Ç÷Ïò¿Æ¼¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ

°ä²¼¹¦·ò 2022-05-09

1¡¢Ç÷Ïò¿Æ¼¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ


¾ÝýÌå5ÔÂ7ÈÕ±¨Â· £¬£¬£¬£¬£¬Ç÷Ïò¿Æ¼¼¶Ëµã°²È«½â¾ö¹æ»®Apex OneÖдæÔÚÎÊÌâ ¡£¡£¡£¡£¡£¡£¾ÝÓû§Ð¹Â© £¬£¬£¬£¬£¬Apex One½«Microsoft Edge¸üÐÂÏóÕ÷Ϊ²¡¶¾/¶ñÒâÈí¼þ£ºTROJ_FRS.VSNTE222ºÍ²¡¶¾/¶ñÒâÈí¼þ£ºTSC_GENCLEAN ¡£¡£¡£¡£¡£¡£´Ë±í £¬£¬£¬£¬£¬²¿ÃÅÓû§³Æ´ËÎÊÌ⻹µ¼ÖÂÔÚÖ´ÐдúÀíµÄËãÕʹ¤¾ßºó £¬£¬£¬£¬£¬Windows×¢²á±íÏî±»ÃýÎ󵨏ü¸Ä ¡£¡£¡£¡£¡£¡£Ä¿Ç° £¬£¬£¬£¬£¬Õâ¼Ò°²È«Èí¼þÔì×÷ÉÌÒѾ­½â¾öÁËÕâ¸öÎÊÌâ £¬£¬£¬£¬£¬²¢°ä²¼ÁËÒ»·Ý½¨ÒéÀ´Ô®ÊÖ¿Í»§¸üÐÂËûÃǵIJúÆ· ¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/trend-micro-antivirus-modified-windows-registry-by-mistake-how-to-fix/


2¡¢ContiÐû³ÆÒÑÈëÇÖÃØÂ³¹ú¶Èµý±¨¾Ö²¢ÇÔÈ¡³¬¹ý9 GBµÄÊý¾Ý


¾Ý5ÔÂ8ÈÕ±¨Â· £¬£¬£¬£¬£¬ContiÀÕË÷ÍÅ»ïÐû³ÆÒÑÈëÇÖÃØÂ³MOF¨CDIGIMIN£¨µý±¨×ܾ֣© ¡£¡£¡£¡£¡£¡£¹ú¶Èµý±¨¾ÖÊÇÃØÂ³ÃûÁÐǰéµÄµý±¨»ú¹¹ £¬£¬£¬£¬£¬Õƹܹú¶È¡¢¾üʺ;¯Ô±µý±¨ÒÔ¼°·´µý±¨¹¤×÷ ¡£¡£¡£¡£¡£¡£ContiÒѽ«¸Ã»ú¹¹Ôö³¤µ½ÆäTorÐ¹Â©ÍøÕ¾µÄ±»¹¥»÷Ãûµ¥ÖÐ £¬£¬£¬£¬£¬²¢°µÊ¾ÒѾ­ÇÔÈ¡¸Ã×éÖ¯9.41 GBµÄÊý¾Ý ¡£¡£¡£¡£¡£¡£´Ë±í £¬£¬£¬£¬£¬ÃØÂ³DIGIMINµÄÍøÕ¾Ê¼ÖÕÎÞ·¨½Ó¼û ¡£¡£¡£¡£¡£¡£ÉÏÖÜ £¬£¬£¬£¬£¬ÃÀ¹ú¹úÎñÔºÌṩÁ˸ߴï1500ÍòÃÀÔªµÄ½±½ð £¬£¬£¬£¬£¬ÐüÉÍÓйØContiÀÕË÷ÍÅ»ïµÄÐÅÏ¢ ¡£¡£¡£¡£¡£¡£


https://securityaffairs.co/wordpress/131093/cyber-crime/conti-ransomware-peru-direccion-general-de-inteligencia.html


3¡¢XboxÈ«ÇòÁìÓòÄÚ·þÎñÖÐ¶Ï £¬£¬£¬£¬£¬Óû§ÎÞ·¨Æô¶¯ºÍ²É°ìÓÎÏ·


ýÌå5ÔÂ6ÈÕ³Æ £¬£¬£¬£¬£¬Xbox Live·þÎñÖÐ¶Ï £¬£¬£¬£¬£¬È«ÇòÁìÓòÄÚµÄÓû§ÎÞ·¨Æô¶¯ºÍ²É°ìÓÎÏ· ¡£¡£¡£¡£¡£¡£Õâ´ÎÖжÏÓ°ÏìÁ˶à¸öƽ̨ £¬£¬£¬£¬£¬Éæ¼°Xbox Series X|S¡¢Xbox OneÓÎÏ·»ú¡¢AndroidÉ豸¡¢AppleÉ豸¡¢Windows ÉϵÄXboxºÍÔÆÓÎÏ· ¡£¡£¡£¡£¡£¡£´óÁ¿Óû§·´Ó³ £¬£¬£¬£¬£¬ÔÚÏßÓÎϷƽ̨ÒÑÖжÏÊýÓ×ʱ £¬£¬£¬£¬£¬ËûÃÇÎÞ·¨ÍæÏßϺÍÔÚÏßÓÎÏ· ¡£¡£¡£¡£¡£¡£Ä¿Ç° £¬£¬£¬£¬£¬¸ÃÎÊÌâÒѾ­½¨¸´ ¡£¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/technology/xbox-is-down-worldwide-with-users-unable-to-play-games/


