¡¾Íþвͨ¸æ¡¿¾ÅÓÎÀÏ¸ç¿Æ¼¼ÍþвÇ鱨Öܱ¨£¨2021.10.25-2021.10.31£©
2021-11-01
Ò»¡¢ Íþвͨ¸æ
CODESYS V2¶à¸ö¸ßΣÎó²îͨ¸æ£¨CVE-2021-30188¡¢CVE-2021-34595¡¢CVE-2021-34596£©
¡¾Ðû²¼Ê±¼ä¡¿2021-10-28 20:00:00 GMT
¡¾¸ÅÊö¡¿
¿ËÈÕ£¬CodeSys¹Ù·½Ðû²¼4·ÝÇå¾²¸üÐÂͨ¸æ£¬ÐÞ¸´ÁËcodesys V2µÄ10¸öÎó²î£¬ÆäÖоÅÓÎÀÏ¸ç¿Æ¼¼¸ñÎïʵÑéÊÒÌá½»µÄ3¸öÎó²î±»ÆÀΪ¸ßΣ£¬²¢»ñµÃ¹Ù·½ÖÂл¡£Õâ3¸öÎó²îµÄ¹¥»÷·¾¶¾ùΪcodesys runtimeÖ§³ÖµÄ˽ÓÐͨѶÐÒ飬ʹÓÃÕâЩÎó²î£¬ÇáÔò¿ÉÄܵ¼ÖÂÄ¿µÄ²úÆ·±¬·¢¾Ü¾ø·þÎñ¡¢å´»úµÈЧ¹û£¬ÖØÔò¿ÉʹĿµÄÖ´ÐжñÒâ¹¥»÷ÕßÌåÀýµÄʹÓôúÂ룬ÒÔ´ËÓ°ÏìÉú²ú¡¢Ò»Á¬Ç±ÔÚ¡¢ÇÔÈ¡Ãô¸ÐÊý¾Ý¡¢·¢¶¯¶¨µã¹¥»÷µÈ¡£
¡¾Á´½Ó¡¿
https://nti.nsfocus.com/threatWarning
GitLab Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î£¨CVE-2021-22205£©
¡¾Ðû²¼Ê±¼ä¡¿2021-10-28 17:00:00 GMT
¡¾¸ÅÊö¡¿
¿ËÈÕ£¬¾ÅÓÎÀÏ¸ç¿Æ¼¼¼à²âµ½ÓÐÑо¿Ö°Ô±Åû¶ÁËGitLab Ô¶³ÌÏÂÁîÖ´ÐÐÎó²î(CVE-2021-22205)µÄʹÓóÌÐò£¬ÇÒ·¢Ã÷ÓÉÓÚGitLab±£´æÎ´ÊÚȨµÄ¶Ëµã£¬µ¼Ö¸ÃÎó²îÔÚÎÞÐè¾ÙÐÐÉí·ÝÑéÖ¤µÄÇéÐÎϼ´¿É¾ÙÐÐʹÓã¬ÉçÇø°æ(CE)ºÍÆóÒµ°æ(EE)½ÔÊÜÓ°Ïì¡£4ÔÂ15ÈÕ£¬GitLab¹Ù·½Ðû²¼Çå¾²¸üÐÂÐÞ¸´ÁË´ËGitLabÏÂÁîÖ´ÐÐÎó²î£¨CVE-2021-22205£©£¬ÓÉÓÚGitLabÖеÄExifToolûÓжԴ«ÈëµÄͼÏñÎļþµÄÀ©Õ¹Ãû¾ÙÐÐ׼ȷ´¦Öóͷ££¬¹¥»÷Õßͨ¹ýÉÏ´«ÌØÖƵĶñÒâͼƬ£¬¿ÉÒÔÔÚÄ¿µÄ·þÎñÆ÷ÉÏÖ´ÐÐí§ÒâÏÂÁî¡£CVSSÆÀ·ÖΪ9.9£¬ÏÖÔÚÒÑ·¢Ã÷ÔÚҰʹÓã¬ÇëÏà¹ØÓû§¾¡¿ì½ÓÄɲ½·¥¾ÙÐзÀ»¤¡£GitLab ÊÇÓÉGitLab Inc.