖ¹ÄäÃûЧÀ͵ÄÁ÷Á¿µÈ²½·¥À´µÖÓù´ËÀ๥»÷¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.microsoft.com/security/blog/2021/10/11/iran-linked-dev-0343-targeting-defense-gis-and-maritime-sectors/


ÎÚ¿ËÀ¼¾¯·½¾Ð²¶ÓµÓÐ10Íò¶ą̀װ±¸µÄ½©Ê¬ÍøÂçµÄÔËÓªÕß


ÎÚ¿ËÀ¼¾¯·½¾Ð²¶ÓµÓÐ10Íò¶ą̀װ±¸µÄ½©Ê¬ÍøÂçµÄÔËÓªÕß.png


ÎÚ¿ËÀ¼Çå¾²¾Ö£¨SSU£©ÓÚ±¾ÖÜÒ»£¬£¬£¬£¬£¬£¬ÔÚIvano-FrankivskÊов¶ÁËÒ»¸öǿʢµÄ½©Ê¬ÍøÂçµÄÔËÓªÕß¡£¡£ ¡£¡£¡£¸ÃÄÐ×Ó½¨Éè²¢ÖÎÀí×ÅÓÉÁè¼Ý10Íò¶ą̀װ±¸×é³É½©Ê¬ÍøÂ磬£¬£¬£¬£¬£¬ÓÃÓÚΪ¸¶ÓöȻ§Ö´ÐÐÂþÑÜʽ¾Ü¾øÐ§ÀÍ (DDoS) ºÍÀ¬»øÓʼþ¹¥»÷¡£¡£ ¡£¡£¡£SSUÌåÏÖ£¬£¬£¬£¬£¬£¬Ëû¶¼ÊÇͨ¹ýºÚ¿ÍÂÛ̳ºÍTelegramѰÕÒ¿Í»§£¬£¬£¬£¬£¬£¬²¢Ê¹ÓöíÂÞ˹µÄ¼´Ê±Ö§¸¶ÏµÍ³WebMoney¾ÙÐи¶¿î¡£¡£ ¡£¡£¡£µ«ËûÔÚ×¢²áWebmoneyÕË»§Ê±ÓÃÁËÕæÊµµØµã£¬£¬£¬£¬£¬£¬Ê¹¾¯·½¿ÉÒÔ×·×Ùµ½ËûµÄסËù¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/10/ukraine-arrests-operator-of-ddos-botnet.html


Microsoft³ÆÆäÀֳɵÖÓù¸ß´ï2.4 TbpsµÄDDoS¹¥»÷


Microsoft³ÆÆäÀֳɵÖÓù¸ß´ï2.4 TbpsµÄDDoS¹¥»÷.png


MicrosoftÑо¿Ö°Ô±Amir DahanÔÚ10ÔÂ11Èճƣ¬£¬£¬£¬£¬£¬ËûÃÇÔÚ8ÔµÄ×îºóÒ»ÖÜÀֳɵÖÓùÁËÊ·ÉÏ×î¸ßµÄDDoS¹¥»÷¡£¡£ ¡£¡£¡£Amir DahanÌåÏÖ£¬£¬£¬£¬£¬£¬ÕâÊÇÕë¶ÔÆäÅ·ÖÞAzure¿Í»§µÄ¹¥»÷£¬£¬£¬£¬£¬£¬ÓÉÖ÷ÒªÂþÑÜÔÚÑÇÌ«µØÇøºÍÃÀ¹úµÄÔ¼70000̨װ±¸ÌᳫµÄ¡£¡£ ¡£¡£¡£´Ë´ÎµÄ¹¥»÷ÏòÁ¿ÎªUDP·´É䣬£¬£¬£¬£¬£¬Ò»Á¬Ê±¼äÁè¼Ý10·ÖÖÓ£¬£¬£¬£¬£¬£¬±¬·¢Ê±¼äºÜÊǶ̣¬£¬£¬£¬£¬£¬Ã¿´Î±¬·¢¶¼»áÔÚ¼¸ÃëÖÓÄÚÉÏÉýµ½TBÁ¿¼¶£¬£¬£¬£¬£¬£¬×ܹ²·ºÆðÁËÁËÈý¸öÖ÷Òª·åÖµ£¬£¬£¬£¬£¬£¬»®·ÖΪ2.4 Tbps¡¢0.55 TbpsºÍ1.7 Tbps¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://azure.microsoft.com/en-us/blog/business-as-usual-for-azure-customers-despite-24-tbps-ddos-attack/


