¹¥»÷ÕßÀûÓüÙ×°³ÉTelegramµÄ¶ñÒâÈí¼þ·Ö·¢Purple Fox

°ä²¼¹¦·ò 2022-01-06

¹ú¶ÈÍøÐŰìµÈ13¸ö²¿ÃŶ©Õý°ä²¼¡¶ÍøÂ簲ȫÉó²é·¨×Ó¡·


¹ú¶ÈÍøÐŰìµÈ13¸ö²¿ÃŶ©Õý°ä²¼¡¶ÍøÂ簲ȫÉó²é·¨×Ó¡·.png


1ÔÂ4ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬¹ú¶È»¥ÁªÍøÐÅÏ¢°ì¹«ÊÒµÈ13¸ö²¿ÃŶ©Õý°ä²¼¡¶ÍøÂ簲ȫÉó²é·¨×Ó¡·¡£¡£¡£¡£¡£ ¡£¡£¸Ã·¨×Ó¹²23Ìõ£¬£¬£¬£¬£¬£¬£¬£¬ÔÚ2021Äê11ÔÂ16ÈÕ¹ú¶È»¥ÁªÍøÐÅÏ¢°ì¹«ÊÒ2021ÄêµÚ20´ÎÊÒÎñ»áÒéÉóÒéͨ¹ý£¬£¬£¬£¬£¬£¬£¬£¬×Ô2022Äê2ÔÂ15ÈÕÆðÖ´ÐС£¡£¡£¡£¡£ ¡£¡£¸Ã·¨×Ó»®¶¨°ÑÎÕ³¬¹ý100ÍòÓû§Ó×ÎÒÐÅÏ¢µÄÍøÂçÆ½Ì¨ÔËÓªÕ߸°¹ú±íÉÏÊУ¬£¬£¬£¬£¬£¬£¬£¬±ØÐëÏòÍøÂ簲ȫÉó²é°ì¹«ÊÒÉê±¨ÍøÂ簲ȫÉó²é¡£¡£¡£¡£¡£ ¡£¡£ÕƹÜÈ˳ƣ¬£¬£¬£¬£¬£¬£¬£¬´Ë¾ÙÊÇΪ½øÒ»²½±£ÏÕÍøÂ簲ȫºÍÊý¾Ý°²È«£¬£¬£¬£¬£¬£¬£¬£¬ÊØ»¤¹ú¶È°²È«¡£¡£¡£¡£¡£ ¡£¡£


http://www.cac.gov.cn/2022-01/04/c_1642894602182845.htm


¹¥»÷ÕßÀûÓüÙ×°³ÉTelegramµÄ¶ñÒâÈí¼þ·Ö·¢Purple Fox


Minerva LabsÔÚ1ÔÂ3ÈÕ°ä²¼µÄ»ã±¨Åû¶½üÆÚ·Ö·¢Purple FoxµÄ»î¶¯Ï¸½Ú¡£¡£¡£¡£¡£ ¡£¡£Õâ´Î»î¶¯ÀûÓÃÃûΪTelegram Desktop.exeµÄ±àÒëºóµÄAutoIt¾ç±¾£¬£¬£¬£¬£¬£¬£¬£¬Ëü»á×°ÖÃ2¸öÎļþ£ººÏ·¨µÄTelegram×°Ö÷¨Ê½ºÍ¶ñÒâÏÂÔØ·¨Ê½(TextInputh.exe)¡£¡£¡£¡£¡£ ¡£¡£TextInputh.exe½«ÏÂÔØÒ»ÏµÁжñÒâÎļþÀ´×èÖ¹360 AV¹ý³ÌÆô¶¯£¬£¬£¬£¬£¬£¬£¬£¬ÔÚÈ·¶¨»·¾³°²È«ºóÏνÓC2£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ.msiÎļþµÄ´ó¾ÖÏÂÔØPurple Fox¡£¡£¡£¡£¡£ ¡£¡£


https://blog.minerva-labs.com/malicious-telegram-installer-drops-purple-fox-rootkit


