PIXM·¢ÏÖÀûÓÃFacebookºÍMessengerµÄ´¹µö»î¶¯
°ä²¼¹¦·ò 2022-06-10¾Ý6ÔÂ8ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬°²È«¹«Ë¾PIXM·¢ÏÖÁËһ·´ó¹æÄ£µÄ´¹µö»î¶¯¡£¡£¡£¡£¡£¡£¸Ã»î¶¯ÖÁÉÙ×Ô2021Äê9ÔÂÆðÍ·£¬£¬£¬£¬£¬£¬ÔÚ2022Äê4ÔÂÖÁ5Ô´ﵽ¶¥·å¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÀûÓÃÁËFacebookºÍMessenger£¬£¬£¬£¬£¬£¬ÓÕʹÊý°ÙÍòÓû§½Ó¼û´¹µöÒ³Ãæ£¬£¬£¬£¬£¬£¬ÊäÈëÕÊ»§Í´´¦²¢ÅÔ¹Û¸æ°×¡£¡£¡£¡£¡£¡£ÕâЩÒѱ»¹¥»÷µÄÕÊ»§»¹»áÏòËûÃǵİé·¢Ë͸ü¶àµÄ´¹µöÐÅÏ¢£¬£¬£¬£¬£¬£¬¹¥»÷Õßͨ¹ý¸æ°×Ó¶½ð»ñµÃ¿É¹ÛµÄÊÕÈë¡£¡£¡£¡£¡£¡£´¹µöÓʼþʹÓÃÁ˺Ϸ¨µÄURLÌìÉú·þÎñ£¬£¬£¬£¬£¬£¬¾Ýͳ¼Æ£¬£¬£¬£¬£¬£¬ÔÚ2021Ä꣬£¬£¬£¬£¬£¬ÓÐ270ÍòÓû§½Ó¼ûÁËÆäÖÐÒ»¸ö´¹µöÍøÕ¾£¬£¬£¬£¬£¬£¬µ½2022Äê¸ÃÊý×ÖÔö³¤µ½850Íò£¬£¬£¬£¬£¬£¬Õâ·´Ó³ÁËÕâ´Î»î¶¯´ó¹æÄ£Ôö³¤µÄÇ÷Ïò¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/massive-facebook-messenger-phishing-operation-generates-millions/
2¡¢ÀÕË÷Èí¼þCuba»Ø¹é²¢ÀûÓÃÓÅ»¯µÄбäÌå¹¥»÷¶à¸öÖ¸±ê
6ÔÂ8ÈÕ£¬£¬£¬£¬£¬£¬Trend MicroÅû¶Á˹ØÓÚÀÕË÷Èí¼þCubaбäÌåµÄϸ½Ú¡£¡£¡£¡£¡£¡£Cuba×Ô2020Äê2Ô³õ´Î±»¼ì²âµ½£¬£¬£¬£¬£¬£¬ÔÚ2021Äê´ïµ½¶¥·å¡£¡£¡£¡£¡£¡£½ñÄêÆðÍ·¸ÃÍÅ»ïÏÕЩûÓÐÐÂ×÷Ϊ£¬£¬£¬£¬£¬£¬Ö±µ½3Ô·ݾíÍÁ³ÁÀ´£¬£¬£¬£¬£¬£¬ÆäÔÚÍøÕ¾ÉÏÁгöÁ˶à¸ö±»¹¥»÷µÄÖ¸±ê£¨4Ô·Ý3¸ö£¬£¬£¬£¬£¬£¬5Ô·Ý1¸ö£©¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±³Æ£¬£¬£¬£¬£¬£¬ÔÚ3ÔºÍ4Ô¼ì²âµ½µÄÑù±¾Ê¹ÓÃÁËеÄ×Ô½ç˵ÏÂÔØ·¨Ê½BUGHATCH£¬£¬£¬£¬£¬£¬²¢»áÔÚ¼ÓÃÜǰÖÕÖ¹¸ü¶à¹ý³Ì£¬£¬£¬£¬£¬£¬Ô̺¬Outlook¡¢MS ExchangeºÍMySQL¡£¡£¡£¡£¡£¡£ÕâÅú×¢¹¥»÷ÕßÈÔÔÚ»ý¼«¿ª·¢Æä¼ÓÃÜÆ÷£¬£¬£¬£¬£¬£¬Ö¼ÔÚÓÅ»¯Æä¹¥»÷¹ý³Ì¡£¡£¡£¡£¡£¡£
