GithubºÍ¾©¶«µÈÍøÕ¾Ôâµ½ÖÐÐÄÈ˹¥»÷£¬£¬¶à¸öÊ¡ÊÐÇøÊÜÓ°Ï죻£»£»AMD²¿·ÖGPU²âÊÔÔ´Âë±»µÁ£¬£¬ºÚ¿ÍÀÕË÷1ÒÚÃÀÔª

Ðû²¼Ê±¼ä 2020-03-27

1.GithubºÍ¾©¶«µÈÍøÕ¾Ôâµ½ÖÐÐÄÈ˹¥»÷£¬£¬¶à¸öÊ¡ÊÐÇøÊÜÓ°Ïì


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


3ÔÂ26ÈÕÓй¥»÷ÕßÕë¶ÔGithubºÍ¾©¶«µÈÍøÕ¾Ìᳫ´ó¹æÄ£ÖÐÐÄÈ˹¥»÷£¬£¬ÏÖÔÚÊÜÓ°ÏìµÄÖ÷ÒªÊDz¿·ÖµØÇøÓû§£¬£¬µ«Éæ¼°ËùÓÐÔËÓªÉÌ£¬£¬ÀýÈçÖйúÒÆ¶¯¡¢ÖйúÁªÍ¨¡¢ÖйúµçÐÅÒÔ¼°½ÌÓýÍø¾ù¿É¸´ÏÖÐ®ÖÆÎÊÌ⣬£¬¶øÍâÑóÍøÂç»á¼ûÕâЩվµã²¢Î´·ºÆðÒì³£ÇéÐΡ£¡£´ÓÏÖÔÚÍøÉÏÅÌÎʵÄÐÅÏ¢¿ÉÒÔ¿´µ½´Ë´Î¹¥»÷Éæ¼°×î¹ãµÄÊÇGitHub.io£¬£¬Æä´ÎÓû§»á¼û¾©¶«µÈº£ÄÚ×ÅÃûÍøÕ¾Òà»á±¨´í¡£¡£Éó²éÖ¤ÊéÐÅÏ¢¿ÉÒÔ·¢Ã÷ÕâÐ©ÍøÕ¾µÄÖ¤Êé±»¹¥»÷ÕßʹÓõÄ×ÔÊðÃûÖ¤ÊéÈ¡´ú£¬£¬µ¼ÖÂä¯ÀÀÆ÷ÎÞ·¨ÐÅÈδӶø×èÖ¹Óû§»á¼û¡£¡£ÏÖÔÚÈ«Íø¾ø´ó´ó¶¼ÍøÕ¾¶¼ÒѾ­¿ªÆô¼ÓÃÜÊÖÒÕ¶Ô¿¹Ð®ÖÆ£¬£¬Òò´ËÓû§»á¼û»á±»×èÖ¹¶ø²»»á±»Ö¸µ¼µ½´¹ÂÚÍøÕ¾ÉÏÈ¥¡£¡£´Ë´Î¹¥»÷ËÆºõÊÇͨ¹ýÖ÷¸ÉÍøÂçÐ®ÖÆ443¶Ë¿Ú£¬£¬ÏÖÔÚ¾­²âÊÔDNSϵͳÆÊÎöÊÇÍêÈ«Õý³£µÄ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.landiannews.com/archives/71707.html


2.°µÍøÍйÜЧÀÍÉÌDHÔâºÚ¿Í¹¥»÷£¬£¬½ü7600¸öÍøÕ¾å´»ú


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


°µÍø×î´óµÄÃâ·ÑÍйÜЧÀÍÉÌDaniel's Hosting£¨DH£©ÔÚ16¸öÔÂÄÚµÚ¶þ´ÎÔâµ½ºÚ¿Í¹¥»÷£¬£¬¿ìÒª7600¸öÍøÕ¾å´»ú¡£¡£¸ÃЧÀͱ³ºóµÄµÂ¹ú¿ª·¢ÕßDaniel WinzenÌåÏÖ£¬£¬¹¥»÷ÊÂÎñ±¬·¢ÔÚ3ÔÂ10ÈÕÆÆÏþ3µã×óÓÒ£¬£¬ºÚ¿ÍÈëÇÖÁËDHºó¶Ë²¢É¾³ýÁËËùÓÐÓëÍйÜÏà¹ØµÄÊý¾Ý¿â£¬£¬²¢É¾³ýÁËWinzenµÄÊý¾Ý¿âÕË»§ºÍ½¨ÉèÁËÒ»¸öÐÂÕË»§¡£¡£WinzenÌåÏÖDHЧÀÍÔÚÉè¼ÆÉϲ¢Î´±£´æ±¸·Ý£¬£¬²¢ÇÒËûÉÐδ·¢Ã÷ºÚ¿ÍÔõÑùÈëÇÖDHºó¶Ë£¬£¬Óû§Ó¦½«ÆäDHÕÊ»§µÄÃÜÂëÊÓΪ¡°Ð¹Â¶¡±£¬£¬ÈôÊÇÆäËûÕÊ»§Ê¹ÓÃÏàͬµÄÃÜÂ룬£¬ÔòÓ¦¾ÙÐиü¸Ä¡£¡£DHÔøÓÚ2018Äê11Ô±»ºÚ¿ÍÈëÇÖ£¬£¬ÆäʱºÚ¿ÍͬÑùÆÆËðÁ˺ó¶ËÊý¾Ý¿â²¢É¾³ýÁËËùÓÐÍøÕ¾£¬£¬ÆäʱÊÜÓ°ÏìµÄÍøÕ¾Îª6500¶à¸ö¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/dark-web-hosting-provider-hacked-again-7600-sites-down/