Broward Healthϵͳзì϶Ôì³É130¶àÍò»¼ÕßÐÅϢй¶


¾ÝýÌå1ÔÂ4ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬Broward HealthÒÑй¶³¬¹ý130Íò»¼ÕßÐÅÏ¢¡£¡£¡£¡£¡£ ¡£¡£ÕâÊÇÃÀ¹úTop 10µÄ¹«¹²Ò½ÁÆÏµÍ³£¬£¬£¬£¬£¬£¬£¬£¬Ä¿Ç°¾­Óª×Å30¶à¸öÒ½ÁÆ»ú¹¹¡£¡£¡£¡£¡£ ¡£¡£¹¥»÷²úÉúÔÚ2021Äê10ÔÂ15ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÈëÇÖÁËÒ½ÔºµÄÍøÂç²¢½Ó¼û»¼ÕßÊý¾Ý¡£¡£¡£¡£¡£ ¡£¡£¸Ã»ú¹¹ÓÚ10ÔÂ19ÈÕ·¢ÏÖ°²È«·ì϶£¬£¬£¬£¬£¬£¬£¬£¬²¢Ïò´¦Ëùµ±¾Ö»ã±¨¡£¡£¡£¡£¡£ ¡£¡£¾­µ÷²é£¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷ÕßÊÇͨ¹ýÈëÇÔìäµÚÈý·½Ò½ÁÆÌṩÉ̽øÈëÍøÂç¡£¡£¡£¡£¡£ ¡£¡£¸ÃÒ½Ôº½«ÎªÊÜÓ°ÏìÓû§ÌṩΪÆÚÁ½ÄêµÄÉí·ÝµÁÓüì²âºÍ±£»£»£»£»£»¤·þÎñµÄ»áÔ±×ʸñ¡£¡£¡£¡£¡£ ¡£¡£


https://securityaffairs.co/wordpress/126285/data-breach/broward-health-data-breach.html


SEGA EuropeµÄAWS´æ´¢Í°ÅäÖÃÃýÎ󣬣¬£¬£¬£¬£¬£¬£¬¿É½Ó¼ûÃÜÔ¿µÈÐÅÏ¢


°²È«¹«Ë¾VPN Overview 12ÔÂ30ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬SEGA EuropeµÄAWS´æ´¢Í°ÅäÖÃÃýÎóµ¼ÖÂÐÅϢй©¡£¡£¡£¡£¡£ ¡£¡£ÊÜÓ°ÏìµÄ´æ´¢Í°Ô̺¬¿ÉÓÃÀ´½Ó¼ûSEGA EuropeµÄ¶à¸öÔÆ·þÎñµÄAWSÃÜÔ¿£¬£¬£¬£¬£¬£¬£¬£¬SNS֪ͨ¶ÓÁУ¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°´óÁ¿Óû§ÐÅÏ¢¡£¡£¡£¡£¡£ ¡£¡£×êÑÐÈËÔ±°µÊ¾£¬£¬£¬£¬£¬£¬£¬£¬ËûÃÇ¿ÉÄÜÉÏ´«Îļþ¡¢Ö´Ðо籾¡¢¸ü¸ÄÏÖÓÐÍøÒ³²¢´Û¸ÄSEGAÓòµÄÅäÖ㬣¬£¬£¬£¬£¬£¬£¬Ä¿Ç°Ã»Óм£ÏóÅú×¢¹¥»÷ÕßÒѽӼûÊý¾Ý»òÀûÓÃÉÏÊö·ì϶¡£¡£¡£¡£¡£ ¡£¡£


https://vpnoverview.com/news/sega-europe-security-report/


Invezz³Æ½ü10ÄêÖмÓÃܰ²È«·ì϶µÄÊýÁ¿ÒÑÔö³¤850%


¾ÝýÌå1ÔÂ2ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬Invezz°ä²¼µÄ»ã±¨ÏÔʾ½ü10ÄêÖмÓÃܰ²È«·ì϶µÄÊýÁ¿ÒÑÔö³¤850%¡£¡£¡£¡£¡£ ¡£¡£¾Ý¹À¼Æ£¬£¬£¬£¬£¬£¬£¬£¬2011Äê1ÔÂÖÁ2021Äê12Ô£¬£¬£¬£¬£¬£¬£¬£¬±»µÁµÄ¼ÓÃÜÇ®±Ò½ð¶î´ï121ÒÚÃÀÔª¡£¡£¡£¡£¡£ ¡£¡£ÆäÖÐËðʧ½ð¶îÔö·ù×î´óµÄÊÇ2016ÄêÖÁ2017Ä꣬£¬£¬£¬£¬£¬£¬£¬Ôö³¤180%£»£»£»£»£»Òò¼ÓÃܹ¥»÷¶øµ¼ÖµÄËðʧ×î¸ßµÄÊÇ2021Ä꣬£¬£¬£¬£¬£¬£¬£¬´ï42.5ÒÚÃÀÔª¡£¡£¡£¡£¡£ ¡£¡£ÀûÓüÓÃÜ»¥»»°²ÕûϵͳÖеķì϶ÊÇ×î³£¼ûµÄÕ½Êõ£¬£¬£¬£¬£¬£¬£¬£¬×î³£Ôâµ½´ËÀ๥»÷µÄ¹ú¶ÈÊÇÈÕ±¾¡¢º«¹ú¡¢ÃÀ¹ú¡¢Ó¢¹úºÍÖйú¡£¡£¡£¡£¡£ ¡£¡£


