npm¹©¸øÁ´ÔâÓòÃûÇÀ×¢¹¥»÷£¬£¬£¬£¬£¬¶ñÒâÈí¼þ¶Ô×¼¿ª·¢ÈËÔ±
°ä²¼¹¦·ò 2024-11-071.npm¹©¸øÁ´ÔâÓòÃûÇÀ×¢¹¥»÷£¬£¬£¬£¬£¬¶ñÒâÈí¼þ¶Ô×¼¿ª·¢ÈËÔ±
https://www.theregister.com/2024/11/05/typosquatting_npm_campaign/
2. Winos4.0¿ò¼Ü£ººÚ¿ÍÀûÓÃÓÎÏ·ÀûÓöÔ×¼WindowsÓû§½øÐжñÒâ¹¥»÷
11ÔÂ6ÈÕ£¬£¬£¬£¬£¬ºÚ¿Í½üÆÚƵÈÔÀûÓöñÒâµÄWinos4.0¿ò¼Ü¹¥»÷WindowsÓû§£¬£¬£¬£¬£¬¸Ã¿ò¼Üͨ¹ý¼Ù×°³ÉÎÞº¦µÄÓÎÏ·ÓйØÀûÓ÷¨Ê½½øÐд«²¼¡£¡£¡£¡£¡£¡£¡£¾ÝÇ÷Ïò¿Æ¼¼½ñÏİ䲼µÄ»ã±¨£¬£¬£¬£¬£¬Ò»¸öÃûΪVoid Arachne/Silver FoxµÄÍþвÐÐΪÕßÔøÀûÓÃÅú¸Ä²¢°ó¸¿¶ñÒâ×é¼þµÄÈí¼þ£¨ÈçVPNºÍ¹È¸èChromeä¯ÀÀÆ÷£©Õë¶ÔÖйúÊг¡¡£¡£¡£¡£¡£¡£¡£ÏÖÍøÂ簲ȫ¹«Ë¾Fortinet·¢ÏÖ£¬£¬£¬£¬£¬ºÚ¿Í»î¶¯ÒÑÑݱ䣬£¬£¬£¬£¬³ÖÐøÒÀÀµÓÎÏ·ºÍÓÎÏ·ÓйØÎļþ¹¥»÷ÖйúÓû§¡£¡£¡£¡£¡£¡£¡£µ±Ö´ÐмÙ×°³ÉºÏ·¨µÄ×°Ö÷¨Ê½Ê±£¬£¬£¬£¬£¬ËüÃÇ»á´ÓÌØ¶¨ÍøÖ·ÏÂÔØDLLÎļþ£¬£¬£¬£¬£¬Æô¶¯¶à²½ÖèϰȾ¹ý³Ì¡£¡£¡£¡£¡£¡£¡£ÕâÔ̺¬ÏÂÔØÆäËûÎļþ¡¢ÉèÖÃÖ´Ðл·¾³¡¢³ÉÁ¢ÓƾÃÐÔ¡¢¼ÓÔØAPI¡¢¼ìË÷ÅäÖÃÊý¾Ý¡¢³ÉÁ¢ÓëC2·þÎñÆ÷µÄÏνӵȡ£¡£¡£¡£¡£¡£¡£×îÖÕ£¬£¬£¬£¬£¬¼ÓÔØµÄµÇ¼ģ¿£¿£¿£¿£¿£¿£¿éÖ´ÐÐÖØÒª¶ñÒâ²Ù×÷£¬£¬£¬£¬£¬ÈçÍøÂçϵͳÐÅÏ¢¡¢²é³°²È«Èí¼þ¡¢ÍøÂç¼ÓÃÜÇ®±ÒÇ®°üÊý¾Ý¡¢Î¬³ÖÓëC2·þÎñÆ÷µÄÏνӣ¬£¬£¬£¬£¬ÒÔ¼°½ØÆÁ¡¢¼à¶½¼ôÌù°å±ä¶¯ºÍÇÔÈ¡Îļþ¡£¡£¡£¡£¡£¡£¡£Winos4.0»¹Äܲ鳶àÖÖ°²È«¹¤¾ß¹ý³Ì£¬£¬£¬£¬£¬ÒÔÈ·¶¨ÊÇ·ñÔÚÊÜ¼à¿Ø»·¾³ÖÐÔËÐУ¬£¬£¬£¬£¬²¢µ÷ÕûÐÐΪ¡£¡£¡£¡£¡£¡£¡£¸Ã¿ò¼ÜÖ°ÄÜ׳´ó£¬£¬£¬£¬£¬ÀàËÆCobalt