4¡¢ÃÀ¹úũҵ»úе³ö²úÉÌAGCOÔâÀÕË÷¹¥»÷ £¬£¬£¬£¬£¬³ö²úÁÙʱÖжÏ


ÃÀ¹úũҵ»úе³ö²úÉÌAGCOÔÚ5ÔÂ6ÈÕ³Æ £¬£¬£¬£¬£¬ÆäÔâµ½ÁËÀÕË÷¹¥»÷ ¡£¡£¡£¡£¡£¡£AGCOÊǸÃÁìÓòµÄÁì¾ü¹«Ë¾ £¬£¬£¬£¬£¬ÊÕÈ볬¹ý90ÒÚÃÀÔª £¬£¬£¬£¬£¬Õ¼ÓÐ21000ÃûÔ±¹¤ ¡£¡£¡£¡£¡£¡£¹¥»÷²úÉúÔÚ5ÔÂ5ÈÕ £¬£¬£¬£¬£¬AGCOûÓÐÌṩµ¼ÖÂÖжϵľßÌåÐÅÏ¢ £¬£¬£¬£¬£¬µ«Ëü¿ÉÄÜ»á¹Ø¹ØÆä²¿ÃÅITϵͳÒÔÔ¤·À¹¥»÷ÊæÕ¹ ¡£¡£¡£¡£¡£¡£AGCOÔÚÐÂΟåÖÐÚ¹ÊÍ· £¬£¬£¬£¬£¬µ÷²éÈÔÔÚ½øÐÐÖÐ £¬£¬£¬£¬£¬Ô¤¼ÆÕâ´ÎÍøÂç¹¥»÷µÄÓ°Ï콫³ÖÐøºÜ³¤Ò»¶Î¹¦·ò £¬£¬£¬£¬£¬ËûÃÇ»áÈ«Á¦¸´Ô­ÏµÍ³ ¡£¡£¡£¡£¡£¡£FBI³Æ £¬£¬£¬£¬£¬ÀÕË÷¹¥»÷Ô½À´Ô½¶àµØÕë¶ÔÃÀ¹úµÄũҵ²¿ÃÅ ¡£¡£¡£¡£¡£¡£


https://securityaffairs.co/wordpress/131058/cyber-crime/agco-suffered-ransomware-attack.html


5¡¢Cisco·¢ÏÖMustang PandaÕë¶ÔÅ·ÖÞµÄÐÂÒ»ÂÖ¹¥»÷»î¶¯


5ÔÂ5ÈÕ £¬£¬£¬£¬£¬Cisco°ä²¼ÁËMustang PandaÕë¶ÔÅ·ÖÞÐÂÒ»ÂÖ¹¥»÷»î¶¯µÄ»ã±¨ ¡£¡£¡£¡£¡£¡£2022Äê2Ô £¬£¬£¬£¬£¬Cisco TalosÆðÍ·¹Û²ìµ½Mustang Panda¶ÔÅ·ÖÞ×éÖ¯½øÐеĴ¹µö»î¶¯ ¡£¡£¡£¡£¡£¡£²¿ÃÅ´¹µöÓʼþ¼Ù×°³ÉÅ·Ã˹ØÓÚÎÚ¿ËÀ¼Ã¬¶Ü¼°Æä¶Ô±±Ô¼¹ú¶ÈÓ°ÏìµÄ¹Ù·½»ã±¨ £¬£¬£¬£¬£¬»¹Óд¹µöµç×ÓÓʼþÌṩÐéαµÄÎÚ¿ËÀ¼µ±¾ÖµÄ¹Ù·½»ã±¨ ¡£¡£¡£¡£¡£¡£Õâ´Î»î¶¯Ê¹ÓÃÁ˶ñÒâÈí¼þPlugX¡¢×Ô½ç˵stagers¡¢·´ÏòshellÒÔ¼°»ùÓÚMeterpreterµÄshellcode ¡£¡£¡£¡£¡£¡£


https://blog.talosintelligence.com/2022/05/mustang-panda-targets-europe.html


6¡¢Red Canary°ä²¼Ð¶ñÒâÈí¼þRaspberry RobinµÄ·ÖÎö»ã±¨


Red CanaryÔÚ5ÔÂ5ÈÕ°ä²¼Á˹ØÓÚжñÒâÈí¼þRaspberry RobinµÄ·ÖÎö»ã±¨ ¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ×îÔçÄܹ»×·Òäµ½2021Äê9Ô £¬£¬£¬£¬£¬ÖØÒªÕë¶ÔÓë¼¼ÊõºÍÔì×÷ÒµÓйصÄ×éÖ¯ ¡£¡£¡£¡£¡£¡£ËüÊÇÒ»ÖÖÓµÓÐÀàËÆÈ䳿ְÄܵÄÐÂÐÍWindows¶ñÒâÈí¼þ £¬£¬£¬£¬£¬²¢Í¨¹ý¿ÉÒÆ¶¯USBÉ豸½øÐд«²¼ ¡£¡£¡£¡£¡£¡£¸ÃÈ䳿ÀûÓÃWindows Installer½Ó¼ûÓëQNAPÓйصÄÓò²¢ÏÂÔØ¶ñÒâDLL £¬£¬£¬£¬£¬²¢Ê¹ÓÃTOR³ö¿Ú½Úµã×÷Ϊ±¸·ÝC2»ù´¡ÉèÊ© ¡£¡£¡£¡£¡£¡£Ä¿Ç° £¬£¬£¬£¬£¬×êÑÐÈËÔ±ÉÐδȷ¶¨Õâ´Î¹¥»÷µÄ¶¯»ú £¬£¬£¬£¬£¬Ò²²»Ã÷ÏÔRaspberry RobinÈôºÎÒÔ¼°Ôںδ¦Ï°È¾±í²¿Çý¶¯Æ÷½øÐд«²¼µÄ ¡£¡£¡£¡£¡£¡£


https://redcanary.com/blog/raspberry-robin/