AppleÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´iOSºÍmacOSÖÐÒѱ»Ê¹ÓõÄ0day£»£»£»£»£»£»Ï£À°µÚ¶þ´ó¶¼»áThessalonikiÔâµ½¹¥»÷ÊÐÕþЧÀÍÖÐÖ¹
Ðû²¼Ê±¼ä 2021-07-271.AppleÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´iOSºÍmacOSÖÐÒѱ»Ê¹ÓõÄ0day

AppleÐû²¼ÁËÇå¾²¸üУ¬£¬£¬£¬£¬£¬£¬ÐÞ¸´ÁËiOSºÍmacOSÖÐÒѱ»ÔÚҰʹÓõÄ0day¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÎó²î×·×ÙΪCVE-2021-30807£¬£¬£¬£¬£¬£¬£¬ÊÇÓÃÓÚÖÎÀíÆÁĻ֡»º³åÇøµÄÄÚºËÀ©Õ¹IOMobileFramebufferÖеÄÄÚ´æËð»µÎó²î¡£¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¿ÉÒÔʹÓôËÎó²îÔÚÄ¿µÄ×°±¸ÉÏʹÓÃÄÚºËȨÏÞÖ´ÐÐí§Òâ´úÂ룬£¬£¬£¬£¬£¬£¬²¢ÍêÈ«¿ØÖÆ×°±¸¡£¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾³ÆÎó²î¿ÉÄÜÒѱ»Æð¾¢Ê¹Ó㬣¬£¬£¬£¬£¬£¬µ«²¢Î´Í¸Â¶ÓйØÕâЩ¹¥»÷µÄÈÎºÎÆäËûÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¡£ÕâÊÇAppleÔÚ½ñÄêÐÞ¸´µÄµÚ13¸ö0day¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/apple/apple-fixes-zero-day-affecting-iphones-and-macs-exploited-in-the-wild/
2.Ï£À°µÚ¶þ´ó¶¼»áThessalonikiÔâµ½¹¥»÷ÊÐÕþЧÀÍÖÐÖ¹

Ï£À°µÚ¶þ´ó¶¼»áÈøÂÞÄá¼Ó£¨Thessaloniki£©Ôâµ½ÍøÂç¹¥»÷£¬£¬£¬£¬£¬£¬£¬ÊÐÕþЧÀÍÔÝʱÖÐÖ¹¡£¡£¡£¡£¡£¡£¡£¡£¸ÃÊи±Êг¤Giorgos Avarlis³Æ¹¥»÷±¬·¢ÔÚ2021Äê7ÔÂ23ÈÕ£¬£¬£¬£¬£¬£¬£¬·¢Ã÷ºó¸ÃÊÐÁ¬Ã¦±ÕÁËЧÀͺÍwebÓ¦ÓóÌÐò¡£¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÒѾװÖÃÁËÒ»ÖÖ¶ñÒⲡ¶¾²¢ÒªÇóÖ§¸¶Êê½ðÀ´½âËøÎļþ£¬£¬£¬£¬£¬£¬£¬µ«²¢Î´Í¸Â¶ÆäÊÇ·ñÖ§¸¶ÁËÊê½ð»òÖ§¸¶Á˼¸¶àÇ®¡£¡£¡£¡£¡£¡£¡£¡£Avarlis»¹ÌåÏÖ£¬£¬£¬£¬£¬£¬£¬ÊÐÕþÕþ¸®µÄËùÓÐÎļþ¶¼ÊÇÇå¾²µÄ£¬£¬£¬£¬£¬£¬£¬µ«ÈÔδȷ¶¨¹¥»÷µÄȪԴ¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.thenationalherald.com/archive_general_news_greece/arthro/cyberattack_shuts_down_services_in_greece_s_second_largest_city-2960445/
3.Ñо¿ÍŶӷ¢Ã÷¹¥»÷ÕßʹÓÃArgo WorkflowsÍÚ¿óµÄ»î¶¯

IntezerÑо¿ÍŶӷ¢Ã÷¹¥»÷ÕßʹÓÃÉèÖùýʧµÄArgo WorkflowsµÄÍÚ¿ó»î¶¯¡£¡£¡£¡£¡£¡£¡£¡£Argo WorkflowsÊÇÒ»¸ö¿ªÔ´µÄ¡¢ÈÝÆ÷ÔÉúµÄÊÂÇéÁ÷ÒýÇæ£¬£¬£¬£¬£¬£¬£¬ÔÚKubernetes(K8s)¼¯ÈºÉÏÔËÐС£¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±·¢Ã÷һЩȨÏÞÉèÖùýʧµÄʵÀý£¬£¬£¬£¬£¬£¬£¬ÔÊÐí¹¥»÷Õß»á¼û¿ª·ÅµÄArgo¿ØÖÆÃæ°å£¬£¬£¬£¬£¬£¬£¬²¢Ê¹ÓÃÖÖÖÖMonero¿ó¹¤ÈÝÆ÷×°ÖÃ×Ô¼ºµÄ¶ñÒâWorkflows£¬£¬£¬£¬£¬£¬£¬°üÀ¨kannix/monero-miner¡£¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ£¬£¬£¬£¬£¬£¬£¬ÒÑ·¢Ã÷Êý°Ù¸öÉèÖùýʧµÄArgo Workflows£¬£¬£¬£¬£¬£¬£¬Òò´Ë¿ÉÒÔÔ¤¼Æ½«Óиü´ó¹æÄ£µÄ¹¥»÷¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://securityaffairs.co/wordpress/120544/malware/kubernetes-attacks-argo-workflows.html
4.Sophos·¢Ã÷ʹÓÃDiscord CDNºÍAPIµÄ¹¥»÷»î¶¯¼¤Ôö

