AppleÐû²¼¸üР£¬ £¬£¬£¬£¬ÐÞ¸´Òѱ»Æð¾¢Ê¹ÓõÄ3¸ö0day£»£»£»Microsoft±¬·¢Ð§ÀÍÖÐÖ¹ £¬ £¬£¬£¬£¬µ¼Ö²¿·ÖÍøÕ¾ÎÞ·¨»á¼û

Ðû²¼Ê±¼ä 2020-11-06

1.AppleÐû²¼¸üР£¬ £¬£¬£¬£¬ÐÞ¸´Òѱ»Æð¾¢Ê¹ÓõÄ3¸ö0day


1.jpg


AppleÐÞ¸´ÁËÆäiOS 14.2ÖеÄ3¸ö0day £¬ £¬£¬£¬£¬ÕâЩÎó²îÒÑÔÚÒ°Íâ±»Æð¾¢Ê¹Óò¢Ó°ÏìÁËiPhone¡¢iPadºÍiPod¡£¡£¡£¡£¡£¡£¡£¡£´Ë´ÎÐÞ¸´µÄÎó²î»®·ÖΪԶ³ÌÖ´ÐдúÂ루RCE£©Îó²î£¨CVE-2020-27930 £© £¬ £¬£¬£¬£¬FontParser¿â´¦Öóͷ£¶ñÒâ×ÖÌåʱÓÉÄÚ´æËð»µÎÊÌâµ¼Ö£»£»£»ÄÚºËÄÚ´æ×ß©Îó²î£¨CVE-2020-27950£© £¬ £¬£¬£¬£¬¸ÃÎó²îÓÉÄÚ´æ³õʼ»¯ÎÊÌâÒýÆð £¬ £¬£¬£¬£¬ÔÊÐí¶ñÒâÓ¦Óûá¼ûÄÚºËÄڴ棻£»£»ÄÚºËÌáȨÎó²î(CVE-2020-27932) £¬ £¬£¬£¬£¬ÓÉÀàÐÍ»ìÏýµ¼Ö £¬ £¬£¬£¬£¬¿É±»Ê¹ÓÃÀ´Ê¹ÓÃÄÚºËȨÏÞÖ´ÐÐí§Òâ´úÂë¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/apple-patches-three-actively-exploited-ios-zero-days/


2.Microsoft±¬·¢Ð§ÀÍÖÐÖ¹ £¬ £¬£¬£¬£¬µ¼Ö²¿·ÖÍøÕ¾ÎÞ·¨»á¼û


2.jpg


MicrosoftЧÀÍÖÐÖ¹ £¬ £¬£¬£¬£¬µ¼Ö²¿·ÖÍøÕ¾ÄÚÈÝÎÞ·¨×¼È·ÏÔʾ £¬ £¬£¬£¬£¬²¢ÇÒMicrosoft StoreÎÞ·¨¼ÓÔØ¡£¡£¡£¡£¡£¡£¡£¡£Óû§»á¼ûwww.microsoft.com¡¢windows.com»òxbox.com×ÓÓòʱ £¬ £¬£¬£¬£¬»áÓöµ½ÍøÕ¾½á¹¹¹ýʧ»òÄúµÄÇëÇóÒѱ»×èÖ¹µÄÌáÐÑ¡£¡£¡£¡£¡£¡£¡£¡£±ðµÄ £¬ £¬£¬£¬£¬Microsoft StoreÒ²ÎÞ·¨´Ómicrosoft.com»ñÈ¡Êý¾Ý £¬ £¬£¬£¬£¬µ±Óû§ÊµÑé»á¼û¸ÃÓ¦ÓÃʱ»áÏÔÊ¾Ò³ÃæÎÞ·¨¼ÓÔØµÄ¹ýʧÌáÐÑ¡£¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ £¬ £¬£¬£¬£¬¸ÃÖÐÖ¹Òѱ»ÐÞ¸´ £¬ £¬£¬£¬£¬¿ÉÊÇÖÐÖ¹Ôµ¹ÊÔ­ÓÉÉв»Ã÷È·¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-outage-breaks-sites-windows-store-xbox-and-other-services/


