Coffee Meets BagelµÄϵͳÔâµ½¹¥»÷¹«Ë¾Êý¾Ý±»É¾
°ä²¼¹¦·ò 2023-09-071¡¢Coffee Meets BagelµÄϵͳÔâµ½¹¥»÷¹«Ë¾Êý¾Ý±»É¾
¾Ý9ÔÂ5ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬Coffee Meets Bagel(CMB)й©ÉÏÖܵķþÎñÖжÏÊÇÓÉÓÚºÚ¿ÍÈëÇÖ¹«Ë¾ÏµÍ³²¢É¾³ýÊý¾Ýµ¼Öµġ£¡£¡£¡£¡£¡£¡£ÉÏÖÜ£¬£¬£¬£¬£¬£¬£¬£¬CMB²úÉúÁËÈ«ÇòÁìÓòÄÚµÄå´»ú£¬£¬£¬£¬£¬£¬£¬£¬µ÷²éÈ·¶¨ºÚ¿Í¶ñÒâɾ³ýÁ˹«Ë¾Êý¾ÝºÍÎļþ¡£¡£¡£¡£¡£¡£¡£Ä¿Ç°£¬£¬£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾ÉÐδÓÐÈ·ÈÏÕâ´Î¹¥»÷ÊÇÀÕË÷Èí¼þ¼ÓÃÜÁËÊý¾Ý£¬£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂÊý¾ÝÎÞ·¨Ê¹Ó㬣¬£¬£¬£¬£¬£¬£¬»¹Êǹ¥»÷ÕßÓÐÒâɾ³ýÊý¾Ý£¬£¬£¬£¬£¬£¬£¬£¬µ¼ÖÂå´»ú¡£¡£¡£¡£¡£¡£¡£CMB×Ô9ÔÂ3ÈÕÆð³ÁÐÂÉÏÏߣ¬£¬£¬£¬£¬£¬£¬£¬Ã»ÓÐй©¹ØÓÚ¹¥»÷µÄ¸ü¶àÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/coffee-meets-bagel-says-recent-outage-caused-by-destructive-cyberattack/
2¡¢Google°ä²¼9Ô·ÝAndroid¸üн¨¸´Òѱ»ÀûÓõķì϶
GoogleÓÚ9ÔÂ5ÈÕ°ä²¼ÁË9Ô·ݵÄAndroid°²È«¸üУ¬£¬£¬£¬£¬£¬£¬£¬×ܼƽ¨¸´ÁË33¸ö·ì϶¡£¡£¡£¡£¡£¡£¡£ÆäÖÐÔ̺¬¿ÉÄÜÒѱ»ÀûÓõķì϶(CVE-2023-35674)£¬£¬£¬£¬£¬£¬£¬£¬ËüλÓÚAndroid¿ò¼ÜÖУ¬£¬£¬£¬£¬£¬£¬£¬¹¥»÷Õß¿ÉÀûÓÃÆäÔÚÎÞÐèÓëÓû§½»»¥»ò¶î±íÖ´ÐÐȨÏÞµÄÇé¿öÏÂÌáȨ¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬£¬£¬¸üл¹½¨¸´Á˼¸¸ö½ÏΪÑϳÁµÄ·ì϶£¬£¬£¬£¬£¬£¬£¬£¬±ðÀëÊÇϵͳ×é¼þÖеÄ3¸öÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2023-35658¡¢CVE-2023-35673ºÍCVE-2023-35681£©£¬£¬£¬£¬£¬£¬£¬£¬ÒÔ¼°¸ßͨ¹ØÔ´×é¼þÖеÄÔ¶³Ì´úÂëÖ´Ðзì϶£¨CVE-2023-28581£©¡£¡£¡£¡£¡£¡£¡£
https://securityaffairs.com/150440/hacking/september-2023-android-security-updates-0day.html
3¡¢Stake.comÔâµ½¹¥»÷³¬¹ý4100ÍòÃÀÔªµÄ¼ÓÃÜÇ®±Ò±»µÁ
