ÎÒ¹úͨ¹ý¡¶ÃÜÂë·¨¡·£¬£¬£¬£¬½«ÓÚ2020Äê1ÔÂ1ÈÕÆðʵÑ飻£»£»£»£»£»£»NCSCÐû²¼2019ÄêÍøÂçÇå¾²Äê¶È±¨¸æ

Ðû²¼Ê±¼ä 2019-10-28
1¡¢ÎÒ¹úͨ¹ý¡¶ÃÜÂë·¨¡·£¬£¬£¬£¬½«ÓÚ2020Äê1ÔÂ1ÈÕÆðʵÑé

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨

Ê®Èý½ìÌìÏÂÈË´ó³£Î¯»áµÚÊ®ËĴξۻá26ÈÕ±í¾öͨ¹ý¡¶ÖлªÈËÃñ¹²ºÍ¹úÃÜÂë·¨¡·£¬£¬£¬£¬½«×Ô2020Äê1ÔÂ1ÈÕÆðÊ©ÐС£¡£¡£¡£¡£¡£¡£ÃÜÂë·¨Ö¼Ôڹ淶ÃÜÂëÓ¦ÓúÍÖÎÀí£¬£¬£¬£¬Ôö½øÃÜÂëÊÂÒµÉú³¤£¬£¬£¬£¬°ü¹ÜÍøÂçÓëÐÅÏ¢Çå¾²£¬£¬£¬£¬ÌáÉýÃÜÂëÖÎÀí¿ÆÑ§»¯¡¢¹æ·¶»¯¡¢·¨Öλ¯Ë®Æ½£¬£¬£¬£¬ÊÇÎÒ¹úÃÜÂëÁìÓòµÄ×ÛºÏÐÔ¡¢»ù´¡ÐÔÖ´·¨¡£¡£¡£¡£¡£¡£¡£ÃÜÂë·¨¹²ÎåÕÂËÄÊ®ËÄÌõ£¬£¬£¬£¬½«ÃÜÂë·ÖΪ½¹µãÃÜÂ롢ͨË×ÃÜÂëºÍÉÌÓÃÃÜÂ룬£¬£¬£¬²¢¶ÔÏà¹ØÖÆ¶È¡¢Ö´·¨ÔðÈμ°Ö°È¨²¿·Ö¾ÙÐÐÁË»®¶¨¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

http://www.xinhuanet.com/politics/2019-10/26/c_1125156896.htm

2¡¢Ó¢¹úNCSCÐû²¼2019ÄêÍøÂçÇå¾²Äê¶È±¨¸æ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ƾ֤Ӣ¹ú¹ú¼ÒÍøÂçÇå¾²ÖÐÐÄ£¨NCSC£©Ðû²¼µÄ2019ÍøÂçÇå¾²Äê¶È±¨¸æ£¬£¬£¬£¬2018Äê9ÔÂ1ÈÕÖÁ2019Äê8ÔÂ31ÈÕʱ´úNCSC¹²×èÖ¹ÁË600¶àÆðÍøÂç¹¥»÷ÊÂÎñ£¬£¬£¬£¬ÆäÖдó´ó¶¼¹¥»÷ÊÇÓÉÍâÑó¹¥»÷ÕßÌᳫµÄ¡£¡£¡£¡£¡£¡£¡£¸Ã±¨¸æÖ¸³ö£¬£¬£¬£¬´ó´ó¶¼¹¥»÷Õë¶ÔÕþ¸®»ú¹¹¡¢´óѧ¡¢ÐÅÏ¢ÊÖÒÕ¡¢Ò½ÁƱ£½¡ºÍÔËÊäµÈÐÐÒµ¡£¡£¡£¡£¡£¡£¡£NCSC»¹ÖÒÑÔÁË56¼ÒÒøÐÐÓйØATM͵ÇÔÍþв¡£¡£¡£¡£¡£¡£¡£¸Ã±¨¸æÖгƶíÂÞ˹¡¢Öйú¡¢ÒÁÀʺͳ¯ÏʼÌÐø¶ÔÓ¢¹ú×é³ÉÕ½ÂÔÐÔ¹ú¼ÒÇå¾²Íþв¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/93015/intelligence/ncsc-report-cyber-attacks.html

