Î÷°àÑÀÇå¾²³§ÉÌProsegurÔâµ½ÀÕË÷Èí¼þRyuk¹¥»÷ £»£»£»£»¿¨°Í˹»ùÐÞ¸´Web Protection¹¦Ð§ÖеĶà¸öÎó²î

Ðû²¼Ê±¼ä 2019-11-29
1¡¢Î÷°àÑÀÇå¾²³§ÉÌProsegurÔâµ½ÀÕË÷Èí¼þRyuk¹¥»÷

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾

Î÷°àÑÀÇå¾²³§ÉÌProsegurÔÚÒ»·ÝÉùÃ÷ÖÐÐû²¼ÔâÀÕË÷Èí¼þ¹¥»÷£¬ £¬£¬£¬ £¬£¬Õû¸ö¹«Ë¾µÄÍøÂç¶¼ÒѹرÕ¡£¡£¡£¡£¡£ ¡£Ö»¹ÜûÓлñµÃ¹Ù·½È·ÈÏ£¬ £¬£¬£¬ £¬£¬µ«BleepingComputerÏàʶµ½¸Ã¹¥»÷Ó°ÏìÁËProsegurÔÚÅ·ÖÞµÄËùÓÐËùÔÚ¡£¡£¡£¡£¡£ ¡£ÔÚTwitterÉϵĸüÐÂÖУ¬ £¬£¬£¬ £¬£¬ProsegurÈ·Èϵ¼ÖÂÆäЧÀÍÖÐÖ¹µÄ¶ñÒâÈí¼þÊÇRyuk£¬ £¬£¬£¬ £¬£¬²¢½«ÊÂÎñ±ê¼ÇΪ¡°Ò»Ñùƽ³£ÐÔ¹¥»÷¡±¡£¡£¡£¡£¡£ ¡£¸Ã¹«Ë¾ÌåÏÖÒѽÓÄÉ×îºéÁ÷ƽµÄÇå¾²²½·¥×èÖ¹¸Ã¶ñÒâÈí¼þÔÚÆäÄÚ²¿¼°¿Í»§¶ËÍøÂçÖÐÈö²¥¡£¡£¡£¡£¡£ ¡£×÷ΪԤ·À²½·¥£¬ £¬£¬£¬ £¬£¬¸Ã¹«Ë¾½«¼ÌÐøÏÞÖÆÍ¨Ñ¶£¬ £¬£¬£¬ £¬£¬Ö±µ½È·ÈÏÆäϵͳÒÑÇå½à£¬ £¬£¬£¬ £¬£¬²¢ÕýÔÚÆð¾¢ÒÔ×î¿ìµÄËÙÂʻָ´ÊÜÓ°ÏìµÄЧÀÍ¡£¡£¡£¡£¡£ ¡£

   

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/ryuk-ransomware-forces-prosegur-security-firm-to-shut-down-network/