3.ºÚ¿ÍʹÓÃÐéαChrome¸üзַ¢ºóÃż°¼üÅ̼ͼľÂí


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ºÚ¿ÍÕýÔÚʹÓñ»ÈëÇֵĹ«Ë¾ÃÅ»§ÍøÕ¾ºÍÐÂÎŲ©¿Í£¨»ùÓÚWordPress CMS£©À´Èö²¥ºóÃÅ£¬£¬²¢ÊͷżüÅ̼ͼľÂí¡¢ÐÅÏ¢ÇÔȡľÂíÆ·¼¶¶þ½×¶Îpayload¡£¡£Æ¾Ö¤Doctor WebÑо¿Ö°Ô±µÄÆÊÎö£¬£¬¹¥»÷ÕßʹÓÃαװ³ÉChrome¸üеÄCritical_Update.exeºÍUpdate.exe·Ö·¢ºóÃÅ£¬£¬ÆäÏÂÔØÁ¿ÒÑÁè¼Ý2290´Î¡£¡£ÔÚ»ñµÃÊÜÑ¬È¾ÍøÕ¾µÄÖÎÀíÔ±»á¼ûȨÏ޺󣬣¬ºÚ¿Í×¢Èë¶ñÒâJavaScript´úÂ룬£¬½«»á¼ûÕßÖØ¶¨Ïòµ½´¹ÂÚÍøÕ¾¡£¡£ÕâÒ»¹¥»÷±³ºóµÄ×éÖ¯Ôø¼ÓÈëÈëÇÖ¹ÙÍø·Ö·¢ÐéαVSDCÊÓÆµ±à¼­Æ÷¼°Ê¹ÓÃÐéαNordVPNÍøÕ¾·Ö·¢BolikÒøÐÐľÂíµÄ¹¥»÷»î¶¯£¬£¬ÆäÄ¿µÄ°üÀ¨ÃÀ¹ú¡¢¼ÓÄô󡢰ĴóÀûÑÇ¡¢Ó¢¹ú¡¢ÒÔÉ«ÁкÍÍÁ¶úÆä¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/malware-disguised-as-google-updates-pushed-via-hacked-news-sites/


4.AppleÐû²¼¶à¿î²úÆ·µÄÇå¾²¸üУ¬£¬ÐÞ¸´68¸öÎó²î


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


AppleÔÚÆäiOSºÍmacOS¡¢Safariä¯ÀÀÆ÷¡¢watchOS¡¢tvOSºÍiTunesÉÏÐû²¼ÁË´ó×Ú²¹¶¡£¡£¬£¬ÆäÖÐiOSÖÐÐÞ¸´ÁË30¸öÎó²î£¬£¬SafariÖÐÐÞ¸´ÁË11¸öÎó²î£¬£¬macOSÖÐÐÞ¸´ÁË27¸öÎó²î¡£¡£ÕâЩÎó²îÖÐ×îÑÏÖØµÄÎó²îÊÇWebKitÖеÄÀàÐÍ»ìÏýÎó²î£¨CVE-2020-3897£©£¬£¬¸ÃÎó²î±£´æÓÚ¹¤¾ßת»»»º´æÖУ¬£¬¹¥»÷Õß¿ÉÒÔʹÓôËÎó²îÔÚÄ¿½ñÀú³ÌµÄÉÏÏÂÎÄÖÐÖ´ÐÐí§Òâ´úÂë¡£¡£Apple»¹Åû¶ÁËÁ½¸öÓ°ÏìiOSºÍmacOSµÄÄÚºËÎó²î¡£¡£µÚÒ»¸öÊÇÄÚ´æ³õʼ»¯ÎÊÌ⣨CVE-2020-3914£©£¬£¬¸ÃÎÊÌâ¿ÉÄÜÔÊÐíÓ¦ÓóÌÐò¶ÁÈ¡ÊÜÏÞµÄÄÚ´æ¡£¡£µÚ¶þ¸öÊÇÄÚºËÖеÄÄÚ´æËð»µÎÊÌ⣨CVE-2020-9785£©£¬£¬Ëü¿ÉÄÜÔÊÐí¶ñÒâÓ¦ÓóÌÐòÒÔÄÚºËÌØÈ¨Ö´ÐÐí§Òâ´úÂë¡£¡£½¨ÒéÓû§¸üе½iOS 13.4¡¢Safari 13.1ºÍmacOS Catalina 10.15.3¡£¡£


