Ç÷ÊÆ¿Æ¼¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ
Ðû²¼Ê±¼ä 2022-05-091¡¢Ç÷ÊÆ¿Æ¼¼É±¶¾Èí¼þ½«Microsoft Edge¸üÐÂÎó±¨Îª¶ñÒâÈí¼þ
¾ÝýÌå5ÔÂ7ÈÕ±¨µÀ£¬£¬£¬£¬£¬Ç÷ÊÆ¿Æ¼¼¶ËµãÇå¾²½â¾ö¼Æ»®Apex OneÖб£´æÎÊÌâ¡£¡£¡£¡£¡£¾ÝÓû§Í¸Â¶£¬£¬£¬£¬£¬Apex One½«Microsoft Edge¸üбê¼ÇΪ²¡¶¾/¶ñÒâÈí¼þ£ºTROJ_FRS.VSNTE222ºÍ²¡¶¾/¶ñÒâÈí¼þ£ºTSC_GENCLEAN¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬²¿·ÖÓû§³Æ´ËÎÊÌ⻹µ¼ÖÂÔÚÖ´ÐÐÊðÀíµÄÕûÀí¹¤¾ßºó£¬£¬£¬£¬£¬Windows×¢²á±íÏî±»¹ýʧµØ¸ü¸Ä¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬Õâ¼ÒÇå¾²Èí¼þÖÆÔìÉÌÒѾ½â¾öÁËÕâ¸öÎÊÌ⣬£¬£¬£¬£¬²¢Ðû²¼ÁËÒ»·Ý½¨ÒéÀ´×ÊÖú¿Í»§¸üÐÂËûÃǵIJúÆ·¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/security/trend-micro-antivirus-modified-windows-registry-by-mistake-how-to-fix/
2¡¢ContiÉù³ÆÒÑÈëÇÖÃØÂ³¹ú¼ÒÇ鱨¾Ö²¢ÇÔÈ¡Áè¼Ý9 GBµÄÊý¾Ý
¾Ý5ÔÂ8ÈÕ±¨µÀ£¬£¬£¬£¬£¬ContiÀÕË÷ÍÅ»ïÉù³ÆÒÑÈëÇÖÃØÂ³MOF¨CDIGIMIN£¨Ç鱨×ܾ֣©¡£¡£¡£¡£¡£¹ú¼ÒÇ鱨¾ÖÊÇÃØÂ³Ñ¹µ¹Ò»ÇеÄÇ鱨»ú¹¹£¬£¬£¬£¬£¬ÈÏÕæ¹ú¼Ò¡¢¾üʺ;¯Ô±Ç鱨ÒÔ¼°·´Ç鱨ÊÂÇé¡£¡£¡£¡£¡£ContiÒѽ«¸Ã»ú¹¹Ìí¼Óµ½ÆäTor×ßÂ©ÍøÕ¾µÄ±»¹¥»÷Ãûµ¥ÖУ¬£¬£¬£¬£¬²¢ÌåÏÖÒѾÇÔÈ¡¸Ã×éÖ¯9.41 GBµÄÊý¾Ý¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬£¬£¬ÃØÂ³DIGIMINµÄÍøÕ¾Ê¼ÖÕÎÞ·¨»á¼û¡£¡£¡£¡£¡£ÉÏÖÜ£¬£¬£¬£¬£¬ÃÀ¹ú¹úÎñÔºÌṩÁ˸ߴï1500ÍòÃÀÔªµÄ½±½ð£¬£¬£¬£¬£¬ÐüÉÍÓйØContiÀÕË÷ÍÅ»ïµÄÐÅÏ¢¡£¡£¡£¡£¡£
https://securityaffairs.co/wordpress/131093/cyber-crime/conti-ransomware-peru-direccion-general-de-inteligencia.html
3¡¢XboxÈ«Çò¹æÄ£ÄÚЧÀÍÖÐÖ¹£¬£¬£¬£¬£¬Óû§ÎÞ·¨Æô¶¯ºÍ¹ºÖÃÓÎÏ·
ýÌå5ÔÂ6Èճƣ¬£¬£¬£¬£¬Xbox LiveЧÀÍÖÐÖ¹£¬£¬£¬£¬£¬È«Çò¹æÄ£ÄÚµÄÓû§ÎÞ·¨Æô¶¯ºÍ¹ºÖÃÓÎÏ·¡£¡£¡£¡£¡£Õâ´ÎÖÐÖ¹Ó°ÏìÁ˶à¸öƽ̨£¬£¬£¬£¬£¬Éæ¼°Xbox Series X|S¡¢Xbox OneÓÎÏ·»ú¡¢Android×°±¸¡¢Apple×°±¸¡¢Windows ÉϵÄXboxºÍÔÆÓÎÏ·¡£¡£¡£¡£¡£´ó×ÚÓû§·´Ó¦£¬£¬£¬£¬£¬ÔÚÏßÓÎϷƽ̨ÒÑÖÐÖ¹ÊýСʱ£¬£¬£¬£¬£¬ËûÃÇÎÞ·¨ÍæÏßϺÍÔÚÏßÓÎÏ·¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬¸ÃÎÊÌâÒѾÐÞ¸´¡£¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/technology/xbox-is-down-worldwide-with-users-unable-to-play-games/
