CNNICÐû²¼µÚ48´Î¡¶Öйú»¥ÁªÍøÂçÉú³¤×´Ì¬Í³¼Æ±¨¸æ¡·£ºDeFiƽ̨Cream FinanceÔâµ½¹¥»÷

Ðû²¼Ê±¼ä 2021-09-02

CNNICÐû²¼µÚ48´Î¡¶Öйú»¥ÁªÍøÂçÉú³¤×´Ì¬Í³¼Æ±¨¸æ¡·


CNNICÐû²¼µÚ48´Î¡¶Öйú»¥ÁªÍøÂçÉú³¤×´Ì¬Í³¼Æ±¨¸æ¡·.jpg


Öйú»¥ÁªÍøÂçÐÅÏ¢ÖÐÐÄ£¨CNNIC£©ÓÚ8ÔÂ27ÈÕÔÚ¾©Ðû²¼µÚ48´Î¡¶Öйú»¥ÁªÍøÂçÉú³¤×´Ì¬Í³¼Æ±¨¸æ¡·¡£¡£¡£±¨¸æÏÔʾ£¬£¬£¬£¬£¬ £¬£¬×èÖ¹½ñÄê6Ô£¬£¬£¬£¬£¬ £¬£¬ÖйúÍøÃñ¹æÄ£´ï10.11ÒÚ£¬£¬£¬£¬£¬ £¬£¬½Ï2020Äê12ÔÂÔöÌí2175Íò£¬£¬£¬£¬£¬ £¬£¬»¥ÁªÍøÆÕ¼°ÂÊ´ï71.6%£»£»£»£» £»£»»¥ÁªÍø»ù´¡×ÊÔ´¼ÓËÙ½¨É裬£¬£¬£¬£¬ £¬£¬×èÖ¹6Ô£¬£¬£¬£¬£¬ £¬£¬ÖйúIPv6µØµãÊýÄ¿´ï62023¿é/32£»£»£»£» £»£»ÖйúÅ©´åÍøÃñ¹æÄ£Îª2.97ÒÚ£¬£¬£¬£¬£¬ £¬£¬Å©´åµØÇø»¥ÁªÍøÆÕ¼°ÂÊΪ59.2%£¬£¬£¬£¬£¬ £¬£¬½Ï2020Äê12Ô£¬£¬£¬£¬£¬ £¬£¬³ÇÏ绥ÁªÍøÆÕ¼°Âʲî±ðËõС4.8%¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

http://finance.people.com.cn/n1/2021/0828/c1004-32210949.html


Unit42Ðû²¼MiraiÔÚҰʹÓÃWebSVNÖÐÏÂÁî×¢ÈëÎó²îµÄ±¨¸æ


Unit42Ðû²¼MiraiÔÚҰʹÓÃWebSVNÖÐÏÂÁî×¢ÈëÎó²îµÄ±¨¸æ.jpg


Unit42ÔÚ8ÔÂ30ÈÕÐû²¼ÁËÓйØMiraiµÄбäÌåÔÚҰʹÓÃWebSVNÖÐÏÂÁî×¢ÈëÎó²îµÄÆÊÎö±¨¸æ¡£¡£¡£¸ÃÎó²î×·×ÙΪCVE-2021-32305£¬£¬£¬£¬£¬ £¬£¬ÓÚ2021Äê5Ô±»·¢Ã÷²¢ÐÞ¸´¡£¡£¡£ÔÚÆä¿´·¨Ö¤ÊµÐû²¼ºóµÄÒ»ÖÜÄÚ£¬£¬£¬£¬£¬ £¬£¬¼´2021Äê6ÔÂ26ÈÕ£¬£¬£¬£¬£¬ £¬£¬Ñо¿Ö°Ô±·¢Ã÷¹¥»÷ÕßʹÓøÃÎó²î×°ÖöñÒâÈí¼þMiraiµÄ±äÌåµÄ»î¶¯¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬ £¬£¬±¨¸æ»¹ÁгöÁËÓйظûµÄIoCµÈÊÖÒÕÏà¹ØÐÅÏ¢¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/cve-2021-32305-websvn/


Ñо¿Ö°Ô±Åû¶ExchangeÖÐÐÂÎó²îProxyTokenµÄϸ½Ú


Ñо¿Ö°Ô±Åû¶ExchangeÖÐÐÂÎó²îProxyTokenµÄϸ½Ú.jpg


Zero Day InitiativeÓÚ½ñÄê8ÔÂ30ÈÕ¹ûÕæÁËMicrosoft ExchangeÖÐÐÂÎó²îProxyTokenµÄϸ½Ú¡£¡£¡£¸ÃÎó²îÓÉÔ½ÄÏÓʵ缯ÍÅVNPT-ISCµÄÑо¿Ö°Ô±ÓÚ2021Äê3Ô·¢Ã÷£¬£¬£¬£¬£¬ £¬£¬²¢ÒÑÓÉMicrosoftÔÚ2021Äê7ÔµÄÖܶþ²¹¶¡¸üÐÂÖнâ¾ö¡£¡£¡£¸ÃÎó²î×·×ÙΪCVE-2021-33766£¬£¬£¬£¬£¬ £¬£¬CVSSÆÀ·ÖΪ7.3¡£¡£¡£Îó²î±£´æÓÚExchangeµÄίÍÐÉí·ÝÑéÖ¤¹¦Ð§ÖУ¬£¬£¬£¬£¬ £¬£¬Î´¾­Éí·ÝÑéÖ¤µÄ¹¥»÷Õß¿ÉÒÔʹÓøÃÎó²îÉèÖÃÓû§µÄÓÊÏä¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/08/new-microsoft-exchange-proxytoken-flaw.html


