ÎÒ¹úͨ¹ý¡¶ÃÜÂë·¨¡·£¬£¬½«ÓÚ2020Äê1ÔÂ1ÈÕÆðʵÑ飻£»£»NCSCÐû²¼2019ÄêÍøÂçÇå¾²Äê¶È±¨¸æ

Ðû²¼Ê±¼ä 2019-10-28
1¡¢ÎÒ¹úͨ¹ý¡¶ÃÜÂë·¨¡·£¬£¬½«ÓÚ2020Äê1ÔÂ1ÈÕÆðʵÑé

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾

Ê®Èý½ìÌìÏÂÈË´ó³£Î¯»áµÚÊ®ËĴξۻá26ÈÕ±í¾öͨ¹ý¡¶ÖлªÈËÃñ¹²ºÍ¹úÃÜÂë·¨¡·£¬£¬½«×Ô2020Äê1ÔÂ1ÈÕÆðÊ©ÐС£¡£ÃÜÂë·¨Ö¼Ôڹ淶ÃÜÂëÓ¦ÓúÍÖÎÀí£¬£¬Ôö½øÃÜÂëÊÂÒµÉú³¤£¬£¬°ü¹ÜÍøÂçÓëÐÅÏ¢Çå¾²£¬£¬ÌáÉýÃÜÂëÖÎÀí¿ÆÑ§»¯¡¢¹æ·¶»¯¡¢·¨Öλ¯Ë®Æ½£¬£¬ÊÇÎÒ¹úÃÜÂëÁìÓòµÄ×ÛºÏÐÔ¡¢»ù´¡ÐÔÖ´·¨¡£¡£ÃÜÂë·¨¹²ÎåÕÂËÄÊ®ËÄÌõ£¬£¬½«ÃÜÂë·ÖΪ½¹µãÃÜÂ롢ͨË×ÃÜÂëºÍÉÌÓÃÃÜÂ룬£¬²¢¶ÔÏà¹ØÖÆ¶È¡¢Ö´·¨ÔðÈμ°Ö°È¨²¿·Ö¾ÙÐÐÁË»®¶¨¡£¡£


Ô­ÎÄÁ´½Ó£º

http://www.xinhuanet.com/politics/2019-10/26/c_1125156896.htm

2¡¢Ó¢¹úNCSCÐû²¼2019ÄêÍøÂçÇå¾²Äê¶È±¨¸æ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ƾ֤Ӣ¹ú¹ú¼ÒÍøÂçÇå¾²ÖÐÐÄ£¨NCSC£©Ðû²¼µÄ2019ÍøÂçÇå¾²Äê¶È±¨¸æ£¬£¬2018Äê9ÔÂ1ÈÕÖÁ2019Äê8ÔÂ31ÈÕʱ´úNCSC¹²×èÖ¹ÁË600¶àÆðÍøÂç¹¥»÷ÊÂÎñ£¬£¬ÆäÖдó´ó¶¼¹¥»÷ÊÇÓÉÍâÑó¹¥»÷ÕßÌᳫµÄ¡£¡£¸Ã±¨¸æÖ¸³ö£¬£¬´ó´ó¶¼¹¥»÷Õë¶ÔÕþ¸®»ú¹¹¡¢´óѧ¡¢ÐÅÏ¢ÊÖÒÕ¡¢Ò½ÁƱ£½¡ºÍÔËÊäµÈÐÐÒµ¡£¡£NCSC»¹ÖÒÑÔÁË56¼ÒÒøÐÐÓйØATM͵ÇÔÍþв¡£¡£¸Ã±¨¸æÖгƶíÂÞ˹¡¢Öйú¡¢ÒÁÀʺͳ¯ÏʼÌÐø¶ÔÓ¢¹ú×é³ÉÕ½ÂÔÐÔ¹ú¼ÒÇå¾²Íþв¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/93015/intelligence/ncsc-report-cyber-attacks.html

3¡¢7-11¼ÓÓÍAPPÒâÍâй¶²¿·ÖÓû§Êý¾Ý

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾

ƾ֤Ӣ¹ú¡¶ÎÀ±¨¡·±¨µÀ£¬£¬7-11¼ÓÓÍAPP·ºÆðbug£¬£¬Ê¹µÃÓû§¿ÉÒÔÉó²éÆäËü¿Í»§µÄСÎÒ˽¼ÒÐÅÏ¢£¬£¬°üÀ¨ÐÕÃû¡¢µç×ÓÓʼþµØµã¡¢ÊÖ»úºÅÂëºÍ³öÉúÈÕÆÚ¡£¡£Ò»Ãû¿Í»§ÌåÏÖËûÔÚ¶à´ÎµÇ¼ºÍ×¢Ïúºó£¬£¬ÔÙÖØÐµÇ¼¼´¿É»á¼ûÆäËü¿Í»§µÄÐÅÏ¢£¬£¬°üÀ¨ËûÃÇÕË»§ÖеĽð¶î¡£¡£¸ÃAPPµÄÏÂÔØÁ¿Îª200Íò´Î£¬£¬ÔÚ½«¸ÃAPPÏÂÏßÁ˼¸¸öСʱºó£¬£¬7-11½²»°ÈËÌåÏÖ¸ÃÊÖÒÕÎÊÌâÒѾ­ÐÞ¸´£¬£¬¸Ã¹«Ë¾ÕýÔÚ¼ÌÐøÊӲ첢֪ͨÓйØÕþ¸®¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/drivers-data-exposed-in-7eleven/