¿ª·¢µÄÒ»¸öÓÃÓÚ¿ÍÕ»ÖÎÀíϵͳµÄ¿ªÔ´ÏîÄ¿£¬Ê¹ÓÃGit×÷Ϊ´úÂëÖÎÀí¹¤¾ß£¬¿Éͨ¹ýWeb½çÃæ»á¼û¹ûÕæ»ò˽ÈËÏîÄ¿¡£
¡¾Á´½Ó¡¿
https://nti.nsfocus.com/threatWarning
Windows Update Assistant ȨÏÞÌáÉý0day©£©
¡¾Ðû²¼Ê±¼ä¡¿2021-10-28 18:00:00 GMT
¡¾¸ÅÊö¡¿
10ÔÂ28ÈÕ£¬¾ÅÓÎÀÏ¸ç¿Æ¼¼CERT¼à²â·¢Ã÷Ç÷ÊÆ¿Æ¼¼µÄÁãÈÕÍýÏë (ZDI) Åû¶ÁËWindows Update Assistant Ŀ¼ÅþÁ¬È¨ÏÞÌáÉýÎó²î¡£ÓÉÓÚWindows Update Assistant Öб£´æÌض¨È±ÏÝ£¬¾ßÓеÍȨÏÞÉí·ÝµÄÍâµØ¹¥»÷Õß¿Éͨ¹ý½¨ÉèĿ¼ÅþÁ¬£¬Ê¹ÓÃWindows Update AssistantÀ´É¾³ýÎļþ£¬ÀÖ³ÉʹÓôËÎó²îµÄ¹¥»÷Õß¿ÉÔÚÄ¿µÄϵͳÉÏÌáÉýΪÖÎÀíԱȨÏÞ²¢Ö´ÐÐí§Òâ´úÂë¡£´ËÎó²îÏÖÔÚ´¦ÓÚ0day״̬£¬Î¢Èí¹Ù·½ÔÝδÐû²¼·À»¤²½·¥¡£
¡¾Á´½Ó¡¿
https://nti.nsfocus.com/threatWarning
¶þ¡¢ ÈÈÃÅ×ÊѶ
1. ºÚ¿Í´ÓCream FinanceÇÔÈ¡Á˼ÛÖµ1.3ÒÚÃÀÔªµÄ¼ÓÃÜÇ®±Ò×ʲú
¡¾¸ÅÊö¡¿
Ñо¿Ö°Ô±·¢Ã÷CREAM Finance ÊÇÒ»ÖÖÈ¥ÖÐÐÄ»¯½è´ûÐÒ飬¹©Ð¡ÎÒ˽¼Ò¡¢»ú¹¹ºÍÐÒé»á¼û½ðÈÚ·þÎñ¡£ËüÏò±»¶¯³ÖÓÐ ETH »ò wBTC µÄÓû§ÔÊÐíÊÕÒæ£¬¹¥»÷Õß´ÓÖÐÐÄ»¯½ðÈÚ (DeFi) ƽ̨ÇÔÈ¡Á˼ÛÖµ 1.3 ÒÚÃÀÔªµÄ¼ÓÃÜÇ®±Ò×ʲú£¬¸Ã¹«Ë¾Ò²Ö¤ÊµÁË´Ë´ÎÏ®»÷¡£¾Ýר¼Ò³Æ£¬¹¥»÷Õß¿ÉÄÜʹÓÃÁËÆ½Ì¨ÉÁ´û¹¦Ð§ÖеÄÎó²î£¬È»ºó½«±»µÁ×ʽð×ªÒÆµ½ËûÃÇ¿ØÖƵÄÇ®°üÖУ¬È»ºóÔÙͨ¹ýÆäËûÇ®°ü¾ÙÐвð·Ö¡£Æ¾Ö¤ CipherTrace ×î½üÐû²¼µÄһƪÎÄÕÂÌåÏÖ£¬DeFi ¹¥»÷¶Ô¹¥»÷ÕßÀ´Ëµ±äµÃºÜÊÇÓÐÀû¿Éͼ£¬µ½ 2021 Äê 7 Ô£¬DeFi ¹¥»÷×ÜÊýµÖ´ï 3.61 ÒڴΣ¬Õ¼ 2021 ÄêËùÓÐÖ÷ÒªºÚ¿Í¹¥»÷µÄ 76%¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMYL
2. ¹¥»÷ÕßʹÓÃеĸù¶ñÒâÈí¼þ»ñÈ¡Óû§Ãô¸ÐÊý¾Ý
¡¾¸ÅÊö¡¿
Ñо¿Ö°Ô±·¢Ã÷ÁËÒ»ÖÖеÄÉú¸ù¶ñÒâÈí¼þ£¬¸Ã¶ñÒâÈí¼þÂþÑÜÔÚ Google Play ºÍÖøÃûµÄµÚÈý·½ÊÐËÁ£¨ÈçÑÇÂíÑ·Ó¦ÓÃÊÐËÁºÍÈýÐÇ Galaxy Store£©ÉÏ£¬ËûÃǽ«¶ñÒâÈí¼þÃüÃûΪ“AbstractEmu”£¬ÓÉÓÚËüʹÓÃÁË´úÂëÁýͳºÍ·´·ÂÕæ¼ì²é£¬ÒÔ×èÖ¹ÔÚÆÊÎöʱÔËÐС£Í¨¹ýʹÓÃÉú¸ùÀú³Ì»ñµÃ¶Ô Android ²Ù×÷ϵͳµÄÌØÈ¨»á¼û£¬¹¥»÷Õß¿ÉÒÔĬĬµØÊÚÓè×Ô¼ºÎ£ÏÕµÄȨÏÞ»ò×°ÖÃÆäËû¶ñÒâÈí¼þ——ÕâЩ°ì·¨Í¨³£ÐèÒªÓû§½»»¥¡£ÌáÉýµÄȨÏÞ»¹ÔÊÐí¶ñÒâÈí¼þ»á¼ûÆäËûÓ¦ÓóÌÐòµÄÃô¸ÐÊý¾Ý£¬ÕâÔÚÕý³£ÇéÐÎÏÂÊDz»¿ÉÄܵġ£¿ÉÊǹ¥»÷ÕßʹÓÃAbstractEmu ½«×Ô¼ºÎ±×°³ÉÐí¶à²î±ðµÄÓ¦ÓóÌÐò£º°üÀ¨ÊÊÓóÌÐòÓ¦ÓóÌÐò£¬ÀýÈçÃÜÂëÖÎÀíÆ÷£¬ÒÔ¼°Ó¦ÓóÌÐòÆô¶¯Æ÷»òÊý¾Ý±£»¤³ÌÐòµÈϵͳ¹¤¾ß£¬ÕâЩ¶ÔÓû§À´ËµËƺõ¶¼ÊÇÊÊÓõ쬴Ӷø½µµÍÁËÓû§µÄСÐÄÐÔ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMYO
3. ¹¥»÷ÕßʹÓöñÒâNPM¿âѬȾÓû§ÏµÍ³¾ÙÐй¥»÷
¡¾¸ÅÊö¡¿
