΢Èí¸ß¹ÜµÄµç×ÓÓʼþÕ˺ÅÔâ¶íÂÞ˹ºÚ¿ÍNobeliumµÄÈëÇÖ

°ä²¼¹¦·ò 2024-01-22

1. ΢Èí¸ß¹ÜµÄµç×ÓÓʼþÕ˺ÅÔâ¶íÂÞ˹ºÚ¿ÍNobeliumµÄÈëÇÖ


1ÔÂ20ÈÕ£¬£¬£¬£¬ £¬£¬£¬£¬£¬£¬£¬£¬ £¬£¬£¬£¬Î¢ÈíÅû¶һ¸öÓë¶íÂÞ˹ÓйصÄÃûΪNobelium µÄºÚ¿Í×éÖ¯»ñµÃÁ˼¸Î»¸ß¹ÜµÄµç×ÓÓʼþÕÊ»§µÄ½Ó¼ûȨÏÞ£¬£¬£¬£¬ £¬£¬£¬£¬ÆäÖÐÔ̺¬¸Ã¹«Ë¾¸ß¼¶¸¨µ¼ÍŶӵijÉÔ±¡£¡£¡£¡£¡£¡£¡£Nobelium£¬£¬£¬£¬ £¬£¬£¬£¬Ò²³ÆÎªMidnight Blizzard£¬£¬£¬£¬ £¬£¬£¬£¬ÊÇÒ»¸öÍøÂç·¸×ï×éÖ¯£¬£¬£¬£¬ £¬£¬£¬£¬Òò²Î¼Ó 2020 Äê 12 ÔÂSolarWinds ¹©¸øÁ´¹¥»÷¶ø³ôÃûÔ¶Ñ£¬£¬£¬ £¬£¬£¬£¬¸Ã¹¥»÷ÇÖº¦Á˶à¶àµ±¾Ö»ú¹¹ºÍ˽Ӫ¹«Ë¾µÄÀûÒæ¡£¡£¡£¡£¡£¡£¡£ÔÚ×îеÄÊÂÎñÖУ¬£¬£¬£¬ £¬£¬£¬£¬ºÚ¿ÍÀûÓá°ÒÅÁô¡±²âÊÔÕÊ»§ÔÚ΢ÈíµÄ¹«Ë¾ÍøÂçÖлñµÃ°²Éíµã¡£¡£¡£¡£¡£¡£¡£¶øºó£¬£¬£¬£¬ £¬£¬£¬£¬ËûÃÇÀûÓÃÕÊ»§µÄȨÏÞ½Ó¼ûÒ»Óײ¿ÃÅÔ±¹¤µç×ÓÓʼþÕÊ»§£¬£¬£¬£¬ £¬£¬£¬£¬Ô̺¬ÊôÓڸ߼¶ÖÎÀíÈËÔ±¡¢ÍøÂ簲ȫÈËÔ±¡¢Ë¾·¨ÈËÔ±ºÍÆäËûÈËÔ±µÄµç×ÓÓʼþÕÊ»§¡£¡£¡£¡£¡£¡£¡£¹ÌÈ»Õâ´Îй¶µÄÈ«ÊýÁìÓòÈÔÔÚµ÷²éÖУ¬£¬£¬£¬ £¬£¬£¬£¬µ«Î¢Èí¼á³ÆÕâ´Î¹¥»÷²¢Î´Éæ¼°ÆäÖ÷Ìâ²úÆ·»ò·þÎñÖеķì϶¡£¡£¡£¡£¡£¡£¡£´Ë±í£¬£¬£¬£¬ £¬£¬£¬£¬ËûÃÇÏò¿Í»§±£ÕÏ£¬£¬£¬£¬ £¬£¬£¬£¬¿Í»§Êý¾Ý²»»áÊܵ½ÇÖº¦¡£¡£¡£¡£¡£¡£¡£