4¡¢ÃÀ¹úũҵ»úеÉú²úÉÌAGCOÔâÀÕË÷¹¥»÷£¬£¬£¬£¬£¬Éú²úÔÝʱÖÐÖ¹
ÃÀ¹úũҵ»úеÉú²úÉÌAGCOÔÚ5ÔÂ6Èճƣ¬£¬£¬£¬£¬ÆäÔâµ½ÁËÀÕË÷¹¥»÷¡£¡£¡£¡£¡£AGCOÊǸÃÁìÓòµÄÁì¾ü¹«Ë¾£¬£¬£¬£¬£¬ÊÕÈëÁè¼Ý90ÒÚÃÀÔª£¬£¬£¬£¬£¬ÓµÓÐ21000ÃûÔ±¹¤¡£¡£¡£¡£¡£¹¥»÷±¬·¢ÔÚ5ÔÂ5ÈÕ£¬£¬£¬£¬£¬AGCOûÓÐÌṩµ¼ÖÂÖÐÖ¹µÄÏêϸÐÅÏ¢£¬£¬£¬£¬£¬µ«Ëü¿ÉÄÜ»á¹Ø±ÕÆä²¿·ÖITϵͳÒÔ±ÜÃâ¹¥»÷ÉìÕÅ¡£¡£¡£¡£¡£AGCOÔÚÐÂΟåÖÐÚ¹Ê͵À£¬£¬£¬£¬£¬ÊÓ²ìÈÔÔÚ¾ÙÐÐÖУ¬£¬£¬£¬£¬Ô¤¼ÆÕâ´ÎÍøÂç¹¥»÷µÄÓ°Ï콫һÁ¬ºÜ³¤Ò»¶Îʱ¼ä£¬£¬£¬£¬£¬ËûÃÇ»áÆð¾¢»Ö¸´ÏµÍ³¡£¡£¡£¡£¡£FBI³Æ£¬£¬£¬£¬£¬ÀÕË÷¹¥»÷Ô½À´Ô½¶àµØÕë¶ÔÃÀ¹úµÄũҵ²¿·Ö¡£¡£¡£¡£¡£
https://securityaffairs.co/wordpress/131058/cyber-crime/agco-suffered-ransomware-attack.html
5¡¢Cisco·¢Ã÷Mustang PandaÕë¶ÔÅ·ÖÞµÄÐÂÒ»ÂÖ¹¥»÷»î¶¯
5ÔÂ5ÈÕ£¬£¬£¬£¬£¬CiscoÐû²¼ÁËMustang PandaÕë¶ÔÅ·ÖÞÐÂÒ»ÂÖ¹¥»÷»î¶¯µÄ±¨¸æ¡£¡£¡£¡£¡£2022Äê2Ô£¬£¬£¬£¬£¬Cisco Talos×îÏÈÊӲ쵽Mustang Panda¶ÔÅ·ÖÞ×éÖ¯¾ÙÐеĴ¹Âڻ¡£¡£¡£¡£¡£²¿·Ö´¹ÂÚÓʼþαװ³ÉÅ·Ã˹ØÓÚÎÚ¿ËÀ¼³åÍ»¼°Æä¶Ô±±Ô¼¹ú¼ÒÓ°ÏìµÄ¹Ù·½±¨¸æ£¬£¬£¬£¬£¬ÉÐÓд¹ÂÚµç×ÓÓʼþÌṩÐéαµÄÎÚ¿ËÀ¼Õþ¸®µÄ¹Ù·½±¨¸æ¡£¡£¡£¡£¡£´Ë´Î»î¶¯Ê¹ÓÃÁ˶ñÒâÈí¼þPlugX¡¢×Ô½ç˵stagers¡¢·´ÏòshellÒÔ¼°»ùÓÚMeterpreterµÄshellcode¡£¡£¡£¡£¡£
https://blog.talosintelligence.com/2022/05/mustang-panda-targets-europe.html
6¡¢Red CanaryÐû²¼Ð¶ñÒâÈí¼þRaspberry RobinµÄÆÊÎö±¨¸æ
Red CanaryÔÚ5ÔÂ5ÈÕÐû²¼Á˹ØÓÚжñÒâÈí¼þRaspberry RobinµÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þ×îÔç¿ÉÒÔ×·Ëݵ½2021Äê9Ô£¬£¬£¬£¬£¬Ö÷ÒªÕë¶ÔÓëÊÖÒÕºÍÖÆÔìÒµÓйصÄ×éÖ¯¡£¡£¡£¡£¡£ËüÊÇÒ»ÖÖ¾ßÓÐÀàËÆÈ䳿¹¦Ð§µÄÐÂÐÍWindows¶ñÒâÈí¼þ£¬£¬£¬£¬£¬²¢Í¨¹ý¿ÉÒÆ¶¯USB×°±¸¾ÙÐÐÈö²¥¡£¡£¡£¡£¡£¸ÃÈä³æÊ¹ÓÃWindows Installer»á¼ûÓëQNAPÏà¹ØµÄÓò²¢ÏÂÔØ¶ñÒâDLL£¬£¬£¬£¬£¬²¢Ê¹ÓÃTOR³ö¿Ú½Úµã×÷Ϊ±¸·ÝC2»ù´¡ÉèÊ©¡£¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬Ñо¿Ö°Ô±ÉÐδȷ¶¨´Ë´Î¹¥»÷µÄÄîÍ·£¬£¬£¬£¬£¬Ò²²»ÇåÎúRaspberry RobinÔõÑùÒÔ¼°ÔÚÄÇÀïѬȾÍⲿÇý¶¯Æ÷¾ÙÐÐÈö²¥µÄ¡£¡£¡£¡£¡£
https://redcanary.com/blog/raspberry-robin/