QNAP³ÆÆäNAS²úÆ·ÊÜOpenSSLÖеÄRCEºÍDoSÎó²îÓ°Ïì


QNAP³ÆÆäNAS²úÆ·ÊÜOpenSSLÖеÄRCEºÍDoSÎó²îÓ°Ïì.jpg


NASÖÆÔìÉÌÓÚ±¾ÖÜÒ»Ðû²¼ÁËÁ½·Ý¹ØÓÚOpenSSLÔ¶³Ì´úÂëÖ´Ðк;ܾøÐ§ÀÍÎó²îµÄÇ徲ͨ¸æ¡£¡£¡£ÕâÁ½¸öÎó²î×·×ÙΪCVE-2021-3711ºÍCVE-2021-3712£¬£¬£¬£¬£¬ £¬£¬ÒÑÔÚÉÏÖÜÓÉOpenSSLÐÞ¸´£¬£¬£¬£¬£¬ £¬£¬ËüÃÇÓ°ÏìÁËÔËÐÐQTS¡¢QuTS hero¡¢QuTScloudºÍHBS 3 Hybrid Backup SyncµÄQNAP NAS×°±¸¡£¡£¡£QNAPÌåÏÖÆäÏÖÔÚÕýÔÚ³¹µ×ÊÓ²ì´Ë°¸£¬£¬£¬£¬£¬ £¬£¬²¢ÍýÏ뾡¿ìÐû²¼Çå¾²¸üС£¡£¡£ÉÏÖÜ£¬£¬£¬£¬£¬ £¬£¬Öйų́ÍåµÄNASÖÆÔìÉÌSynologyÒ²ÌåÏÖÆä²¿·ÖNAS²úÆ·Êܵ½ÕâЩÎó²îµÄÓ°Ïì¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/qnap-works-on-patches-for-openssl-bugs-impacting-its-nas-devices/


ÒòGoogleÓ¦ÓÃbug£¬£¬£¬£¬£¬ £¬£¬²¿·Ö°²×¿Óû§ÎÞ·¨²¦´òºÍ½ÓÌýµç»°


ÒòGoogleÓ¦ÓÃbug£¬£¬£¬£¬£¬£¬£¬²¿·Ö°²×¿Óû§ÎÞ·¨²¦´òºÍ½ÓÌýµç»°.jpg


GoogleÌåÏÖ£¬£¬£¬£¬£¬ £¬£¬²¿·ÖAndroidÊÖ»úÐͺŵÄÓû§Êܵ½GoogleÓ¦ÓÃÖÐbugµÄÓ°Ï죬£¬£¬£¬£¬ £¬£¬ÎÞ·¨²¦´òºÍ½ÓÌýµç»°¡£¡£¡£ÏÖÔÚGoogleûÓйûÕæÊÜÓ°ÏìÊÖ»úµÄÐͺţ¬£¬£¬£¬£¬ £¬£¬µ«±¾ÖÜÄ©ÊÜÓ°ÏìÓû§Ìáµ½ÁËLGµÄ×°±¸£¬£¬£¬£¬£¬ £¬£¬ÈçLG G7¡¢LG G7 ThinQ¡¢LG V40 ThinQºÍLG Q70µÈ¡£¡£¡£Google³ÆÆäÕýÔÚÊÓ²ì´ËÊ£¬£¬£¬£¬£¬ £¬£¬²¢ÒÑÐû²¼ÁË×îиüÐÂÀ´ÐÞ¸´¸Ãbug£¬£¬£¬£¬£¬ £¬£¬½¨ÒéÓû§ÊÖ¶¯×°ÖÃ×îиüС£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/google/google-app-bug-blocks-android-users-from-receiving-making-calls/


DeFiƽ̨Cream FinanceÔâµ½¹¥»÷ËðʧÁè¼Ý2900ÍòÃÀÔª


DeFiƽ̨Cream FinanceÔâµ½¹¥»÷ËðʧÁè¼Ý2900ÍòÃÀÔª.jpg


È¥ÖÐÐÄ»¯½ðÈÚ(DeFi)ƽ̨Cream FinanceÓÚ8ÔÂ30ÈÕ³ÆÆäÔâµ½¹¥»÷£¬£¬£¬£¬£¬ £¬£¬Ô¤¼ÆËðʧÁè¼Ý2900ÍòÃÀÔª¡£¡£¡£¸Ã¹«Ë¾³Æ£¬£¬£¬£¬£¬ £¬£¬¹¥»÷ÕßʹÓá°reentrancy attack¡±¹¥»÷ÁËÆä¡°flash loan¡±¹¦Ð§£¬£¬£¬£¬£¬ £¬£¬ÇÔÈ¡ÁË418311571¸öAMP±Ò£¨Ô¼Îª2510ÍòÃÀÔª£©ºÍ1308.09¸öETH±Ò£¨Ô¼Îª415ÍòÃÀÔª£©¡£¡£¡£Æ¾Ö¤CipherTraceµÄÊý¾Ý£¬£¬£¬£¬£¬ £¬£¬2021ÄêÓëDeFiÏà¹ØµÄ¹¥»÷»î¶¯Õ¼ËùÓÐÖ÷Òª¹¥»÷»î¶¯µÄ76%£¬£¬£¬£¬£¬ £¬£¬¶ÔDeFiƽ̨µÄ¹¥»÷Ôì³ÉµÄËðʧÁè¼Ý4.74ÒÚÃÀÔª¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/hackers-steal-29-million-from-crypto-platform-cream-finance/