McAfeeÐû²¼2020ÄêÍøÂçÍþвÇ÷ÊÆÕ¹Íû±¨¸æ£» £»£»£»ÄªË¹¿Æ¶¼»á¼à¿ØÏµÍ³»á¼ûȨÏÞÔÚ°µÍø³öÊÛ

Ðû²¼Ê±¼ä 2019-12-09


1.Ñо¿ÍŶÓÐû²¼ÀÕË÷Èí¼þ¼Ò×åLooCipherµÄÆÊÎö±¨¸æ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


LooCipherÊǽñÄêзºÆðµÄÒ»¸öÀÕË÷Èí¼þ¼Ò×壬£¬ £¬£¬£¬£¬£¬Æ¾Ö¤McAfeeµÄÆÊÎö±¨¸æ£¬£¬ £¬£¬£¬£¬£¬¸ÃÀÕË÷Èí¼þÖ÷Ҫͨ¹ýDOCÎļþÈö²¥¡£ ¡£¡£¡£¡£¡£¡£ÓëÆäËü¶ñÒâÈí¼þÏà±È£¬£¬ £¬£¬£¬£¬£¬¸ÃDOCÎļþÏ൱´Ö²Ú£¬£¬ £¬£¬£¬£¬£¬Ã»ÓнÓÄÉÈκÎÉç»á¹¤³ÌÊÖÒÕ£¬£¬ £¬£¬£¬£¬£¬ÄÚÀïµÄÄÚÈÝÖ»ÓÐÒ»¾ä»°¡°ÆôÓúêÀ´Éó²éÎĵµ¡±¡£ ¡£¡£¡£¡£¡£¡£¸Ã¶ñÒâºê»á´ÓÔ¶³ÌЧÀÍÆ÷ÏÂÔØLooCipher¡£ ¡£¡£¡£¡£¡£¡£LooCipherÔÚ¼ÓÃÜÀú³ÌÖÐʹÓÃAES-ECB¼ÓÃÜËã·¨£¬£¬ £¬£¬£¬£¬£¬²¢ÇÒËùÓÐÎļþµÄÃÜÔ¿¾ùÏàͬ£¬£¬ £¬£¬£¬£¬£¬ÆäÄ¿µÄÎļþµÄÀ©Õ¹ÃûÁÐ±í±»Ó²±àÂëÔÚ¶þ½øÖÆÎļþÖС£ ¡£¡£¡£¡£¡£¡£LooCipherµÄBTCµØµãÖÐÉÐûÓÐÈκÎÉúÒ⣬£¬ £¬£¬£¬£¬£¬ÕâÅú×¢Æä×÷ÕßÉÐδ´ÓÖÐ׬Ǯ¡£ ¡£¡£¡£¡£¡£¡£ÏêϸIoCÇë²Î¿¼ÒÔÏÂÁ´½Ó¡£ ¡£¡£¡£¡£¡£¡£


  Ô­ÎÄÁ´½Ó£º

https://securingtomorrow.mcafee.com/blogs/other-blogs/mcafee-labs/analysis-of-loocipher-a-new-ransomware-family-observed-this-year/


2.AvastÅû¶Ö÷ÒªÕë¶Ô°ÍÎ÷¹«ÃñµÄÍøÂç´¹Âڻ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


11ÔÂÏÂÑ®AvastÑо¿ÍŶӷ¢Ã÷ÁËÒ»¸öʹÓðÍÎ÷Óû§µÄ·ÓÉÆ÷½«ÆäÖØ¶¨Ïòµ½´¹ÂÚÍøÕ¾µÄ¹¥»÷»î¶¯¡£ ¡£¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾Î±×°³ÉÒøÐС¢ÐÂÎÅÍøÕ¾ºÍNetflixµÄ¹ÙÍøµÈ¡£ ¡£¡£¡£¡£¡£¡£ÕâÖÖ¹¥»÷ͨ³£ÔÚÓû§»á¼û´øÓжñÒâ¹ã¸æµÄÊÜÑ¬È¾ÍøÕ¾Ê±Æô¶¯£¬£¬ £¬£¬£¬£¬£¬Óû§½«±»×Ô¶¯Öض¨Ïòµ½Á½¸ö·ÓÉÆ÷EKµÄ׎ҳÖУ¬£¬ £¬£¬£¬£¬£¬´Ó¶øÔÚºǫ́ÎÞÐèÓû§¸ÉÔ¤¾ÍÌᳫ¶Ô·ÓÉÆ÷µÄ¹¥»÷¡£ ¡£¡£¡£¡£¡£¡£È»ºó£¬£¬ £¬£¬£¬£¬£¬Óû§µÄ·ÓÉÆ÷½«Æä´ÓÕæÊµµÄÓªÒµÒ³ÃæÖØ¶¨Ïòµ½ÏàËÆµÄÍøÂç´¹ÂÚÕ¾µã¡£ ¡£¡£¡£¡£¡£¡£11ÔÂ25ÈÕAvast×èÖ¹µÄÁ½¸ö´¹ÂÚÍøÕ¾¾ÍѬȾÁ˽ü5500¸öÓû§µÄ·ÓÉÆ÷¡£ ¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://blog.avast.com/avast-threat-labs-uncovers-brazil-cyberattacks


