Crystal Valley Farm CoopÔâµ½ÀÕË÷Èí¼þ¹¥»÷£ºApple°ä²¼¶à¿î²úÆ··ì϶

°ä²¼¹¦·ò 2021-09-24

VMware½¨¸´vCenter ServerÖÐÑϳÁµÄÎļþÉÏ´«·ì϶


VMware½¨¸´vCenter ServerÖÐÑϳÁµÄÎļþÉÏ´«·ì϶.png


VMwareÓÚ±¾Öܶþ°ä²¼°²È«¸üР£¬½¨¸´vCenter ServerºÍCloud FoundationÖеÄ19¸ö·ì϶¡£ÆäÖÐ×îΪÑϳÁµÄÊÇvCenter ServerÖеÄËÁÒâÎļþÉÏ´«·ì϶(CVE-2021-22005) £¬¹¥»÷ÕßÄܹ»Í¨¹ýÍøÂç½Ó¼û¶Ë¿Ú443µÄÉÏ´«ÌØÔìÎļþÀ´Ö´ÐдúÂë¡£´Ë±í £¬»¹½¨¸´Á˱¾µØÌáȨ·ì϶£¨CVE-2021-21991£©¡¢·´Ïò´úÀíÈÆ¹ý·ì϶£¨CVE-2021-22006£©¡¢API¶Ëµã·ì϶£¨CVE-2021-22011£©ºÍAPIÐÅϢй¶·ì϶£¨CVE-2021-22012£©µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/09/vmware-warns-of-critical-file-upload.html


Apple°ä²¼°²È«¸üР£¬½¨¸´¶à¿î²úÆ·ÖеÄRCEµÈ·ì϶


Apple°ä²¼°²È«¸üÐÂ£¬½¨¸´¶à¿î²úÆ·ÖеÄRCEµÈ·ì϶.png


AppleÓÚ9ÔÂ20ÈÕ°ä²¼°²È«¸üР£¬½¨¸´ÁËSafari 15¡¢Xcode 13¡¢tvOS 15¡¢watchOS 8¡¢iOS 15¡¢iPadOS 15ºÍiTunes 12.12ÖеĶà¸ö·ì϶¡£ÆäÖÐÔ̺¬Safari 15ÖеÄÄÚ´æ°Ü»µµ¼ÖµÄËÁÒâ´úÂëÖ´Ðзì϶£¨CVE-2021-30846ºÍCVE-2021-30851µÈ£©¡¢tvOS 15ÖеÄDoS·ì϶£¨CVE-2013-0340£©ºÍɳºÐÈÆ¹ý·ì϶£¨CVE-2021-30854£© £¬ÒÔ¼°iOS 15ºÍiPadOS 15ÖеĴúÂëÖ´Ðзì϶£¨CVE-2021-30837ºÍCVE-2021-30811£©µÈ¡£


Ô­ÎÄÁ´½Ó£º

https://us-cert.cisa.gov/ncas/current-activity/2021/09/21/apple-releases-security-updates-multiple-products


¶íÂÞ˹APT×éÖ¯TurlaÀûÓÃкóÃŹ¥»÷ÃÀ¡¢µÂºÍ°¢¸»º¹


¶íÂÞ˹APT×éÖ¯TurlaÀûÓÃкóÃŹ¥»÷ÃÀ¡¢µÂºÍ°¢¸»º¹.png


Cisco TalosÔÚ9ÔÂ21ÈÕÅû¶Á˶íÂÞ˹APT×éÖ¯TurlaÀûÓÃкóÃÅTinyTurla¹¥»÷ÃÀ¡¢µÂºÍ°¢¸»º¹µÄ»î¶¯¡£Turla×Ô2004ÄêÒÔÀ´Ò»Ïò»îÔ¾ £¬¹¥»÷ÁËÖж«¡¢ÑÇÖÞ¡¢Å·ÖÞ¡¢±±ÃÀºÍÄÏÃÀµÈµØÓòµÄÖ¸±ê¡£×êÑÐÈËԱͨ¹ýÒ£²â·¢ÏÖÁ˺óÃÅ £¬µ«Éв»Ã÷ÏÔÆäÈ·ÇеÄ×°Ö÷½Ê½ £¬½ö֪·¹¥»÷ÕßʹÓÃ.batÎļþ´«²¼ºóÃÅ¡£¸ÃºóÃżÙ×°³ÉMicrosoft DLL £¬²¢¶¨ÃûΪw64time.dll £¬¿ÉÉÏ´«ºÍÖ´ÐÐÎļþ¡¢´´½¨×ÓÁ÷³ÌºÍÇÔÈ¡Êý¾ÝµÈ¡£