2. ×êÑÐÍŶӳÆ3AM¡¢RoyalºÍContiÍøÂç·¸×OÍÅ´æÔÚ¹ØÁª


1ÔÂ20ÈÕ£¬£¬£¬£¬ £¬£¬£¬£¬°²È«×êÑÐÈËÔ±·ÖÎöÁË×î½ü³öÏÖµÄ 3AM ÀÕË÷Èí¼þ²Ù×÷µÄ»î¶¯£¬£¬£¬£¬ £¬£¬£¬£¬·¢ÏÔìäÓë Conti ¼¯ÍÅºÍ Royal ÀÕË÷Èí¼þÍÅ»ïµÈ³ôÃûÔ¶ÑïµÄ×éÖ¯ÓÐÇ×êÇÁªÏµ¡£¡£¡£¡£¡£¡£¡£3AM£¨Ò²Æ´Ð´Îª ThreeAM£©Ò²Ò»ÏòÔÚ³¢ÊÔÒ»ÖÖеÄÀÕË÷Õ½Êõ£ºÓëÊܺ¦ÕßµÄÉ罻ýÌ幨עÕß·ÖÏíÊý¾Ýй¶µÄÐÂÎÅ£¬£¬£¬£¬ £¬£¬£¬£¬²¢Ê¹ÓûúеÈ˻ظ´ X£¨ÒÔǰ³ÆÎª Twitter£©Éϵĸ߼¶ÕÊ»§£¬£¬£¬£¬ £¬£¬£¬£¬·¢ËÍÖ¸ÏòÊý¾Ýй¶µÄÐÂÎÅ¡£¡£¡£¡£¡£¡£¡£·¨¹úÍøÂ簲ȫ¹«Ë¾IntrinsecµÄ×êÑÐÈËÔ±°µÊ¾£¬£¬£¬£¬ £¬£¬£¬£¬ThreeAM ºÜ¿ÉÄÜÓë Royal ÀÕË÷Èí¼þ×éÖ¯ÓйØ£¬£¬£¬£¬ £¬£¬£¬£¬¸Ã×éÖ¯ÏÖÒÑ ¸ÄÃûΪ Blacksuit£¬£¬£¬£¬ £¬£¬£¬£¬¸ÃÍÅ»ïÓÉ Conti ¼¯ÍÅÄÚ Team 2 µÄǰ³ÉÔ±×é³É¡£¡£¡£¡£¡£¡£¡£Ëæ×Å Intrinsec ¶Ô¸Ã×éÖ¯µÄÕ½Êõ¡¢¹¥»÷ÖÐʹÓõĻù´¡ÉèÊ©ºÍͨѶÇþ·µÄµ÷²é»ñµÃ½øÕ¹£¬£¬£¬£¬ £¬£¬£¬£¬3AM ÀÕË÷Èí¼þÓë Conti ¼¯ÍÅÖ®¼äµÄÁªÏµ±äµÃÔ½·¢çÇÃÜ¡£¡£¡£¡£¡£¡£¡£²é¿´ Tor ÍøÂçÖÐµÄ 3AM Êý¾Ýй¶վµã£¬£¬£¬£¬ £¬£¬£¬£¬Äܹ»¿´µ½ 19 ÃûÊܺ¦ÕßµÄÃûµ¥£¬£¬£¬£¬ £¬£¬£¬£¬ËûÃÇûÓÐÖ§¸¶Êê½ð£¬£¬£¬£¬ £¬£¬£¬£¬µ«ÍþвÕßй¶ÁËËûÃǵÄÊý¾Ý¡£¡£¡£¡£¡£¡£¡£ÁîÈ˾ªÑȵÄÊÇ£¬£¬£¬£¬ £¬£¬£¬£¬3AM µÄÍøÕ¾¿´ÆðÀ´Óë LockBit ÀÕË÷Èí¼þ²Ù×÷ËùʹÓõÄÍøÕ¾¼«¶ÈÀàËÆ¡£¡£¡£¡£¡£¡£¡£


