À¶ÑÀ·ì϶ӰÏ쳬29¿îÉ豸 £¬¿É±»ÓÃÓÚÇÔÌýÒþÖÔ

°ä²¼¹¦·ò 2025-06-30

1. À¶ÑÀ·ì϶ӰÏ쳬29¿îÉ豸 £¬¿É±»ÓÃÓÚÇÔÌýÒþÖÔ


6ÔÂ29ÈÕ £¬½üÈÕ £¬À¶ÑÀоƬ×鰲ȫ·ì϶Òý·¢¿í·ºÓÇÓô £¬ÆäÓ°ÏìÁìÓòÉõ¹ã £¬²¨¼°Ê®´óÒôÆµÆ·ÅÆµÄ29¿îÒÔÉÏÉ豸 £¬²úÆ·ÀàÐÍÔ̺¬ÒôÏä¡¢¶úÈû¡¢¶ú»úÒÔ¼°ÎÞÏßÂó¿Ë·çµÈ ¡£¹¥»÷ÕßÒ»µ©ÀûÓø÷ì϶ £¬±ã¿É½øÐÐÇÔÌý¡¢ÇÔÈ¡Ãô¸ÐÐÅÏ¢µÈ¶ñÒâ²Ù×÷ £¬ÉõÖÁÔÚÌØ¶¨Ç°ÌáÏÂÇÔÈ¡ÊÖ»úͨ»°¼Í¼ÓëͨѶ¼ £¬¶ÔÓû§ÒþÖÔ°²È«×é³ÉÑϳÁÍþв ¡£Ôڵ¹úTROOPERS°²È«»áÒéÉÏ £¬ÍøÂ簲ȫ¹«Ë¾ERNWÅû¶ÁĘ̈ÍåÂç´ïϵͳ¼¶Ð¾Æ¬£¨SoCs£©´æÔÚµÄÈý´ó·ì϶ ¡£ÕâÀàоƬÔÚÕæÎÞÏßÁ¢ÌåÉù£¨TWS£©¶úÈûÖÐÀûÓÃÆÕ±é ¡£¹ÌÈ»·ì϶×ÔÉí²¢·ÇÖ±½ÓÖÂÃü £¬µ«ÀûÓÃǰÌἫΪ¿Ì±¡ £¬¹¥»÷Õß²»½öÒªÔÚÀ¶ÑÀÁìÓòÄÚÎïÀí¿¿½üÖ¸±ê £¬»¹Ðè¾ß±¸¸ßˮƽ¼¼ÊõÄÜÁ¦ ¡£¾ßÌå·ì϶ÓУºGATT·þÎñÉí·ÝÑé֤ȱʧ£¨CVE - 2025 - 20700 £¬ÖÐΣ£©¡¢À¶ÑÀBR/EDRºÍ̸ÈÏ֤ȱʧ£¨CVE - 2025 - 20701 £¬ÖÐΣ£©ÒÔ¼°×Ô½ç˵ºÍ̸¹Ø¼üÖ°ÄÜȱµã£¨CVE - 2025 - 20702 £¬¸ßΣ£© ¡£ERNW×êÑÐÈËÔ±Òѳɹ¦¿ª·¢³ö¸ÅÏëÑéÖ¤´úÂë £¬¿ÉÄܶÁȡָ±ê¶ú»ú²¥·ÅµÄÄÚÈÝ ¡£Ä¿Ç° £¬Âç´ïÒѰ䲼º¬½¨¸´¹æ»®µÄ¸üаæSDK £¬É豸Ôì×÷ÉÌÒ²ÔÚ¿ª·¢·Ö·¢²¹¶¡ ¡£µ«µÂ¹úHeiseýÌåÖ¸³ö £¬³¬°ëÊýÊÜÓ°ÏìÉ豸¹Ì¼þÈÔδ¸üР£¬·ì϶ÉÐδµÃµ½ÏÖʵ½¨¸´ ¡£


https://www.bleepingcomputer.com/news/security/bluetooth-flaws-could-let-hackers-spy-through-your-microphone/