Ñо¿Ö°Ô±·¢Ã÷¹¥»÷ÕßÔÙ´ÎÏò¹Ù·½ NPM ´æ´¢¿âÐû²¼ÁËÁíÍâÁ½¸öµÁ°æ¿â£¬ÕâЩ¿âÄ£ÄâÁËÓÎÏ·¹«Ë¾ Roblox µÄÕýµ±Èí¼þ°ü£¬Ä¿µÄÊÇ·Ö·¢ÇÔȡƾ֤¡¢×°ÖÃÔ¶³Ì»á¼ûľÂí²¢Ê¹ÓÃÀÕË÷Èí¼þѬȾÊÜѬȾµÄϵͳ¡£·¢Ã÷ÃûΪ“ noblox.js-proxy ”ºÍ“ noblox.js-proxies ”µÄÐéα°üÄ£ÄâÁËÒ»¸öÃûΪ“ noblox.js ”µÄ¿â£¬ÕâÊÇÒ»¸öÔÚ NPM ÉÏ¿ÉÓÃµÄ Roblox ÓÎÏ· API °ü×°Æ÷£¬Ã¿ÖÜÏÂÔØÁ¿¿¿½ü 20,000 ´Î£¬¹ØÓÚÿÆäÖж¾µÄ¿â£¬»®·ÖÏÂÔØÁË 281 ´ÎºÍ 106 ´Î¡£²¢ÌåÏÖnoblox.js-proxy µÄ×÷ÕßÊ×ÏÈÐû²¼ÁËÒ»¸öÁ¼ÐÔ°æ±¾£¬ØÊºóÔÚÌû×ÓÖи͝ÁË»ìÏýÎı¾£¬ÏÖʵÉÏÊÇÒ»¸öÅú´¦Öóͷ££¨.bat£©¾ç±¾- ×°Öà JavaScript Îļþ£»¸Ã Batch ¾ç±¾·´¹ýÀ´´Ó Discord µÄÄÚÈݽ»¸¶ÍøÂç (CDN) ÏÂÔØ¶ñÒâ¿ÉÖ´ÐÐÎļþ£¬ÕâЩ¿ÉÖ´ÐÐÎļþÈÏÕæ½ûÓ÷´¶ñÒâÈí¼þÒýÇæ¡¢ÔÚÖ÷»úÉÏʵÏÖ³¤ÆÚÐÔ¡¢ÇÔÈ¡ä¯ÀÀÆ÷ƾ֤£¬ÉõÖÁ°²ÅžßÓÐÀÕË÷Èí¼þ¹¦Ð§µÄ¶þ½øÖÆÎļþ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMYN
4. ¹¥»÷Õß³öÊÛ 5000 ÍòĪ˹¿ÆË¾»úµÄÊý¾Ý
¡¾¸ÅÊö¡¿
¹¥»÷ÕßÕýÔÚÒ»¸öºÚ¿ÍÂÛ̳ÉÏÒÔ 800 ÃÀÔªµÄ¼ÛÇ®³öÊÛÒ»¸ö°üÀ¨ 5000 ÍòÌõĪ˹¿ÆË¾»ú¼Í¼µÄÊý¾Ý¿â¡£¹¥»÷ÕßÉù³ÆÒÑ´ÓÍâµØ¾¯·½µÄÄÚ²¿Ö°Ô±ÄÇÀï»ñµÃÊý¾Ý£¬ËûÃÇÐû²¼ÁËÒ»¸öÊý¾Ý¿â¼Í¼Ñù±¾£¬ÆäÖаüÀ¨Æû³µÐͺš¢×¢²áºÍ VIN ºÅ¡¢×¢²áÈÕÆÚ¡¢·¢ÄîÍ·¹¦ÂÊ¡¢³µÖ÷ÐÕÃû¡¢ÈÕÆÚ³öÉú£¬µç»°ºÅÂë¡£±»µÁÊý¾Ý¿çÔ½ 2006 ÄêºÍ 2019 Ä꣬ÍâµØÃ½ÌåÒÑ֤ʵÆäÕæÊµÐÔ¡£¹¥»÷Õß»¹Ïò¹ºÖÃÊý¾Ý¿âµÄÈËÌṩ°üÀ¨ 2020 ÄêÐÅÏ¢µÄÎļþ¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMXO
5. ¹¥»÷ÕßʹÓÃÀ¬»øÓʼþ·¢ËͶñÒâÈí¼þQakbotºÍCobalt Strike
¡¾¸ÅÊö¡¿
×î½ü£¬Ò»ÖÖ³ÆÎª“SQUIRRELWAFFLE”µÄÐÂÍþвÕýÔÚͨ¹ýÀ¬»øÓʼþÔ˶¯¸üÆÕ±éµØÈö²¥£¬Ê¹ÓÃеĶñÒâÈí¼þ¼ÓÔØ³ÌÐòѬȾϵͳ¡£ÕâÊÇÒ»¸ö¶ñÒâÈí¼þ¼Ò×壬ÆäÈö²¥Ô½À´Ô½ÆµÈÔ£¬¿ÉÄܳÉΪÀ¬»øÓʼþÁìÓòµÄÏÂÒ»¸ö´óÍæ¼Ò¡£SQUIRRELWAFFLE Ϊ¹¥»÷ÕßÌṩÁ˶Ôϵͳ¼°ÆäÍøÂçÇéÐÎµÄÆðԴפ×ãµã£¬È»ºó¿Éƾ֤¹¥»÷ÕßÑ¡ÔñʵÑ齫Æä»á¼ûÇ®±Ò»¯µÄ·½·¨À´Ôö½ø½øÒ»²½µÄÆÆËð»òÆäËû¶ñÒâÈí¼þѬȾ¡£ÔÚÐí¶àÇéÐÎÏ£¬ÕâЩѬȾ»¹±»ÓÃÀ´´«ËͺÍѬȾÆäËû¶ñÒâÈí¼þ£¨ÈçQakbotºÍÉøÍ¸²âÊÔ¹¤¾ßCobalt Strike£©µÄϵͳ¡£Ñо¿Ö°Ô±·¢Ã÷ÓÉÓÚµç×ÓÓʼþ×Ô¼ºËƺõÊǶÔÏÖÓеç×ÓÓʼþÏ̵߳Ļظ´¡£ÕâЩµç×ÓÓʼþͨ³£°üÀ¨Ö¸ÏòÍйÜÔÚ¹¥»÷Õß¿ØÖÆµÄ Web ·þÎñÆ÷ÉϵĶñÒâ ZIP µµ°¸µÄ³¬Á´½Ó£¬»Ø¸´ÐÂÎÅËùÕë¶ÔµÄÓïÑÔͨ³£ÓëÔʼµç×ÓÓʼþÏß³ÌÖÐʹÓõÄÓïÑÔÏàÆ¥Å䣬ÕâÅú×¢±£´æÒ»Ð©¶¯Ì¬ÍâµØ»¯¡£ËäÈ»´ó´ó¶¼µç×ÓÓʼþ¶¼ÊÇÓÃÓ¢Óï±àдµÄ£¬µ«ÔÚÕâЩÔ˶¯ÖÐʹÓÃÆäËûÓïÑÔÅú×¢ÕâÖÖÍþв²¢²»ÏÞÓÚÌØ¶¨µÄµØÀíÇøÓò¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMYg
6. ¶à¸öÔËÓªÉ̶ñÒâÍøÂçºÍ¹²ÏíÓû§µÄ´ó×ÚÒþ˽Êý¾Ý
¡¾¸ÅÊö¡¿
ÃÀ¹úÁª°îÉÌҵίԱ»á (FTC) Ñо¿·¢Ã÷£¬ÃÀ¹úÁù¼Ò»¥ÁªÍø·þÎñÌṩÉÌ (ISP) ÎÞÔµÓÉÍøÂçºÍ¹²Ïí¿Í»§µÄСÎÒ˽¼ÒÊý¾ÝÐÅÏ¢£¬²¢ÕÚÑÚÏûºÄÕßÀÄÓÃÆä´ó×ÚÃô¸ÐÊý¾Ý¡£FTCÑо¿ÖÐÌáµ½Áù¼ÒÔËÓªÉÌ»®·ÖÊÇ AT Mobility¡¢Cellco Partnership£¨ÓÖÃû Verizon Wireless£©¡¢Charter Communications