CODESYS Web服务器缓冲区溢出漏洞(CVE-2020-10245);iOS包含未修复的VPN绕过漏洞

发布时间 2020-03-28

【漏洞补丁】


CODESYS Web服务器缓冲区溢出漏洞(CVE-2020-10245)

https://threatpost.com/critical-codesys-bug-remote-code-execution/154213/


0patch发布Windows Type 1字体0day的临时修复补丁

https://www.bleepingcomputer.com/news/security/windows-font-parsing-zero-days-get-temporary-fix/


【威胁情报】


Silence和TA505攻击欧洲至少两家制药和制造业公司

https://www.bleepingcomputer.com/news/security/russian-speaking-hackers-attack-pharma-manufacturing-companies-in-europe/


网络保险公司Chubb成为勒索软件Maze的最新受害者

https://www.bleepingcomputer.com/news/security/chubb-cyber-insurer-allegedly-hit-by-maze-ransomware-attack/


【安全漏洞】


iOS包含未修复的VPN绕过漏洞,可暴露用户数据及IP

https://www.bleepingcomputer.com/news/security/unpatched-ios-bug-blocks-vpns-from-encrypting-all-traffic/