FBI×·»ØColonial PipelineÖ§¸¶µÄ230ÍòÃÀÔªÊê½ð£»£»£»£»£»£»£»¹È¸èÒòÀÄÓÃÆäÔÚ¹ã¸æÁìÓòµÄְλ±»·¨¹ú·£¿£¿£¿£¿£¿î2.2ÒÚÅ·Ôª

Ðû²¼Ê±¼ä 2021-06-09

1.FBI×·»ØColonial PipelineÖ§¸¶µÄ230ÍòÃÀÔªÊê½ð


1.jpg


ÃÀ¹úFBIºÍDOJÁªºÏ×·»ØÁËColonial PipelineÖ§¸¶µÄÌ©°ëÊê½ð¡£ ¡£¡£¡£¡£¡£5ÔÂ7ÈÕ£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾Ôâµ½ÁËDarkSideÀÕË÷Èí¼þ¹¥»÷ȼÁϹܵÀ¹Ø±Õ£¬£¬£¬£¬£¬£¬Îª´ËÆäÖ§¸¶ÁË×ܼÆ440ÍòÃÀÔªµÄÊê½ð£¬£¬£¬£¬£¬£¬´Ë´Î×·»ØÁËÆäÖеÄ230ÍòÃÀÔª¡£ ¡£¡£¡£¡£¡£DOJÌåÏÖ£¬£¬£¬£¬£¬£¬ËûÃÇͨ¹ýÉó²é±ÈÌØ±Ò¹«¹²·ÖÀàÕË£¬£¬£¬£¬£¬£¬¸ú×ÙÁ˶à´Î±ÈÌØ±ÒתÕË£¬£¬£¬£¬£¬£¬²¢È·¶¨Ô¼Äª63.7±ÈÌØ±ÒÒÑ×ªÒÆµ½Ìض¨µØµã£¬£¬£¬£¬£¬£¬¶øFBIÓµÓиõصãµÄ˽Կ»ò´óÖµÈЧµÄµØµã¡£ ¡£¡£¡£¡£¡£ÃÀ¹ú˾·¨²¿»¹³Æ£¬£¬£¬£¬£¬£¬ÊÂʵÉÏÁª°îÊÓ²ì¾Ö´ÓÒ»×îÏȾÍÉèÁËȦÌס£ ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/fbi-claws-back-millions-darksides-ransom/166705/


2.¹È¸èÒòÀÄÓÃÆäÔÚ¹ã¸æÁìÓòµÄְλ±»·¨¹ú·£¿£¿£¿£¿£¿î2.2ÒÚÅ·Ôª


2.jpg


·¨¹ú¾ºÕùÖÎÀí»ú¹¹¶Ô¹È¸è´¦ÒÔ2.2ÒÚÅ·ÔªµÄ·£¿£¿£¿£¿£¿î£¬£¬£¬£¬£¬£¬ÀíÓÉÊǹȸèÀÄÓÃÆäÔÚ¹ã¸æÁìÓòµÄÖ÷µ¼Ö°Î»²¢×óÌ»ÆäЧÀͶø¶ÔÆäËü³öÊéÉ̺;ºÕùµÐÊÖ²»¹«¡£ ¡£¡£¡£¡£¡£GoogleûÓжԴ˴ÎÖ¸¿ØÌá³öÒìÒ飬£¬£¬£¬£¬£¬ÔÞ³ÉÖ§¸¶·£¿£¿£¿£¿£¿î²¢ÔÊÐí½«¸ÄÉÆ¹È¸èAd ManagerЧÀÍ£¬£¬£¬£¬£¬£¬ÒÔ¼°ÖÕÖ¹ÓÐÀûÓÚGoogleµÄÌõ¿î¡£ ¡£¡£¡£¡£¡£ÔçÔÚ2017Äê6Ô£¬£¬£¬£¬£¬£¬Å·ÃËίԱ»áÒòÆäʹÓÃÖ÷µ¼Ö°Î»µ÷½âËÑË÷Ч¹û¶øË𺦾ºÕùµÐÊÖµÄÀûÒæ£¬£¬£¬£¬£¬£¬·£¿£¿£¿£¿£¿î27.2ÒÚÃÀÔª£»£»£»£»£»£»£»2019Äê3ÔÂÅ·ÃËίԱ»áÓÖÒòÆäÀÄÓÃÊг¡Ö§Åäְλ·£¿£¿£¿£¿£¿î17ÒÚÃÀÔª¡£ ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/google/google-fined-220-million-for-abusing-dominant-role-in-online-ads/


3.MicrosoftÇå¾²¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´7¸ö0dayÔÚÄÚµÄ50¸öÎó²î


3.jpg


MicrosoftÐû²¼ÁË6Ô·ݵÄÖܶþÇå¾²¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´Á˰üÀ¨7¸ö0dayÔÚÄÚµÄ50¸öÎó²î¡£ ¡£¡£¡£¡£¡£´Ë´ÎÐÞ¸´µÄ0day°üÀ¨WindowsÄÚºËÐÅϢй¶Îó²î£¨CVE-2021-31955£©¡¢Windows NTFSÌáȨÎó²î£¨CVE-2021-31956£©¡¢Microsoft DWMÌáȨÎó²î£¨CVE-2021-33739£©¡¢Windows MSHTMLƽ̨RCEÎó²î£¨CVE-2021-33742£©¡¢MicrosoftÔöÇ¿ÐͼÓÃÜÌṩ³ÌÐòÌáȨÎó²î£¨CVE-2021-31199ºÍCVE-2021-31201£©ºÍWindowsÔ¶³Ì×ÀÃæÐ§À;ܾøÐ§ÀÍÎó²î£¨CVE-2021-31968£©¡£ ¡£¡£¡£¡£¡£ÆäÖУ¬£¬£¬£¬£¬£¬Ç°6¸ö0dayÒÑÔÚÒÑÍù±»Ê¹Óùý¡£ ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/microsoft/microsoft-june-2021-patch-tuesday-fixes-6-exploited-zero-days-50-flaws/


