ÅíÈø¿ÆÀ­Êб»ÀÕË÷Èí¼þMaze¹¥»÷ÕßÀÕË÷100ÍòÃÀÔª£»£»£»£»£»£»£»£»Adobe°ä²¼12Ô°²È«¸üУ¬£¬£¬£¬£¬£¬£¬½¨¸´17¸ö¹Ø¼ü´úÂëÖ´Ðзì϶

°ä²¼¹¦·ò 2019-12-12


1.³¬¹ý46ÍòÕÅÍÁ¶úÆäÒøÐп¨ÐÅÏ¢ÔÚ°µÍøJoker's StashÉÏÏúÊÛ


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


Group-IB°²È«×êÑÐÈËÔ±·¢ÏÖÓÐ463378ÕÅÍÁ¶úÆäÒøÐп¨ÐÅÏ¢ÔÚ°µÍøJoker's StashÉÏÏúÊÛ£¬£¬£¬£¬£¬£¬£¬ÕâÊǽüÄêÀ´¼Í¼µÄ×î´óµÄÍÁ¶úÆäÒøÐп¨ÐÅϢת´¢¡£¡£¡£¡£¡£¸ÃÊý¾ÝÔÚ10ÔÂ28ÈÕÖÁ11ÔÂ27ÈÕÆÚ¼ä·ÖËÄÅú°ä²¼£¨30K+30K+190K+205K£©£¬£¬£¬£¬£¬£¬£¬Ô¤¼Æ¹¥»÷Õß»ñÀû³¬¹ý50ÍòÃÀÔª¡£¡£¡£¡£¡£Æ¾¾ÝGroup-IBµÄ˵·¨£¬£¬£¬£¬£¬£¬£¬ÕâÅú¿¨Êý¾Ý¼ÈÔ̺¬½è¼Ç¿¨ÓÖÔ̺¬ÐÅÓþ¿¨£¬£¬£¬£¬£¬£¬£¬²¢ÇÒÕâЩ¿¨À´×Ô·ÖÆçµÄÍÁ¶úÆäÒøÐУ¬£¬£¬£¬£¬£¬£¬ÕâÅú×¢Êý¾Ý¿ÉÄÜÀ´×ÔÖ§¸¶´¦ÖÃϵͳ£¬£¬£¬£¬£¬£¬£¬¶ø²»Êǵ¥¸öÒøÐеÄϵͳ±»ºÚ¡£¡£¡£¡£¡£


  Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/455000-turkish-card-details-put-up-for-sale-web-skimmers-suspected/


2.iPR Software 1TBÊý¾ÝÔÚÍøÉ϶³ö£¬£¬£¬£¬£¬£¬£¬Ô̺¬´óÁ¿¿Í»§ÒþÖÔ


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


UpGuard°²È«×êÑÐÈËÔ±·¢ÏÖiPR Software¹«Ë¾µÄÒ»¸öAmazon S3´æ´¢Í°¿É¹«¿ª½Ó¼û£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂÊýǧÃûÓû§µÄÐÅϢ¶³ö¡£¡£¡£¡£¡£¸ÃÊý¾Ý¿âÖÐÔ̺¬47.7Íò¸öµç×ÓÓʼþµØÖ·ºÍÔ¼3.5Íò¸ö¹þÏ£ÃÜÂ룬£¬£¬£¬£¬£¬£¬Êý¾Ý¿âµÄ×Ü´óÓ×´ï1TB£¬£¬£¬£¬£¬£¬£¬Ô̺¬ÒµÇóʵÌåÕÊ»§ÐÅÏ¢¡¢ÎĵµºÍϵͳÖÎÀíÍ´´¦µÈ¡£¡£¡£¡£¡£ÆäÖÐһЩÎĵµÎªiPR¿ª·¢ÈËÔ±Îĵµ¡¢¿Í»§ÓªÏú×ÊÁÏÒÔ¼°Google¡¢TwitterºÍÒ»¸öMongoDBÍйܷþÎñÉÌÕË»§µÄÍ´´¦¡£¡£¡£¡£¡£iPR SoftwareÓÚ10ÔÂ24ÈÕÊÕµ½Í¨Öª£¬£¬£¬£¬£¬£¬£¬²¢ÔÚ11ÔÂ26ÈÕɾ³ýÁ˸ÃÊý¾Ý¿âµÄ½Ó¼ûȨÏÞ¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/thousands-ipr-software-users-exposed-amazon-s3-bucket


