FBI×·»ØColonial PipelineÖ§¸¶µÄ230ÍòÃÀÔªÊê½ð £»£»£»£»£»£»£»£»¹È¸èÒòÀÄÓÃÆäÔÚ¸æ°×ÁìÓòµÄְλ±»·¨¹ú·£¿£¿ £¿ £¿£¿î2.2ÒÚÅ·Ôª

°ä²¼¹¦·ò 2021-06-09

1.FBI×·»ØColonial PipelineÖ§¸¶µÄ230ÍòÃÀÔªÊê½ð


1.jpg


ÃÀ¹úFBIºÍDOJ½áºÏ×·»ØÁËColonial PipelineÖ§¸¶µÄ´ó°ëÊê½ð¡£¡£¡£¡£¡£¡£¡£5ÔÂ7ÈÕ £¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾Ôâµ½ÁËDarkSideÀÕË÷Èí¼þ¹¥»÷ȼÁϹÜ·¹Ø¹Ø £¬£¬£¬£¬£¬£¬Îª´ËÆäÖ§¸¶ÁË×ܼÆ440ÍòÃÀÔªµÄÊê½ð £¬£¬£¬£¬£¬£¬Õâ´Î×·»ØÁËÆäÖеÄ230ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¡£DOJ°µÊ¾ £¬£¬£¬£¬£¬£¬ËûÃÇͨ¹ýÉó²é±ÈÌØ±Ò¹«¹²·ÖÀàÕË £¬£¬£¬£¬£¬£¬¸ú×ÙÁËÂŴαÈÌØ±ÒתÕË £¬£¬£¬£¬£¬£¬²¢È·¶¨Ô¼Äª63.7±ÈÌØ±ÒÒÑ×ªÒÆµ½Ìض¨µØÖ· £¬£¬£¬£¬£¬£¬¶øFBIÕ¼ÓиõØÖ·µÄ˽Կ»ò´óÌåµÈЧµÄµØÖ·¡£¡£¡£¡£¡£¡£¡£ÃÀ¹ú˾·¨²¿»¹³Æ £¬£¬£¬£¬£¬£¬ÊÂʵÉÏÁª¹úµ÷²é¾Ö´Óһ·ͷ¾ÍÉèÁËȦÌס£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/fbi-claws-back-millions-darksides-ransom/166705/


2.¹È¸èÒòÀÄÓÃÆäÔÚ¸æ°×ÁìÓòµÄְλ±»·¨¹ú·£¿£¿ £¿ £¿£¿î2.2ÒÚÅ·Ôª


2.jpg


·¨¹ú¾ºÕùÖÎÀí»ú¹¹¶Ô¹È¸è´¦ÒÔ2.2ÒÚÅ·ÔªµÄ·£¿£¿ £¿ £¿£¿î £¬£¬£¬£¬£¬£¬ÀíÓÉÊǹȸèÀÄÓÃÆäÔÚ¸æ°×ÁìÓòµÄÖ÷µ¼Ö°Î»²¢×óÌ»Æä·þÎñ¶ø¶ÔÆäËü³ö°æÉ̺;ºÕùµÐÊÖ²»¹«¡£¡£¡£¡£¡£¡£¡£GoogleûÓжÔÕâ´ÎÖ¸¿ØÌá³öÒìÒé £¬£¬£¬£¬£¬£¬ÔÞ³ÉÖ§¸¶·£¿£¿ £¿ £¿£¿î²¢³Ðŵ½«¸ÄÉÆ¹È¸èAd Manager·þÎñ £¬£¬£¬£¬£¬£¬ÒÔ¼°ÖÕÖ¹ÓÐÀûÓÚGoogleµÄÌõ¿î¡£¡£¡£¡£¡£¡£¡£ÔçÔÚ2017Äê6Ô £¬£¬£¬£¬£¬£¬Å·ÃËίԱ»áÒòÆäÀûÓÃÖ÷µ¼Ö°Î»µ÷ÕûËÑË÷Á˾ֶøÇÖº¦¾ºÕùµÐÊÖµÄÀûÒæ £¬£¬£¬£¬£¬£¬·£¿£¿ £¿ £¿£¿î27.2ÒÚÃÀÔª £»£»£»£»£»£»£»£»2019Äê3ÔÂÅ·ÃËίԱ»áÓÖÒòÆäÀÄÓÃÊг¡°Ú²¼Ö°Î»·£¿£¿ £¿ £¿£¿î17ÒÚÃÀÔª¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/google/google-fined-220-million-for-abusing-dominant-role-in-online-ads/


3.Microsoft°²È«¸üР£¬£¬£¬£¬£¬£¬½¨¸´7¸ö0dayÔÚÄÚµÄ50¸ö·ì϶


3.jpg


Microsoft°ä²¼ÁË6Ô·ݵÄÖܶþ°²È«¸üР£¬£¬£¬£¬£¬£¬½¨¸´ÁËÔ̺¬7¸ö0dayÔÚÄÚµÄ50¸ö·ì϶¡£¡£¡£¡£¡£¡£¡£Õâ´Î½¨¸´µÄ0dayÔ̺¬WindowsÄÚºËÐÅϢй¶·ì϶£¨CVE-2021-31955£©¡¢Windows NTFSÌáȨ·ì϶£¨CVE-2021-31956£©¡¢Microsoft DWMÌáȨ·ì϶£¨CVE-2021-33739£©¡¢Windows MSHTMLƽ̨RCE·ì϶£¨CVE-2021-33742£©¡¢Microsoft¼ÓÇ¿ÐͼÓÃÜÌṩ·¨Ê½ÌáȨ·ì϶£¨CVE-2021-31199ºÍCVE-2021-31201£©ºÍWindowsÔ¶³Ì×ÀÃæ·þÎñ»Ø¾ø·þÎñ·ì϶£¨CVE-2021-31968£©¡£¡£¡£¡£¡£¡£¡£ÆäÖÐ £¬£¬£¬£¬£¬£¬Ç°6¸ö0dayÒÑÔÚ´Óǰ±»ÀûÓùý¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-june-2021-patch-tuesday-fixes-6-exploited-zero-days-50-flaws/


