΢Èí³ÆÒѼì²âµ½Ê¹ÓÃZerologonÎó²îÌᳫµÄ×Ô¶¯¹¥»÷£»£»£»£»£»£»£»ÐµĶñÒâÈí¼þAlien¿ÉÇÔÈ¡226¿îAndroidÓ¦ÓõÄÓû§ÃÜÂë
Ðû²¼Ê±¼ä 2020-09-251.΢Èí³ÆÒѼì²âµ½Ê¹ÓÃZerologonÎó²îÌᳫµÄ×Ô¶¯¹¥»÷

΢ÈíÇå¾²Ç鱨ÍŶÓÌåÏÖ£¬£¬£¬£¬£¬ÆäÒѼì²âµ½Ê¹ÓÃZerologonÎó²î£¨CVE-2020-1472 £©ÌᳫµÄ×Ô¶¯¹¥»÷¡£¡£¡£¡£¡£¡£¡£×ÔºÉÀ¼Çå¾²¹«Ë¾Secura BVÔÚ9ÔÂ14ÈÕÅû¶ÁËÓйØZerologonÎó²îµÄÏêϸÐÅÏ¢ºó£¬£¬£¬£¬£¬ÒÑÓжà¸öÎäÆ÷»¯µÄPoC¿ª·¢´úÂëÔÚÍøÉϹûÕæ¡£¡£¡£¡£¡£¡£¡£Î¢Èí²¢Ã»ÓÐÐû²¼Óйش˴ι¥»÷µÄϸ½Ú£¬£¬£¬£¬£¬¿ÉÊÇÐû²¼ÁËÓÃÓÚ¹¥»÷µÄÎļþÉ¢ÁС£¡£¡£¡£¡£¡£¡£Òò´ËÇ徲ר¼Ò¾Í½¨Ò飬£¬£¬£¬£¬ÄÇЩÓòÃû¿ØÖÆÆ÷̻¶µÄ¹«Ë¾Ó¦¾¡¿ìÈÃϵͳÀëÏߣ¬£¬£¬£¬£¬ÒÔ±ã¶ÔÆä¾ÙÐв¹¶¡¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/microsoft-says-it-detected-active-attacks-leveraging-zerologon-vulnerability/
2.еĶñÒâÈí¼þAlien¿ÉÇÔÈ¡226¿îAndroidÓ¦ÓõÄÓû§ÃÜÂë

Çå¾²Ñо¿Ö°Ô±·¢Ã÷ÁËÒ»ÖÖеÄAndroid¶ñÒâÈí¼þAlien£¬£¬£¬£¬£¬Æä¾ßÓжàÖÖ¹¦Ð§£¬£¬£¬£¬£¬¿É´Ó226¸öÓ¦ÓóÌÐòÖÐÇÔȡƾ֤¡£¡£¡£¡£¡£¡£¡£Alien»ùÓÚ¶ñÒâ¶ñÒâÈí¼þCerberusµÄÔ´´úÂ룬£¬£¬£¬£¬¿ÉÊÇÏà±ÈºóÕßËü¸üÏȽø¡£¡£¡£¡£¡£¡£¡£¸ÃľÂíÒ²Òѽ«Ô¶³Ì»á¼û¹¦Ð§¼¯³Éµ½Æä´úÂë¿âÖУ¬£¬£¬£¬£¬Ëü²»µ«¿ÉÒÔÏÔʾαÔìµÄµÇ¼½çÃæ²¢ÍøÂçÖÖÖÖÓ¦ÓóÌÐòºÍЧÀ͵ÄÃÜÂ룬£¬£¬£¬£¬»¹¿ÉÒÔÊÚÓèºÚ¿Í»á¼û×°±¸ÒÔʹÓÃËùÊöƾ֤ÉõÖÁÖ´ÐÐÆäËû²Ù×÷µÄȨÏÞ¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÆÊÎö·¢Ã÷£¬£¬£¬£¬£¬Alien¿ÉÏÔʾ226¿îAndroidÓ¦ÓõÄαÔìµÇÂ¼Ò³Ãæ£¬£¬£¬£¬£¬ÒÔÇÔÈ¡Óû§Éϰ¶Æ¾Ö¤¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/new-alien-malware-can-steal-passwords-from-226-android-apps/
3.΢Èí¡¢Òâ´óÀûºÍºÉÀ¼Ðû²¼Ô¤·ÀEmotet¹¥»÷»î¶¯µÄÔ¤¾¯