9ÔÂ5ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬Stake.com³ÆÆäETH/BSCÈÈÇ®°üÔâµ½ÈëÇÖ£¬£¬£¬£¬£¬£¬£¬£¬³¬¹ý4100ÍòÃÀÔªµÄ¼ÓÃÜÇ®±Ò±»µÁ¡£¡£¡£¡£¡£¡£¡£¹¥»÷²úÉúÓÚ9ÔÂ4ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬ºÚ¿Í´ÓEthereumÇÔÈ¡ÁË1570ÍòÃÀÔª£¬£¬£¬£¬£¬£¬£¬£¬ÔÚBSCÇÔÈ¡ÁË1780ÍòÃÀÔª£¬£¬£¬£¬£¬£¬£¬£¬ÔÚPolygonÇÔÈ¡ÁË780ÍòÃÀÔª¡£¡£¡£¡£¡£¡£¡£ÔÚÔâµ½¹¥»÷ºó¸Ãƽ̨Á¢¼´ÏòÓû§±£ÕÏ£¬£¬£¬£¬£¬£¬£¬£¬ËûÃǵÄ×ʽðÊǰ²È«µÄ£¬£¬£¬£¬£¬£¬£¬£¬ËùÓÐδÊܹ¥»÷Ö±½ÓÓ°ÏìµÄÇ®°ü£¬£¬£¬£¬£¬£¬£¬£¬Ô̺¬BTC¡¢LTC¡¢XRP¡¢EOSºÍTRXµÄÇ®°ü£¬£¬£¬£¬£¬£¬£¬£¬ÒÀÈ»Äܹ»Õý³£ÔËÐÓ×£¡£¡£¡£¡£¡£¡£µ«ÈÔÓÐЩÓû§ÔÚXÉÏ·¢Ìû³ÆÎÞ·¨´æ¿î»òÈ¡¿î¡£¡£¡£¡£¡£¡£¡£9ÔÂ5ÈÕ£¬£¬£¬£¬£¬£¬£¬£¬Stake.com֪ͨÆä·þÎñÒѸ´Ô£¬£¬£¬£¬£¬£¬£¬£¬Óû§´Ë¿ÌÄܹ»ÔÙ´ÎʹÓÃËùÓÐÇ®±Ò½øÐдæÈ¡¿î¡£¡£¡£¡£¡£¡£¡£
https://securityaffairs.com/150401/hacking/crypto-gambling-firm-stake-hacked.html
4¡¢Morphisec·¢ÏÖÕë¶Ô½ðÈÚºÍÎïÊ¢ÐÐÒµµÄChaesбäÌå
MorphisecÔÚ9ÔÂ5ÈÕÅû¶ÁËÕë¶Ô½ðÈÚºÍÎïÊ¢ÐÐÒµµÄChaesбäÌåChae$ 4¡£¡£¡£¡£¡£¡£¡£×îлµÄϰȾÁ´Óë´ÓǰһÑù£¬£¬£¬£¬£¬£¬£¬£¬É漰αÔìµÄMSI×°Ö÷¨Ê½£¬£¬£¬£¬£¬£¬£¬£¬»á´¥·¢¶à²½ÖèϰȾ£¬£¬£¬£¬£¬£¬£¬£¬²¢Ê¹ÓÃ7¸öÄ£¿£¿£¿£¿£¿£¿£¿£¿éÀ´Ö´Ðи÷ÀàÖ°ÄÜ¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬£¬£¬£¬£¬Õâ¸öбäÌå²úÉúÁ˳Á´ó±ä¶¯£¬£¬£¬£¬£¬£¬£¬£¬Ô̺¬¸Ä½øµÄ´úÂë¼Ü¹¹¡¢¶à²ã¼ÓÃܺ͸ĽøµÄÒþÄä¼¼Êõ¡¢¸ÄÓÃPython½øÐнâÃܺÍÄÚ´æÖ´ÐÓעʹÓÃChrome DevTools´úÌæÓÃÓÚ¼à¿ØChromiumä¯ÀÀÆ÷»î¶¯µÄPuppeteer¡¢À©´óÕë¶Ôƾ֤͵ÇԵ͍Ïò·þÎñ¡¢Ê¹ÓÃWebSockets°ü°ìHTTP½øÐÐͨѶÒÔ¼°Ñ¡È¡DGA¶¯Ì¬½âÎöC2·þÎñÆ÷µØÖ·µÈ¡£¡£¡£¡£¡£¡£¡£
https://blog.morphisec.com/chaes4-new-chaes-malware-variant-targeting-financial-and-logistics-customers
5¡¢CERT-UA¼ì²âµ½Fancy BearÕë¶ÔijÄÜÔ´»ù´¡ÉèÊ©µÄ¹¥»÷