StrikeºÍSliver£¬£¬£¬£¬£¬ÇÒлµÄ³öÏÖÅú×¢ÆäÔÚ¶ñÒâ²Ù×÷ÖеÄ×÷ÓÃÒѼáÈÍ¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/hackers-increasingly-use-winos40-post-exploitation-kit-in-attacks/
3.VEILDriveÍþв»î¶¯£ºÀûÓÃ΢ÈíSaaS·þÎñ½øÐÐÍøÂç´¹µöÓë¶ñÒâÈí¼þ²¿Êð
11ÔÂ6ÈÕ£¬£¬£¬£¬£¬Ò»ÏîÃûΪVEILDriveµÄ³ÖÐøÍþв»î¶¯±»·¢ÏÖÀûÓÃ΢ÈíµÄºÏ·¨·þÎñ£¬£¬£¬£¬£¬ÈçTeams¡¢SharePoint¡¢Quick AssistºÍOneDrive£¬£¬£¬£¬£¬½øÐÐÓã²æÊ½ÍøÂç´¹µö¹¥»÷²¢·Ö·¢¶ñÒâÈí¼þ¡£¡£¡£¡£¡£¡£¡£ÒÔÉ«ÁÐÍøÂ簲ȫ¹«Ë¾HuntersÔÚµ÷²éһ·Õë¶ÔÃÀ¹ú¹Ø¼ü»ù´¡ÉèÊ©×éÖ¯µÄÍøÂçÊÂÎñʱ·¢ÏÖÁËÕâÒ»»î¶¯¡£¡£¡£¡£¡£¡£¡£¹¥»÷Õß¼ÙÒâITÍŶӳÉÔ±£¬£¬£¬£¬£¬Í¨¹ýTeamsÐÂÎźͼ±¾ç¸±ÊÖ¹¤¾ßÒªÇóÔ¶³Ì½Ó¼ûϵͳ£¬£¬£¬£¬£¬²¢ÀûÓÃ֮ǰÊܵ½¹¥»÷µÄ×éÖ¯µÄ¿ÉÐÅ»ù´¡ÉèÊ©À´·Ö·¢¹¥»÷¡£¡£¡£¡£¡£¡£¡£ËûÃÇͨ¹ýSharePoint·ÖÏíÁËÒ»¸öÖ¸ÏòÍйÜÔÚ·ÖÆç×â»§ÉϵÄZIP´æµµÎļþµÄÏÂÔØÁ´½Ó£¬£¬£¬£¬£¬¸Ã´æµµÖÐǶÈëÁËÔ¶³Ì½Ó¼û¹¤¾ßLiteManager¡£¡£¡£¡£¡£¡£¡£¶øºó£¬£¬£¬£¬£¬Í¨¹ý¼±¾ç¸±ÊÖ»ñµÃµÄÔ¶³Ì½Ó¼ûȨÏÞ£¬£¬£¬£¬£¬ÔÚϵͳÉÏ´´½¨Á˶¨ÆÚÖ´ÐÐLiteManagerµÄ´òË㹤×÷¡£¡£¡£¡£¡£¡£¡£»£»£»£»£»£»¹ÏÂÔØÁ˵ڶþ¸öZIPÎļþ£¬£¬£¬£¬£¬ÆäÖÐÔ̺¬»ùÓÚJavaµÄ¶ñÒâÈí¼þºÍÕû¸öJava¿ª·¢¹¤¾ß°ü¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þʹÓÃÓ²±àÂëµÄÍ´´¦Ïνӵ½µÐÊÖ½ÚÔìµÄOneDriveÕÊ»§£¬£¬£¬£¬£¬²¢½«ÆäÓÃ×÷ºÅÁîºÍ½ÚÔì·þÎñÆ÷£¬£¬£¬£¬£¬ÒÔÔÚÊÜϰȾµÄϵͳÉÏ»ñÈ¡ºÍÖ´ÐÐPowerShellºÅÁî¡£¡£¡£¡£¡£¡£¡£ÕâÖÖÒÀÀµSaaSµÄÕ½Êõʹʵʱ¼ì²â±äµÃ¸´ÔÓ£¬£¬£¬£¬£¬²¢ÈƹýÁË´«Í³·ÀÓù´ëÊ©¡£¡£¡£¡£¡£¡£¡£
https://thehackernews.com/2024/11/veildrive-attack-exploits-microsoft.html
4.»ªÊ¢¶ÙÖÝ·¨ÔºÏµÍ³ÔâÍøÂç¹¥»÷̱»¾£¬£¬£¬£¬£¬´¹Î£¸´ÔÖÐ
11ÔÂ6ÈÕ£¬£¬£¬£¬£¬×ÔÖÜÈÕ¹ÙÔ±·¢ÏÖÍøÂç´æÔÚ¡°Î´¾ÊÚȨµÄ»î¶¯¡±ÒÔÀ´£¬£¬£¬£¬£¬»ªÊ¢¶ÙÖݸ÷µØµÄ·¨ÔºÏµÍ³ÏÝÈë̱»¾£¬£¬£¬£¬£¬ËùÓÐÖÝ·¨ÔºµÄ˾·¨ÐÅϢϵͳ¡¢ÍøÕ¾¼°ÓйطþÎñ¾ùÊܳÖÐøÓ°Ïì¡£¡£¡£¡£¡£¡£¡£¾Ý¡¶Î÷ÑÅͼʱ±¨¡·±¨Â·£¬£¬£¬£¬£¬·¨ÔºÖÎÀí°ì¹«ÊÒ£¨AOC£©ÒÑѸËÙÐж¯£¬£¬£¬£¬£¬È·±£¹Ø¼üϵͳ°²È«²¢ÖÂÁ¦¸´Ô·þÎñ¡£¡£¡£¡£¡£¡£¡£AOC¸±Ö÷ÈÎεϡ¤·ÑÀ×¶û°µÊ¾£¬£¬£¬£¬£¬³öÓÚ°²È«Ë¼¿¼£¬£¬£¬£¬£¬ÏµÍ³ÒÑ×Ô¶¯¹Ø¹Ø£¬£¬£¬£¬£¬²¢Óëר¼ÒºÏ×÷ÖçÒ¹¸´Ô¡£¡£¡£¡£¡£¡£¡£²¿ÃÅÊз¨ÔººÍµØÓò·¨ÔºÈÔÔÚÌṩÓÐÏÞ·þÎñ£¬£¬£¬£¬£¬¶øÆ¤¶ûË¹ÏØ¸ßµµ·¨ÔºÊé¼ÇÔ±°ì¹«ÊÒËä·þÎñÖжϣ¬£¬£¬£¬£¬µ«ÈԿɽøÐÐÔÚÏß½Ó¼û£¬£¬£¬£¬£¬²¢Õý»ý¼«¸´Ô·þÎñ¡£¡£¡£¡£¡£¡£¡£Ô¤¼Æ·¨Ôº¸ù»ùÖ°ÄܺÍËßËÏ·¨Ê½½«°´´òËã½øÐУ¬£¬£¬£¬£¬¿Í»§·þÎñ¹ñ̨ʢ¿ª£¬£¬£¬£¬£¬µ«½¨ÒéÌáǰȷÈÏ·þÎñ¿ÉÓÃÐÔ¡£¡£¡£¡£¡£¡£¡£Í¬Ê±£¬£¬£¬£¬£¬²¿ÃÅ·þÎñÈçÅоö/·£¿£¿£¿£¿£¿£¿£¿îÓà¶îÐÅÏ¢ºÍµç×Ó·¨Í¥¼Í¼ËÑË÷ÔÚÆ¤¶ûË¹ÏØ·¨Ôº¸´ÔǰÔݲ»³ÉÓᣡ£¡£¡£¡£¡£¡£ÀàËÆÊÂÎñÔøÔÚ¿°ÈøË¹ÖݲúÉú£¬£¬£¬£¬£¬2023Äê10ÔÂÖÐÑ®£¬