¼Ì·¨¹ú¡¢ÈÕ±¾ºÍÐÂÎ÷À¼ÐÂÎ÷À¼Ö®ºó£¬£¬£¬£¬£¬Î¢Èí¡¢Òâ´óÀûºÍºÉÀ¼Ò²Ðû²¼ÁËÔ¤·ÀEmotet¹¥»÷»î¶¯µÄÔ¤¾¯¡£¡£¡£¡£¡£¡£¡£CryptolaemusÑо¿Ö°Ô±ÌåÏÖ£¬£¬£¬£¬£¬×î½üÁ½ÖÜEmotet¹¥»÷Ò»Á¬ÔöÌí£¬£¬£¬£¬£¬ÆäÖÜÒ»ÊÕµ½ÁËԼĪ400·â´¹ÂÚÓʼþ£¬£¬£¬£¬£¬¶øÕý³£ÇéÐÎÏÂÒ»ÌìÖ»ÓÐ12µ½100·â¡£¡£¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬Î¢ÈíºÍÒâ´óÀûÕþ¸®·¢Ã÷EmotetµÄ¹¥»÷»î¶¯ÓÐÁËÐÂת±ä£¬£¬£¬£¬£¬Æä×îÏÈʹÓÃÊÜÃÜÂë±£»£»£»£»£»£»£»¤µÄZIPÎļþ¶ø²»ÊÇOfficeÎĵµ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/microsoft-italy-and-the-netherlands-warn-of-increased-emotet-activity/
4.Group-IB·¢Ã÷רÃÅÕë¶Ô¶íÂÞ˹µÄкڿÍ×éÖ¯OldGremlin

Çå¾²¹«Ë¾Group-IB·¢Ã÷Ò»¸öеĺڿÍ×éÖ¯OldGremlin£¬£¬£¬£¬£¬ÆäÔÚÒÑÍùÁù¸öÔÂÖÐÒ»ÔÙÓöñÒâÈí¼þºÍÀÕË÷Èí¼þ¹¥»÷¶íÂÞ˹ÆóÒµ¡£¡£¡£¡£¡£¡£¡£OldGremlin¹¥»÷ͨ³£Ê¼ÓÚ´øÓжñÒâÈí¼þµÄZIPÎļþµÄÓã²æÊ½ÍøÂç´¹ÂÚµç×ÓÓʼþ£¬£¬£¬£¬£¬¸Ãµç×ÓÓʼþͨ³£»£»£»£»£»£»£»áʹÓúóÃÅÌØÂåÒÁľÂíTinyNodeÈëÇÖÄ¿µÄ×éÖ¯¡£¡£¡£¡£¡£¡£¡£Ö®ºó¹¥»÷Õß»áÔÚ½øÈëÄ¿µÄ¹«Ë¾µÄÍøÂçºóºáÏòÀ©É¢µ½ÆäËûϵͳ£¬£¬£¬£¬£¬×îÖջᰲÅÅÀÕË÷Èí¼þ¡£¡£¡£¡£¡£¡£¡£Group-IBÔÚ8Ô·ÝÈ·¶¨ÁËOldGremlinÕûÌ壬£¬£¬£¬£¬µ«¸ÃÍÅ»ïµÄ¹¥»÷¿É×·ËÝÖÁ3Ô·ݡ£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.zdnet.com/article/ransomware-gang-targets-russian-businesses-in-rare-coordinated-attacks/
5.ÃÀ¹ú¹«Ë¾Town SportsÊý¾Ý¿â̻¶£¬£¬£¬£¬£¬Ð¹Â¶60Íò¿Í»§ÐÅÏ¢

