文章总结: 今日安全快讯汇总了多个高危漏洞在野利用事件,包括PTCWindchill反序列化漏洞被用于勒索攻击、FastJson零日漏洞遭黑客利用攻击美国企业。同时,FBI披露了瓦解LockBit勒索软件组织的行动细节,安永和可口可乐也确认发生数据泄露。建议用户关注相关漏洞并更新补丁。 综合评分: 83 文章分类: 漏洞分析,威胁情报,恶意软件,数据泄露,应急响应
每日安全快讯 2026-07-28
cwj cwj
蔡文姬的安全小屋
2026年7月28日 17:58 浙江
在小说阅读器读本章
去阅读
每日安全快讯 2026-07-28
以下为今日精选安全资讯,内容基于公开来源整理。建议结合自身资产范围判断影响。
一、安全新闻
1. PTC Windchill Vulnerability Exploited in Ransomware Campaign
来源:SecurityWeek 时间:2026-07-27 21:19 影响:疑似在野利用或KEV、勒索风险、高危漏洞
摘要:The critical unsafe deserialization flaw allows attackers to execute arbitrary code remotely, without authentication. The post PTC Windchill Vulnerability Exploited in Ransomwar…
原文链接: https://www.securityweek.com/ptc-windchill-vulnerability-exploited-in-ransomware-campaign/
2. Hackers target US firms in FastJson RCE zero-day attacks
来源:BleepingComputer Security 时间:2026-07-28 07:49 影响:疑似在野利用或KEV、高危漏洞
摘要:Hackers are actively exploiting a vulnerability in the FastJson open-source Java library, allowing remote code execution without user interaction or elevated privileges. […]
原文链接: https://www.bleepingcomputer.com/news/security/hackers-target-us-firms-in-fastjson-rce-zero-day-attacks/
3. FBI: Breaking Affiliate Trust Sped Along LockBit’s Takedown
来源:Dark Reading 时间:2026-07-28 04:33 影响:勒索风险、高危漏洞
摘要:An FBI agent explains how the mulitnational law-enforcement Operation Cronos was successful in disrupting the largest ransomware group of its time.
原文链接: https://www.darkreading.com/cybersecurity-operations/fbi-breaking-affiliate-trust-lockbit-takedown
4. Ernst & Young data breach claimed by ShinyHunters extortion gang
来源:BleepingComputer Security 时间:2026-07-27 23:12 影响:供应链影响、数据泄露事件
摘要:The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company’s systems v…
原文链接: https://www.bleepingcomputer.com/news/security/ernst-and-young-data-breach-claimed-by-shinyhunters-extortion-gang/
5. Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack
来源:SecurityWeek 时间:2026-07-27 19:29 影响:勒索风险、数据泄露事件
摘要:The Anubis cybercrime group has taken credit for the attack and is threatening to leak data. The post Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack appeared fi…
原文链接: https://www.securityweek.com/coca-cola-confirms-data-breach-after-fairlife-ransomware-attack/
二、漏洞与风险通告
1. USN-8619-1: Linux kernel (HWE) vulnerabilities
来源:Ubuntu Security Notices 时间:2026-07-28 15:28 影响:涉及CVE、高危漏洞、广泛使用产品
摘要:It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose…
原文链接: https://ubuntu.com/security/notices/USN-8619-1
2. USN-8620-1: Linux kernel vulnerabilities
来源:Ubuntu Security Notices 时间:2026-07-28 15:31 影响:涉及CVE、广泛使用产品
摘要:Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-boun…
原文链接: https://ubuntu.com/security/notices/USN-8620-1
3. CVE-2023-37465 / org.xwiki.contrib:discussions-server has Cross-Site Request Forgery (CSRF) issue that makes it possible to delete messages
来源:GitHub Security Advisories 时间:2026-07-28 01:04 影响:涉及CVE、高危漏洞
摘要:GitHub Advisory: GHSA-4j38-rw27-97gx;严重性:medium;### Impact It’s possible to forge a request to delete a message. ### Patches The problem has been patched in version 2.0-rc-1 of…
原文链接: https://github.com/advisories/GHSA-4j38-rw27-97gx
4. n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n Process
来源:The Hacker News 时间:2026-07-27 21:05 影响:涉及CVE
摘要:n8n has patched a high-severity expression-sandbox escape that could let an authenticated workflow editor execute operating-system commands on the server running the automation…
原文链接: https://thehackernews.com/2026/07/n8n-sandbox-escape-lets-workflow.html
5. CVE-2026-64785 / swift-nio-http2: Missing CR/LF/NUL validation in header values
来源:GitHub Security Advisories 时间:2026-07-25 05:52 影响:涉及CVE、高危漏洞
摘要:GitHub Advisory: GHSA-q3g2-m552-3r9c;严重性:medium;## Summary SwiftNIO HTTP/2 was missing validation on inbound HEADERS frames that let CR, LF, NUL, SP and other control characters…
原文链接: https://github.com/advisories/GHSA-q3g2-m552-3r9c
声明:本文为公开信息整理,不复现攻击细节,不构成漏洞利用指导。
免责声明:
本文所载程序、技术方法仅面向合法合规的安全研究与教学场景,旨在提升网络安全防护能力,具有明确的技术研究属性。
任何单位或个人未经授权,将本文内容用于攻击、破坏等非法用途的,由此引发的全部法律责任、民事赔偿及连带责任,均由行为人独立承担,本站不承担任何连带责任。
本站内容均为技术交流与知识分享目的发布,若存在版权侵权或其他异议,请通过邮件联系处理,具体联系方式可点击页面上方的联系我。
本文转载自:蔡文姬的安全小屋 cwj cwj《每日安全快讯 2026-07-28》
版权声明
本站仅做备份收录,仅供研究与教学参考之用。
读者将信息用于其他用途的,全部法律及连带责任由读者自行承担,本站不承担任何责任。








评论