2¡¢GPHealthÒ½ÁÆÖÐÐÄ»¼ÕßÊý¾Ý±»ÀÕË÷Èí¼þ¼ÓÃÜ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Great Plains HealthÒ½ÁÆÖÐÐÄÔÚ±¾ÖܳõÔâµ½ÀÕË÷Èí¼þ¹¥»÷£¬ £¬£¬£¬ £¬£¬Ô±¹¤±»ÆÈʹÓÃÖ½ºÍ±Ê¾ÙÐа칫¡£¡£¡£¡£¡£ ¡£¸ÃÊÂÎñ±¬·¢ÔÚÖÜÒ»ÍíÉÏ7µã×óÓÒ£¬ £¬£¬£¬ £¬£¬ÖܶþGPHealthÐû²¼×÷·Ï´ó×ڷǽôÆÈ»¼ÕßµÄÔ¤Ô¼ºÍÁ÷³Ì£¬ £¬£¬£¬ £¬£¬µ«²»Ó°ÏìÊÖÊõºÍÒ½ÁÆÓ°ÏñÅÄÉã¡£¡£¡£¡£¡£ ¡£GPHealthÊ×ϯִÐйÙMel McNeaÌåÏÖûÓÐÀíÓÉÏÓÒÉ»¼ÕßÊý¾ÝÔâµ½»á¼û£¬ £¬£¬£¬ £¬£¬µ«¸Ã¹«Ë¾½«¾ÙÐÐÖÜÈ«µÄÉó²é¡£¡£¡£¡£¡£ ¡£¸Ã¹«Ë¾»¹ÌåÏÖÕýÔÚÓëÖ´·¨²¿·ÖÏàÖú¾ÙÐÐÊӲ졣¡£¡£¡£¡£ ¡£ÏÖÔÚÉв»ÇåÎú¹¥»÷ÖÐʹÓõÄÀÕË÷Èí¼þÀàÐÍÒÔ¼°¸Ã¹«Ë¾ÊÇ·ñÖ§¸¶ÁËÊê½ð¡£¡£¡£¡£¡£ ¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/ransomware-locks-medical-records-at-great-plains-health/

3¡¢Á¬Ëø²ÍÌüOn The Border¿Í»§Ö§¸¶ÐÅÏ¢±»µÁ

ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾

Á¬Ëø²ÍÌüOn The Border֪ͨ¿Í»§ÆäÖ§¸¶ÐÅÏ¢¿ÉÄÜÒѱ»ºÚ¿ÍÇÔÈ¡¡£¡£¡£¡£¡£ ¡£¸Ã¹«Ë¾ÓÚ11ÔÂ14ÈÕ·¢Ã÷ÁË´ËÊÂÎñ£¬ £¬£¬£¬ £¬£¬¹«Ë¾ÊÓ²ìÒÔΪÓÐ27¸öÖݵIJÍÌüÊܵ½Ó°Ïì¡£¡£¡£¡£¡£ ¡£ÏÖÔÚµÄÖ¤¾ÝÅú×¢ÕâЩ²ÍÌüÔÚ2019Äê4ÔÂ10ÈÕÖÁ2019Äê8ÔÂ10ÈÕÖ®¼äѬȾÁ˶ñÒâÈí¼þ£¬ £¬£¬£¬ £¬£¬¿ÉÄܱ»ÇԵĿͻ§ÐÅÏ¢°üÀ¨ÐÕÃû¡¢ÐÅÓÿ¨ºÅ¡¢ÓÐÓÃÆÚ¡¢ÑéÖ¤ÂëµÈ£¬ £¬£¬£¬ £¬£¬µ«²»°üÀ¨³öÉúÈÕÆÚ¡¢Éç»áÇå¾²ºÅÂë¼°Éí·ÝID¡£¡£¡£¡£¡£ ¡£ÓµÓÐOn The BorderµÄ˽ÈËͶ×ʹ«Ë¾Argonne Capital GroupÒ²ÓµÓпì²ÍÁ¬ËøµêKrystal£¬ £¬£¬£¬ £¬£¬¸ÃÁ¬Ëøµê½üÆÚÒ²Ôâµ½Ö§¸¶ÐÅϢ͵ÇÔÊÂÎñ£¬ £¬£¬£¬ £¬£¬ÏÖÔÚ»¹²»ÇåÎúÕâÁ½ÆðÊÂÎñÖ®¼äÊÇ·ñ±£´æ¹ØÁª¡£¡£¡£¡£¡£ ¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/malware-found-payment-system-used-border-restaurants

