McAfeeÐû²¼2020ÄêÍøÂçÍþвÇ÷ÊÆÕ¹Íû±¨¸æ£»£»£»ÄªË¹¿Æ¶¼»á¼à¿ØÏµÍ³»á¼ûȨÏÞÔÚ°µÍø³öÊÛ

Ðû²¼Ê±¼ä 2019-12-09


1.Ñо¿ÍŶÓÐû²¼ÀÕË÷Èí¼þ¼Ò×åLooCipherµÄÆÊÎö±¨¸æ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


LooCipherÊǽñÄêзºÆðµÄÒ»¸öÀÕË÷Èí¼þ¼Ò×壬£¬£¬ £¬£¬Æ¾Ö¤McAfeeµÄÆÊÎö±¨¸æ£¬£¬£¬ £¬£¬¸ÃÀÕË÷Èí¼þÖ÷Ҫͨ¹ýDOCÎļþÈö²¥¡£¡£¡£¡£¡£ÓëÆäËü¶ñÒâÈí¼þÏà±È£¬£¬£¬ £¬£¬¸ÃDOCÎļþÏ൱´Ö²Ú£¬£¬£¬ £¬£¬Ã»ÓнÓÄÉÈκÎÉç»á¹¤³ÌÊÖÒÕ£¬£¬£¬ £¬£¬ÄÚÀïµÄÄÚÈÝÖ»ÓÐÒ»¾ä»°¡°ÆôÓúêÀ´Éó²éÎĵµ¡±¡£¡£¡£¡£¡£¸Ã¶ñÒâºê»á´ÓÔ¶³ÌЧÀÍÆ÷ÏÂÔØLooCipher¡£¡£¡£¡£¡£LooCipherÔÚ¼ÓÃÜÀú³ÌÖÐʹÓÃAES-ECB¼ÓÃÜËã·¨£¬£¬£¬ £¬£¬²¢ÇÒËùÓÐÎļþµÄÃÜÔ¿¾ùÏàͬ£¬£¬£¬ £¬£¬ÆäÄ¿µÄÎļþµÄÀ©Õ¹ÃûÁÐ±í±»Ó²±àÂëÔÚ¶þ½øÖÆÎļþÖС£¡£¡£¡£¡£LooCipherµÄBTCµØµãÖÐÉÐûÓÐÈκÎÉúÒ⣬£¬£¬ £¬£¬ÕâÅú×¢Æä×÷ÕßÉÐδ´ÓÖÐ׬Ǯ¡£¡£¡£¡£¡£ÏêϸIoCÇë²Î¿¼ÒÔÏÂÁ´½Ó¡£¡£¡£¡£¡£


  Ô­ÎÄÁ´½Ó£º

https://securingtomorrow.mcafee.com/blogs/other-blogs/mcafee-labs/analysis-of-loocipher-a-new-ransomware-family-observed-this-year/


2.AvastÅû¶Ö÷ÒªÕë¶Ô°ÍÎ÷¹«ÃñµÄÍøÂç´¹Âڻ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


11ÔÂÏÂÑ®AvastÑо¿ÍŶӷ¢Ã÷ÁËÒ»¸öʹÓðÍÎ÷Óû§µÄ·ÓÉÆ÷½«ÆäÖØ¶¨Ïòµ½´¹ÂÚÍøÕ¾µÄ¹¥»÷»î¶¯¡£¡£¡£¡£¡£ÕâÐ©ÍøÕ¾Î±×°³ÉÒøÐС¢ÐÂÎÅÍøÕ¾ºÍNetflixµÄ¹ÙÍøµÈ¡£¡£¡£¡£¡£ÕâÖÖ¹¥»÷ͨ³£ÔÚÓû§»á¼û´øÓжñÒâ¹ã¸æµÄÊÜÑ¬È¾ÍøÕ¾Ê±Æô¶¯£¬£¬£¬ £¬£¬Óû§½«±»×Ô¶¯Öض¨Ïòµ½Á½¸ö·ÓÉÆ÷EKµÄ׎ҳÖУ¬£¬£¬ £¬£¬´Ó¶øÔÚºǫ́ÎÞÐèÓû§¸ÉÔ¤¾ÍÌᳫ¶Ô·ÓÉÆ÷µÄ¹¥»÷¡£¡£¡£¡£¡£È»ºó£¬£¬£¬ £¬£¬Óû§µÄ·ÓÉÆ÷½«Æä´ÓÕæÊµµÄÓªÒµÒ³ÃæÖØ¶¨Ïòµ½ÏàËÆµÄÍøÂç´¹ÂÚÕ¾µã¡£¡£¡£¡£¡£11ÔÂ25ÈÕAvast×èÖ¹µÄÁ½¸ö´¹ÂÚÍøÕ¾¾ÍѬȾÁ˽ü5500¸öÓû§µÄ·ÓÉÆ÷¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://blog.avast.com/avast-threat-labs-uncovers-brazil-cyberattacks