Sophos·¢Ã÷Discord¶ñÒâÈí¼þµÄÊýÄ¿¼¤Ôö£¬£¬£¬£¬£¬£¬£¬Óë2020ÄêÏà±ÈÔöÌíÁË140±¶¡£¡£¡£¡£¡£¡£¡£¡£µ¼Ö´ËÇ÷ÊÆµÄÖ÷ÒªÔµ¹ÊÔÓÉÊǺڿÍÒ»Ö±ÔÚÀÄÓÃDiscordµÄÄÚÈݽ»¸¶ÍøÂç(CDN)ºÍÓ¦ÓóÌÐò±à³Ì½Ó¿Ú(API)£¬£¬£¬£¬£¬£¬£¬ÆäÖÐCDN±»ÓÃÀ´ÍйܶñÒâÈí¼þ£¬£¬£¬£¬£¬£¬£¬¶øAPI±»ÓÃÀ´ÇÔÈ¡Êý¾ÝÒÔ¼°ÅþÁ¬ÏÂÁîºÍ¿ØÖÆÐ§ÀÍÆ÷¡£¡£¡£¡£¡£¡£¡£¡£Sophos³Æ£¬£¬£¬£¬£¬£¬£¬4Ô·ÝÔÚDiscordµÄCDNÉϼì²âµ½9500¸ö¶ñÒâURL£¬£¬£¬£¬£¬£¬£¬¶øÔÚ½ÓÏÂÀ´µÄ¼¸¸öÔÂÀ£¬£¬£¬£¬£¬£¬Õâ¸öÊý×ÖìÉýÖÁ17000¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://threatpost.com/discord-malware-researchers/168096/
5.CovewareÐû²¼2021ÄêQ2ÓйØÀÕË÷¹¥»÷µÄÆÊÎö±¨¸æ

CovewareÐû²¼ÁË2021ÄêQ2ÓйØÀÕË÷¹¥»÷µÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£¡£¡£±¨¸æÖ¸³ö2021ÄêQ2ÀÕË÷Èí¼þµÄƽ¾ù¸¶¿î¶îϽµÖÁ136576ÃÀÔª£¬£¬£¬£¬£¬£¬£¬ÓëQ1µÄ220298ÃÀÔªÏà±ÈϽµÁË38%¡£¡£¡£¡£¡£¡£¡£¡£2020ÄêÓÐ65%µÄÊܺ¦ÕßÑ¡ÔñÖ§¸¶Êê½ð£¬£¬£¬£¬£¬£¬£¬¶ø2021ÄêQ2Ö»ÓÐ50%µÄÊܺ¦Õ߸¶¿î¡£¡£¡£¡£¡£¡£¡£¡£ÔÚÕâÒ»¼¾¶È×î³£¼ûµÄÀÕË÷Èí¼þ±äÌåΪSodinokibi£¨16.5%£©¡¢ContiV2£¨14.4%£©¡¢Avaddon£¨5.4%£©¡¢Mespinoza£¨4.9%£©ºÍHello Kitty£¨4.5%£©µÈ¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.coveware.com/blog/2021/7/23/q2-ransom-payment-amounts-decline-as-ransomware-becomes-a-national-security-priority
6.VadeÐû²¼2021ÄêÉϰëÄêÍøÂç´¹ÂÚ¹¥»÷µÄÆÊÎö±¨¸æ

VadeÐû²¼ÁË2021ÄêÉϰëÄêÈ«ÇòÍøÂç´¹ÂÚ¹¥»÷µÄÆÊÎö±¨¸æ£¬£¬£¬£¬£¬£¬£¬ÆÊÎöÁ˹¥»÷Õß×î°®µÄ25¸öÆ·ÅÆ¡£¡£¡£¡£¡£¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬£¬£¬£¬×ÜÌåµÄÍøÂç´¹ÂÚÊýÄ¿ÔÚ2021ÄêQ2¼±¾çÔöÌí£¬£¬£¬£¬£¬£¬£¬5Ô·ݼ¤ÔöÁË281%£¬£¬£¬£¬£¬£¬£¬6Ô·ÝÓÖÔöÌíÁË284%£¬£¬£¬£¬£¬£¬£¬½öÔÚ6Ô·ݵ±Ô¾ͼì²âµ½42ÒڴεĴ¹ÂÚµç×ÓÓʼþ¡£¡£¡£¡£¡£¡£¡£¡£ÔÚÉϰëÄ꣬£¬£¬£¬£¬£¬£¬·¨¹úũҵÐÅ´ûÒøÐУ¨Cr¨¦dit Agricole£©ÊDZ»Ã°³ä×î¶àµÄÆ·ÅÆ£¬£¬£¬£¬£¬£¬£¬ÓÐ17555¸öÏà¹ØµÄ´¹ÂÚURL£¬£¬£¬£¬£¬£¬£¬Æä´ÎΪFacebook£¨17338¸ö£©ºÍMicrosoft£¨12777¸ö£©¡£¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.vadesecure.com/en/blog/phishers-favorites-top-25-h1-2021-worldwide-edition


¾©¹«Íø°²±¸11010802024551ºÅ