3¡¢7-11¼ÓÓÍAPPÒâÍâй¶²¿·ÖÓû§Êý¾Ý

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨

ƾ֤Ӣ¹ú¡¶ÎÀ±¨¡·±¨µÀ£¬£¬£¬£¬7-11¼ÓÓÍAPP·ºÆðbug£¬£¬£¬£¬Ê¹µÃÓû§¿ÉÒÔÉó²éÆäËü¿Í»§µÄСÎÒ˽¼ÒÐÅÏ¢£¬£¬£¬£¬°üÀ¨ÐÕÃû¡¢µç×ÓÓʼþµØµã¡¢ÊÖ»úºÅÂëºÍ³öÉúÈÕÆÚ¡£¡£¡£¡£¡£¡£¡£Ò»Ãû¿Í»§ÌåÏÖËûÔÚ¶à´ÎµÇ¼ºÍ×¢Ïúºó£¬£¬£¬£¬ÔÙÖØÐµÇ¼¼´¿É»á¼ûÆäËü¿Í»§µÄÐÅÏ¢£¬£¬£¬£¬°üÀ¨ËûÃÇÕË»§ÖеĽð¶î¡£¡£¡£¡£¡£¡£¡£¸ÃAPPµÄÏÂÔØÁ¿Îª200Íò´Î£¬£¬£¬£¬ÔÚ½«¸ÃAPPÏÂÏßÁ˼¸¸öСʱºó£¬£¬£¬£¬7-11½²»°ÈËÌåÏÖ¸ÃÊÖÒÕÎÊÌâÒѾ­ÐÞ¸´£¬£¬£¬£¬¸Ã¹«Ë¾ÕýÔÚ¼ÌÐøÊӲ첢֪ͨÓйØÕþ¸®¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/drivers-data-exposed-in-7eleven/

4¡¢ÐÂÀÕË÷Èí¼þFuxSocyð³äCerber¾ÙÐÐÈö²¥


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ÐÂÀÕË÷Èí¼þFuxSocy±»·¢Ã÷Ä£ÄâÁËÏÖÔÚÒѲ»¸´±£´æµÄÀÕË÷Èí¼þCerber¡£¡£¡£¡£¡£¡£¡£¸ÃÀÕË÷Èí¼þÓÉMalwareHunterTeam·¢Ã÷£¬£¬£¬£¬ÒÔµçÊÓ¾çMr. RobotÖз¸·¨ÍÅ»ïFSocietyµÄÃû×Ö¾ÙÐÐÃüÃû¡£¡£¡£¡£¡£¡£¡£ÄæÏò¹¤³ÌʦVitali Kremez·¢Ã÷FuxSocyÔÚÍâ¹ÛÓëÄÚ²¿¶¼ºÍCerber¾ßÓÐÀàËÆÖ®´¦£¬£¬£¬£¬ÀýÈç¼ÓÃÜÎļþʱFuxSocy½«Ìø¹ýÎļþ·¾¶°üÀ¨Ä³Ð©×Ö·û´®µÄÎļþ£¬£¬£¬£¬ÆäÖÐÐí¶à×Ö·û´®Ö±½ÓÈ¡×ÔCerberµÄÁбí£»£»£»£»£»£»£»±ðµÄ£¬£¬£¬£¬FuxSocy»¹ÒÔÀàËÆÓÚCerberµÄ·½·¨¶Ô¼ÓÃÜÎļþµÄÃû×ÖºÍÀ©Õ¹Ãû¾ÙÐÐÉ趨£»£»£»£»£»£»£»×îºó£¬£¬£¬£¬ÔÚ¼ÓÃÜϵͳºó£¬£¬£¬£¬FuxSocy½«Windows×ÀÃæÅä¾°¸ü¸ÄΪÓëCerberʹÓõÄÏÕЩÏàͬµÄÅä¾°¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/new-fuxsocy-ransomware-impersonates-the-notorious-cerber/

