每日安全快讯2026-07-28

admin 2026-08-04 08:08:28 网络安全文章 来源:ZONE.CI 全球网 0 阅读模式

文章总结: 今日安全快讯汇总了多个高危漏洞在野利用事件,包括PTCWindchill反序列化漏洞被用于勒索攻击、FastJson零日漏洞遭黑客利用攻击美国企业。同时,FBI披露了瓦解LockBit勒索软件组织的行动细节,安永和可口可乐也确认发生数据泄露。建议用户关注相关漏洞并更新补丁。 综合评分: 83 文章分类: 漏洞分析,威胁情报,恶意软件,数据泄露,应急响应


cover_image

每日安全快讯 2026-07-28

cwj cwj

蔡文姬的安全小屋

2026年7月28日 17:58 浙江

在小说阅读器读本章

去阅读

每日安全快讯 2026-07-28

以下为今日精选安全资讯,内容基于公开来源整理。建议结合自身资产范围判断影响。

一、安全新闻

1. PTC Windchill Vulnerability Exploited in Ransomware Campaign

来源:SecurityWeek 时间:2026-07-27 21:19 影响:疑似在野利用或KEV、勒索风险、高危漏洞

摘要:The critical unsafe deserialization flaw allows attackers to execute arbitrary code remotely, without authentication. The post PTC Windchill Vulnerability Exploited in Ransomwar…

原文链接: https://www.securityweek.com/ptc-windchill-vulnerability-exploited-in-ransomware-campaign/

2. Hackers target US firms in FastJson RCE zero-day attacks

来源:BleepingComputer Security 时间:2026-07-28 07:49 影响:疑似在野利用或KEV、高危漏洞

摘要:Hackers are actively exploiting a vulnerability in the FastJson open-source Java library, allowing remote code execution without user interaction or elevated privileges. […]

原文链接: https://www.bleepingcomputer.com/news/security/hackers-target-us-firms-in-fastjson-rce-zero-day-attacks/

3. FBI: Breaking Affiliate Trust Sped Along LockBit’s Takedown

来源:Dark Reading 时间:2026-07-28 04:33 影响:勒索风险、高危漏洞

摘要:An FBI agent explains how the mulitnational law-enforcement Operation Cronos was successful in disrupting the largest ransomware group of its time.

原文链接: https://www.darkreading.com/cybersecurity-operations/fbi-breaking-affiliate-trust-lockbit-takedown

4. Ernst & Young data breach claimed by ShinyHunters extortion gang

来源:BleepingComputer Security 时间:2026-07-27 23:12 影响:供应链影响、数据泄露事件

摘要:The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company’s systems v…

原文链接: https://www.bleepingcomputer.com/news/security/ernst-and-young-data-breach-claimed-by-shinyhunters-extortion-gang/

5. Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack

来源:SecurityWeek 时间:2026-07-27 19:29 影响:勒索风险、数据泄露事件

摘要:The Anubis cybercrime group has taken credit for the attack and is threatening to leak data. The post Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack appeared fi…

原文链接: https://www.securityweek.com/coca-cola-confirms-data-breach-after-fairlife-ransomware-attack/

二、漏洞与风险通告

1. USN-8619-1: Linux kernel (HWE) vulnerabilities

来源:Ubuntu Security Notices 时间:2026-07-28 15:28 影响:涉及CVE、高危漏洞、广泛使用产品

摘要:It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose…

原文链接: https://ubuntu.com/security/notices/USN-8619-1

2. USN-8620-1: Linux kernel vulnerabilities

来源:Ubuntu Security Notices 时间:2026-07-28 15:31 影响:涉及CVE、广泛使用产品

摘要:Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-boun…

原文链接: https://ubuntu.com/security/notices/USN-8620-1

3. CVE-2023-37465 / org.xwiki.contrib:discussions-server has Cross-Site Request Forgery (CSRF) issue that makes it possible to delete messages

来源:GitHub Security Advisories 时间:2026-07-28 01:04 影响:涉及CVE、高危漏洞

摘要:GitHub Advisory: GHSA-4j38-rw27-97gx;严重性:medium;### Impact It’s possible to forge a request to delete a message. ### Patches The problem has been patched in version 2.0-rc-1 of…

原文链接: https://github.com/advisories/GHSA-4j38-rw27-97gx

4. n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n Process

来源:The Hacker News 时间:2026-07-27 21:05 影响:涉及CVE

摘要:n8n has patched a high-severity expression-sandbox escape that could let an authenticated workflow editor execute operating-system commands on the server running the automation…

原文链接: https://thehackernews.com/2026/07/n8n-sandbox-escape-lets-workflow.html

5. CVE-2026-64785 / swift-nio-http2: Missing CR/LF/NUL validation in header values

来源:GitHub Security Advisories 时间:2026-07-25 05:52 影响:涉及CVE、高危漏洞

摘要:GitHub Advisory: GHSA-q3g2-m552-3r9c;严重性:medium;## Summary SwiftNIO HTTP/2 was missing validation on inbound HEADERS frames that let CR, LF, NUL, SP and other control characters…

原文链接: https://github.com/advisories/GHSA-q3g2-m552-3r9c


声明:本文为公开信息整理,不复现攻击细节,不构成漏洞利用指导。


免责声明:

本文所载程序、技术方法仅面向合法合规的安全研究与教学场景,旨在提升网络安全防护能力,具有明确的技术研究属性。

任何单位或个人未经授权,将本文内容用于攻击、破坏等非法用途的,由此引发的全部法律责任、民事赔偿及连带责任,均由行为人独立承担,本站不承担任何连带责任。

本站内容均为技术交流与知识分享目的发布,若存在版权侵权或其他异议,请通过邮件联系处理,具体联系方式可点击页面上方的联系我

本文转载自:蔡文姬的安全小屋 cwj cwj《每日安全快讯 2026-07-28》

评论:0   参与:  0