4¡¢¿¨°Í˹»ùÐÞ¸´Web Protection¹¦Ð§ÖеĶà¸öÎó²î


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


¿¨°Í˹»ùÐÞ¸´ÁËһЩÎó²î£¬ £¬£¬£¬ £¬£¬ÕâЩÎó²îÓ°ÏìÁËÆäɱ¶¾Èí¼þ¡¢InternetÇå¾²¡¢Çå¾²ÔÆµÈ²úÆ·ÖеÄWeb Protection¹¦Ð§¡£¡£¡£¡£¡£ ¡£Æ¾Ö¤Ñо¿Ö°Ô±Wladimir PalantµÄÐÎò£¬ £¬£¬£¬ £¬£¬¿¨°Í˹»ùWeb Protection¹¦Ð§ÐèÒªÓëÖ÷Ó¦ÓóÌÐò¾ÙÐÐͨѶ£¬ £¬£¬£¬ £¬£¬²¢ÇÒʹÓÃÒ»¸öWebÓò²»ÖªµÀµÄÃÜÔ¿À´È·±£Ç徲ͨѶ¡£¡£¡£¡£¡£ ¡£È»¶øÓÉÓÚ±£´æÎó²î£¬ £¬£¬£¬ £¬£¬ÍøÕ¾¿ÉÒÔºÜÈÝÒ׵ػñÈ¡´ËÃÜÔ¿£¬ £¬£¬£¬ £¬£¬²¢ÏñWeb ProtectionÒ»ÑùÓëKasperskyÓ¦ÓóÌÐò½¨ÉèÅþÁ¬ºÍ·¢ËÍÏÂÁî¡£¡£¡£¡£¡£ ¡£ÈôÊÇûÓÐ×°Öÿ¨°Í˹»ùµÄä¯ÀÀÆ÷²å¼þ£¬ £¬£¬£¬ £¬£¬¿¨°Í˹»ù½«Ö±½Ó½«Æä¾ç±¾×¢Èëµ½ÍøÒ³ÖС£¡£¡£¡£¡£ ¡£¸ÃÎó²î£¨CVE-2019-15685£©¿ÉÓÃÓÚ¾²Ä¬½ûÓÃ¹ã¸æ×èµ²ºÍ¸ú×Ù± £»£»£»£»¤¹¦Ð§¡£¡£¡£¡£¡£ ¡£ÔÚ7Ô·ݿ¨°Í˹»ùÐÞ¸´´ËÎó²îºó£¬ £¬£¬£¬ £¬£¬Ñо¿Ö°Ô±·¢Ã÷ÓÖÒýÈëÁËеÄÎÊÌ⣬ £¬£¬£¬ £¬£¬°üÀ¨¿Éµ¼ÖÂɱ¶¾Èí¼þÍß½âµÄÎó²î£¨CVE-2019-15686£©ÒÔ¼°ÐÅϢй¶µÄÎó²î£¨CVE-2019-15687£©¡£¡£¡£¡£¡£ ¡£¿£¿£¿£¿¨°Í˹»ùÔÚ11ÔÂ28ÈÕÐû²¼ÁËеÄÐÞ¸´²¹¶¡¡£¡£¡£¡£¡£ ¡£

Ô­ÎÄÁ´½Ó£º
https://www.securityweek.com/kaspersky-patches-several-vulnerabilities-web-protection-features

5¡¢·¸·¨ÍÅ»ïRevengeHotelsÖ÷ÒªÕë¶ÔÈ«ÇòÂùÝ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