¾ÝýÌå9ÔÂ6ÈÕ±¨Â·£¬£¬£¬£¬£¬£¬£¬£¬CERT-UA¼ì²âµ½Fancy BearÕë¶ÔÎÚ¿ËÀ¼Ä³ÄÜÔ´»ù´¡ÉèÊ©µÄ¹¥»÷¡£¡£¡£¡£¡£¡£¡£¹¥»÷ʹÓÃÁËÔ̺¬BATÎļþµÄ´¹µöÓʼþÀ´»ñµÃÖ¸±êϵͳµÄ³õʼ½Ó¼ûȨÏÞ¡£¡£¡£¡£¡£¡£¡£ÔËÐÐCMDÎļþ½«´´½¨.batºÍ.vbsÎļþ£¬£¬£¬£¬£¬£¬£¬£¬²¢Æô¶¯Ò»¸öVBSÎļþ£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÎļþ½«Ë³´ÎÖ´ÐÐBATÎļþ¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß»¹ÔÚÖ¸±êÍÆËã»úÖÐ×°ÖÃÁËTorÀûÓ㬣¬£¬£¬£¬£¬£¬£¬²¢Í¨¹ýºÏ·¨µÄwebhook.site·þÎñAPIʹÓá°curl¡±ÊµÏÖÔ¶³ÌºÅÁîÖ´ÐУ¬£¬£¬£¬£¬£¬£¬£¬Í¨¹ý´´½¨´òË㹤×÷ÔËÐÐÒÔBATÎļþ×÷Ϊ²ÎÊýµÄVBS½ÅÕý±¾È·Î¬ÓƾÃÐÔ¡£¡£¡£¡£¡£¡£¡£CERT-UA³Æ£¬£¬£¬£¬£¬£¬£¬£¬¸ÃÄÜÔ´»ù´¡ÉèÊ©µÄ°²È«ÈËÔ±²ÉÈ¡ÁËÏàÓ¦´ëÊ©×èÖ¹ÁËÕâ´Î¹¥»÷»î¶¯¡£¡£¡£¡£¡£¡£¡£
https://therecord.media/ukraine-energy-facility-cyberattack-fancy-bear-email
6¡¢×êÑÐÈËÔ±¹«¿ªAtlas VPNÖÐй¶Óû§ÕæÊµIPµØÖ·µÄ·ì϶
ýÌå9ÔÂ5Èճƣ¬£¬£¬£¬£¬£¬£¬£¬Ó°ÏìLinux¿Í»§¶ËµÄAtlas VPN·ì϶£¬£¬£¬£¬£¬£¬£¬£¬½öͨ¹ý½Ó¼ûÍøÕ¾¼´¿Éй¶Óû§µÄÕæÊµIPµØÖ·¡£¡£¡£¡£¡£¡£¡£Óû§Educational-Map-8145ÔÚRedditÉϰ䲼ÁËÒ»¸öPoC£¬£¬£¬£¬£¬£¬£¬£¬ÑÝʾÈôºÎÀûÓÃAtlas VPN Linux APIÀ´Ð¹Â¶Óû§µÄIPµØÖ·¡£¡£¡£¡£¡£¡£¡£¸ÃPoC´´½¨ÁËÒ»¸öÓÉJavaScript×Ô¶¯Ìá½»µÄ°µ²Ø±íµ¥£¬£¬£¬£¬£¬£¬£¬£¬Ïνӵ½APIÖÕ¶ËURL http://127.0.0.1:8076/connection/stop¡£¡£¡£¡£¡£¡£¡£½Ó¼û¸ÃAPIÖÕ¶Ëʱ£¬£¬£¬£¬£¬£¬£¬£¬Ëü»á×Ô¶¯ÖÕÖ¹°µ²ØÓû§IPµØÖ·µÄAtlas VPN»á»°¡£¡£¡£¡£¡£¡£¡£Ò»µ©VPNÏνӶϿª£¬£¬£¬£¬£¬£¬£¬£¬PoC¾Í»áÏνӵ½api.ipify.org£¬£¬£¬£¬£¬£¬£¬£¬¼Í¼½Ó¼ûÕßµÄÏÖʵIPµØÖ·¡£¡£¡£¡£¡£¡£¡£Atlas VPN³Ðŵ½«¾¡¿ì°ä²¼½¨¸´·¨Ê½¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/atlas-vpn-zero-day-vulnerability-leaks-users-real-ip-address/


¾©¹«Íø°²±¸11010802024551ºÅ