3.ÓÎÏ·¹«Ë¾CapcomÔâµ½¹¥»÷ £¬ £¬£¬£¬£¬Æä²¿·ÖϵͳÊܵ½Ó°Ïì


3.png


ÈÕ±¾ÓÎÏ·¿ª·¢ÉÌCapcomÔâµ½¹¥»÷ £¬ £¬£¬£¬£¬Æä²¿·ÖϵͳÊܵ½Ó°Ïì £¬ £¬£¬£¬£¬²¢Ð¹Â¶ÁË1TBÃô¸ÐÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¡£Capcom³Æ´Ó2020Äê11ÔÂ2ÈÕÆÆÏþ×îÏÈÆä¹«Ë¾µÄÍøÂç·ºÆðÎÊÌâ £¬ £¬£¬£¬£¬²¢Ó°ÏìÁ˰üÀ¨µç×ÓÓʼþºÍÎļþЧÀÍÆ÷ÔÚÄÚµÄijЩϵͳ¡£¡£¡£¡£¡£¡£¡£¡£Çå¾²Ñо¿Ö°Ô±Pancak3ͨ¹ýÑо¿ÀÕË÷Èí¼þÑù±¾ £¬ £¬£¬£¬£¬·¢Ã÷¿ÉÄÜÊÇRagnar Locker¶ÔÆä¾ÙÐÐÁ˹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£±ðµÄ £¬ £¬£¬£¬£¬¸ÃÀÕË÷ÍÅ»ïÉù³ÆÒÑ´ÓÆäÔÚÈÕ±¾¡¢ÃÀ¹úºÍ¼ÓÄôóµÄ×Ó¹«Ë¾ÇÔÈ¡1 TBµÄÊý¾Ý £¬ £¬£¬£¬£¬°üÀ¨»á¼Æµµ°¸¡¢ÒøÐб¨±í¡¢Ô¤ËãºÍÊÕÈ롢˰ÎñÎļþ¡¢ÖªÊ¶²úȨ¡¢×¨ÓÐÓªÒµÐÅÏ¢¡¢¿Í»§ºÍÔ±¹¤Ð¡ÎÒ˽¼ÒÐÅÏ¢(È绤ÕÕºÍǩ֤)¡¢¹«Ë¾Ð­æÅºÍÌõÔ¼¡¢±£ÃÜЭÒé¡¢ÏúÊÛ×ܽᡢ¹«Ë¾Ðżþ¡¢µç×ÓÓʼþ¡¢ÓªÏú±¨¸æ¡¢É󼯱¨¸æºÍÐí¶àÆäËûÃô¸ÐÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/japanese-game-dev-capcom-hit-by-cyberattack-business-impacted/


4.Sophos·¢Ã÷APT KillSomeOne¶ÔÃåµéÌᳫµÄ¹¥»÷»î¶¯


4.png


Çå¾²¹©Ó¦ÉÌSophos·¢Ã÷APT×éÖ¯KillSomeOne¶ÔÃåµéÌᳫµÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹¥»÷ÊÇÒ»ÖÖDLL²àÔØ¹¥»÷£¨DLL side-loading attack£© £¬ £¬£¬£¬£¬ËüÓÕʹWindows¿ÉÖ´ÐÐÎļþ¼ÓÔØ¶ñÒâDLL £¬ £¬£¬£¬£¬ÒÔÇÔÊØÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£±ðµÄ £¬ £¬£¬£¬£¬SophosÅú×¢ £¬ £¬£¬£¬£¬¹¥»÷ÕßʹÓÃÁË´óÐÍÍŶÓËùʹÓõĵ䷶ĿµÄËø¶¨ºÍ°²ÅÅÕ½ÂÔ £¬ £¬£¬£¬£¬µ«Ê¹ÓÃÁ˼òÆÓµÄ´úÂë¡¢Èõ¼ÓÃܺÍÒþ²ØµÄÐÂÎÅÀ´½«´Ë´Î»î¶¯Î±×°³É¾ç±¾Ð¡×ÓµÄÐÐΪ¡£¡£¡£¡£¡£¡£¡£¡£SophosÒÔΪ´Ë´Î»î¶¯µÄÄîÍ·¿ÉÄÜÊÇΪ»ñµÃÒøÐÐÕË»§ÃÜÂëÀ´Ä²Àû £¬ £¬£¬£¬£¬»òÕß³öÓÚÕþÖÎÄ¿µÄ¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.theregister.com/2020/11/05/killsomeone_dll_attack/


