Ç÷ÊÆ¿Æ¼¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ

Ðû²¼Ê±¼ä 2022-05-09

1¡¢Ç÷ÊÆ¿Æ¼¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ


¾ÝýÌå5ÔÂ7ÈÕ±¨µÀ£¬ £¬£¬£¬£¬Ç÷ÊÆ¿Æ¼¼¶ËµãÇå¾²½â¾ö¼Æ»®Apex OneÖб£´æÎÊÌâ¡£¡£¡£¡£¡£¾ÝÓû§Í¸Â¶£¬ £¬£¬£¬£¬Apex One½«Microsoft Edge¸üбê¼ÇΪ²¡¶¾/¶ñÒâÈí¼þ£ºTROJ_FRS.VSNTE222ºÍ²¡¶¾/¶ñÒâÈí¼þ£ºTSC_GENCLEAN¡£¡£¡£¡£¡£±ðµÄ£¬ £¬£¬£¬£¬²¿·ÖÓû§³Æ´ËÎÊÌ⻹µ¼ÖÂÔÚÖ´ÐÐÊðÀíµÄÕûÀí¹¤¾ßºó£¬ £¬£¬£¬£¬Windows×¢²á±íÏî±»¹ýʧµØ¸ü¸Ä¡£¡£¡£¡£¡£ÏÖÔÚ£¬ £¬£¬£¬£¬Õâ¼ÒÇå¾²Èí¼þÖÆÔìÉÌÒѾ­½â¾öÁËÕâ¸öÎÊÌ⣬ £¬£¬£¬£¬²¢Ðû²¼ÁËÒ»·Ý½¨ÒéÀ´×ÊÖú¿Í»§¸üÐÂËûÃǵIJúÆ·¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/security/trend-micro-antivirus-modified-windows-registry-by-mistake-how-to-fix/


2¡¢ContiÉù³ÆÒÑÈëÇÖÃØÂ³¹ú¼ÒÇ鱨¾Ö²¢ÇÔÈ¡Áè¼Ý9 GBµÄÊý¾Ý


¾Ý5ÔÂ8ÈÕ±¨µÀ£¬ £¬£¬£¬£¬ContiÀÕË÷ÍÅ»ïÉù³ÆÒÑÈëÇÖÃØÂ³MOF¨CDIGIMIN£¨Ç鱨×ܾ֣©¡£¡£¡£¡£¡£¹ú¼ÒÇ鱨¾ÖÊÇÃØÂ³Ñ¹µ¹Ò»ÇеÄÇ鱨»ú¹¹£¬ £¬£¬£¬£¬ÈÏÕæ¹ú¼Ò¡¢¾üʺ;¯Ô±Ç鱨ÒÔ¼°·´Ç鱨ÊÂÇé¡£¡£¡£¡£¡£ContiÒѽ«¸Ã»ú¹¹Ìí¼Óµ½ÆäTor×ßÂ©ÍøÕ¾µÄ±»¹¥»÷Ãûµ¥ÖУ¬ £¬£¬£¬£¬²¢ÌåÏÖÒѾ­ÇÔÈ¡¸Ã×éÖ¯9.41 GBµÄÊý¾Ý¡£¡£¡£¡£¡£±ðµÄ£¬ £¬£¬£¬£¬ÃØÂ³DIGIMINµÄÍøÕ¾Ê¼ÖÕÎÞ·¨»á¼û¡£¡£¡£¡£¡£ÉÏÖÜ£¬ £¬£¬£¬£¬ÃÀ¹ú¹úÎñÔºÌṩÁ˸ߴï1500ÍòÃÀÔªµÄ½±½ð£¬ £¬£¬£¬£¬ÐüÉÍÓйØContiÀÕË÷ÍÅ»ïµÄÐÅÏ¢¡£¡£¡£¡£¡£


https://securityaffairs.co/wordpress/131093/cyber-crime/conti-ransomware-peru-direccion-general-de-inteligencia.html


3¡¢XboxÈ«Çò¹æÄ£ÄÚЧÀÍÖÐÖ¹£¬ £¬£¬£¬£¬Óû§ÎÞ·¨Æô¶¯ºÍ¹ºÖÃÓÎÏ·


ýÌå5ÔÂ6Èճƣ¬ £¬£¬£¬£¬Xbox LiveЧÀÍÖÐÖ¹£¬ £¬£¬£¬£¬È«Çò¹æÄ£ÄÚµÄÓû§ÎÞ·¨Æô¶¯ºÍ¹ºÖÃÓÎÏ·¡£¡£¡£¡£¡£Õâ´ÎÖÐÖ¹Ó°ÏìÁ˶à¸öƽ̨£¬ £¬£¬£¬£¬Éæ¼°Xbox Series X|S¡¢Xbox OneÓÎÏ·»ú¡¢Android×°±¸¡¢Apple×°±¸¡¢Windows ÉϵÄXboxºÍÔÆÓÎÏ·¡£¡£¡£¡£¡£´ó×ÚÓû§·´Ó¦£¬ £¬£¬£¬£¬ÔÚÏßÓÎϷƽ̨ÒÑÖÐÖ¹ÊýСʱ£¬ £¬£¬£¬£¬ËûÃÇÎÞ·¨ÍæÏßϺÍÔÚÏßÓÎÏ·¡£¡£¡£¡£¡£ÏÖÔÚ£¬ £¬£¬£¬£¬¸ÃÎÊÌâÒѾ­ÐÞ¸´¡£¡£¡£¡£¡£


https://www.bleepingcomputer.com/news/technology/xbox-is-down-worldwide-with-users-unable-to-play-games/