3. TA866¾íÍÁ³ÁÀ´²¢²¿ÊðWasabiSeedºÍScreenshotter


1ÔÂ20ÈÕ£¬£¬£¬£¬ £¬£¬£¬£¬TA866 µÄÍþвÐÐΪÕßÔÚÖжϾŸöÔºóÔٴγöÏÖ£¬£¬£¬£¬ £¬£¬£¬£¬ÌáÒéÁËÒ»³¡ÐµĴó¹æÄ£ÍøÂç´¹µö»î¶¯£¬£¬£¬£¬ £¬£¬£¬£¬ÒÔ´«²¼ WasabiSeed ºÍ Screenshotter µÈÒÑÖª¶ñÒâÈí¼þϵÁÓ×£¡£¡£¡£¡£¡£¡£¸Ã»î¶¯ÓÚ±¾ÔÂÔçЩʱ³½¹Û²ìµ½£¬£¬£¬£¬ £¬£¬£¬£¬²¢ÓÚ 2024 Äê 1 Ô 11 ÈÕ±» Proofpoint ×èÖ¹£¬£¬£¬£¬ £¬£¬£¬£¬ÆäÖÐÉæ¼°Ïò±±ÃÀ·¢ËÍÊýǧ·â´øÓеö¶ü PDF ÎļþµÄ·¢Æ±Ö÷Ìâµç×ÓÓʼþ¡£¡£¡£¡£¡£¡£¡£ÕâЩ PDF Ô̺¬ OneDrive URL£¬£¬£¬£¬ £¬£¬£¬£¬ÈôÊǵã»÷ÕâЩ URL£¬£¬£¬£¬ £¬£¬£¬£¬¾Í»áÆô¶¯¶à²½ÖèϰȾÁ´£¬£¬£¬£¬ £¬£¬£¬£¬¼´ WasabiSeed ºÍ Screenshotter ×Ô½ç˵¹¤¾ß¼¯µÄ±äÌå¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÓÚ 2023 Äê 2 Ô³õ´Î¼Í¼TA866 £¬£¬£¬£¬ £¬£¬£¬£¬½«Æä¹éÒòÓÚÃûΪ Screentime µÄ»î¶¯£¬£¬£¬£¬ £¬£¬£¬£¬¸Ã»î¶¯·Ö·¢ÁË WasabiSeed£¬£¬£¬£¬ £¬£¬£¬£¬ÕâÊÇÒ»ÖÖÓÃÓÚÏÂÔØ Screenshotter µÄ Visual Basic ¾ç±¾Í¶·Å·¨Ê½£¬£¬£¬£¬ £¬£¬£¬£¬¿ÉÄܶ¨ÆÚ½ØÈ¡Êܺ¦Õß×ÀÃæµÄÆÁÄ»½ØÍ¼²¢ÇÔÈ¡Êý¾Ý½«¸ÃÊý¾Ý·¢Ë͵½²Î¼ÓÕß½ÚÔìµÄÓò¡£¡£¡£¡£¡£¡£¡£ÓÐÖ¤¾ÝÅú×¢£¬£¬£¬£¬ £¬£¬£¬£¬ÓÐ×éÖ¯µÄÐÐΪÕß¿ÉÄÜÊdzöÓÚ¾­¼Ã¶¯»ú£¬£¬£¬£¬ £¬£¬£¬£¬ÓÉÓÚ Screenshotter ³äµ¹Øì²ì¹¤¾ßÀ´¼ø±ðºóÀûÓõĸ߼ÛÖµÖ¸±ê£¬£¬£¬£¬ £¬£¬£¬£¬²¢²¿Êð»ùÓÚ AutoHotKey (AHK) µÄ»úеÈË¡£¡£¡£¡£¡£¡£¡£