2. ÏÄÍþÒĺ½¿ÕÔâÍøÂç¹¥»÷ £¬¶à²¿ÃźÏ×÷Ó¦¶Ô


6ÔÂ27ÈÕ £¬½üÈÕ £¬ÃÀ¹úµÚÊ®´óóÒ׺½¿Õ¹«Ë¾ÏÄÍþÒĺ½¿ÕÕýµ÷²éһ·µ¼Ö²¿ÃÅϵͳÖжϵÄÍøÂç¹¥»÷ÊÂÎñ ¡£ÏÄÍþÒĺ½¿Õ¹æÄ£ÖØ´ó £¬Õ¼Óг¬7000ÃûÔ±¹¤¡¢ÈÕ¾ù235¸öº½°àÒÔ¼°³¬60¼Ü·É»úµÄ»ú¶Ó £¬º½Â·ÏνÓÏÄÍþÒÄÓë15¸öÃÀ¹ú´ó½³ÇÊм°ÑÇÌ«µØÓò10¸öÖ÷ÕŵØ ¡£ÖÜËÄÉÏÎç £¬ÏÄÍþÒĺ½¿Õ°ä·¢ÉêÃ÷ £¬³ÆÕâ´ÎÊÂÎñδӰÏì·ÉÐа²È« £¬ÒÑÁªÏµÓйز¿ÃÅЭÖúµ÷²é £¬»¹ÀñƸ±í²¿ÍøÂ簲ȫר¼ÒÆÀ¹À¹¥»÷Ó°Ïì¡¢ÖúÁ¦ÏµÍ³¸´Ô­ ¡£¹«Ë¾°µÊ¾ £¬Õý´¦ÖÃÓ°Ï첿ÃÅITϵͳµÄÍøÂ簲ȫÊÂÎñ £¬Ê×Òª¹¤×÷ÊDZ£Ïճ˿ͺÍÔ±¹¤°²È« £¬ÒѲÉÈ¡´ëʩȷ±£ÔËÓª°²È« £¬Ä¿Ç°º½°àÕý°²È«°´´òËãÔËÐÐ ¡£¸Ãº½¿Õ¹«Ë¾ÍøÕ¾ºá·ùÏÔʾ £¬ÊÂÎñδ¶Ôº½°àºÍ¹Û¹âÔì³ÉÓ°Ïì ¡£Ä¿Ç° £¬Éв»Ã÷ÏÔÏÄÍþÒĺ½¿ÕϵͳÊÇ·ñÊÜÀÕË÷Èí¼þ¹¥»÷Ó°Ïì £¬»òÊÇÒò¶ôÔìÎ¥¹æÐÐΪ¶ø¹Ø¹Ø ¡£º½¿Õ¹«Ë¾Î´Ð¹Â©¹¥»÷ÐÔÖÊ £¬Ò²ÎÞÀÕË÷Èí¼þ×éÖ¯Ðû³ÆÕƹÜ ¡£


https://www.bleepingcomputer.com/news/security/hawaiian-airlines-discloses-cyberattack-flights-not-affected/