5.ApplebotÒòÊðÀíЧÀÍÆ÷ÉèÖùýʧй¶ÄÚ²¿IPµØµã


5.png


Çå¾²Ñо¿Ö°Ô±·¢Ã÷ £¬ £¬£¬£¬£¬ÓÉÓÚÊðÀíЧÀÍÆ÷ÉèÖùýʧ £¬ £¬£¬£¬£¬ApplebotÒ»Ö±ÔÚ×ß©ÄÚ²¿IPµØµã¡£¡£¡£¡£¡£¡£¡£¡£ApplebotÊÇÖ¸AppleµÄWebÕ÷²ÉÆ÷ £¬ £¬£¬£¬£¬Ëü¿ÉÒÔɨÃèÍøÂçÀ´ÎªÆäÓû§²éÕÒÄÚÈÝ £¬ £¬£¬£¬£¬SiriºÍSpotlightµÈ²úÆ·¶¼ÔÚʹÓᣡ£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷ £¬ £¬£¬£¬£¬Æ»¹ûPodcast»úеÈËʹÓõÄÊðÌêÍ·Ë͵ÄÓÃÀ´Ñ°ÕÒPodcast¸üеÄÇëÇóÖÐ £¬ £¬£¬£¬£¬ÇëÇóÍ·'Via'ºÍ'X-Forwarded-For'×ß©ÁËÆäÄÚ²¿IPºÍÖ÷»úÃû¡£¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ £¬ £¬£¬£¬£¬Apple¹«Ë¾ÔÚÊÕµ½¸ÃÎó²î±¨¸æµÄ9¸öÔºó¶ÔÆä¾ÙÐÐÁËÐÞ¸´¡£¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/apple-search-bot-leaked-internal-ips-via-proxy-configuration/


6.Òѱ»È¡µÞµÄÊý¾Ýй¶Ë÷ÒýÍøÕ¾Ð¹Â¶23600¸ö±»ºÚµÄÊý¾Ý¿â


6.png


Òѱ»È¡µÞµÄÊý¾Ýй¶Ë÷ÒýÍøÕ¾Cit0Day.inй¶ÁË23600¸ö±»ºÚµÄÊý¾Ý¿â¡£¡£¡£¡£¡£¡£¡£¡£Cit0day¿ÉÍøÂç±»ºÚ¿ÍÈëÇÖµÄÊý¾Ý¿â £¬ £¬£¬£¬£¬²¢°´ÆÚÏòÆäËûºÚ¿ÍÌṩÓû§Ãû¡¢µç×ÓÓʼþ¡¢µØµãÉõÖÁÃ÷ÎÄÃÜÂëµÄ»á¼ûȨÏÞ £¬ £¬£¬£¬£¬¸ÃÍøÕ¾ÓÚ9ÔÂ14ÈչرÕ¡£¡£¡£¡£¡£¡£¡£¡£µ«ÏÖÔÚ £¬ £¬£¬£¬£¬Cit0dayÖеÄËùÓб»ºÚÊý¾Ý¿â¶¼±»¹ûÕæµ½Á˶íÂÞ˹µÄ°µÍøÉÏ £¬ £¬£¬£¬£¬×ܼÆÎª23618¸öÊý¾Ý¿â £¬ £¬£¬£¬£¬¿Éͨ¹ýMEGAÎļþÍйÜÃÅ»§ÏÂÔØ £¬ £¬£¬£¬£¬Ô¤¼Æ°üÀ¨ÓÐԼĪ50GBµÄÊý¾ÝºÍ130ÒÚÌõÓû§¼Í¼¡£¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/23600-hacked-databases-have-leaked-from-a-defunct-data-breach-index-site/