勒索团伙REvil使用Kaseya VSA举行供应链攻击;研究职员披露西门子SIMATIC HMI产品中的清静误差

宣布时间 2021-07-04

【威胁情报】


勒索团伙REvil使用Kaseya VSA举行供应链攻击运动

https://blog.talosintelligence.com/2021/07/revil-ransomware-actors-attack-kaseya.html


【误差补丁】


Microsoft披露PowerShell 7中的远程代码执行误差

https://www.bleepingcomputer.com/news/security/microsoft-warns-of-critical-powershell-7-code-execution-vulnerability/


研究职员披露西门子SIMATIC HMI产品中的清静误差

https://therecord.media/telnet-service-left-enabled-and-without-a-password-on-simatic-hmi-comfort-panels/


0patch平台宣布PrintNightmare 0day的非官方补丁

https://www.bleepingcomputer.com/news/security/actively-exploited-printnightmare-zero-day-gets-unofficial-patch/


【剖析报告】


Which宣布有关针对智能家居的攻击运动的剖析报告

https://www.which.co.uk/news/2021/07/how-the-smart-home-could-be-at-risk-from-hackers/