3. NorthernLightHealth»¼ÕßÊܵ½Compumedics°²È«ÊÂÎñÓ°Ïì


6ÔÂ27ÈÕ £¬¾ÝLeelaStockley±¨Â· £¬NorthernLightHealthµÄ¹©¸øÉÌCompumedics²úÉúÊý¾Ý°²È«ÊÂÎñ £¬²¿ÃÅ»¼ÕßÐÅÏ¢»òÔâй¶ ¡£CompumedicsΪ±±¼«¹â¶«ÃåÒòÒ½ÁÆÖÐÐÄ¡¢±±¼«¹âARGouldºÍ±±¼«¹âÈû°Í˹µÙ¿â¿Ë¹ÈÒ½ÔºµÄ»¼ÕßÌṩ˯Ãß×è°­Õï¶Ï·þÎñ ¡£CompumedicsÍøÕ¾ÉÏδעÃ÷ÈÕÆÚµÄ֪ͨÌṩÁ˸ü¶àϸ½Ú ¡£ÈëÇÖÊÂÎñ²úÉúÔÚ2ÔÂ15ÈÕÖÁ3ÔÂ23ÈÕÖ®¼ä £¬2025Äê3ÔÂ22ÈÕ³õ´Î±»·¢ÏÖ £¬ÆÚ¼äÎļþ±»½Ó¼û»òй¶ £¬µ«Î´×¢Ã÷ÈëÇÖÕßÈôºÎ»ñµÃ½Ó¼ûȨÏÞ £¬Ò²Î´Ìá¼°ÊÇ·ñ´æÔÚÀÕË÷ÒªÇó ¡£ÉæÊ»¼ÕßµÄÒ½ÁƱ£½¡ÌṩÉ̿ͻ§ÒÑÓÚ2025Äê4ÔÂ29ÈÕÊÕµ½Í¨Öª ¡£ÕâЩÎļþÔ̺¬»¼ÕßÐÕÃû¡¢µ®ÉúÈÕÆÚ¡¢È˶¡Í³¼ÆÐÅÏ¢¡¢²¡Àú±àºÅ¡¢Ò½ÖκÍÕï¶ÏÐÅÏ¢¡¢Ò½ÖÎÈÕÆÚ¡¢Ò½ÁÆ·þÎñÌṩÕßÐÕÃûÒÔ¼°Ë¯Ãß×êÑÐÏêÇéºÍÁ˾ֵÈ ¡£²¿ÃÅÉæ°¸ÈËÔ±Îļþ¿ÉÄÜ»¹Ô̺¬Éç»á°²È«ºÅÂëºÍ/»òÒ½ÁƱ£ÏÕÐÅÏ¢ ¡£µ«NorthernLightHealth¹ÙÔ±°µÊ¾ £¬»¼ÕßÉç»á°²È«ºÅÂë¡¢Ò½ÁƱ£ÏÕ»ò²ÆÕþÐÅϢδÊÜÓ°Ïì ¡£Õâ´ÎÊÂÎñÉæ¼°¶à¼ÒÒ½ÁÆ·þÎñÌṩÕߣ¨¿Í»§£©µÄ»¼Õß £¬Ô̺¬°ÙĽ´ó˯ÃßÓëÌØÉ«·þÎñ/µ«Ô¸Ò½ÁƱ£½¡¡¢²¼ÀÊÉ­Ò½ÁƼ¯ÍŵÈ ¡£


https://databreaches.net/2025/06/27/northern-light-health-patients-affected-by-security-incident-at-compumedics-10-healthcare-entities-affected/


4. ÒþÖÔרԹØýÔÚÉó²éOntarioHealthatHomeÊý¾Ýй¶ÊÂÎñ


6ÔÂ27ÈÕ £¬°²´ÖÂÔÊ¡ÒþÖÔרԱÓë°²´ÖÂÔÊ¡ÎÀÉú¾ÖÕý¶ÔÓ°Ïì¼ÒÍ¥»¤ÀíЭµ÷·þÎñ»ú¹¹OntarioHealthatHomeµÄÊý¾Ýй¶ÊÂÎñ·¢Õ¹µ÷²é ¡£°²´ÖÂÔÊ¡×ÔÓɵ³ÔÚÖÜÎåÐÂÎŰ䲼»áÉϳÆ £¬½ñÄê3ÔÂ17ÈÕ×óÓÒ²úÉúµÄÕâ´ÎÎ¥¹æÐÐΪ £¬¿ÉÄÜй¶ÖÁÉÙ20ÍòÃû¼ÒÍ¥»¤Àí»¼ÕßµÄÓ×ÎÒ½¡È«ÐÅÏ¢ £¬ÇÒÆäʱ²¢Î´¹«¿ª ¡£ÕâЩÊý¾ÝÒ»µ©Ð¹Â¶ £¬¿ÉÄÜÒý·¢Éí·Ý͵ÇÔ¡¢±£ÏÕڲƭ¡¢ÆçÊÓ¡¢³ôÃû»¯¡¢ÍøÂç´¹µöºÍÀÕË÷µÈһϵÁÐÎÊÌâ ¡£°²´ÖÂÔÊ¡ÎÀÉú²¿³¤Î÷¶ûά櫡¤Çí˹°µÊ¾ £¬ÊÂÎñÉæ¼°µÚÈý·½¹©¸øÉÌ £¬°²´ÖÂÔÊ¡ÎÀÉú¾ÖºÍ°²´ÖÂÔÊ¡¼ÒÍ¥½¡È«¾ÖÔÚµ÷²é £¬²¢½«°´Ðè֪ͨ¸ö±ð»¼Õß ¡£¸Ã²¿½²»°È˰£Âꡤ²¨²¨Î¬Ææ³Æ £¬OntarioHealthatHomeÒѱ»Åúʾ²ÉÈ¡´ëʩԤ·ÀÀàËÆÊÂÎñÔٴβúÉú £¬µ±¾ÔìÚÍû·þÎñÌṩÉ̱ü³Ö×î¸ß³ß¶È £¬ÊµÊ±¼ø±ð²¢Í¨ÖªÍøÂç¹¥»÷ÊÂÎñ £¬Î´×ñÑ­·¨Ê½µÄ×ö·¨²»³É½ÓÊÜ ¡£