4¡¢ÃÀ¹úũҵ»úеÉú²úÉÌAGCOÔâÀÕË÷¹¥»÷£¬ £¬£¬£¬£¬Éú²úÔÝʱÖÐÖ¹


ÃÀ¹úũҵ»úеÉú²úÉÌAGCOÔÚ5ÔÂ6Èճƣ¬ £¬£¬£¬£¬ÆäÔâµ½ÁËÀÕË÷¹¥»÷¡£¡£¡£¡£¡£AGCOÊǸÃÁìÓòµÄÁì¾ü¹«Ë¾£¬ £¬£¬£¬£¬ÊÕÈëÁè¼Ý90ÒÚÃÀÔª£¬ £¬£¬£¬£¬ÓµÓÐ21000ÃûÔ±¹¤¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ5ÔÂ5ÈÕ£¬ £¬£¬£¬£¬AGCOûÓÐÌṩµ¼ÖÂÖÐÖ¹µÄÏêϸÐÅÏ¢£¬ £¬£¬£¬£¬µ«Ëü¿ÉÄÜ»á¹Ø±ÕÆä²¿·ÖITϵͳÒÔ±ÜÃâ¹¥»÷ÉìÕÅ¡£¡£¡£¡£¡£AGCOÔÚÐÂΟåÖÐÚ¹Ê͵À£¬ £¬£¬£¬£¬ÊÓ²ìÈÔÔÚ¾ÙÐÐÖУ¬ £¬£¬£¬£¬Ô¤¼ÆÕâ´ÎÍøÂç¹¥»÷µÄÓ°Ï콫һÁ¬ºÜ³¤Ò»¶Îʱ¼ä£¬ £¬£¬£¬£¬ËûÃÇ»áÆð¾¢»Ö¸´ÏµÍ³¡£¡£¡£¡£¡£FBI³Æ£¬ £¬£¬£¬£¬ÀÕË÷¹¥»÷Ô½À´Ô½¶àµØÕë¶ÔÃÀ¹úµÄũҵ²¿·Ö¡£¡£¡£¡£¡£


https://securityaffairs.co/wordpress/131058/cyber-crime/agco-suffered-ransomware-attack.html


5¡¢Cisco·¢Ã÷Mustang PandaÕë¶ÔÅ·ÖÞµÄÐÂÒ»ÂÖ¹¥»÷»î¶¯


5ÔÂ5ÈÕ£¬ £¬£¬£¬£¬CiscoÐû²¼ÁËMustang PandaÕë¶ÔÅ·ÖÞÐÂÒ»ÂÖ¹¥»÷»î¶¯µÄ±¨¸æ¡£¡£¡£¡£¡£2022Äê2Ô£¬ £¬£¬£¬£¬Cisco Talos×îÏÈÊӲ쵽Mustang Panda¶ÔÅ·ÖÞ×éÖ¯¾ÙÐеĴ¹Âڻ¡£¡£¡£¡£¡£²¿·Ö´¹ÂÚÓʼþαװ³ÉÅ·Ã˹ØÓÚÎÚ¿ËÀ¼³åÍ»¼°Æä¶Ô±±Ô¼¹ú¼ÒÓ°ÏìµÄ¹Ù·½±¨¸æ£¬ £¬£¬£¬£¬ÉÐÓд¹ÂÚµç×ÓÓʼþÌṩÐéαµÄÎÚ¿ËÀ¼Õþ¸®µÄ¹Ù·½±¨¸æ¡£¡£¡£¡£¡£´Ë´Î»î¶¯Ê¹ÓÃÁ˶ñÒâÈí¼þPlugX¡¢×Ô½ç˵stagers¡¢·´ÏòshellÒÔ¼°»ùÓÚMeterpreterµÄshellcode¡£¡£¡£¡£¡£


https://blog.talosintelligence.com/2022/05/mustang-panda-targets-europe.html


6¡¢Red CanaryÐû²¼Ð¶ñÒâÈí¼þRaspberry RobinµÄÆÊÎö±¨¸æ


Red CanaryÔÚ5ÔÂ5ÈÕÐû²¼Á˹ØÓÚжñÒâÈí¼þRaspberry RobinµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ×îÔç¿ÉÒÔ×·Ëݵ½2021Äê9Ô£¬ £¬£¬£¬£¬Ö÷ÒªÕë¶ÔÓëÊÖÒÕºÍÖÆÔìÒµÓйصÄ×éÖ¯¡£¡£¡£¡£¡£ËüÊÇÒ»ÖÖ¾ßÓÐÀàËÆÈ䳿¹¦Ð§µÄÐÂÐÍWindows¶ñÒâÈí¼þ£¬ £¬£¬£¬£¬²¢Í¨¹ý¿ÉÒÆ¶¯USB×°±¸¾ÙÐÐÈö²¥¡£¡£¡£¡£¡£¸ÃÈä³æÊ¹ÓÃWindows Installer»á¼ûÓëQNAPÏà¹ØµÄÓò²¢ÏÂÔØ¶ñÒâDLL£¬ £¬£¬£¬£¬²¢Ê¹ÓÃTOR³ö¿Ú½Úµã×÷Ϊ±¸·ÝC2»ù´¡ÉèÊ©¡£¡£¡£¡£¡£ÏÖÔÚ£¬ £¬£¬£¬£¬Ñо¿Ö°Ô±ÉÐδȷ¶¨´Ë´Î¹¥»÷µÄÄîÍ·£¬ £¬£¬£¬£¬Ò²²»ÇåÎúRaspberry RobinÔõÑùÒÔ¼°ÔÚÄÇÀïѬȾÍⲿÇý¶¯Æ÷¾ÙÐÐÈö²¥µÄ¡£¡£¡£¡£¡£


https://redcanary.com/blog/raspberry-robin/