3.ÐéαVPNÍøÕ¾ÏòÓû§ÍÆËÍVidarºÍCryptBotľÂí


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


BleepingComputer·¢Ã÷Ò»¸öαװ³ÉInter VPNÍÆ¹ãÍøÕ¾µÄÐéαվµã£¬£¬£¬ £¬£¬¸ÃÍøÕ¾Ö÷Òª·Ö·¢ÐÅÏ¢ÇÔȡľÂíVidarºÍCryptBot¡£¡£¡£¡£¡£¸ÃÍøÕ¾ÏÔʾµÄVPN¿Í»§¶ËͼƬÏÖʵÉÏÊÇÕýµ±Èí¼þVPN ProµÄͼƬ£¬£¬£¬ £¬£¬ÆäÏÂÔØµÄ³ÌÐò½«Ê¹ÓÃAutoHotKey¾ç±¾ÅþÁ¬µ½iplogger.org£¬£¬£¬ £¬£¬È»ºóƾ֤¸ÃÍøÕ¾ÉϵÄÄ¿½ñ·Ö·¢»î¶¯´Óbitbucket.org ÏÂÔØVidarºÍCryptBot¿ÉÖ´ÐÐÎļþ¡£¡£¡£¡£¡£ÕâЩľÂí¿ÉÇÔÈ¡Óû§µÄä¯ÀÀÆ÷ƾ֤¡¢Cookie¡¢×ÀÃæ½ØÆÁ¡¢Îı¾ÎļþÒÔ¼°¼ÓÃÜÇ®±ÒÇ®°üµÈ¡£¡£¡£¡£¡£ÓÉÓÚÏÂÔØµÄ×°Öðü´ò°üÁËÕýµ±µÄVPN ProÈí¼þ£¬£¬£¬ £¬£¬Òò´ËÓû§¿ÉÄÜÄÑÒÔ·¢Ã÷ÔÚºǫ́ÔËÐеÄľÂí¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/fake-vpn-site-pushes-cryptbot-and-vidar-info-stealing-trojans/


4.Ñо¿±¨¸æ³ÆÓ¢¹úÐÅÓÿ¨Ú²Æ­ËðʧռÕû¸öÅ·ÖÞµÄÒ»°ë


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ƾ֤FICOµÄ×îÐÂÊÓ²ìЧ¹û£¬£¬£¬ £¬£¬ÓÉÓÚÊý¾Ýй¶ºÍÔÚÏßڲƭÊÂÎñµÄ¼¤Ôö£¬£¬£¬ £¬£¬Ó¢¹úÐÅÓÿ¨Ú²Æ­Ôì³ÉµÄËðʧÏÖÔÚÕ¼Õû¸öÅ·ÖÞµÄÒ»°ë¡£¡£¡£¡£¡£Æ¾Ö¤¸Ã¹«Ë¾Ðû²¼µÄ»¥¶¯Ê½¡¶Å·ÖÞڲƭµØÍ¼¡·£¬£¬£¬ £¬£¬2018ÄêÓ¢¹úÐÅÓÿ¨Ú²Æ­ËðʧµÖ´ïÁË´´¼Í¼µÄ6.71ÒÚÓ¢°÷£¬£¬£¬ £¬£¬±ÈÉÏÒ»ÄêÔöÌí19£¥¡£¡£¡£¡£¡£¸ÃÊý×ÖÏÕЩռµØÍ¼ÉÏÅ·ÖÞ19¸ö¹ú¼Ò×ܶî16ÒÚÅ·Ôª£¨14ÒÚÓ¢°÷£©µÄÒ»°ë¡£¡£¡£¡£¡£Ó¢¹úµÄ´ó²¿·ÖڲƭËðʧ£¨5.064ÒÚÓ¢°÷£©À´×ÔÎÞ¿¨Ú²Æ­£¨CNP£©ÇþµÀ£¬£¬£¬ £¬£¬ÕâЩÇþµÀÏÖÔÚ¶¼±»ÔÚÏßڲƭËù¿ØÖÆ¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.infosecurity-magazine.com/news/uk-card-fraud-losses/


5.McAfeeÐû²¼2020ÄêÍøÂçÍþвÇ÷ÊÆÕ¹Íû±¨¸æ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