4. VF CorpÈ¥Äê12Ô·ݵÄÊý¾Ýй¶ÊÂÎñÓ°ÏìÖÁÉÙ3550Íò¿Í»§


1ÔÂ20ÈÕ£¬£¬£¬£¬ £¬£¬£¬£¬VF Corporation ÊÇÒ»¼ÒÃÀ¹úÈ«Çò·þ×°ºÍЬÀ๫˾£¬£¬£¬£¬ £¬£¬£¬£¬Õ¼ÓÐ 13 ¸öÆ·ÅÆ¡£¡£¡£¡£¡£¡£¡£2015Ä꣬£¬£¬£¬ £¬£¬£¬£¬¸Ã¹«Ë¾Æ¾½èJanSport¡¢Dickies¡¢Eastpak¡¢Timberland¡¢Smartwool¡¢VansºÍThe North FaceÆ·ÅÆ½ÚÔìÁËÃÀ¹ú±³°üÊг¡55%µÄ·Ý¶î¡£¡£¡£¡£¡£¡£¡£2023 Äê 12 Ô£¬£¬£¬£¬ £¬£¬£¬£¬VF Corp °ä·¢³ÉΪÀÕË÷Èí¼þ¹¥»÷µÄÊܺ¦Õߣ¬£¬£¬£¬ £¬£¬£¬£¬±»ÆÈ¹Ø¹Ø²¿ÃÅϵͳÒÔ¶ôÔìÍþв¡£¡£¡£¡£¡£¡£¡£´Ë¿Ì£¬£¬£¬£¬ £¬£¬£¬£¬¸Ã¹«Ë¾È·ÈϹ¥»÷ÕßÇÔÈ¡ÁËÓ°Ïì 3550 Íò¿Í»§µÄ¹«Ë¾ºÍÓ×ÎÒÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£2023 Äê 12 Ô 13 ÈÕ£¬£¬£¬£¬ £¬£¬£¬£¬VF Corp ¼ì²âµ½¶ÔÆä²¿ÃÅ»ù´¡ÉèÊ©½øÐÐδ¾­ÊÚȨµÄ½Ó¼û¡£¡£¡£¡£¡£¡£¡£VF Á¢¼´ÆðÍ·²ÉÈ¡´ëÊ©½¨¸´Õâ´Î¹¥»÷£¬£¬£¬£¬ £¬£¬£¬£¬²¢¶Ô°²È«·ì϶·¢Õ¹µ÷²é¡£¡£¡£¡£¡£¡£¡£¸Ã¹«Ë¾Ö¸³ö£¬£¬£¬£¬ £¬£¬£¬£¬ËüµÄϵͳÖÐûÓд洢Éç»á°²È«ºÅÂëºÍ²ÆÕþÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£VF Corp »¹²¹³ä˵£¬£¬£¬£¬ £¬£¬£¬£¬Ã»Óз¢ÏÖ¿Í»§ÃÜÂë±»µÁµÄÖ¤¾Ý¡£¡£¡£¡£¡£¡£¡£Ä³Ð©ÏµÍ³¹Ø¹Øºó£¬£¬£¬£¬ £¬£¬£¬£¬VF µÄÔËÓªÓöµ½ÁËÖжϡ£¡£¡£¡£¡£¡£¡£¸ÃÊÂÎñÖжÏÁËÁãÊÛÉ̵êµÄ¿â´æ²¹³ä²¢ÑÓ³¤Á˶©µ¥ÂÄÐÓ×£¡£¡£¡£¡£¡£¡£ÕâЩÎÊÌâµ¼Ö¿ͻ§ºÍÏû·ÑÕßÈ¡µÞ²úÆ·¶©µ¥¡¢Ä³Ð©Æ·ÅƵç×ÓÉÌÎñÍøÕ¾µÄÐèÒªÏ÷¼õÒÔ¼°Ò»Ð©Åú·¢·¢»õµÄÑÓ³¤¡£¡£¡£¡£¡£¡£¡£


