еÄCOVID-bit¹¥»÷¿ÉʹÓõç´Å²¨ÇÔÈ¡ÆøÏ¶ÏµÍ³ÖÐÊý¾Ý
°ä²¼¹¦·ò 2022-12-12
¾ÝýÌå12ÔÂ10ÈÕ±¨Â·£¬£¬£¬£¬£¬×êÑÐÈËÔ±·¢ÏÖÒ»ÖÖÃûΪCOVID-bitµÄй¥»÷²½Ö裬£¬£¬£¬£¬¿ÉʹÓõç´Å²¨´ÓÆøÏ¶ÏµÍ³ÖÐÇÔÈ¡Êý¾Ý¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±Ê×ÏÈ¿ª·¢ÁËÒ»¸ö¶ñÒⷨʽ£¬£¬£¬£¬£¬ÒÔÌØ¶¨·½Ê½µ÷½ÚCPU¸ºÔغÍÖ÷ÌâÆµÂÊ£¬£¬£¬£¬£¬Ê¹ÆøÏ¶ÏµÍ³ÉϵĵçÔ´ÔÚµÍÆµ¶Î(0¨C48 kHz£©¡£¡£¡£¡£¡£¡£¡£µç´Å²¨Äܹ»Ð¯´øÔʼÊý¾ÝµÄpayload£¬£¬£¬£¬£¬ËæºóÊǰµÊ¾´«ÊäÆðÍ·µÄ8λstrain¡£¡£¡£¡£¡£¡£¡£ÖÇÄÜÊÖ»úÄܹ»²¶»ñ´«ÊäµÄÐÅÏ¢£¬£¬£¬£¬£¬Í¨¹ý½µÔë¹ýÂËÆ÷£¬£¬£¬£¬£¬½âÎöÔʼÊý¾Ý£¬£¬£¬£¬£¬²¢×îÖÕ½âÂëÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/air-gapped-pcs-vulnerable-to-data-theft-via-power-supply-radiation
2¡¢TelstraÒòÊý¾Ý¿âÅäÖÃÃýÎóй¶13Íò¿Í»§µÄÓ×ÎÒÐÅÏ¢
ýÌå12ÔÂ10Èճƣ¬£¬£¬£¬£¬°Ä´óÀûÑǵçÐŹ«Ë¾³¬¹ý13Íò¿Í»§µÄÓ×ÎÒÐÅϢй¶¡£¡£¡£¡£¡£¡£¡£Telstra°µÊ¾£¬£¬£¬£¬£¬¸ÃÊÂÎñ²¢²»ÊÇÓÉÓںڿ͹¥»÷µ¼Öµģ¬£¬£¬£¬£¬¶øÊÇÓÉÓÚ¡°Êý¾Ý¿â´íλ¡±£¬£¬£¬£¬£¬¿Í»§ÐÅÏ¢±»ÃýÎóµØÏÔʾÔÚ¿ÕȱҳºÍĿ¼·þÎñÖÓ×£¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñй¶ÁËÓû§µÄÐÕÃû¡¢µØÖ·ºÍÊÖ»úºÅÂë¡£¡£¡£¡£¡£¡£¡£Telstra¹«Ë¾Ä¿Ç°ÔÚÁªÏµÊÜÓ°ÏìµÄ¿Í»§£¬£¬£¬£¬£¬ÏòËûÃDZ£ÕÏÆäÓ×ÎÒÐÅÏ¢½«´ÓÕâÁ½Ïî·þÎñÖÐɾ³ý£¬£¬£¬£¬£¬²¢»áͨ¹ýIDCAREÌṩÃâ·ÑµÄÖ§³Ö¡£¡£¡£¡£¡£¡£¡£
https://www.theage.com.au/business/companies/130-000-telstra-customers-exposed-in-data-breach-20221210-p5c5ak.html
3¡¢ÃÀ¹úÒ½ÔºCommonSpiritÔâµ½ÀÕË÷¹¥»÷60¶àÍò»¼ÕßÐÅϢй¶
¾Ý12ÔÂ9ÈÕ±¨Â·£¬£¬£¬£¬£¬CommonSpirit Healthй©10Ô·ݵÄÀÕË÷¹¥»÷й¶ÁË623774Ãû»¼ÕßµÄÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£CommonSpirit HealthÊÇÃÀ¹ú×î´óµÄÁ¬ËøÒ½ÔºÖ®Ò»£¬£¬£¬£¬£¬Õâ´Î¹¥»÷µ¼ÖÂÆä²¿ÃÅϵͳ̱»¾¡£¡£¡£¡£¡£¡£¡£¹¥»÷²úÉúÓÚ10ÔÂ2ÈÕ£¬£¬£¬£¬£¬¸Ã×éÖ¯ÔÚ12ÔÂ1ÈÕ°ä²¼Á˶ÔÊÂÎñµÄ×îе÷²éÁ˾֣¬£¬£¬£¬£¬È·¶¨Î´¾ÊÚȨµÄµÚÈý·½ÔÚ2022Äê9ÔÂ16ÈÕÖÁ10ÔÂ3ÈÕ»ñµÃÁ˶Բ¿ÃÅÎļþµÄ½Ó¼ûȨÏÞ¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬ÉÐδÓкڿÍÍÅ»ïÐû³Æ¶ÔÕâ´Î¹¥»÷»î¶¯Õƹܡ£¡£¡£¡£¡£¡£¡£
https://securityaffairs.co/wordpress/139472/data-breach/commonspirit-data-breach-623k-patients.html
4¡¢Censys¼à²âµ½4000¶àδ¸üеÄPulse Connect SecureÖ÷»ú