https://ca.news.yahoo.com/privacy-commissioner-reviewing-reported-ontario-152358162.html


5. OneClik¶ñÒâÈí¼þÀûÓÃClickOnceºÍGolangºóÃŹ¥»÷ÄÜÔ´ÐÐÒµ


6ÔÂ27ÈÕ £¬ÍøÂ簲ȫ×êÑÐÈËÔ±½ÒʾÁËÒ»ÏîÃûΪOneClikµÄй¥»÷»î¶¯ £¬¸Ã»î¶¯ÀûÓÃ΢ÈíClickOnceÈí¼þ²¿Êð¼¼ÊõÓ붨ÔìGolangºóÃÅ £¬×¨ÃÅÕë¶ÔÄÜÔ´¡¢Ê¯ÓͺÍÌìÈ»ÆøÐÐÒµ×éÖ¯ÌáÒé¹¥»÷ ¡£¹¥»÷Á´Ê¼ÓÚÍøÂç´¹µöÓʼþ £¬ÆäÖÐÔ̺¬Ö¸ÏòÐéαӲ¼þ·ÖÎöÍøÕ¾µÄÁ´½Ó £¬¸ÃÍøÕ¾×÷Ϊ´«µÝClickOnceÀûÓ÷¨Ê½µÄÇþ· ¡£ClickOnce¼¼ÊõËä±ãÓںϷ¨Èí¼þ×°ÖøüР£¬È´Ò²±»¹¥»÷ÕßÀûÓà £¬Í¨¹ýÊÜÐÅÀµµÄWindows¶þ½øÔìÎļþ¡°dfsvc.exe¡±ÔËÐжñÒâ´úÂë £¬ÎÞÐèÖÎÀíȨÏÞ¼´¿É×°Öà £¬Îª¶ñÒâ¸ºÔØµÄÖ´ÐÐÌṩÁË·½±ã ¡£¶ñÒâ´úÂëͨ¹ýAppDomainManager×¢Èë¼¼ÊõÆô¶¯ £¬×îÖÕÔÚÄÚ´æÖÐÖ´ÐмÓÃÜshellcodeÒÔ¼ÓÔØRunnerBeaconºóÃÅ ¡£¸ÃºóÃÅѡȡGolang±àд £¬¾ß±¸×³´óµÄͨѶÄÜÁ¦ £¬¿Éͨ¹ý¶àÖÖºÍ̸ÓëC2·þÎñÆ÷ͨѶ £¬Ö´ÐÐÎļþ²Ù×÷¡¢¹ý³Ìö¾Ù¡¢È¨ÏÞÌáÉý¼°ºáÏòÒÆ¶¯µÈ¶ñÒâÐÐΪ ¡£´Ë±í £¬RunnerBeacon»¹Ô̺¬·´·ÖÎöÖ°ÄÜÒÔÌӱܼì²â £¬²¢Ö§³Ö¶àÖÖÍøÂç²Ù×÷ÒÔÍÆ½ø´úÀíºÍ·ÓÉÖ°ÄÜ ¡£OneClik»î¶¯ÉÐδ±»Õýʽ¹é×ïÓÚÈκÎÒÑÖª×éÖ¯ ¡£