Ô­ÎÄÁ´½Ó£º

https://blog.talosintelligence.com/2021/09/tinyturla.html



DeFiƽ̨pNetwork³ÆÆäÔâµ½¹¥»÷Ëðʧ³¬¹ý1200ÍòÃÀÔª


DeFiƽ̨pNetwork³ÆÆäÔâµ½¹¥»÷Ëðʧ³¬¹ý1200ÍòÃÀÔª.png


DeFiƽ̨pNetworkÔÚ9ÔÂ19ÈÕ°ä²¼Twitter³ÆÆäÔâµ½¹¥»÷ £¬Ëðʧ³¬¹ý1200ÍòÃÀÔª¡£¸Ãƽ̨³Æ £¬¹¥»÷ÕßÀûÓÃÆä´úÂë¿âÖеķì϶¹¥»÷ÁËpBTC-on-BSC  £¬²¢ÇÔÈ¡ÁË277¸öBTC¡£pNetwork»¹°µÊ¾ £¬ÈôÊǹ¥»÷ÕßÄÜÍ˻ر»µÁ×ʽ𠣬ËûÃÇÔ¸Ö§¸¶×ܽð¶îµÄ12.5%£¨150ÍòÃÀÔª£©×÷ΪÉͽð¡£9ÔÂ22ÈÕ £¬¸ÃÍŶӰ䲼ÁËÓйØÕâ´Î¹¥»÷ÊÂÎñµÄµ÷²é»ã±¨¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/hacker-steals-12m-from-defi/


ÃÀ¹úCrystal Valley Farm CoopÔâµ½ÀÕË÷Èí¼þ¹¥»÷


ÃÀ¹úCrystal Valley Farm CoopÔâµ½ÀÕË÷Èí¼þ¹¥»÷.png


Crystal Valley Farm CoopÔÚ9ÔÂ21ÈÕй©ÆäÔâµ½ÀÕË÷Èí¼þ¹¥»÷ £¬³ÉΪ±¾Öܵڶþ¸öÔâµ½¹¥»÷µÄũҵºÏ×÷Éç¡£¹¥»÷²úÉúÔÚÉÏÖÜÈÕ£¨9ÔÂ19ÈÕ£© £¬ÆäÖ§¸¶ÏµÍ³Êܵ½Ó°Ïì £¬ÎÞ·¨Ê¹ÓÃVisa¡¢MastercardºÍDiscoverÐÅÓþ¿¨¸¶¿î¡£½ØÖÁ±¾ÖÜÈýÏÂÎç¸Ã¹«Ë¾µÄÍøÕ¾ÈÔ´¦ÓڹعØ×´Ì¬ £¬Ä¿Ç°Éв»Ã÷ÏÔÕâ´Î¹¥»÷±³ºóµÄÀÕË÷ÔËÓªÍŻ±¾ÖÜÒ» £¬NEW CooperativeÔøÔâµ½BlackMatter¹¥»÷ £¬²¢±»ÀÕË÷590ÍòÃÀÔª¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/second-farming-cooperative-shut-down-by-ransomware-this-week/


Recorded Future°ä²¼TAG-28¹¥»÷Ó¡¶ÈµÄ·ÖÎö»ã±¨


Recorded Future°ä²¼TAG-28¹¥»÷Ó¡¶ÈµÄ·ÖÎö»ã±¨.png


Recorded FutureÓÚ9ÔÂ21ÈÕ°ä²¼Á˹ØÓÚTAG-28¹¥»÷Ó¡¶ÈµÄ·ÖÎö»ã±¨¡£»ã±¨Ö¸³ö £¬TAG-28¿ÉÄÜÓëÕë¶ÔÓ¡¶ÈýÌ弯ÍÅBennett Coleman And Co Ltd(BCCL £¬ÓÖ³ÆÊ±ÆÚ¼¯ÍÅ£©¡¢Ó¡¶ÈÉí·Ý¼ø±ð»ú¹¹UIDAIºÍÖÐÑë¹ú¾¯Ô±¾ÖµÄ¹¥»÷»î¶¯ÓйØ¡£´Ë±í £¬Óë2020ÄêÏà±È £¬2021ÄêÕë¶ÔÓ¡¶È×éÖ¯µÄÒÉËÆÓɹú¶ÈÔÞÖúµÄ¹¥»÷»î¶¯Ôö³¤ÁË261% £¬¶ø¸ÃÊý¾Ý´Ó2019ÄêÖÁ2020ÄêÔö³¤ÁË120%¡£


Ô­ÎÄÁ´½Ó£º

https://www.recordedfuture.com/china-linked-tag-28-targets-indias-the-times-group/