https://www.trendmicro.com/en_us/research/22/f/cuba-ransomware-group-s-new-variant-found-using-optimized-infect.html
3¡¢Avast·¢ÏÖ·Ö·¢ÇÔÊØÐÅÏ¢µÄ¶ñÒâÈí¼þµÄлFakeCrack
AvastÔÚ6ÔÂ8ÈÕ³ÆÆä·¢ÏÖÁËÒ»¸öеĶñÒâÈí¼þ»î¶¯FakeCrack¡£¡£¡£¡£¡£¡£¸Ã»î¶¯¼ÙÒâÁËÆÆ½â°æµÄÓÅ»¯·¨Ê½CCleaner Pro Windows£¬£¬£¬£¬£¬£¬À´·Ö·¢¿ÉÇÔÈ¡ÃÜÂë¡¢ÐÅÓþ¿¨ÐÅÏ¢ºÍ¼ÓÃÜÇ®°üµÄ¶ñÒâÈí¼þ¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬¹¥»÷»î¶¯»¹ÀûÓÃÁËBlack SEO¼¼Êõ£¬£¬£¬£¬£¬£¬Ê¹¶ñÒâÍøÕ¾ÔڹȸèËÑË÷Á˾ÖÖеÄÅÅÃûÔ½·¢¿¿Ç°¡£¡£¡£¡£¡£¡£Öж¾µÄËÑË÷Á˾ֻὫָ±ê´øµ½¶à¸öÍøÕ¾£¬£¬£¬£¬£¬£¬×îÖÕ³ÇÊÐÖ¸ÏòÒ»¸öÏÂÔØZIPÎļþµÄµÇÂ¼Ò³Ãæ¡£¡£¡£¡£¡£¡£¸ÃZIP»áÓÃÀàËÆÓÚ"1234"Ö®ÀàµÄÈõÃÜÂë±£»£»£»£»£»£»¤£¬£¬£¬£¬£¬£¬ÒÔÃâ¶ñÒâpayload±»É±¶¾Èí¼þ¼ì²âµ½¡£¡£¡£¡£¡£¡£Avast°µÊ¾£¬£¬£¬£¬£¬£¬¾ùÔÈÿÌì¼ì²âµ½Ô¼10000´ÎϰȾ³¢ÊÔ£¬£¬£¬£¬£¬£¬ÖØÒªÕë¶Ô·¨¹ú¡¢°ÍÎ÷¡¢Ó¡¶ÈÄáÎ÷ÑǺÍÓ¡¶È¡£¡£¡£¡£¡£¡£
https://blog.avast.com/fakecrack-campaign
4¡¢Aoqin DragonÕë¶Ô¶«ÄÏÑǵØÓòºÍ°Ä´óÀûÑǵĹ¥»÷³¤´ïÊ®Äê
¾ÝýÌå6ÔÂ9ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬SentinelOne·¢ÏÖÁËAoqin DragonÕë¶Ô¶«ÄÏÑǵØÓòºÍ°Ä´óÀûÑdz¤´ïÊ®ÄêµÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¸ÃÍÅ»ïÖØÒªÕë¶ÔÐÂ¼ÓÆÂ¡¢ÖйúÏã¸Û¡¢Ô½ÄÏ¡¢¼íÆÒÕ¯ºÍ°Ä´óÀûÑÇÈ·µ±¾Ö¡¢½ÌÓýºÍµçÐÅÓйØ×éÖ¯¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÀûÓÃÁËÎĵµÖеķì϶ºÍ¼ÙµÄ¿ÉÒÆ¶¯É豸À´»ñµÃ³õʼ½Ó¼ûȨÏÞ¡£¡£¡£¡£¡£¡£¾Ý¹Û²ì£¬£¬£¬£¬£¬£¬¹¥»÷ÕßʹÓÃµÄÆäËü¼¼ÊõÔ̺¬DLL½Ù³Ö¡¢Themida°ü×°µÄÎļþºÍDNSËí·£¬£¬£¬£¬£¬£¬ÓÃÀ´Èƹý¼ì²â¡£¡£¡£¡£¡£¡£¾¹ý¶ÔAoqin Dragon»î¶¯µÄÖ¸±ê¡¢»ù´¡ÉèÊ©ºÍ¶ñÒâÈí¼þ½á¹¹µÄ·ÖÎö£¬£¬£¬£¬£¬£¬×êÑÐÈËÔ±´§¶È¸ÃÍÅ»ï¿ÉÄÜÓëUNC94(Mandiant)ÓйØÁª¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2022/06/a-decade-long-chinese-espionage.html