Ñо¿ÍŶӷ¢Ã÷Linux¶ñÒâÍÚ¿óÈí¼þµÄбäÌåÃé×¼»ªÎªÔÆ


Ñо¿ÍŶӷ¢Ã÷Linux¶ñÒâÍÚ¿óÈí¼þµÄбäÌåÃé×¼»ªÎªÔÆ.png


TrendMicroµÄÑо¿Ö°Ô±·¢Ã÷ÒÔǰÓÃÓÚÕë¶ÔDockerÈÝÆ÷µÄLinux¶ñÒâÍÚ¿óÈí¼þµÄбäÌ壬£¬£¬£¬£¬£¬×îÏÈÕë¶ÔÏñ»ªÎªÔÆÕâÑùµÄÐÂÔÆÐ§ÀÍÌṩÉÌ¡£¡£ ¡£¡£¡£ÏêϸµØËµ£¬£¬£¬£¬£¬£¬ÐÂÑù±¾ÒѾ­×¢Ê͵ôÁË·À»ðǽ¹æÔò´´Á¢¹¦Ð§£¬£¬£¬£¬£¬£¬²¢¼ÌÐøÊ¹ÓÃÍøÂçɨÃèÆ÷À´Ñ°ÕÒÆäËû¾ßÓÐapiÏà¹Ø¶Ë¿ÚµÄÖ÷»ú¡£¡£ ¡£¡£¡£»£»£»£»£»ªÎªÔÆÊǽÏеÄÔÆÌṩÉÌ£¬£¬£¬£¬£¬£¬Éù³ÆËüÒѾ­ÎªÁè¼Ý300Íò¿Í»§ÌṩЧÀÍ¡£¡£ ¡£¡£¡£Ñо¿Ö°Ô±Òѽ«´Ë´Î¹¥»÷֪ͨ¸Ã¹«Ë¾£¬£¬£¬£¬£¬£¬µ«ÉÐδÊÕµ½»Ø¸´¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/huawei-cloud-targeted-by-updated-cryptomining-malware/


WebrootÐû²¼¹ØÓÚ2021Äê×î±°ÁӵĶñÒâÈí¼þµÄ±¨¸æ


WebrootÐû²¼¹ØÓÚ2021Äê×î±°ÁӵĶñÒâÈí¼þµÄ±¨¸æ.png


WebrootÌåÏÖ£¬£¬£¬£¬£¬£¬2021ÄêÊÇÍøÂçÍþвռÓÐÐÂÎÅÍ·ÌõµÄÒ»Ä꣬£¬£¬£¬£¬£¬ÀÕË÷Èí¼þÀÕË÷ÒÑ´ÓÒ»ÖÖÇ÷ÊÆÑݱäΪһÖÖг£Ì¬¡£¡£ ¡£¡£¡£¸Ã¹«Ë¾ÔÚÆä±¨¸æÖÐÁгöµÄ2021Äê×î±°ÁӵĶñÒâÈí¼þ°üÀ¨£ºÖøÃûµÄ½©Ê¬ÍøÂçLemonDuck¡¢ÀÕË÷Èí¼þREvil¡¢ÒøÐÐľÂíTrickbot¡¢ÒøÐÐľÂíºÍÐÅÏ¢ÇÔÈ¡³ÌÐòDridex¡¢ÀÕË÷Èí¼þConti¡¢ÉøÍ¸²âÊÔ¹¤¾ßCobalt Strike£¬£¬£¬£¬£¬£¬ÒÔ¼°Hello KittyºÍDarkSide¡£¡£ ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://community.webroot.com/news-announcements-3/nastiest-malware-2021-348560