FacebookÔÞ³ÉÖ§¸¶9ǧÍòÃÀÔª½â¾ö³¤´ï10ÄêµÄ¼Óº¦ÒþÖÔ°¸
°ä²¼¹¦·ò 2022-02-18FacebookÔÞ³ÉÖ§¸¶9ǧÍòÃÀÔª½â¾ö³¤´ï10ÄêµÄ¼Óº¦ÒþÖÔ°¸
¾ÝýÌå2ÔÂ15ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬Meta PlatformsÒÑÔÞ³ÉÖ§¸¶9000ÍòÃÀÔª£¬£¬£¬£¬£¬£¬ÒÔ½â¾ö¸Ã¹«Ë¾Ê¹ÓÃcookieÀ´¸ú×ÙFacebookÓû§»¥ÁªÍø»î¶¯µÄËßËÏ¡£¡£¡£¡£¡£¡£ÕâÆð°¸¼þ³¤´ïÊ®ÄêÖ®¾Ã£¬£¬£¬£¬£¬£¬ÔÚ2012Äê±»Ìá³ö£¬£¬£¬£¬£¬£¬ÖØÒªÝÓÈÆFacebookʹÓÃרÓеġ°Like¡±°´¼üÀ´¸ú×ÙÓû§½Ó¼ûµÚÈý·½ÍøÕ¾Ê±£¬£¬£¬£¬£¬£¬Î¥·´ÁËÇÔÌý·¨¡£¡£¡£¡£¡£¡£¾Ý³Æ£¬£¬£¬£¬£¬£¬ËûÃÇ»¹½«ÕâЩä¯ÀÀ¼Í¼±à×ë³ÉÓ×ÎÒ×ÊÁÏ£¬£¬£¬£¬£¬£¬²¢ÏúÊÛ¸ø¸æ°×ÉÌ¡£¡£¡£¡£¡£¡£Ò»Äêǰ£¬£¬£¬£¬£¬£¬MetaÔøÒòÎ¥·´ÁËÒÁÀûŵÒÁÖÝÉúÎï¼ø±ðÐÅÏ¢ÒþÖÔ·¨(BIPA)£¬£¬£¬£¬£¬£¬±»ÀÕÁîÖ§¸¶6.5ÒÚÃÀÔª¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2022/02/facebook-agrees-to-pay-90-million-to.html
»¥ÁªÍøÐ»áISOCµÄ´æ´¢¿âÅäÖÃÃýÎóÊýÍòÓû§µÄÐÅϢй¶
Clario×êÑÐÈËÔ±ÔÚ2ÔÂ15ÈÕÖ¸³ö£¬£¬£¬£¬£¬£¬¹ú¼Ê»¥ÁªÍøÐ»áISOCÊýÍòÓû§µÄÐÅϢй¶¡£¡£¡£¡£¡£¡£Clario³ÆËûÃÇÓÚ2021Äê12ÔÂ8ÈÕ·¢ÏÖÒ»¸öδÊܱ£»£»£»£»£»¤µÄMicrosoft Azure blob´æ´¢¿â£¬£¬£¬£¬£¬£¬¸Ã´æ´¢¿âÔ̺¬Êý°ÙÍò¸öÎļþ£¬£¬£¬£¬£¬£¬Éæ¼°ISOC³ÉÔ±µÄÐÕÃû¡¢×¡Ö·¡¢ÓʼþµØÖ·¡¢ÐԱ𡢵Ǽ¾ßÌåÐÅÏ¢ºÍÃÜÂëµÈ¡£¡£¡£¡£¡£¡£12ÔÂ15ÈÕ£¬£¬£¬£¬£¬£¬ISOC°µÊ¾¸ÃÊÂÎñÊÇÓÉÓÚÆäÖÎÀíϵͳÌṩÉÌÅäÖÃÃýÎóµ¼Öµģ¬£¬£¬£¬£¬£¬ÇÒµ÷²é·¢ÏÖ²¢Î´ÓÐÈκÎÊý¾Ý±»¶ñÒâ½Ó¼û¡£¡£¡£¡£¡£¡£
https://www.infosecurity-magazine.com/news/internet-society-data-leaked/
BlackCat³ÆÆäÒÑÈëÇÖSwissport²¢ÇÔÈ¡1.6TBµÄÊý¾Ý
¾Ý2ÔÂ15ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬BlackCatÐû³Æ¶ÔSwissportµÄ¹¥»÷ÕÆ¹Ü¡£¡£¡£¡£¡£¡£¾ÝµÂ¹úýÌåSpiegel³Æ£¬£¬£¬£¬£¬£¬¹¥»÷²úÉúÔÚ2ÔÂ3ÈÕÔçÉÏ6µã£¬£¬£¬£¬£¬£¬Æäʱµ¼Ö¶à¼Üº½°àÑÓÎ󣬣¬£¬£¬£¬£¬¶ÔÆäÔËÓª²úÉúÁËÑϳÁÓ°Ïì¡£¡£¡£¡£¡£¡£BlackCatÒѹ«¿ªÔÚÀÕË÷¹¥»÷ÆÚ¼äÇÔÈ¡µÄÊý¾ÝÑù±¾£¬£¬£¬£¬£¬£¬²¢°µÊ¾ÓÐ1.6TBµÄÊý¾Ý¿É¹©ÏúÊÛ¡£¡£¡£¡£¡£¡£Ð¹Â¶Êý¾ÝÔ̺¬Ã³Ò×Îļþ¡¢ÄÉ˰É걨µ¥¡¢»¤ÕÕ¡¢Ó×ÎÒÉí·ÝÖ¤¡¢ÓʼþµØÖ·ºÍµç»°ºÅÂëµÈ¡£¡£¡£¡£¡£¡£
https://securityaffairs.co/wordpress/128039/cyber-crime/blackcat-swissport-ransomware-attack.html