https://securityaffairs.co/wordpress/126216/cyber-crime/crypto-security-breaches-2011-2021.html


Microsoft°ä²¼´¹Î£¸üн¨¸´Windows ServerÖеÄÃýÎó


¾Ý±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬MicrosoftÒÑÓÚ1ÔÂ4ÈÕ°ä²¼´ø±í(OOB)¸üС£¡£¡£¡£¡£ ¡£¡£Õâ´Î¸üн«½¨¸´Windows Server 2019ºÍWindows Server 2012 R2µÄºÚÆÁ¡¢µÇ¼»ºÂý»òÆÕ±é»ºÂýµÄÎÊÌ⣬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°ÎÞ·¨Ê¹ÓÃÔ¶³Ì×ÀÃæ½Ó¼û·þÎñÆ÷»ò·þÎñÆ÷ÖÕ³¡ÏìÓ¦µÄÎÊÌâ¡£¡£¡£¡£¡£ ¡£¡£ÕâЩ¸üв»ÄÜ´ÓWindows¸üлñµÃ£¬£¬£¬£¬£¬£¬£¬£¬Ò²²»»á×Ô¶¯×°Öᣡ£¡£¡£¡£ ¡£¡£MicrosoftÉÐδ°ä²¼ÆäËü°æ±¾µÄ¸üУ¬£¬£¬£¬£¬£¬£¬£¬Ô¤¼Æ½«ÔÚ½«À´¼¸ÌìÄÚÌṩ½â¾ö¹æ»®¡£¡£¡£¡£¡£ ¡£¡£


https://www.bleepingcomputer.com/news/microsoft/emergency-windows-server-update-fixes-remote-desktop-issues/


°²È«¹¤¾ß


Haveged


¸Ã¹¤¾ßµÄÖ÷ÕÅÊÇÌṩһ¸öµ¥Ò»Ò×ÓõIJ»³ÉÔ¤²âËæ»úÊýÌìÉúÆ÷£¬£¬£¬£¬£¬£¬£¬£¬»ùÓÚ HAVEGE Ëã·¨¡£¡£¡£¡£¡£ ¡£¡£


https://wiki.archlinux.org/title/Haveged


rustpad


ÓÃRust±àдµÄ´«Í³padbusterµÄ¶àÏ̼̳߳ÐÕߣ¬£¬£¬£¬£¬£¬£¬£¬ÀûÓà Padding Oracle ·ì϶¡£¡£¡£¡£¡£ ¡£¡£


https://github.com/Kibouo/rustpad/


°²È«·ÖÎö


ÈôºÎÀûÓø´ÔìÕ³ÌùÈëÇÖ


¸´ÔìÎı¾ºóµÄĩβ»¹ÓÐÒ»¸ö»»Ðзû£¬£¬£¬£¬£¬£¬£¬£¬¿Éµ¼ÖÂËüÔÚÕ³Ìùµ½LinuxÖն˺óÁ¢¼´Ö´ÐС£¡£¡£¡£¡£ ¡£¡£


https://www.wizer-training.com/blog/copy-paste


ÀûÓõç´ÅÐźŽøÐлìºÏ¶ñÒâÈí¼þµÄ·ÖÀà


ÀûÓÃIoTÉ豸µÄµç´Å³¡ÐźÅ×÷ΪÅÔ·À´ÍøÂçÕë¶ÔÖ²ÈëϵͳµÄ·ÖÆçÀàÐͶñÒâÈí¼þµÄ¾«È·ÐÅÏ¢¡£¡£¡£¡£¡£ ¡£¡£


https://dl.acm.org/doi/10.1145/3485832.3485894