5¡¢Ð¶ñÒâÈí¼þBlueFaceÃé×¼Windows DiscordÓû§

¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


MalwareHunterTeam·¢Ã÷жñÒâÈí¼þͨ¹ýÐÞ¸ÄWindows Discord¿Í»§¶ËÀ´Õë¶ÔDiscordÓû§£¬£¬£¬£¬Ö÷ÒªÇÔÈ¡Óû§ÐÅÏ¢ºÍ³äµ±ºóÃųÌÐò¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ±»³ÆÎªBlueFace£¬£¬£¬£¬»áÔÚÊÜѬȾµÄϵͳÉÏÌí¼Ó×Ô¼ºµÄ¶ñÒâJavaScript£¬£¬£¬£¬¸Ã¾ç±¾½«Ö´ÐÐÖÖÖÖDiscord APIÏÂÁîºÍJavaScriptº¯Êý£¬£¬£¬£¬ÍøÂçÓйØÓû§µÄÖÖÖÖÐÅÏ¢£¬£¬£¬£¬×îºóͨ¹ýDiscord Webhook½«ÕâЩÐÅÏ¢·¢Ë͸ø¹¥»÷Õß¡£¡£¡£¡£¡£¡£¡£ÓÉÓÚËü»áÍøÂç¼ôÌù°åµÄÄÚÈÝ£¬£¬£¬£¬Òò´Ë¿ÉÄÜ»áÇÔÈ¡Óû§µÄÃÜÂ롢СÎÒ˽¼ÒÐÅÏ¢»òÆäËüÃô¸ÐÊý¾Ý¡£¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ»¹»áÖ´ÐÐfightdio£¨£©º¯Êý³äµ±ºóÃÅ¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚÆäÔÚVirusTotalÉϵļì²âÂʽöΪ24/65 ¡£¡£¡£¡£¡£¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/discord-turned-into-an-info-stealing-backdoor-by-new-malware/

6¡¢Ñо¿Ö°Ô±·¢Ã÷NukeSped RATÓ볯ÏÊLazarus APTÓйØ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


FortinetÇ徲ר¼ÒÆÊÎöÁ˶ñÒâÈí¼þNukeSpedµÄÑù±¾£¬£¬£¬£¬·¢Ã÷ÆäÓ볯ÏÊAPT×éÖ¯Lazarus±£´æ¹ØÁª¡£¡£¡£¡£¡£¡£¡£Í¨¹ý¶Ô¶ñÒâÈí¼þµÄ¹¦Ð§¾ÙÐÐÆÊÎö£¬£¬£¬£¬Ñо¿Ö°Ô±È·¶¨ËüÊǶ¯Ì¬ÆÊÎö¹¦Ð§µÄ£¬£¬£¬£¬ÏÖʵÉÏ£¬£¬£¬£¬¶ñÒâ´úÂë½öŲÓÃÁËÉÙÁ¿API¡£¡£¡£¡£¡£¡£¡£NukeSped Ñù±¾»¹¼ÓÃÜÁËAPIÃû³ÆÒÔ×èÖ¹¾²Ì¬ÆÊÎö£¬£¬£¬£¬Ëüͨ¹ýÌí¼Ó×¢²á±íÏîÀ´»ñµÃ³¤ÆÚÐÔ£¬£¬£¬£¬²¢ÇÒÔÚijЩÇéÐÎÏ»Ὣ×Ô¼º×÷ΪЧÀÍ×°Öᣡ£¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þµÄÖ÷Òª¹¦Ð§ÊÇΪ¹¥»÷ÕßÌṩ¶ÔÊÜѬȾÖ÷»úµÄÔ¶³ÌÖÎÀí¡£¡£¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/92916/malware/nukesped-rat-north-korea.html