£¬£¬£¬£¬Æä·¨ÔºÖÎÀí¾ÖÍøÂçÔâÈëÇÖ£¬£¬£¬£¬£¬ºÚ¿ÍÇÔÈ¡Ãô¸ÐÎļþ£¬£¬£¬£¬£¬ÓµÓÐÀÕË÷Èí¼þ¹¥»÷¼£Ï󣬣¬£¬£¬£¬ÆÈʹ˾·¨²¿ÃŹعضà¸öÐÅϢϵͳ¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/washington-courts-systems-offline-following-weekend-cyberattack/
5.SteelFox¶ñÒâÈí¼þ£ºÀûÓÃÒ×Êܹ¥»÷Çý¶¯¼¼ÊõÇÔÊØÐÅÏ¢ÓëÍÚ¾ò¼ÓÃÜÇ®±Ò
11ÔÂ6ÈÕ£¬£¬£¬£¬£¬ÃûΪ¡°SteelFox¡±µÄжñÒâÈí¼þÀûÓá°×Ô´øÒ×Êܹ¥»÷µÄÇý¶¯·¨Ê½¡±¼¼Êõ»ñÈ¡WindowsϵͳȨÏÞ£¬£¬£¬£¬£¬ÒÔÍÚ¾ò¼ÓÃÜÇ®±Ò²¢ÇÔÊØÐÅÓþ¿¨Êý¾ÝµÈÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£¸ÃÈí¼þͨ¹ýÂÛ̳ºÍÖÖ×Ó×·×ÙÆ÷ÒÔÆÆ½â¹¤¾ßµÄ´ó¾Ö·Ö·¢£¬£¬£¬£¬£¬¿É¼¤»î¶àÖÖÈí¼þµÄºÏ·¨°æ±¾¡£¡£¡£¡£¡£¡£¡£¿£¿£¿£¿£¿£¿£¿¨°Í˹»ù×êÑÐÈËÔ±ÓÚ8Ô·¢Ïָù¥»÷»î¶¯£¬£¬£¬£¬£¬µ«¶ñÒâÈí¼þ×Ô2023Äê2ÔÂÒÑ´æÔÚ£¬£¬£¬£¬£¬²¢Í¨¹ý¶àÖÖÇþ·Ôö³¤ÁË´«²¼¡£¡£¡£¡£¡£¡£¡£SteelFoxʹÓÃÒ×Êܹ¥»÷µÄÇý¶¯·¨Ê½ÌáÉýȨÏÞ£¬£¬£¬£¬£¬´´½¨·þÎñ²¢ÀûÓ÷ì϶½«È¨ÏÞÌáÉýµ½µÚÒ»Á÷±ð¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ»¹ÓÃÓÚ¼ÓÃÜÇ®±ÒÍÚ¾ò£¬£¬£¬£¬£¬²¢¼¤»îÐÅÏ¢ÇÔÈ¡×é¼þ£¬£¬£¬£¬£¬´ÓÍøÂçä¯ÀÀÆ÷ÖÐÌáÈ¡Êý¾Ý¡£¡£¡£¡£¡£¡£¡£Ö»¹ÜC2ÓòÊÇÓ²±àÂëµÄ£¬£¬£¬£¬£¬µ«ÍþвÐÐΪÕßͨ¹ýÇл»IPµØÖ·ºÍʹÓÃGoogle¹«¹²DNSºÍDoH°µ²ØÆäµØÎ»¡£¡£¡£¡£¡£¡£¡£SteelFox¹¥»÷ûÓÐÌØ¶¨Ö¸±ê£¬£¬£¬£¬£¬µ«ÖØÒªÕë¶ÔAutoCAD¡¢JetBrainsºÍFoxit PDF EditorµÄÓû§£¬£¬£¬£¬£¬ÒÑϰȾ¶à¸ö¹ú¶ÈµÄϵͳ¡£¡£¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/new-steelfox-malware-hijacks-windows-pcs-using-vulnerable-driver/