5¡¢Kaspersky°ä²¼2021Äê·ÓÉÆ÷°²È«Ì¬ÊƵķÖÎö»ã±¨
6ÔÂ8ÈÕ£¬£¬£¬£¬£¬£¬Kaspersky°ä²¼Á˹ØÓÚ2021Äê·ÓÉÆ÷°²È«Ì¬ÊƵķÖÎö»ã±¨¡£¡£¡£¡£¡£¡£»ã±¨Ö¸³ö£¬£¬£¬£¬£¬£¬ÔÚ´ÓǰʮÄêÖУ¬£¬£¬£¬£¬£¬ÔÚ¸÷Àà·ÓÉÆ÷Öз¢Ïֵķì϶ÊýÁ¿²»ÐÝÔö³¤£¬£¬£¬£¬£¬£¬2020ÄêºÍ2021ÆÚ¼ä£¬£¬£¬£¬£¬£¬·¢ÏÖÁË500¶à¸ö·ÓÉÆ÷·ì϶¡£¡£¡£¡£¡£¡£²»ÐÒµÄÊÇ£¬£¬£¬£¬£¬£¬²¢·ÇËùÓй©¸øÉ̶¼ºÜ¿ì½¨¸´·ì϶£¬£¬£¬£¬£¬£¬½ØÖÁĿǰ£¬£¬£¬£¬£¬£¬ÔÚ2021Äê°ä²¼µÄ87¸öÑϳÁµÄ·ì϶ÖУ¬£¬£¬£¬£¬£¬29.9%ÈÔδ±»½¨¸´¡£¡£¡£¡£¡£¡£Õë¶Ô·ÓÉÆ÷µÄ¶ñÒâÈí¼þÖØÒªÎªBackdoor.Linux.Mirai.b£¨Õ¼±È48.25%£©¡¢Trojan-Downloader.Linux.NyaDrop.b£¨13.57%£©ºÍBackdoor.Linux.Mirai.ba£¨6.54%£©¡£¡£¡£¡£¡£¡£
https://securelist.com/router-security-2021/106711/
6¡¢Malwarebytes°ä²¼¹ØÓÚMakeMoney¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨
MalwarebytesÔÚ6ÔÂ8ÈÕ°ä²¼ÁËMakeMoney¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±½üÆÚ·¢ÏÖÁËÒ»¸öеĶñÒâ¸æ°×»î¶¯£¬£¬£¬£¬£¬£¬»á×°ÖÃαÔìµÄFirefox¸üС£¡£¡£¡£¡£¡£Õâ¸öαÔìµÄ¸üÐÂÔ̺¬¼¸¸ö¾ç±¾£¬£¬£¬£¬£¬£¬ÓÃÀ´ÏÂÔØ¼ÓÃܵÄpayload¡£¡£¡£¡£¡£¡£³õʼ¿ÉÖ´ÐÐÎļþÔ̺¬Ò»¸ö¼ÓÔØ·¨Ê½£¬£¬£¬£¬£¬£¬»á¼ìË÷±»¼ì²âΪBrowserAssistantµÄ¸æ°×Èí¼þ¡£¡£¡£¡£¡£¡£¶ñÒâ¸æ°×»ù´¡ÉèÊ©Óë×Ô2019Äêµ×ÒÔÀ´ºÜ¶à»î¶¯ÖÐʹÓõĻù´¡ÉèÊ©¸ù»ùÒ»Ñù£¬£¬£¬£¬£¬£¬¿ÉÄܳöÓÚijÖÖÔÒò£¬£¬£¬£¬£¬£¬¹¥»÷Õß³Á¸´Ê¹ÓÃÁËÒ»ÑùµÄ·þÎñÆ÷£¬£¬£¬£¬£¬£¬Õ⽫¸Ã»î¶¯ÓëMakeMoneyÁªÏµÆðÀ´¡£¡£¡£¡£¡£¡£
https://blog.malwarebytes.com/threat-intelligence/2022/06/makemoney-malvertising-campaign-adds-fake-update-template/


¾©¹«Íø°²±¸11010802024551ºÅ