¿¨°Í˹»ùÐû²¼¹ØÓÚ·¸·¨ÍÅ»ïRevengeHotelsµÄÕë¶ÔÐÔ¶ñÒâ»î¶¯µÄÆÊÎö±¨¸æ¡£¡£¡£¡£¡£ ¡£¸ÃÍÅ»ïÖ÷ÒªÕë¶ÔÂùݡ¢ÂÃÉá¡¢±ö¹ÝºÍÂÃÓι«Ë¾£¬ £¬£¬£¬ £¬£¬¿¨°Í˹»ùÒÑÈ·ÈÏÁè¼Ý20¼ÒÂùݳÉΪÊܺ¦Õߣ¬ £¬£¬£¬ £¬£¬ÕâЩÂùݻ®·ÖλÓÚ°ÍÎ÷µÄ8¸öÖݺͰ¢¸ùÍ¢¡¢²£ÀûάÑÇ¡¢ÖÇÀûµÈ¹ú¼Ò¡£¡£¡£¡£¡£ ¡£¸Ã·¸·¨ÍÅ»ïÖ¼ÔÚÇÔÈ¡´æ´¢ÔÚÂùÝϵͳÖÐÒÔ¼°´ÓBooking.comµÈÔÚÏßÂÃÐÐÉçÇÔÈ¡µÄ¿Í»§ÐÅÓÿ¨Êý¾Ý¡£¡£¡£¡£¡£ ¡£¸ÃÍÅ»ï×Ô2015ÄêÒÔÀ´Ò»Ö±»îÔ¾£¬ £¬£¬£¬ £¬£¬µ«Æä»î¶¯ÔÚ2019ÄêµÖ´ïáÛ·å¡£¡£¡£¡£¡£ ¡£Ö÷ÒªµÄ¹¥»÷ǰÑÔÊÇͨ¹ýµç×ÓÓʼþ·¢Ë͵ĶñÒâWord¡¢Excel»òPDFÎĵµ£¬ £¬£¬£¬ £¬£¬ËüÃǰüÀ¨RevengeRAT¡¢NjRAT¡¢NanoCoreRAT¡¢888 RATµÈ¶ñÒâÈí¼þ¡£¡£¡£¡£¡£ ¡£

Ô­ÎÄÁ´½Ó£º
https://securelist.com/revengehotels/95229/

6¡¢ºÉÀ¼NCSCÖÒÑÔ3ÖÖÀÕË÷Èí¼þÒÑѬȾȫÇò1800¼ÒÆóÒµ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ºÉÀ¼¹ú¼ÒÍøÂçÇå¾²ÖÐÐÄ£¨NCSC£©µÄÉñÃØ±¨¸æÏÔʾ£¬ £¬£¬£¬ £¬£¬È«ÇòÖÁÉÙÓÐ1800¼Ò¹«Ë¾Êܵ½3ÖÖÀÕË÷Èí¼þµÄÓ°Ïì¡£¡£¡£¡£¡£ ¡£ÕâÈýÖÖÀÕË÷Èí¼þ»®·ÖÊÇLockerGoga¡¢MegaCortexºÍRyuk£¬ £¬£¬£¬ £¬£¬ËüÃDz¿·ÖÒÀÀµÓÚÏàͬµÄ»ù´¡ÉèÊ©£¬ £¬£¬£¬ £¬£¬ÕâÅú×¢ËüÃÇ»ñÈ¡ÆóÒµÍøÂç»á¼ûȨÏ޵ķ½·¨¿ÉÄÜÓëÒ»¸ö¼òµ¥ÈëÇÖÕßÓйØ¡£¡£¡£¡£¡£ ¡£NCSCûÓÐÔÚ±¨¸æÖÐÌṩÊÜÓ°Ï칫˾µÄÃû³Æ£¬ £¬£¬£¬ £¬£¬µ«ÌåÏÖ¹¥»÷ÕßµÄÄ¿µÄÊÇÊÕÈëȪԴ´ïÊý°ÙÍò»òÊýÊ®ÒÚÃÀÔªµÄ´óÐÍÆóÒµ¡£¡£¡£¡£¡£ ¡£Êܺ¦ÕßÀ´×ÔÆû³µ¡¢ÐÞ½¨¡¢»¯Ñ§¡¢Ò½ÁÆ¡¢Ê³ÎïºÍÓéÀֵȸ÷¸öÁìÓò£¬ £¬£¬£¬ £¬£¬ÖÁÉÙÓÐÒ»¸öÒªº¦»ù´¡ÉèÊ©ÁìÓòµÄÆóÒµÔâµ½¹¥»÷¡£¡£¡£¡£¡£ ¡£

  

Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/dutch-govt-warns-of-3-ransomware-infecting-1-800-businesses/