3.°²È«³§ÉÌ·¢ÏÖÊý°Ù¸ö¼ÙЬÏúÊÛÍøÕ¾Ï°È¾Magecart¶ñÒâ¾ç±¾


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


Malwarebytes Labs·¢ÏÖÊýÒ԰ټƵļÙЬÏúÊÛÍøÕ¾Ï°È¾ÁËMagecart¶ñÒâ¾ç±¾£¬£¬£¬£¬£¬£¬£¬Õâ¸øÓû§´øÀ´ÁËË«³Á·çÏÕ¡£¡£¡£¡£¡£ÕâЩڲƭÐÔÍøÕ¾ÖØÒªÔÚÌåÓýºÍ½¡ÉíÂÛ̳ÉÏͨ¹ýÀ¬»øÐÅÏ¢ÓÕʹÓû§½Ó¼ûÊÛ¼ÙÍøÕ¾£¬£¬£¬£¬£¬£¬£¬µ±Óû§ÊÜÆ­Ê±£¬£¬£¬£¬£¬£¬£¬²»½ö¿ÉÄÜÂòµ½¼ÙЬ£¬£¬£¬£¬£¬£¬£¬»¹»áʹÓ×ÎÒ²ÆÕþÊý¾Ý±»ÇÔ¡£¡£¡£¡£¡£´ÖÂԵļì²âÅú×¢£¬£¬£¬£¬£¬£¬£¬ÕâÐ©ÍøÕ¾¶¼ÔÚʹÓÃÒ»ÑùµÄ¹ýÆÚÈí¼þ£¬£¬£¬£¬£¬£¬£¬Ô̺¬1.9.4.2ÒÔϰ汾µÄMagentoºÍ5.6.40ÒÔϰ汾µÄPHP¡£¡£¡£¡£¡£¶ñÒâ¾ç±¾¿ÉÄÜÖ»ÊǶÔÕâЩIPÁìÓò½øÐÐÁËɨÃè²¢ÀûÓÃÒ»ÑùµÄ·ì϶ϰȾÿһ¸öÕ¾µã¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://blog.malwarebytes.com/threat-analysis/2019/12/hundreds-of-counterfeit-online-shoe-stores-injected-with-credit-card-skimmer/


4.Adobe°ä²¼12Ô°²È«¸üУ¬£¬£¬£¬£¬£¬£¬½¨¸´17¸ö¹Ø¼ü´úÂëÖ´Ðзì϶


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


AdobeÔÚ12Ô°²È«¸üÐÂÖн¨¸´ÁËPhotoshop¡¢ReaderºÍBracketsÖеÄ17¸ö¹Ø¼ü´úÂëÖ´Ðзì϶¡£¡£¡£¡£¡£ÆäÖÐPhotoshop CCÖн¨¸´ÁËÄÚ´æ°Ü»µ·ì϶CVE-2019-8253ºÍCVE-2019-8254£¬£¬£¬£¬£¬£¬£¬ÕâЩ·ì϶¿Éµ¼ÖÂËÁÒâ´úÂëÖ´ÐУ¬£¬£¬£¬£¬£¬£¬ÊÜÓ°ÏìµÄ°æ±¾Ô̺¬WindowsºÍmacOSÉϵÄ20.0.7¼°¸üÔç°æ±¾ºÍ21.0.1¼°¸üÔç°æ±¾¡£¡£¡£¡£¡£Adobe AcrobatºÍReader£¨2015¡¢2017ºÍDC£©Öн¨¸´ÁË14¸ö·ì϶£¬£¬£¬£¬£¬£¬£¬´Ë±íAdobe»¹½¨¸´Á˿ɵ¼ÖÂÊý¾Ýй¶µÄ6¸öÔ½½ç¶ÁÈ¡·ì϶£¨£¨CVE-2019-16449¡¢CVE-2019-16456¡¢CVE-2019-16457¡¢CVE-2019-16458¡¢CVE-2019-16461¡¢CVE-2019-16465£©¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/adobe-patches-17-critical-code-execution-bugs-in-photoshop-reader-brackets/