Operating¡¢Comcast£¨ÓÖÃû Xfinity£©¡¢T-Mobile US ºÍ Google Fiber£¬°üÀ¨ÓëÕâЩ¹«Ë¾Ïà¹ØÁªµÄÈý¸ö¹ã¸æÊµÌ壺AT µÄ Appnexus £¨ÓÖÃûXandr£©£¬Verizon µÄ Verizon Online ºÍ Oath Americas £¨ÓÖÃû Verizon Media£©¡£FTCÖ¸³ö£¬ÕâÁù¼Ò¹«Ë¾ÏÖÔÚ¿ØÖÆ×ÅÃÀ¹úԼĪ 98% µÄÒÆ¶¯»¥ÁªÍøÊг¡£¬²¢½«´¥½Ç´ÓÀο¿µç»°ÍøÂçºÍÒÆ¶¯»¥ÁªÍø·þÎñ£¬ÑÓÉìÖÁÓïÒô¡¢ÄÚÈÝ¡¢ÖÇÄÜ×°±¸¡¢¹ã¸æºÍÆÊÎö·þÎñµÈÆäËûÁìÓò£¬ÒÔ±ãÍøÂç¸ü¶à¿Í»§Êý¾ÝÐÅÏ¢¡£¶øÁîÈ˵£ÐĵÄÊÇ£¬¼¸¸öÔËÓªÉÌÖ®¼äÕûºÏ¿ç²úÆ·ÏßµÄÊý¾Ý£¬ÔÙÍŽáСÎÒ˽¼ÒÓ¦ÓóÌÐòµÄʹÓúÍÍøÂçä¯ÀÀÊý¾ÝÀ´¶¨ÏòÍÆËÍ¹ã¸æ£»½«ÏûºÄÕ߯¾Ö¤ÖÖ×åºÍÐÔÈ¡ÏòµÈ²î±ð±ê×¼¾ÙÐзÖÃűðÀ࣬²¢ÏòµÚÈý·½¹²Ïí×ÅʵʱλÖÃÊý¾Ý¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMYl
7. ¹¥»÷Õßͨ¹ýUltimaSMS¶©ÔÄÚ²ÆÔ˶¯Õë¶ÔÊý°ÙÍò Android Óû§
¡¾¸ÅÊö¡¿
Ñо¿Ö°Ô±ÔÚ Google Play ÊÐËÁÖз¢Ã÷ÁËÒ»¸öÆÕ±é±£´æµÄÓÅÖʶÌÐÅȦÌ×£¬±»³ÆÎª UltimaSMS£¬¸ÃÃû³ÆÀ´×ÔËûÃÇ·¢Ã÷µÄµÚÒ»¸öÃûΪUltima Keyboard 3D Pro µÄÓ¦ÓóÌÐò ¡£¹¥»÷ÕßʹÓÃÐéαÕÕÆ¬±à¼Æ÷¡¢À¬»øÓʼþ×èµ²Æ÷¡¢Ïà»ú¹ýÂËÆ÷¡¢ÓÎÏ·ºÍÆäËûÓ¦ÓóÌÐò£¬²¢Í¨¹ý Instagram ºÍ TikTok ÇþµÀ¾ÙÐÐÍÆ¹ã£¬ÆäÖд󲿷ÖÏÂÔØÊÇÓÉÖж«µØÇøµÄÓû§¾ÙÐеģ¬ÀýÈç°£¼°¡¢É³Ìذ¢À²®ºÍ°Í»ù˹̹¡£×°ÖÃÓ¦ÓóÌÐòºó£¬ËûÃÇ»á¼ì²é×Ô¼ºµÄλÖᢹú¼ÊÒÆ¶¯×°±¸Ê¶±ðÂë (IMEI) ºÍµç»°ºÅÂ룬ÒÔÈ·¶¨ÓÃÓÚթƵĹú¼Ò/µØÇø´úÂëºÍÓïÑÔ¡£µ±Êܺ¦Õß·¿ªÓ¦ÓóÌÐòʱ£¬»áÏÔʾһ¸öÆÁÄ»£¬ÒªÇóÊäÈëËûÃÇijЩÐÅÏ¢£¬ÔÚÊäÈëËùÒªÇóµÄÏêϸÐÅÏ¢ºó£¬Óû§¶©ÔÄÁ˸߼¶ SMS ·þÎñ£¬Æ¾Ö¤¹ú¼ÒºÍÒÆ¶¯ÔËÓªÉ̵IJî±ð£¬Ã¿Ô¿ÉÊÕÈ¡ 40 ÃÀÔªÒÔÉϵÄÓöÈʵÑéڲơ£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMYd
8. ¹¥»÷ÕßʹÓÃRanzy LockerÀÕË÷Èí¼þ¹¥»÷Windowsϵͳ
¡¾¸ÅÊö¡¿
Áª°îÊÓ²ì¾ÖÐû²¼ÁËÒ»¸ö¿ìËÙ¾¯±¨£¬ÖÒÑÔÒѾΣº¦ÁËÊýÊ®¼ÒÃÀ¹ú¹«Ë¾µÄ Ranzy Locker ÀÕË÷Èí¼þµÄÔ˶¯¡£Ranzy Locker ÀÕË÷Èí¼þÔËÓªÉÌ×ʹÓõĹ¥»÷ǰÑÔÊÇÕë¶ÔÔ¶³Ì×ÀÃæÐÒé (RDP) ƾ֤µÄÂùÁ¦ÊµÑé¡£ÔÚ×î½üµÄ¹¥»÷ÖУ¬¸Ã×éÖ¯»¹Ê¹ÓÃÁËÒÑÖªµÄ Microsoft Exchange Server Îó²î²¢Ê¹ÓÃÍøÂç´¹ÂÚÐÂÎÅÀ´¹¥»÷ÅÌËã»úÍøÂç¡£Ò»µ©»ñµÃ¶ÔÄ¿µÄÍøÂçµÄ»á¼ûȨÏÞ£¬ÀÕË÷Èí¼þÍÅ»ï¾Í»áʵÑ鶨λÃô¸ÐÊý¾Ý£¬°üÀ¨¿Í»§ÐÅÏ¢¡¢PII Ïà¹ØÎļþºÍ²ÆÎñ¼Í¼¡£Ranzy Locker ÀÕË÷Èí¼þÕë¶Ô Windows ϵͳ£¬°üÀ¨·þÎñÆ÷ºÍÐéÄâ»ú¡£ÔÚijЩÇéÐÎÏ£¬¸Ã×é֯ʵÑéÁËË«ÖØÀÕË÷ģʽ£¬ÍþвÊܺ¦ÕßÈôÊDz»Ö§¸¶Êê½ð¾Íй¶±»µÁÊý¾Ý¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMYe
9. ºÚ¿ÍʹÓÃÊ¢ÐеÄBillQuick¼Æ·ÑÈí¼þ°²ÅÅÀÕË÷Èí¼þ
¡¾¸ÅÊö¡¿
ÍøÂçÇå¾²Ñо¿Ö°Ô±ÖÜÎåÅû¶ÁËÒ»¸öÃûΪBillQuickµÄʱ¼äºÍ¼Æ·ÑϵͳµÄ¶à¸ö°æ±¾ÖеÄÒ»¸öÏÖÒÑÐÞ²¹µÄÒªº¦Îó²î£¬¸ÃÎó²îÕý±»¹¥»÷Õ߯ð¾¢Ê¹Óã¬ÔÚÒ×Êܹ¥»÷µÄϵͳÉϰ²ÅÅÀÕË÷Èí¼þ¡£ºÚ¿Í¿ÉÒÔʹÓÃËüÀ´»á¼û¿Í»§µÄ BillQuick Êý¾Ý²¢ÔÚËûÃǵÄÍâµØ Windows ·þÎñÆ÷ÉÏÔËÐжñÒâÏÂÁî¡£´ÓʵÖÊÉϽ²£¬¸ÃÎó²îÔ´ÓÚ BillQuick Web Suite 2020 ¹¹½¨ SQL Êý¾Ý¿âÅÌÎʵķ½·¨£¬Ê¹¹¥»÷ÕßÄܹ»Í¨¹ýÓ¦ÓóÌÐòµÄµÇ¼±íµ¥×¢ÈëÌØÖÆµÄ SQL£¬¿ÉÓÃÓÚÔڵײã Windows ²Ù×÷ϵͳÉÏÔ¶³ÌÌìÉúÏÂÁîÍâ¿Ç²¢ÊµÏÖ´úÂëÖ´ÐС£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMY2
10. ºÚ¿ÍÍÅ»ïð³äÇå¾²¹«Ë¾ÊµÑéÍøÂç¹¥»÷
¡¾¸ÅÊö¡¿
Ñо¿Ö°Ô±·¢Ã÷£¬ÓÉÓÚÀÕË÷Èí¼þÒѳÉΪһ¸öÓÐÀû¿ÉͼµÄÁìÓò£¬²¢ÇÒFIN7֮ǰÓÐÓë“Combi Security”µÈÐéα¹«Ë¾ÏàÖúµÄÂÄÀú£¬Òò´Ë¸Ã×éÖ¯½¨ÉèÁËÒ»¼ÒÃûΪBastion SecureµÄ“ÍøÂçÇå¾²¹«Ë¾”À´ÕÐļÕýµ±µÄITר¼Ò£¬Ñо¿Ö°Ô±ÏòBastion Secure·¢ËÍÁËÒ»·ÝÇóÖ°ÉêÇë²¢±»Æ¸Óã¬Ñо¿Ö°Ô±·¢Ã÷ÆäÕÐÆ¸Àú³ÌºÜÊǵ䷶£¬°üÀ¨ÃæÊÔ¡¢Ç©ÊðÌõÔ¼ºÍ±£ÃÜÐÒéÒÔ¼°»ù±¾Åàѵ¡£¿ÉÊÇ£¬ÔÚÖ´ÐÐÏÖʵʹÃüʱ£¬ºÜÏÔ×ÅBastion SecureÕýÔÚѰÕÒһЩÈËÀ´¾ÙÐÐÍøÂç·¸·¨Ô˶¯¡£ºÃ±È£¬ËûÃÇΪԱ¹¤Ìṩ¶ÔÆóÒµÍøÂçµÄ»á¼ûȨÏÞ£¬²¢ÒªÇóÐÂÔ±¹¤ÍøÂçÓëÆóÒµÖÎÀíÔ±ÕÊ»§¡¢±¸·ÝµÈÏà¹ØµÄÐÅÏ¢¡£ËûÃÇ»¹ÎªÔ±¹¤ÌṩCarbanakºÍLizar/TirionÕâÀàÖøÃûµÄºó¿ª·¢¹¤¾ß£¬½«Æäαװ³É“ÏÂÁîÖÎÀíÆ÷”£¬¿ªÕ¹ÉøÍ¸²âÊÔÔ˶¯£¬È»¶ø£¬Bastion Secure²¢Ã»ÓÐÌṩ¿ªÕ¹ÕâÐ©ÉøÍ¸²âÊÔÔ˶¯µÄÈκÎÖ´·¨Îļþ£¬Òò´ËÑо¿Ö°Ô±ÅÐ¶ÏÆäͨ¹ýÉøÍ¸²âÊÔ·½·¨Ëðº¦Êܺ¦¹«Ë¾£¬²¢Í¨¹ý²»·¨ÊֶλñÈ¡»á¼ûȨÏÞ£¬ÊµÑéÀÕË÷¹¥»÷Ô˶¯¡£
¡¾²Î¿¼Á´½Ó¡¿
https://ti.nsfocus.com/security-news/IlMXP

¾ÅÓÎÀϸçÔÆ