Proofpoint·¢ÏÖTA2541Õë¶Ôº½¿ÕºÍÔËÊäÐÐÒµµÄ¹¥»÷»î¶¯
°²È«¹«Ë¾ProofpointÓÚ2ÔÂ15ÈÕÅû¶ÁËTA2541µÄ¹¥»÷»î¶¯µÄϸ½Ú¡£¡£¡£¡£¡£¡£TA2541×Ô2017ÄêÒÔÀ´Ò»Ïò»îÔ¾£¬£¬£¬£¬£¬£¬Õë¶Ôº½¿Õ¡¢º½Ìì¡¢ÔËÊä¡¢Ôì×÷ºÍ¹ú·ÀÐÐÒµµÄ×éÖ¯¡£¡£¡£¡£¡£¡£Ëüͨ³£ÒÀ¸½Microsoft Word Îĵ·´·Ö·¢RAT£¬£¬£¬£¬£¬£¬½üÆÚÆðͷʹÓÃÍйÜÔÚGoogle DriveµÈÔÆ·þÎñµÄÁ´½Ó¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬¸ÃÍŻﲻʹÓÃ×Ô½ç˵¶ñÒâÈí¼þ£¬£¬£¬£¬£¬£¬Æ«ÐÄÓÚAsyncRAT¡¢NetWire¡¢WSH RATºÍParallax¡£¡£¡£¡£¡£¡£Ä¿Ç°»î¶¯ÖÐʹÓõĶñÒâÈí¼þ¶¼¿ÉÓÃÓÚÍøÂçÐÅÏ¢£¬£¬£¬£¬£¬£¬µ«¹¥»÷ÕßµÄ×îÖÕÖ¸±êÈÔδ¿ÉÖª¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/unskilled-hacker-linked-to-years-of-attacks-on-aviation-transport-sectors/
Unit 42°ä²¼¹ØÓÚEmotetÐÂÒ»ÂÖ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨
2ÔÂ15ÈÕ£¬£¬£¬£¬£¬£¬Unit 42°ä²¼Á˹ØÓÚEmotetÐÂÒ»ÂÖ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£»ã±¨Ö¸³ö£¬£¬£¬£¬£¬£¬ÔçÔÚ2021Äê12ÔÂ21ÈÕ£¬£¬£¬£¬£¬£¬×êÑÐÈËÔ±¾Í¹Û²ìµ½¶ñÒâÈí¼þ¼Ò×åEmotetµÄÐÂϰȾ²½Öè¡£¡£¡£¡£¡£¡£ÐµĹ¥»÷»î¶¯Í¨¹ýµç×ÓÓʼþ·Ö·¢Ò»¸öExcelÎļþ£¬£¬£¬£¬£¬£¬¸ÃÎĵµÔ̺¬Ò»¸ö»ìºÏµÄExcel 4.0ºê¡£¡£¡£¡£¡£¡£¼¤»îºêºó£¬£¬£¬£¬£¬£¬Ëü»áÏÂÔØ²¢Ö´ÐÐÒ»¸öHTMLÀûÓ÷¨Ê½£¬£¬£¬£¬£¬£¬¸ÃÀûÓ÷¨Ê½»áÏÂÔØÁ½¸ö½×¶ÎµÄPowerShellÒÔÏÂÔØ²¢Ö´ÐÐ×îÖÕµÄEmotet payload¡£¡£¡£¡£¡£¡£
https://unit42.paloaltonetworks.com/new-emotet-infection-method/
Check Point³ÆTrickbotÒѹ¥»÷60¼Ò´óÐ͹«Ë¾
Check Point ResearchÔÚ2ÔÂ16ÈÕ°ä²¼»ã±¨³ÆTrickbotÒѱ»ÓÃÓÚ¹¥»÷60¼Ò´óÐ͹«Ë¾¡£¡£¡£¡£¡£¡£TrickbotÊÇÒ»ÖÖ¸´ÔÓÇÒ¶àÖ°ÄܵĶñÒâÈí¼þ£¬£¬£¬£¬£¬£¬ÓµÓÐ20¶à¸ö¿É°´ÐèÏÂÔØºÍÖ´ÐеÄÄ£¿£¿£¿£¿£¿£¿é¡£¡£¡£¡£¡£¡£TrickBotµÄÖ¸±êÔ̺¬ÑÇÂíÑ·¡¢ÃÀ¹úÔËͨ¡¢Ä¦¸ù´óͨ¡¢Î¢Èí¡¢Ë®Ê¦Áª¹úÐÅÓþºÏ×÷Éç¡¢PayPal¡¢RBC¡¢ÑÅ»¢µÈ³ÛÃû¹«Ë¾¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬CPR³Æ¹¥»÷ÕßµÄÖ¸±ê²¢²»ÊÇÕâЩ¹«Ë¾¶øÊÇËûÃǵĿͻ§¡£¡£¡£¡£¡£¡£»ã±¨»¹³ÁµãÃèÊöÁË3¸ö¹Ø¼üÄ£¿£¿£¿£¿£¿£¿éinjectDll¡¢tabDllºÍpwgrabc£¬£¬£¬£¬£¬£¬ÒÔ¼°TrickbotµÄ·´·ÖÎö¼¼Êõ¡£¡£¡£¡£¡£¡£