https://thehackernews.com/2025/06/oneclik-malware-targets-energy-sector.html


6. ºÚ¿Í³Æ´ÓÁª¹ú¼àÓü¾ÖÇÔÈ¡ÁË320GBµÄÃô¸ÐÊý¾Ý


6ÔÂ27ÈÕ £¬ÃÀ¹úÁª¹ú¼àÓü¾Ö£¨BOP£©Ôâ·êÁËһ·ÑϳÁµÄÉæÏӺڿ͹¥»÷ÊÂÎñ £¬¹¥»÷ÕßÐû³Æ´ÓBOPÇÔÈ¡ÁËÊý°ÙGB¼«ÆäÃô¸ÐµÄÊý¾Ý £¬ÕâЩÊý¾ÝÉæ¼°Çô·¸ºÍ¹¤×÷ÈËÔ±µÄÖî¶à¹Ø¼üÐÅÏ¢ ¡£¹¥»÷ÕßÔÚÒ»¸öÈȵãÊý¾Ýй¶ÂÛ̳ÉÏ·¢Ìû £¬³ÆÊý¾ÝÀ´×ÔBOPµÄÒ»¸ö·þÎñÆ÷ £¬Ô̺¬¶à¸öÊý¾Ý¿â £¬×ÜÁ¿³¬320GB £¬ÇÒÐÅÏ¢¼«¶Èнü £¬×î½ü¸üÐÂÖÁ6ÔÂ20ÈÕ ¡£ÃÀ¹úÁª¹ú¼àÓüÖÎÀí¾Ö×÷ΪÃÀ¹ú·¨ÂÉ»ú¹¹ £¬ÖÎÀí×ÅÃÀ¹úËùÓÐÁª¹ú¼àÓü £¬Õ¼Óг¬3.5ÍòÃûÔ±¹¤ £¬¹ØÑº×ÅÔ¼16ÍòÃûÇô·¸ ¡£Ãæ¶ÔÕâ´ÎÊÂÎñ £¬BOP°µÊ¾ÒѰÑÎȵ½¹¥»÷ÕßµÄÖ¸¿Ø £¬²¢ÔÚµ÷²éÆäºÏ·¨ÐÔ ¡£¹¥»÷ÕßÐû³Æ £¬±»µÁÊý¾Ý¿âÔ̺¬´óÁ¿¾ßÌåÐÅÏ¢ £¬º­¸ÇÈ«Ãû¡¢×¢²áºÅÂë¡¢Éç»á°²È«ºÅÂë¡¢ÐÔ±ð¡¢ÖÖ×å¡¢Ò½ÁÆÏêÇé¡¢·çÏճɷ֡¢µØµã¼àÓü¡¢±äÂһ㱨¡¢¿ªÊÍ´òËãµÈÖî¶àÄÚÈÝ ¡£Ò»µ©ÕâЩָ¿ØµÃµ½Ö¤Êµ £¬Õâ´ÎйÃÜÊÂÎñ¶ÔÇô·¸ºÍ¹¤×÷ÈËÔ±¶øÑÔ¶¼½«¼«ÆäΣÏÕ ¡£·¸·¨·Ö×ÓÈô»ñÈ¡ÆëÈ«Êý¾Ý¼¯ £¬¿ÉÄÜ»áÀûÓÃÕâЩÐÅÏ¢½øÐÐÉí·Ý͵ÇÔºÍڲƭ»î¶¯ ¡£Çô·¸Ò²¿ÉÄÜÒòÐÅϢй¶¶ø³ÉΪ·¸×ï·Ö×Ó»ò»³Óб¨³ðÉúÀíÕßµÄÖ¸±ê ¡£


https://cybernews.com/security/federal-bureau-prisons-alleged-breach/