Win10 DefenderÖб£´æbug£¬ £¬£¬¿ÉÔÚCÅ̽¨Éè´ó×ÚÎļþ£»£»£»£»£»¸ßͨоƬ±£´æ´úÂëÖ´ÐÐÎó²î£¬ £¬£¬Ó°Ïì30£¥µÄAndroidϵͳ

Ðû²¼Ê±¼ä 2021-05-07

1.Win10 DefenderÖб£´æbug£¬ £¬£¬¿ÉÔÚCÅ̽¨Éè´ó×ÚÎļþ


1.jpg


Windows Defender±£´æbug£¬ £¬£¬¿ÉÔÚC£º\ProgramData\Microsoft\Windows Defender\Scans\History\StoreÎļþ¼ÐÄÚ½¨Éè´ó×ÚMD5¹þÏ£Îļþ¡£¡£¡£¡£¡£¡£ ¡£ÕâЩÎļþµÄ¾ÞϸΪ600×Ö½Úµ½1KB£¬ £¬£¬ÓеÄϵͳÖÐÖ»ÓÐԼĪ1MBµÄÎļþ£¬ £¬£¬¶øÓеÄÓû§Ôò³ÆÆäϵͳ±£´æ´ó×ÚµÄÎļþ£¬ £¬£¬Õ¼ÓÃÁË30GBµÄ´æ´¢¿Õ¼ä¡£¡£¡£¡£¡£¡£ ¡£ÏÖÔÚ£¬ £¬£¬¸ÃÎÊÌâÒÑÔÚWindows Defender 1.1.18100.6°æ±¾ÖÐÐÞ¸´¡£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/windows-defender-bug-fills-windows-10-boot-drive-with-thousands-of-files/


2.¸ßͨоƬ±£´æ´úÂëÖ´ÐÐÎó²î£¬ £¬£¬Ó°Ïì30£¥µÄAndroidϵͳ


2.jpg


Check Point·¢Ã÷¸ßͨ£¨Qualcomm£©µ÷ÖÆ½âµ÷Æ÷£¨MSM£©½Ó¿Ú£¨¼ò³ÆÎªQMI£©Öб£´æ´úÂëÖ´ÐÐÎó²î¡£¡£¡£¡£¡£¡£ ¡£¾Ýͳ¼Æ£¬ £¬£¬È«ÇòÔ¼30£¥µÄÊÖ»ú¶¼ÔÚʹÓÃQMI£¬ £¬£¬°üÀ¨Google Pixels¡¢LG¡¢OnePlus¡¢ÈýÐÇGalaxyϵÁкÍСÃ×ÊÖ»ú¡£¡£¡£¡£¡£¡£ ¡£¸ÃÎó²î×·×ÙΪCVE-2020-11292£¬ £¬£¬ÊÇqmi_voicei_srvcc_call_config_req´¦Öóͷ£³ÌÐò£¨0x64£©ÖеĶÑÒç³öÎó²î£¬ £¬£¬¹¥»÷Õß¿ÉÒÔʹÓôËÎó²îÔ¶³ÌÖ´ÐдúÂ룬 £¬£¬À´»á¼ûÓû§µÄͨ»°¼Í¼ºÍ¶ÌÐÅ¡£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/qualcomm-chip-bug-android-eavesdropping/165934/


3.½¡ÉíÓ¦ÓÃPelotonµÄAPI±£´æÎó²î£¬ £¬£¬¿Éй¶300ÍòÓû§Òþ˽


3.jpg


½¡ÉíÓ¦ÓÃPelotonµÄAPI±£´æÎó²î£¬ £¬£¬¿Éй¶300ÍòÓû§Òþ˽¡£¡£¡£¡£¡£¡£ ¡£ÈκÎÈ˶¼¿ÉÒÔʹÓôËÎó²î´ÓPelotonЧÀÍÆ÷ÉÏץȡÓû§µÄÕÊ»§Êý¾Ý£¬ £¬£¬°üÀ¨Óû§±àºÅ¡¢½²Ê¦ID¡¢ÕûÌå»áÔ±¡¢ËùÔÚ¡¢Ä¥Á¶Í³¼Æ¡¢ÐÔ±ðÓëÄêËêµÈÐÅÏ¢¡£¡£¡£¡£¡£¡£ ¡£Ñо¿Ö°Ô±ÓÚ1ÔÂ20ÈÕ±¨¸æÁ˸ÃÎÊÌ⣬ £¬£¬Îó²îÏÖÒѱ»ÐÞ¸´¡£¡£¡£¡£¡£¡£ ¡£±ðµÄ£¬ £¬£¬¸Ã¹«Ë¾»¹ÔÚÖÜÈýÕÙ»ØÁËÆìÏÂËùÓеÄÅܲ½»ú£¬ £¬£¬ÓÉÓÚÕâЩÅܲ½»ú¿ÉÄÜÓë70ÈËÊÜÉ˺Í1Ãû¶ùͯµÄéæÃüÓйØ¡£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/pelotons-spilled-riders-data/165880/