6.SelectBlindsÍøÕ¾ÔâºÚ¿Í¹¥»÷£¬£¬£¬£¬£¬20Íò¹Ë¿ÍÐÅÓþ¿¨ÐÅÏ¢±»µÁ
11ÔÂ7ÈÕ£¬£¬£¬£¬£¬ºÚ¿ÍÔÚ´óÐÍÁãÊÛÉÌSelectBlindsµÄÍøÕ¾ÉÏÖ²ÈëÁ˶ñÒâÈí¼þ£¬£¬£¬£¬£¬µ¼ÖÂ20¶àÍò¹Ë¿ÍµÄÐÅÓþ¿¨ÐÅÏ¢ºÍÆäËûÊý¾Ý±»µÁ¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÖÁÉÙ´Ó1ÔÂ7ÈÕ¾ÍÒÑ´æÔÚ£¬£¬£¬£¬£¬ÓÚ9ÔÂ28ÈÕ±»Ô±¹¤·¢ÏÖ¡£¡£¡£¡£¡£¡£¡£³ýÁ˵ǼÐÅÏ¢£¬£¬£¬£¬£¬ºÚ¿Í»¹¿ÉÄÜ»ñÈ¡Á˹˿͵ÄÐÕÃû¡¢µç×ÓÓʼþ¡¢ËÍ»õºÍÕ˵¥µØÖ·¡¢µç»°ºÅÂëÒÔ¼°Ö§¸¶¿¨ºÅ¡¢ÓÐЧÆÚºÍ°²È«/CVV´úÂë¡£¡£¡£¡£¡£¡£¡£ÎªÁËÆÈʹÓû§¸ü¸ÄÃÜÂ룬£¬£¬£¬£¬SelectBlindsÒÑËø¶¨Óû§ÕË»§²¢É¾³ýÁ˶ñÒâÈí¼þ£¬£¬£¬£¬£¬Í¬Ê±ÖÒ¸æÔÚÆäËûÍøÕ¾ÉϳÁ¸´Ê¹ÓÃÒ»ÑùµÇ¼ÐÅÏ¢µÄÈËÓ¦Á¢¼´¸ü¸ÄÃÜÂë¡£¡£¡£¡£¡£¡£¡£ºÚ¿ÍÀûÓõç×ÓµÁË¢Æ÷ÇÔÊØÐÅÓþ¿¨ÐÅÏ¢ÒѳÉΪ³Ö¾Ã´æÔÚµÄÎÊÌ⣬£¬£¬£¬£¬ËûÃÇͨ¹ýÏòÒ×Êܹ¥»÷µÄÍøÕ¾×¢Èë¶ñÒâ´úÂëÀ´²¶»ñÃô¸ÐÊý¾Ý£¬£¬£¬£¬£¬²¢½«ÕâЩÐÅÏ¢ÏúÊÛ¸øÐÅÓþ¿¨Ú²Æ»ú¹¹¡£¡£¡£¡£¡£¡£¡£¾ÝRecorded FutureÔÚÉϸöÔµÄÒ»·Ý»ã±¨Öгƣ¬£¬£¬£¬£¬ºÚ¿ÍÔÚ°µÍøÐÅÓþ¿¨É̵êÖа䲼ÁË1500ÍòÌõÐÅÓþ¿¨¼Í¼ÒÔ¹©ÏúÊÛ¡£¡£¡£¡£¡£¡£¡£
https://therecord.media/selectblinds-customers-credit-card-info-data-breach-website-malware


¾©¹«Íø°²±¸11010802024551ºÅ