ýÌå12ÔÂ10ÈÕ±¨Â·³Æ£¬£¬£¬£¬£¬Censys×êÑÐÈËÔ±¼à²âµ½£¬£¬£¬£¬£¬ÔÚ30266¸ö×°ÖÃÖУ¬£¬£¬£¬£¬ÓÐ4460̨Pulse Connect SecureÖ÷»ú¶Ìȱ°²È«²¹¶¡¡£¡£¡£¡£¡£¡£¡£ÆäÖУ¬£¬£¬£¬£¬´ó²¿ÃÅ£¨3528̨£©Î´×°Öó§ÉÌÔÚ2021Äê8Ô°䲼µÄ²¹¶¡£¡£¡£¡£¡£¡£¡£¬£¬£¬£¬£¬1841̨δװÖÃ2021Äê4Եݲȫ¸üУ¬£¬£¬£¬£¬»¹ÓÐ28̨佨¸´2018ËêÊ×Åû¶µÄ·ì϶£¨CVE-2018-5299£©¡£¡£¡£¡£¡£¡£¡£°´µØÓò»®·Ö£¬£¬£¬£¬£¬ÃÀ¹úPulse Connect×°ÖÃ×ÜÊý×î¶à£¬£¬£¬£¬£¬ÓÐ8575̨Ö÷»ú£¬£¬£¬£¬£¬µ«Ö»ÓÐ12%¶Ìȱ²¹¶¡£¡£¡£¡£¡£¡£¡£»£»£»£»£»£»£»£»¶ø·¨¹úÖ»ÓÐ1422̨Pulse ConnectÉ豸£¬£¬£¬£¬£¬ÆäÖг¬¹ý30%Ò×±»¹¥»÷¡£¡£¡£¡£¡£¡£¡£
https://securityaffairs.co/wordpress/139491/security/pulse-connect-secure-vulnerbale-hosts.html
5¡¢MuddyWaterÀûÓúϷ¨Ô¶³ÌÖÎÀí¹¤¾ß½øÐÐÓã²æÊ½ÍøÂç´¹µö¹¥»÷
Deep InstinctÔÚ12ÔÂ9ÈÕ³ÆÆä·¢ÏÖÁËеÄMuddyWater¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¡£Õâ´Î»î¶¯ÆðÍ·ÓÚ½ñÄê9Ô·ݣ¬£¬£¬£¬£¬Óë´Óǰ»î¶¯µÄ·ÖÆçÖ®´¦ÔÚÓÚʹÓÃÁËÒ»ÖÖרΪÍйܷþÎñÌṩÉÌ(MSP)Éè¼ÆµÄÔ¶³ÌÖÎÀí¹¤¾ßSyncro¡£¡£¡£¡£¡£¡£¡£³õʼϰȾý½éÊÇ´Ó±»ÈëÇֵĺϷ¨¹«Ë¾ÓʼþÕÊ»§·¢Ë͵Ĵ¹µöÓʼþ£¬£¬£¬£¬£¬Ö¸±ê×éÖ¯Ô̺¬Á½¼Í⣼°µÄÍйܹ«Ë¾¡£¡£¡£¡£¡£¡£¡£ÎªÁËÈÆ¹ý°²È«¼ì²â£¬£¬£¬£¬£¬¹¥»÷ÕßÔÚ´¹µöÓʼþÖÐÔö³¤ÁËÒ»¸öHTML¸½¼þ£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬Ö¸ÏòÍйÜÔÚOneDriveÉϵÄSyncro×°Ö÷¨Ê½µÄÁ´½Ó¡£¡£¡£¡£¡£¡£¡£
https://www.deepinstinct.com/blog/new-muddywater-threat-old-kitten-new-tricks
6¡¢Cisco°ä²¼¹ØÓÚ¶ñÒâÈí¼þTrueBotµÄ¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨
12ÔÂ8ÈÕ£¬£¬£¬£¬£¬Cisco Talos°ä²¼Á˹ØÓÚTrueBot¹¥»÷»î¶¯µÄ·ÖÎö»ã±¨¡£¡£¡£¡£¡£¡£¡£×êÑÐÈËÔ±·¢ÏÖ£¬£¬£¬£¬£¬×Ô2022Äê8ÔÂÒÔÀ´£¬£¬£¬£¬£¬Truebot£¨±ðÃûSilence.Downloader£©¶ñÒâÈí¼þµÄϰȾÓÐËùÔö³¤¡£¡£¡£¡£¡£¡£¡£¹¥»÷ÕßÒѾ´ÓʹÓöñÒâÓʼþתÏòÆäËüµÄ·Ö·¢²½Ö裬£¬£¬£¬£¬8ÔµÄÉÙÊý¹¥»÷°¸ÀýÊÇÀûÓÃIT×ʲúÖÎÀí¹¤¾ßNetwrix AuditorÖеÄRCE·ì϶£¨CVE-2022-31199£©À´Ö´ÐÐTruebot£¬£¬£¬£¬£¬ÔÚ10Ô³õËüÆðÍ·ÓÉRaspberry RobinÈ䳿½øÐд«²¼¡£¡£¡£¡£¡£¡£¡£Cisco°µÊ¾£¬£¬£¬£¬£¬ÕâÁ½¸öý½éµ¼ÖÂÁËÒ»¸öÓÉ1000¶à¸öϵͳ×é³ÉµÄ½©Ê¬ÍøÂçµÄ´´½¨¡£¡£¡£¡£¡£¡£¡£
https://blog.talosintelligence.com/breaking-the-silence-recent-truebot-activity/


¾©¹«Íø°²±¸11010802024551ºÅ