4.ÀÕË÷ÍÅ»ïAvaddon³ÆÒÑ´ÓTelstraÇÔÈ¡´ó×ÚSIM¿¨µÄÊý¾Ý


4.jpg


ÀÕË÷ÍÅ»ïAvaddon³ÆÒÑ´Ó°Ä´óÀûÑǵçÐŹ«Ë¾TelstraÇÔÈ¡´ó×ÚSIM¿¨µÄÊý¾Ý¡£¡£¡£¡£¡£¡£ ¡£TelstraµÄÏàÖúͬ°é£¬ £¬£¬Î»ÓÚÄ«¶û±¾µÄЧÀÍÌṩÉÌCommunicationÔâµ½ÁËDDoS¹¥»÷µÈһϵÁÐÍøÂç¹¥»÷£¬ £¬£¬µ¼ÖÂÍøÕ¾ÀëÏßÒÔ¼°´ó×ÚÊý¾Ýй¶£¬ £¬£¬°üÀ¨SIM¿¨¡¢²ÆÎñÐÅÏ¢¡¢ÌõÔ¼ºÍÒøÐÐÐÅÏ¢µÈ¡£¡£¡£¡£¡£¡£ ¡£Ö»¹ÜTelstraÉù³ÆÓû§µÄÃô¸ÐÐÅÏ¢²¢Î´Ð¹Â¶£¬ £¬£¬µ«Í¨¹ýºÚ¿ÍÐû²¼µÄ½ØÍ¼ÏÔʾ£¬ £¬£¬¿Í»§µÄµç»°ºÅÂëºÍµØµãµÈÐÅÏ¢ÒѾ­Ð¹Â¶¡£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.hackread.com/avaddon-hackers-sim-card-data-from-telstra/


5.ŦԼ¹Ç¿ÆÐ­»áOADCÔâµ½¹¥»÷£¬ £¬£¬33Íò¸ö»¼ÕßÐÅϢй¶


5.jpg


3ÔÂ5ÈÕ£¬ £¬£¬Î»ÓÚŦԼÖݵİ¢ÄÉÎ÷Ë¹ÏØ¹Ç¿ÆÐ­»á£¨OADC£©·¢Ã÷ÆäÔâµ½¹¥»÷£¬ £¬£¬33Íò¸ö»¼ÕßÐÅϢй¶¡£¡£¡£¡£¡£¡£ ¡£¾­ÊÓ²ìÈ·¶¨£¬ £¬£¬ºÚ¿Í¿ÉÄÜÔÚ2021Äê3ÔÂ1ÈÕ×óÓÒ»á¼ûÁËOADCϵͳµÄ¼ÓÃÜÎļþ£¬ £¬£¬²¢Éù³ÆÒÑɾ³ýºÍÉó²éÁ˲¿·ÖÎļþ¡£¡£¡£¡£¡£¡£ ¡£´Ë´Îй¶µÄÊý¾Ý°üÀ¨»¼ÕßµÄÐÕÃû¡¢µØµã¡¢µç»°ºÅÂë¡¢µç×ÓÓʼþµØµã¡¢½ôÆÈÁªÏµÈË¡¢µ£±£ÈË¡¢»¼ÕßʶÓÖÃû¡¢²¡ÀúºÅ¡¢Õï¶ÏÐÅÏ¢¡¢¿µ½¡°ü¹ÜºÅÂë¡¢¸¶¿îÃ÷ϸ¡¢³öÉúÈÕÆÚ¡¢Éç»á°ü¹ÜºÅºÍÖÎÁÆÐÅÏ¢¡£¡£¡£¡£¡£¡£ ¡£¸Ã×éÖ¯ÒÑ֪ͨÊÜÓ°ÏìµÄ331376Ãû»¼Õߣ¬ £¬£¬²¢ÎªÆäÌṩÁË12¸öÔµÄÉí·ÝºÍÐÅÓÃ¼à¿Ø¡£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.databreaches.net/orthopedic-associates-of-dutchess-county-notifies-more-than-330000-patients-of-breach/


6.ESETÐû²¼ÓйØÕë¶Ô°ÍÎ÷µÄÒøÐÐľÂíOusabanµÄÆÊÎö±¨¸æ


6.jpg


ESETÐû²¼ÁËÓйØÕë¶Ô°ÍÎ÷µÄÒøÐÐľÂíOusabanµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¡£ ¡£OusabanÊǽöÔÚ°ÍÎ÷»îÔ¾µÄÀ­¶¡ÃÀÖÞÒøÐÐľÂí£¬ £¬£¬ESET×Ô2018ÄêÒÔÀ´Ò»Ö±ÔÚ×·×ٸöñÒâÈí¼þ¼Ò×å¡£¡£¡£¡£¡£¡£ ¡£Ousaban£¨Ò²³ÆÎªJavali£©ÊÇÓÃDelphi±àдµÄ£¬ £¬£¬Ê¹ÓÃThemida»òEnigma¶þ½øÖÆ»ìÏýÆ÷À´±£»£»£»£»£»¤Æä¿ÉÖ´ÐÐÎļþ¡£¡£¡£¡£¡£¡£ ¡£±ðµÄ£¬ £¬£¬¸Ã¶ñÒâÈí¼þ»¹Ê¹ÓÃÁ˶þ½øÖÆÌî³ä½«´ó´ó¶¼EXEÀ©Õ¹µ½Ô¼Äª400 MB£¬ £¬£¬ÕâÑù×ö¿ÉÄÜÊÇΪÁËÈÆ¹ý¼ì²âºÍ×Ô¶¯É¾³ý¡£¡£¡£¡£¡£¡£ ¡£


Ô­ÎÄÁ´½Ó£º

https://www.welivesecurity.com/2021/05/05/ousaban-private-photo-collection-hidden-cabinet/