4¡¢ÐÂÀÕË÷Èí¼þFuxSocyð³äCerber¾ÙÐÐÈö²¥


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ÐÂÀÕË÷Èí¼þFuxSocy±»·¢Ã÷Ä£ÄâÁËÏÖÔÚÒѲ»¸´±£´æµÄÀÕË÷Èí¼þCerber¡£¡£¸ÃÀÕË÷Èí¼þÓÉMalwareHunterTeam·¢Ã÷£¬£¬ÒÔµçÊÓ¾çMr. RobotÖз¸·¨ÍÅ»ïFSocietyµÄÃû×Ö¾ÙÐÐÃüÃû¡£¡£ÄæÏò¹¤³ÌʦVitali Kremez·¢Ã÷FuxSocyÔÚÍâ¹ÛÓëÄÚ²¿¶¼ºÍCerber¾ßÓÐÀàËÆÖ®´¦£¬£¬ÀýÈç¼ÓÃÜÎļþʱFuxSocy½«Ìø¹ýÎļþ·¾¶°üÀ¨Ä³Ð©×Ö·û´®µÄÎļþ£¬£¬ÆäÖÐÐí¶à×Ö·û´®Ö±½ÓÈ¡×ÔCerberµÄÁбí£»£»£»±ðµÄ£¬£¬FuxSocy»¹ÒÔÀàËÆÓÚCerberµÄ·½·¨¶Ô¼ÓÃÜÎļþµÄÃû×ÖºÍÀ©Õ¹Ãû¾ÙÐÐÉ趨£»£»£»×îºó£¬£¬ÔÚ¼ÓÃÜϵͳºó£¬£¬FuxSocy½«Windows×ÀÃæÅä¾°¸ü¸ÄΪÓëCerberʹÓõÄÏÕЩÏàͬµÄÅä¾°¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/new-fuxsocy-ransomware-impersonates-the-notorious-cerber/

5¡¢Ð¶ñÒâÈí¼þBlueFaceÃé×¼Windows DiscordÓû§

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


MalwareHunterTeam·¢Ã÷жñÒâÈí¼þͨ¹ýÐÞ¸ÄWindows Discord¿Í»§¶ËÀ´Õë¶ÔDiscordÓû§£¬£¬Ö÷ÒªÇÔÈ¡Óû§ÐÅÏ¢ºÍ³äµ±ºóÃųÌÐò¡£¡£¸Ã¶ñÒâÈí¼þ±»³ÆÎªBlueFace£¬£¬»áÔÚÊÜѬȾµÄϵͳÉÏÌí¼Ó×Ô¼ºµÄ¶ñÒâJavaScript£¬£¬¸Ã¾ç±¾½«Ö´ÐÐÖÖÖÖDiscord APIÏÂÁîºÍJavaScriptº¯Êý£¬£¬ÍøÂçÓйØÓû§µÄÖÖÖÖÐÅÏ¢£¬£¬×îºóͨ¹ýDiscord Webhook½«ÕâЩÐÅÏ¢·¢Ë͸ø¹¥»÷Õß¡£¡£ÓÉÓÚËü»áÍøÂç¼ôÌù°åµÄÄÚÈÝ£¬£¬Òò´Ë¿ÉÄÜ»áÇÔÈ¡Óû§µÄÃÜÂ롢СÎÒ˽¼ÒÐÅÏ¢»òÆäËüÃô¸ÐÊý¾Ý¡£¡£¸Ã¶ñÒâÈí¼þ»¹»áÖ´ÐÐfightdio£¨£©º¯Êý³äµ±ºóÃÅ¡£¡£ÏÖÔÚÆäÔÚVirusTotalÉϵļì²âÂʽöΪ24/65 ¡£¡£

Ô­ÎÄÁ´½Ó£º
https://www.bleepingcomputer.com/news/security/discord-turned-into-an-info-stealing-backdoor-by-new-malware/

6¡¢Ñо¿Ö°Ô±·¢Ã÷NukeSped RATÓ볯ÏÊLazarus APTÓйØ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


FortinetÇ徲ר¼ÒÆÊÎöÁ˶ñÒâÈí¼þNukeSpedµÄÑù±¾£¬£¬·¢Ã÷ÆäÓ볯ÏÊAPT×éÖ¯Lazarus±£´æ¹ØÁª¡£¡£Í¨¹ý¶Ô¶ñÒâÈí¼þµÄ¹¦Ð§¾ÙÐÐÆÊÎö£¬£¬Ñо¿Ö°Ô±È·¶¨ËüÊǶ¯Ì¬ÆÊÎö¹¦Ð§µÄ£¬£¬ÏÖʵÉÏ£¬£¬¶ñÒâ´úÂë½öŲÓÃÁËÉÙÁ¿API¡£¡£NukeSped Ñù±¾»¹¼ÓÃÜÁËAPIÃû³ÆÒÔ×èÖ¹¾²Ì¬ÆÊÎö£¬£¬Ëüͨ¹ýÌí¼Ó×¢²á±íÏîÀ´»ñµÃ³¤ÆÚÐÔ£¬£¬²¢ÇÒÔÚijЩÇéÐÎÏ»Ὣ×Ô¼º×÷ΪЧÀÍ×°Öᣡ£¸Ã¶ñÒâÈí¼þµÄÖ÷Òª¹¦Ð§ÊÇΪ¹¥»÷ÕßÌṩ¶ÔÊÜѬȾÖ÷»úµÄÔ¶³ÌÖÎÀí¡£¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/92916/malware/nukesped-rat-north-korea.html