5.×êÑÐÈËÔ±·¢ÏÖTrickbotÓ볯ÏÊAPT×éÖ¯Lazarus´æÔÚ¹ØÁª


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


×êÑÐÈËÔ±·¢ÏÖTrickbot±³ºóµÄ·¸×ï×éÖ¯Ó볯ÏÊAPT×éÖ¯LazarusÖ®¼ä´æÔÚÁªÏµ£¬£¬£¬£¬£¬£¬£¬¶þÕßͨ¹ýTrickbot¿ª·¢µÄ¶àºÏÒ»¹¥»÷¿ò¼ÜAnchor½øÐÐÁËÖ±½ÓµÄºÏ×÷¡£¡£¡£¡£¡£×êÑÐÈËÔ±°µÊ¾´Ë¾ÙËÆºõÊÇAPT×éÖ¯³õ´ÎÓë·¸×ïÈí¼þ×éÖ¯·½ÃæµÄÖØÒªÁ¦Á¿½øÐнáÃË£¬£¬£¬£¬£¬£¬£¬Õâ¶ÔÃÀ¹úµÄ¹ú¶È°²È«ÓµÓгÁ´óÓ°Ï죬£¬£¬£¬£¬£¬£¬²¢ÇÒ¸ø³ÉΪLazarusÖ¸±êµÄ¶¥¼¶¿ç¹ú¹«Ë¾´øÀ´·çÏÕ¡£¡£¡£¡£¡£¾ßÌåÀ´Ëµ£¬£¬£¬£¬£¬£¬£¬×êÑÐÈËÔ±·¢ÏÖÒÔǰÓëLazarus¹ØÁªµÄ¹¤¾ß¡°PowerRatankba¡±ÒÑ·Ö·¢¸øAnchor ProjectϰȾµÄÊܺ¦Õߣ¬£¬£¬£¬£¬£¬£¬²¢ÓÐÖ¤¾ÝÅú×¢¸Ã¹¤¾ßÊÇͨ¹ýAnchor Project¼ÓÔØµÄ¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://threatpost.com/lazarus-collaborates-trickbots-anchor-project/151000/


6.ÅíÈø¿ÆÀ­Êб»ÀÕË÷Èí¼þMaze¹¥»÷ÕßÀÕË÷100ÍòÃÀÔª


8827Ì«Ñô¼¯ÍÅ(Macau)¹É·ÝÓÐÏÞ¹«Ë¾-Official website


ÀÕË÷Èí¼þMaze±³ºóµÄ¹¥»÷ÕßÐû³Æ¶Ô·ðÂÞÀï´ïÖÝÅíÈø¿ÆÀ­ÊеÄÍøÂç¹¥»÷ÕÆ¹Ü£¬£¬£¬£¬£¬£¬£¬µ«ÉêÃ÷ËûÃÇÓë¸ÃÊÐ×î½üµÄǹ»÷ÊÂÎñÎ޹ء£¡£¡£¡£¡£¹¥»÷Õß°µÊ¾ËûÃǼÓÃÜÁ˸ÃÊеÄÊý¾Ý£¬£¬£¬£¬£¬£¬£¬²¢ÇÒÒªÇó100ÍòÃÀÔªµÄÊê½ð¡£¡£¡£¡£¡£ÎªÁË֤ʵËûÃǵÄ˵·¨£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß»¹¹²ÏíÁËһЩ¾Ý³ÆÊÇ´Ó¸ÃÊÐÇÔÈ¡µÄÎļþ£¬£¬£¬£¬£¬£¬£¬µ«Ã»ÓÐ×¢Ã÷ÊÇ·ñ¸ø³öÏÞ°´¹¦·ò»òÊǽ«°ä²¼ÕâЩÎļþ¡£¡£¡£¡£¡£¹¥»÷Õß»¹³ÆËûÃÇÓÐÒâ±Ü¿ªÁË911µÈ´¹Î£·þÎñ¡£¡£¡£¡£¡£ÅíÈø¿ÆÀ­Êй«¹²ÐÅÏ¢¹ÙKaycee Lagarde»Ø¾ø¶Ô´Ë½øÐÐÆÀÂÛ¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/maze-ransomware-behind-pensacola-cyberattack-1m-ransom-demand/