4.ÃÀ¹ú¾ü³µÔì×÷ÉÌNavistar³ÆÆäÔâµ½¹¥»÷ £¬£¬£¬£¬£¬£¬²¿ÃÅÊý¾Ýй¶


4.jpg


ÃÀ¹ú¿¨³µºÍ¾üÓóµÁ¾Ôì×÷ÉÌNavistar International Corporation³ÆÆäÔâµ½¹¥»÷ £¬£¬£¬£¬£¬£¬²¿ÃÅÊý¾Ýй¶¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾°µÊ¾ÆäÔÚ2021Äê5ÔÂ20ÈÕ·¢ÏÖÕâ´ÎÊÂÎñ £¬£¬£¬£¬£¬£¬²¢ÓÚ5ÔÂ31ÈÕÊÕµ½ÁËÒ»·ÝÉêÃ÷³ÆÄ³Ð©Êý¾ÝÒѱ»ÇÔÈ¡¡£¡£¡£¡£¡£¡£¡£µ±±»Îʼ°ÊÇ·ñÓëÀÕË÷¹¥»÷ÓйØÊ± £¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾½²»°È˳ÆÄ¿Ç°µ÷²éÔÚ½øÐÐÖÐ £¬£¬£¬£¬£¬£¬Ã»Óиü¶àϸ½ÚÄܹ»·ÖÏí¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾»¹°µÊ¾ £¬£¬£¬£¬£¬£¬ÆäÔËÓª²¢Î´Êܵ½Ó°Ïì £¬£¬£¬£¬£¬£¬ITϵͳҲÒÑÕý³£ÔËÐÓ×£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/military-vehicles-maker-navistar-reports-data-theft-cyberattack


5.Unit42Åû¶Ê׸öÕë¶ÔWindowsÈÝÆ÷µÄ¶ñÒâÈí¼þSiloscape


5.jpg


Unit42Åû¶ÁËÊ׸öÕë¶ÔWindowsÈÝÆ÷µÄ¶ñÒâÈí¼þSiloscape¡£¡£¡£¡£¡£¡£¡£SiloscapeÊÇÒ»ÖÖ¾­¹ý¸ß¶È»ìºÏµÄ¶ñÒâÈí¼þ £¬£¬£¬£¬£¬£¬Äܹ»Í¨¹ýWindowsÈÝÆ÷Õë¶ÔKubernetes¼¯Èº £¬£¬£¬£¬£¬£¬ÆäÖØÒªÖ÷ÕÅÊÇÔÚÅäÖò»µ±µÄKubernetes¼¯ÈºÖÐÖ´ÐкóÃÅ £¬£¬£¬£¬£¬£¬ÔËÐжñÒâÈÝÆ÷¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þʹÓÃTor´úÀíºÍ.onionÓòÄäÃûÏνӵ½ÆäC2 £¬£¬£¬£¬£¬£¬×êÑÐÈËÔ±Éè·¨½Ó¼ûÁËÕą̂·þÎñÆ÷ £¬£¬£¬£¬£¬£¬È·¶¨ÁË23¸öSiloscapeµÄÊܺ¦Õß¡£¡£¡£¡£¡£¡£¡£´Ë±í £¬£¬£¬£¬£¬£¬»¹·¢Ïָ÷þÎñÆ÷ÍйÜÁË313¸öÓû§ £¬£¬£¬£¬£¬£¬ÕâÒâζ×ÅSiloscapeÖ»ÊǸü´óÁìÓò»î¶¯µÄÒ»Óײ¿ÃÅ¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/siloscape/


6.Kaspersky°ä²¼ÓйضñÒâÈí¼þGootkitµÄ·ÖÎö»ã±¨


6.jpg


Kaspersky°ä²¼ÓйضñÒâÈí¼þGootkitµÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£¡£GootkitÊǸ´ÔÓµÄÒøÐжñÒâÈí¼þ £¬£¬£¬£¬£¬£¬ÓÉDoctor WebÓÚ2014Äê³õ´Î·¢ÏÖ¡£¡£¡£¡£¡£¡£¡£Gootkit¿ÉÄÜ´Óä¯ÀÀÆ÷ÇÔÈ¡Êý¾Ý¡¢Ö´ÐÐä¯ÀÀÆ÷ÖÐÑëÈ˹¥»÷¡¢¼Í¼¼üÅÌÊäÈëÄÚÈÝ¡¢½ØÈ¡ÆÁÄ»½ØÍ¼ºÍºÜ¶àÆäËû¶ñÒâ²Ù×÷¡£¡£¡£¡£¡£¡£¡£2019Äê £¬£¬£¬£¬£¬£¬GootkitÔÚ²úÉúÊý¾Ýй¶ºóÖÕ³¡ÔËÓª £¬£¬£¬£¬£¬£¬µ«×Ô2020Äê11ÔÂÒÔÀ´ÔٴλîÔ¾¡£¡£¡£¡£¡£¡£¡£GootkitµÄÊܺ¦ÕßÖØÒªÉ¢²¼Ôڵ¹úºÍÒâ´óÀûµÈÅ·Ã˹ú¶È¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/gootkit-the-cautious-trojan/102731/