4.ÃÀ¹ú¾ü³µÖÆÔìÉÌNavistar³ÆÆäÔâµ½¹¥»÷£¬£¬£¬£¬£¬£¬²¿·ÖÊý¾Ýй¶


4.jpg


ÃÀ¹ú¿¨³µºÍ¾üÓóµÁ¾ÖÆÔìÉÌNavistar International Corporation³ÆÆäÔâµ½¹¥»÷£¬£¬£¬£¬£¬£¬²¿·ÖÊý¾Ýй¶¡£ ¡£¡£¡£¡£¡£¸Ã¹«Ë¾ÌåÏÖÆäÔÚ2021Äê5ÔÂ20ÈÕ·¢Ã÷´Ë´ÎÊÂÎñ£¬£¬£¬£¬£¬£¬²¢ÓÚ5ÔÂ31ÈÕÊÕµ½ÁËÒ»·ÝÉùÃ÷³ÆÄ³Ð©Êý¾ÝÒѱ»ÇÔÈ¡¡£ ¡£¡£¡£¡£¡£µ±±»Îʼ°ÊÇ·ñÓëÀÕË÷¹¥»÷ÓйØÊ±£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾½²»°È˳ÆÏÖÔÚÊÓ²ìÕýÔÚ¾ÙÐÐÖУ¬£¬£¬£¬£¬£¬Ã»Óиü¶àϸ½Ú¿ÉÒÔ·ÖÏí¡£ ¡£¡£¡£¡£¡£¸Ã¹«Ë¾»¹ÌåÏÖ£¬£¬£¬£¬£¬£¬ÆäÔËÓª²¢Î´Êܵ½Ó°Ï죬£¬£¬£¬£¬£¬ITϵͳҲÒÑÕý³£ÔËÐС£ ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/military-vehicles-maker-navistar-reports-data-theft-cyberattack


5.Unit42Åû¶Ê׸öÕë¶ÔWindowsÈÝÆ÷µÄ¶ñÒâÈí¼þSiloscape


5.jpg


Unit42Åû¶ÁËÊ׸öÕë¶ÔWindowsÈÝÆ÷µÄ¶ñÒâÈí¼þSiloscape¡£ ¡£¡£¡£¡£¡£SiloscapeÊÇÒ»ÖÖ¾­Óɸ߶ȻìÏýµÄ¶ñÒâÈí¼þ£¬£¬£¬£¬£¬£¬¿ÉÒÔͨ¹ýWindowsÈÝÆ÷Õë¶ÔKubernetes¼¯Èº£¬£¬£¬£¬£¬£¬ÆäÖ÷ҪĿµÄÊÇÔÚÉèÖò»µ±µÄKubernetes¼¯ÈºÖÐÖ´ÐкóÃÅ£¬£¬£¬£¬£¬£¬ÔËÐжñÒâÈÝÆ÷¡£ ¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þʹÓÃTorÊðÀíºÍ.onionÓòÄäÃûÅþÁ¬µ½ÆäC2£¬£¬£¬£¬£¬£¬Ñо¿Ö°Ô±Ïë·¨»á¼ûÁËÕą̂ЧÀÍÆ÷£¬£¬£¬£¬£¬£¬È·¶¨ÁË23¸öSiloscapeµÄÊܺ¦Õß¡£ ¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬£¬»¹·¢Ã÷¸ÃЧÀÍÆ÷ÍйÜÁË313¸öÓû§£¬£¬£¬£¬£¬£¬ÕâÒâζ×ÅSiloscapeÖ»ÊǸü´ó¹æÄ£»î¶¯µÄһС²¿·Ö¡£ ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://unit42.paloaltonetworks.com/siloscape/


6.KasperskyÐû²¼ÓйضñÒâÈí¼þGootkitµÄÆÊÎö±¨¸æ


6.jpg


KasperskyÐû²¼ÓйضñÒâÈí¼þGootkitµÄÆÊÎö±¨¸æ¡£ ¡£¡£¡£¡£¡£GootkitÊÇÖØ´óµÄÒøÐжñÒâÈí¼þ£¬£¬£¬£¬£¬£¬ÓÉDoctor WebÓÚ2014ÄêÊ״η¢Ã÷¡£ ¡£¡£¡£¡£¡£GootkitÄܹ»´Óä¯ÀÀÆ÷ÇÔÈ¡Êý¾Ý¡¢Ö´ÐÐä¯ÀÀÆ÷ÖÐÐÄÈ˹¥»÷¡¢¼Í¼¼üÅÌÊäÈëÄÚÈÝ¡¢½ØÈ¡ÆÁÄ»½ØÍ¼ºÍÐí¶àÆäËû¶ñÒâ²Ù×÷¡£ ¡£¡£¡£¡£¡£2019Ä꣬£¬£¬£¬£¬£¬GootkitÔÚ±¬·¢Êý¾Ýй¶ºó×èÖ¹ÔËÓª£¬£¬£¬£¬£¬£¬µ«×Ô2020Äê11ÔÂÒÔÀ´ÔٴλîÔ¾¡£ ¡£¡£¡£¡£¡£GootkitµÄÊܺ¦ÕßÖ÷ÒªÂþÑÜÔڵ¹úºÍÒâ´óÀûµÈÅ·ÓѰî¼Ò¡£ ¡£¡£¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securelist.com/gootkit-the-cautious-trojan/102731/