3.ÐéαVPNÍøÕ¾ÏòÓû§ÍÆËÍVidarºÍCryptBotľÂí


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


BleepingComputer·¢Ã÷Ò»¸öαװ³ÉInter VPNÍÆ¹ãÍøÕ¾µÄÐéαվµã£¬£¬ £¬£¬£¬£¬£¬¸ÃÍøÕ¾Ö÷Òª·Ö·¢ÐÅÏ¢ÇÔȡľÂíVidarºÍCryptBot¡£ ¡£¡£¡£¡£¡£¡£¸ÃÍøÕ¾ÏÔʾµÄVPN¿Í»§¶ËͼƬÏÖʵÉÏÊÇÕýµ±Èí¼þVPN ProµÄͼƬ£¬£¬ £¬£¬£¬£¬£¬ÆäÏÂÔØµÄ³ÌÐò½«Ê¹ÓÃAutoHotKey¾ç±¾ÅþÁ¬µ½iplogger.org£¬£¬ £¬£¬£¬£¬£¬È»ºóƾ֤¸ÃÍøÕ¾ÉϵÄÄ¿½ñ·Ö·¢»î¶¯´Óbitbucket.org ÏÂÔØVidarºÍCryptBot¿ÉÖ´ÐÐÎļþ¡£ ¡£¡£¡£¡£¡£¡£ÕâЩľÂí¿ÉÇÔÈ¡Óû§µÄä¯ÀÀÆ÷ƾ֤¡¢Cookie¡¢×ÀÃæ½ØÆÁ¡¢Îı¾ÎļþÒÔ¼°¼ÓÃÜÇ®±ÒÇ®°üµÈ¡£ ¡£¡£¡£¡£¡£¡£ÓÉÓÚÏÂÔØµÄ×°Öðü´ò°üÁËÕýµ±µÄVPN ProÈí¼þ£¬£¬ £¬£¬£¬£¬£¬Òò´ËÓû§¿ÉÄÜÄÑÒÔ·¢Ã÷ÔÚºǫ́ÔËÐеÄľÂí¡£ ¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fake-vpn-site-pushes-cryptbot-and-vidar-info-stealing-trojans/


4.Ñо¿±¨¸æ³ÆÓ¢¹úÐÅÓÿ¨Ú²Æ­ËðʧռÕû¸öÅ·ÖÞµÄÒ»°ë


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


ƾ֤FICOµÄ×îÐÂÊÓ²ìЧ¹û£¬£¬ £¬£¬£¬£¬£¬ÓÉÓÚÊý¾Ýй¶ºÍÔÚÏßڲƭÊÂÎñµÄ¼¤Ôö£¬£¬ £¬£¬£¬£¬£¬Ó¢¹úÐÅÓÿ¨Ú²Æ­Ôì³ÉµÄËðʧÏÖÔÚÕ¼Õû¸öÅ·ÖÞµÄÒ»°ë¡£ ¡£¡£¡£¡£¡£¡£Æ¾Ö¤¸Ã¹«Ë¾Ðû²¼µÄ»¥¶¯Ê½¡¶Å·ÖÞڲƭµØÍ¼¡·£¬£¬ £¬£¬£¬£¬£¬2018ÄêÓ¢¹úÐÅÓÿ¨Ú²Æ­ËðʧµÖ´ïÁË´´¼Í¼µÄ6.71ÒÚÓ¢°÷£¬£¬ £¬£¬£¬£¬£¬±ÈÉÏÒ»ÄêÔöÌí19£¥¡£ ¡£¡£¡£¡£¡£¡£¸ÃÊý×ÖÏÕЩռµØÍ¼ÉÏÅ·ÖÞ19¸ö¹ú¼Ò×ܶî16ÒÚÅ·Ôª£¨14ÒÚÓ¢°÷£©µÄÒ»°ë¡£ ¡£¡£¡£¡£¡£¡£Ó¢¹úµÄ´ó²¿·ÖڲƭËðʧ£¨5.064ÒÚÓ¢°÷£©À´×ÔÎÞ¿¨Ú²Æ­£¨CNP£©ÇþµÀ£¬£¬ £¬£¬£¬£¬£¬ÕâЩÇþµÀÏÖÔÚ¶¼±»ÔÚÏßڲƭËù¿ØÖÆ¡£ ¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/uk-card-fraud-losses/


5.McAfeeÐû²¼2020ÄêÍøÂçÍþвÇ÷ÊÆÕ¹Íû±¨¸æ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