McAfee¶Ô2020ÄêµÄÍþвÇ÷ÊÆÕ¹Íû°üÀ¨£ºÊÖÒÕ½ÏÈõµÄ¹¥»÷Õß½«¸ü¶àµØ½ÓÄÉDeepfakeÔöÇ¿ÆäÐÅÏ¢Õ½µÄÄÜÁ¦£¬£¬£¬ £¬£¬ÀýÈçαÔìÆóÒµCEOµÄÊÓÆµ/ÒôƵÉùÃ÷À´Ê¹ÓùɼۻòÒý·¢ÆäËü½ðÈÚ·¸·¨£»£»£»Ê¹ÓÃDeepfakeÀ´ÈƹýÈËÁ³Ê¶±ð£»£»£»ÀÕË÷Èí¼þ¹¥»÷½«ÑݱäΪ˫½×¶Î¹¥»÷£¬£¬£¬ £¬£¬ÀýÈçÔÚÀÕË÷Èí¼þ¹¥»÷ÏÖʵ±¬·¢Ç°×°ÖöñÒâ¿ó¹¤»òÇÔÈ¡ÆóÒµÉñÃØÐÅÏ¢£»£»£»API½«³ÉÎªÔÆÔ­ÉúÍþвµÄ×Èõ»·½Ú£»£»£»Ëæ×ÅÈÝÆ÷»¯ÊÂÇé¸ºÔØµÄÔöÌíµ¼ÖÂÇå¾²¿ØÖÆÏò¡°×óÒÆ¡±£¬£¬£¬ £¬£¬DevSecOps½«»áÔ½·¢Í»³ö¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://securingtomorrow.mcafee.com/blogs/other-blogs/mcafee-labs/mcafee-labs-2020-threats-predictions-report/


6.Ī˹¿Æ¶¼»á¼à¿ØÏµÍ³»á¼ûȨÏÞÔÚ°µÍø³öÊÛ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


MBKh MediaÊÓ²ì¼ÇÕßAndrey Kaganskikh·¢Ã÷Ī˹¿Æ¶¼»á¼à¿ØÏµÍ³ºÍÃæ²¿Ê¶±ðÊý¾ÝµÄ»á¼ûȨÏÞÕýÔÚµØÏÂÂÛ̳ºÍ̸ÌìÊÒÖгöÊÛ¡£¡£¡£¡£¡£AndreyÌåÏÖÂô·½ÊÇÖ´·¨Ö°Ô±/Õþ¸®¹ÙÔ±£¬£¬£¬ £¬£¬¿ÉÒԵǼĪ˹¿Æ¶¼»á¼àÊÓϵͳµÄÊý¾Ý´¦Öóͷ£ºÍ´æ´¢¼¯³ÉÖÐÐÄ£¨YTKD£©¡£¡£¡£¡£¡£¹ºÖÃÁËÉãÏñͷȨÏÞµÄÓû§½«»áÊÕµ½Ö¸Ïò¶¼»áCCTVϵͳµÄÒ»¸öÁ´½Ó£¬£¬£¬ £¬£¬¸ÃÁ´½Ó¿É»á¼ûËùÓй«¹²ÉãÏñÍ·£¬£¬£¬ £¬£¬Æä¿ÉÓÃʱ¼äΪ5Ìì¡£¡£¡£¡£¡£±ðµÄ£¬£¬£¬ £¬£¬¾ßÓÐÎÞÏÞ»á¼ûȨÏ޵ĵǼƾ֤¼ÛǮΪ30000¬²¼£¨470ÃÀÔª£©¡£¡£¡£¡£¡£ÊÓ²ìÖ°Ô±²âÊÔÁËÆäÕÕÆ¬£¬£¬£¬ £¬£¬Âô·½·µ»ØÁË238ÕÅͼƬ£¬£¬£¬ £¬£¬ÕâЩͼƬÀ´×Ô140̨ÉãÏñÍ·£¬£¬£¬ £¬£¬»¹ÁгöÁ˲¶»ñµ½µÄÏêϸµØµãºÍʱ¼ä£¬£¬£¬ £¬£¬µ«·µ»ØµÄÕÕÆ¬¶¼²»ÊÇÊÓ²ìÖ°Ô±µÄ£¬£¬£¬ £¬£¬Õâ¿ÉÄÜÓëÉãÏñÍ·µÄÊýÄ¿ºÍËã·¨Óйأ¬£¬£¬ £¬£¬ÏµÍ³¶ÔÆäÃæ²¿ÌØÕ÷µÄÆÀ¹ÀÏàËÆ¶ÈΪ67%¡£¡£¡£¡£¡£


 Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/moscow-cops-sell-access-to-city-cctv-facial-recognition-data/