5. Outlook·ì϶CVE-2023-35636¿Éµ¼ÖÂNTLM v2ÃÜÂëй¶


1ÔÂ18ÈÕ£¬£¬£¬£¬ £¬£¬£¬£¬ÔÚ×î½üµÄÒ»Ïî·¢ÏÖÖУ¬£¬£¬£¬ £¬£¬£¬£¬Varonis Íþв³¢ÊÔÊÒ°ä²¼ÁËÍøÂç¹¥»÷Õß¿ÉÀûÓõÄÈýÖÖв½ÖèÀ´½Ó¼û NTLM v2 ¹þÏ£ÃÜÂ룬£¬£¬£¬ £¬£¬£¬£¬´Ó¶øÊ¹ÎÞÊýϵͳºÍÓû§Êý¾ÝÃæ¶Ô·çÏÕ¡£¡£¡£¡£¡£¡£¡£ÔÚÕâЩ·ì϶ÖУ¬£¬£¬£¬ £¬£¬£¬£¬ÓÐÒ»¸ö³ö¸ñÑϳÁ£ºCVE-2023-35636£¬£¬£¬£¬ £¬£¬£¬£¬ÕâÊÇÒ»ÖÖй¼ûô¸ÐÐÅÏ¢µÄ Outlook ·ì϶¡£¡£¡£¡£¡£¡£¡£CVE-2023-35636 ÊÇ Microsoft Outlook Öз¢ÏÖµÄÒ»¸ö°²È«·ì϶£¬£¬£¬£¬ £¬£¬£¬£¬³ö¸ñÊÇÔÚÈÕÀú¹²ÏíÖ°ÄÜÖÓ×£¡£¡£¡£¡£¡£¡£´Ë·ì϶ʹ¹¥»÷Õß¿ÉÄÜÀ¹½Ø NTLM v2 ¹þÏ£Öµ£¬£¬£¬£¬ £¬£¬£¬£¬¸Ã¹þÏ£ÖµÓÃÓÚ Microsoft Windows ϵͳÖеÄÉí·ÝÑéÖ¤¡£¡£¡£¡£¡£¡£¡£NTLM v2 ¹ÌÈ»±ÈÆäǰÉí¸ü°²È«£¬£¬£¬£¬ £¬£¬£¬£¬µ«ÒÀÈ»ÈÝÒ×Êܵ½ÀëÏß±©Á¦ºÍÉí·ÝÑéÖ¤Öм̹¥»÷¡£¡£¡£¡£¡£¡£¡£³ýÁËOutlookÖ®±í£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷Õß»¹Äܹ»ÀûÓà Windows »úÄÜ·ÖÎöÆ÷ (WPA) ºÍ Windows Îļþ×ÊÔ´ÖÎÀíÆ÷À´½Ó¼û NTLM v2 ¹þÏ£¡£¡£¡£¡£¡£¡£¡£Í¨¹ýÀûÓà URI ´¦Ö÷¨Ê½ºÍÌØ¶¨²ÎÊý£¬£¬£¬£¬ £¬£¬£¬£¬¹¥»÷ÕßÄܹ»ÓÕÆ­ÕâЩÀûÓ÷¨Ê½Ð¹Â¼ûô¸ÐÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£


6. CISAºÍFBI½áºÏ°ä²¼WWS²¿ÃŵÄÊÂÎñÏìÓ¦Ö¸ÄÏ


1ÔÂ19ÈÕ£¬£¬£¬£¬ £¬£¬£¬£¬´Óǰ¼¸Ä꣬£¬£¬£¬ £¬£¬£¬£¬ÀÕË÷Èí¼þºÍδ¾­ÊÚȨµÄ½Ó¼ûµÈ¶ñÒâÍøÂçÊÂÎñÒѾ­Ó°ÏìÁ˹©Ë®ºÍ·ÏË®´¦Öò¿ÃÅ (WWS)¡£¡£¡£¡£¡£¡£¡£³ö¸ñÊÇ£¬£¬£¬£¬ £¬£¬£¬£¬ÀÕË÷Èí¼þÊÇÍøÂç·¸×ï·Ö×ÓÕë¶Ô WWS ʵÓ÷¨Ê½Ê¹Óõij£¼ûÕ½Êõ¡£¡£¡£¡£¡£¡£¡£ÍøÂçÍþв¹¥»÷Õß¶Ô×¼ WWS ÊÇÓÉÓÚËüÊÇÄÜÔ´¡¢Ò½ÁƱ£½¡ºÍ¹«¹²ÎÀÉúµÈ¶à¶àÃÀ¹ú¹Ø¼ü»ù´¡ÉèÊ©²¿ÃŵijÁÒª×é³É²¿ÃÅ¡£¡£¡£¡£¡£¡£¡£CISA¡¢»·¾³±£»£»£»£»£»£»£»£»¤¾Ö (EPA) ºÍÁª¹úµ÷²é¾Ö (FBI) ¹²Í¬Ôì¶©ÁËWWS ²¿ÃŵĺÏ×÷ÊÂÎñÏìÓ¦Ö¸ÄÏ (IRG) £¬£¬£¬£¬ £¬£¬£¬£¬ÒÔÓ¦¶Ô WWS ²¿ÃŵÄÍøÂ簲ȫÌôÕ½¡£¡£¡£¡£¡£¡£¡£±¾Ö¸ÄÏΪ WWS ²¿ÃŵÄËùÓÐÕߺÍÔËÓªÉ̾ßÌå½éÉÜÁËÍøÂçÊÂÎñÏìÓ¦ (IR) ÐÔÃüÖÜÆÚÿ¸ö½×¶ÎµÄÁª¹ú½ÇÉ«¡¢×ÊÔ´ºÍÔðÈΡ£¡£¡£¡£¡£¡£¡£