McAfee¶Ô2020ÄêµÄÍþвÇ÷ÊÆÕ¹Íû°üÀ¨£ºÊÖÒÕ½ÏÈõµÄ¹¥»÷Õß½«¸ü¶àµØ½ÓÄÉDeepfakeÔöÇ¿ÆäÐÅÏ¢Õ½µÄÄÜÁ¦£¬£¬ £¬£¬£¬£¬£¬ÀýÈçαÔìÆóÒµCEOµÄÊÓÆµ/ÒôƵÉùÃ÷À´Ê¹ÓùɼۻòÒý·¢ÆäËü½ðÈÚ·¸·¨£» £»£»£»Ê¹ÓÃDeepfakeÀ´ÈƹýÈËÁ³Ê¶±ð£» £»£»£»ÀÕË÷Èí¼þ¹¥»÷½«ÑݱäΪ˫½×¶Î¹¥»÷£¬£¬ £¬£¬£¬£¬£¬ÀýÈçÔÚÀÕË÷Èí¼þ¹¥»÷ÏÖʵ±¬·¢Ç°×°ÖöñÒâ¿ó¹¤»òÇÔÈ¡ÆóÒµÉñÃØÐÅÏ¢£» £»£»£»API½«³ÉÎªÔÆÔ­ÉúÍþвµÄ×Èõ»·½Ú£» £»£»£»Ëæ×ÅÈÝÆ÷»¯ÊÂÇé¸ºÔØµÄÔöÌíµ¼ÖÂÇå¾²¿ØÖÆÏò¡°×óÒÆ¡±£¬£¬ £¬£¬£¬£¬£¬DevSecOps½«»áÔ½·¢Í»³ö¡£ ¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://securingtomorrow.mcafee.com/blogs/other-blogs/mcafee-labs/mcafee-labs-2020-threats-predictions-report/


6.Ī˹¿Æ¶¼»á¼à¿ØÏµÍ³»á¼ûȨÏÞÔÚ°µÍø³öÊÛ


¼øºÚµ£±£Íø(jhdbw)¡¤×î¾ßȨÍþΨһάȨµ£±£Æ½Ì¨


MBKh MediaÊÓ²ì¼ÇÕßAndrey Kaganskikh·¢Ã÷Ī˹¿Æ¶¼»á¼à¿ØÏµÍ³ºÍÃæ²¿Ê¶±ðÊý¾ÝµÄ»á¼ûȨÏÞÕýÔÚµØÏÂÂÛ̳ºÍ̸ÌìÊÒÖгöÊÛ¡£ ¡£¡£¡£¡£¡£¡£AndreyÌåÏÖÂô·½ÊÇÖ´·¨Ö°Ô±/Õþ¸®¹ÙÔ±£¬£¬ £¬£¬£¬£¬£¬¿ÉÒԵǼĪ˹¿Æ¶¼»á¼àÊÓϵͳµÄÊý¾Ý´¦Öóͷ£ºÍ´æ´¢¼¯³ÉÖÐÐÄ£¨YTKD£©¡£ ¡£¡£¡£¡£¡£¡£¹ºÖÃÁËÉãÏñͷȨÏÞµÄÓû§½«»áÊÕµ½Ö¸Ïò¶¼»áCCTVϵͳµÄÒ»¸öÁ´½Ó£¬£¬ £¬£¬£¬£¬£¬¸ÃÁ´½Ó¿É»á¼ûËùÓй«¹²ÉãÏñÍ·£¬£¬ £¬£¬£¬£¬£¬Æä¿ÉÓÃʱ¼äΪ5Ìì¡£ ¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬ £¬£¬£¬£¬£¬¾ßÓÐÎÞÏÞ»á¼ûȨÏ޵ĵǼƾ֤¼ÛǮΪ30000¬²¼£¨470ÃÀÔª£©¡£ ¡£¡£¡£¡£¡£¡£ÊÓ²ìÖ°Ô±²âÊÔÁËÆäÕÕÆ¬£¬£¬ £¬£¬£¬£¬£¬Âô·½·µ»ØÁË238ÕÅͼƬ£¬£¬ £¬£¬£¬£¬£¬ÕâЩͼƬÀ´×Ô140̨ÉãÏñÍ·£¬£¬ £¬£¬£¬£¬£¬»¹ÁгöÁ˲¶»ñµ½µÄÏêϸµØµãºÍʱ¼ä£¬£¬ £¬£¬£¬£¬£¬µ«·µ»ØµÄÕÕÆ¬¶¼²»ÊÇÊÓ²ìÖ°Ô±µÄ£¬£¬ £¬£¬£¬£¬£¬Õâ¿ÉÄÜÓëÉãÏñÍ·µÄÊýÄ¿ºÍËã·¨ÓйØ£¬£¬ £¬£¬£¬£¬£¬ÏµÍ³¶ÔÆäÃæ²¿ÌØÕ÷µÄÆÀ¹ÀÏàËÆ¶ÈΪ67%¡£ ¡£¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/moscow-cops-sell-access-to-city-cctv-facial-recognition-data/