https://research.checkpoint.com/2022/a-modern-ninja-evasive-trickbot-attacks-customers-of-60-high-profile-companies/
°²È«¹¤¾ß
SafeDNS
ÃæÏò MSP µÄ»ùÓÚÔÆµÄ Internet °²È«ºÍ Web ¹ýÂ˽â¾ö¹æ»®¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2022/02/safedns-cloud-based-internet-security.html
F5 Distributed Cloud Services
F5 ÍÆ³öÁËÒ»¸öеÄÈí¼þ¼´·þÎñ (SaaS) ƽ̨£¬£¬£¬£¬£¬£¬Ö¼ÔÚ¼ò»¯¹«Ë¾µÄ·ÖÖ§°²È«½â¾ö¹æ»®¡£¡£¡£¡£¡£¡£
https://www.zdnet.com/article/f5-launches-new-saas-app-security-cloud-edge-computing-platform/
Shellcodetester
¸Ã¹¤¾ß²âÊÔÌìÉúµÄ ShellCodes¡£¡£¡£¡£¡£¡£
https://github.com/helviojunior/shellcodetester
Flare-Qdb
ºÅÁîÐкͿɱàд¾ç±¾µÄ»ùÓÚ Python µÄ¹¤¾ß£¬£¬£¬£¬£¬£¬ÓÃÓÚÆÀ¹ÀºÍ²Ù×÷±¾»ú·¨Ê½×´Ì¬¡£¡£¡£¡£¡£¡£
https://github.com/mandiant/flare-qdb
365Inspect
ͨ¹ý±àд¿É×Ô¶¯¶Ô Microsoft Office 365 »·¾³½øÐа²È«ÆÀ¹ÀµÄ PowerShell ¾ç±¾£¬£¬£¬£¬£¬£¬½øÒ»²½Ïàʶ O365 °²È«×´Ì¬¡£¡£¡£¡£¡£¡£
https://github.com/soteria-security/365Inspect
°²È«·ÖÎö
CVE-2021-44521£ºApache Cassandra ÖÐ RCE ·ì϶
https://thehackernews.com/2022/02/high-severity-rce-security-bug-reported.html
Squirrelwaffle¹¥»÷佨¸´µÄ Exchange ·þÎñÆ÷
https://news.sophos.com/en-us/2022/02/15/vulnerable-exchange-server-hit-by-squirrelwaffle-and-financial-fraud/
Windows 10 KB5010415 ¸üа䲼
https://www.bleepingcomputer.com/news/microsoft/windows-10-kb5010415-update-released-with-35-bug-fixes-improvements/
CISA °ä²¼¹«¸æ½¨Òé×éÖ¯½¨¸´»ý¼«ÀûÓÃµÄ Chrome¡¢Magento ·ì϶
https://www.bleepingcomputer.com/news/security/cisa-tells-federal-agencies-to-patch-actively-exploited-chrome-magento-bugs/
¹È¸èΪ Linux ÄÚºËºÍ GKE 0dayÌṩ 91,000 ÃÀÔªµÄ¼Î½±
https://www.securityweek.com/google-offering-91000-rewards-linux-kernel-gke-zero-days
ºÏÓÃÓÚ Windows 11 µÄ Android ÀûÓ÷¨Ê½ÒÑÔÚÃÀ¹úÉÏÏß
https://www.bleepingcomputer.com/news/microsoft/windows-11s-android-apps-feature-now-available-in-the-us/


¾©¹«Íø°²±¸11010802024551ºÅ