Comparitech·¢Ã÷£¬£¬£¬£¬£¬ÃÀ¹ú½¡Éí¹«Ë¾Town SportsÊý¾Ý¿â̻¶£¬£¬£¬£¬£¬Ð¹Â¶60Íò¿Í»§ÐÅÏ¢¡£¡£¡£¡£¡£¡£¡£´Ë´Îй¶µÄСÎÒ˽¼ÒÐÅÏ¢°üÀ¨ÐÕÃû¡¢µØµã¡¢µç»°ºÅÂë¡¢µç×ÓÓʼþµØµã¡¢ÐÅÓÿ¨µÄºóËÄλÊý×Ö¡¢ÐÅÓÿ¨µÄÓÐÓÃÆÚÒÔ¼°»áÔ±µÄÕʵ¥¼Í¼¡£¡£¡£¡£¡£¡£¡£Ñо¿Ö°Ô±ÓÚ2020Äê9ÔÂ21ÈÕÁªÏµTown SportsÒÔ֪ͨÆä̻¶µÄÊý¾Ý¿â£¬£¬£¬£¬£¬²¢Î´ÊÕµ½»ØÓ¦£¬£¬£¬£¬£¬µ«ÔÚµÚ¶þÌì¸ÃÊý¾Ý¿âÒѱ»±£»£»£»£»£»£»£»¤¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬Town Sport¹ØÓÚ´ËÊÂÎñ²¢Î´ÖÃÆÀ¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/us-fitness-chains-suffer-data-breach-affecting-600k-customers/
6.ÎÚ¿ËÀ¼¹ú¼Ò¾¯Ô±µÄ¹ÙÍøÔâµ½¹¥»÷£¬£¬£¬£¬£¬µ¼ÖÂÍøÕ¾ÔÝʱÎÞ·¨»á¼û

ÎÚ¿ËÀ¼¹ú¼Ò¾¯Ô±¹ÙÍøÓÚ±¾ÖÜÈýÉÏÎç11:45Ôâµ½ÍøÂç¹¥»÷ £¬£¬£¬£¬£¬µ¼ÖÂÍøÕ¾ÔÝʱÎÞ·¨»á¼û¡£¡£¡£¡£¡£¡£¡£¹ú¼Ò¾¯Ô±È·ÈÏÕâÒ»ÊÂÎñµÄͬʱ£¬£¬£¬£¬£¬»¹Í¸Â¶Î´ÖªµÄºÚ¿ÍÔÚ²î±ðµØÇø¾¯Ô±²¿·ÖÔËÓªµÄÄ³Ð©ÍøÕ¾ÉÏÐû²¼ÁËÐéαÐÅÏ¢£¬£¬£¬£¬£¬Æäר¼ÒÒ²ÕýÔÚÖÂÁ¦ÓÚɨ³ý¹ÊÕÏ¡£¡£¡£¡£¡£¡£¡£ÏÖÔÚÉв»ÇåÎúÊÂʵ±¬·¢ÁËʲô£¬£¬£¬£¬£¬ÒÔ¼°¸ÃÍøÕ¾ÊÇÔõÑù±»ÆÆËðµÄ£¬£¬£¬£¬£¬µ«Õâ²¢²»ÊÇÎÚ¿ËÀ¼Ê×´ÎÔâµ½ÑÏÖØµÄÍøÂç¹¥»÷¡£¡£¡£¡£¡£¡£¡£¼¸Äêǰ£¬£¬£¬£¬£¬ÎÚ¿ËÀ¼ÄÜÔ´²¿ÍøÕ¾Ôâµ½±ÈÌØ±ÒÀÕË÷Èí¼þ¹¥»÷£¬£¬£¬£¬£¬¶øÆäÓÊÕþЧÀÍ¡¢ÄÜÔ´²¿·Ö¡¢ºËµç³§ºÍ»ú³¡Ò²Ôâµ½¹ý¶ñÒâÈí¼þ¹¥»÷¡£¡£¡£¡£¡£¡£¡£
ÔÎÄÁ´½Ó£º
https://www.hackread.com/ukraine-national-police-website-shuts-down-hacker-intrusion/


¾©¹«Íø°²±¸11010802024551ºÅ