Ô­ÎÄÁ´½Ó£º

https://threatpost.com/apple-update-fixes-webkit-flaws-in-ios-safari/154155/


5.Ñо¿ÍŶÓÐû²¼Õë¶ÔICSµÄKwampirs RATµÄÆÊÎö±¨¸æ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ReversingLabsÆÊÎöÁËKwampirs RATµÄ¹¥»÷IOC£¬£¬ÒÔ×ÊÖú¹«Ë¾±£»£»£»¤Æä×éÖ¯ÃâÊܸöñÒâÈí¼þµÄ¹¥»÷¡£¡£FBI×î½üÖÒÑԳƣ¬£¬³ýÁËÕë¶ÔÈí¼þ¹©Ó¦Á´¹«Ë¾Í⣬£¬Kwampirs¹¥»÷ÕßÏÖÔÚÒѾ­ÑÝÄð³ÉÕë¶ÔICSÆóÒµ£¬£¬ÓÈÆäÊÇÄÜÔ´ÐÐÒµ¡£¡£Ñо¿Ö°Ô±·¢Ã÷ÿ¸öKwampirsÑù±¾¶¼´øÓÐ200¸öC2 URLµÄÓ²±àÂëÁÐ±í£¨ÒÔÓòÃû»òIPµØµãµÄÐÎʽ£©£¬£¬KwampirsʵÑ鰴˳Ðò»á¼ûÕâЩURL²¢Ê¹ÓõÚÒ»¸ö»î¶¯µÄULR×÷ΪC2ЧÀÍÆ÷¡£¡£ReversingLabs¹²È·¶¨ÁË1586¸öURL¡£¡£Ñù±¾µÄ±êÍ·ÏÔʾËùÓÐÑù±¾¶¼ÊÇʹÓÃVisual Studio 2010±àÒëµÄ¡£¡£Ê±¼ä´ÁÓëËüÃǵķºÆðʱ¼äûÓйØÁª£¬£¬Õâ¿ÉÄÜÒâζ×ÅÑù±¾ÊÇÔÚ¾ÓÐÄ´øÓв»×¼È·Ê±¼ä´ÁµÄÐéÄâ»úÖбàÒëµÄ¡£¡£ReversingLabs½¨ÉèÁËIOCÁÐ±í£¬£¬¹«Ë¾¿ÉÒÔʹÓÃÕâЩIOC½¨ÉèеķÀ»ðǽºÍÈëÇÖ¼ì²â¹æÔò£¬£¬²¢ÔÚSIEMÈÕÖ¾ÖÐËÑË÷ÊÇ·ñÔ⵽ѬȾ¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.techrepublic.com/article/boost-security-defenses-against-kwampirs-rat-malware-with-new-list-of-iocs/


6.AMD²¿·ÖGPU²âÊÔÔ´Âë±»µÁ£¬£¬ºÚ¿ÍÀÕË÷1ÒÚÃÀÔª


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


AMD¹Ù·½Ðû²¼Ò»·Ý¼ò¶ÌµÄÉùÃ÷£¬£¬ÌåÏÖÓÐÈËÔÚ2019Äê12ÔÂÁªÏµËüÃÇ£¬£¬Éù³ÆÓµÓÐÓëAMDÄ¿½ñºÍδÀ´²¿·ÖGPU²úÆ·µÄ²âÊÔÎļþ¡£¡£ÔÚ×î½üÕâЩÎļþ±»ÉÏ´«µ½ÁËGitHubÖ®ÉÏ£¬£¬¾Ý³ÆÎļþÖаüÀ¨NaviºÍArden GPUµÄ²¿·ÖÔ´Â룬£¬ºóÕßÊÇXbox Series XÉÏGPUµÄ´úºÅ£¬£¬¶øÇ°Õß°üÀ¨ÉÐδÐû²¼µÄNavi 20ϵÁкÍÒѾ­Ðû²¼µÄNavi 10µÄ²¿·ÖÓ²¼þÔ´´úÂë¡£¡£AMDÏòGitHub·¢³öÁËDMCAÇëÇ󣬣¬¸ÃRepoËæºó±»³·Ï¡£¡£¸ÃºÚ¿Í£¨×Ô³ÆÎªÅ®ÐÔ£©Éù³ÆÔÚÈ¥Äê11Ô·ݴӱ»ºÚµÄÅÌËã»úÖз¢Ã÷ÁËAMD Navi GPUµÄÓ²¼þÔ´Â룬£¬¸ÃÅÌËã»úÓû§Ò²Ã»ÓжԴúÂë×ß©½ÓÄÉÈκÎÓÐÓò½·¥¡£¡£ËýͬʱҲȷÈÏ£¬£¬ÕâЩÎļþÖаüÀ¨Navi 10¡¢Navi 21ºÍArdenµÄÔ´Âë¡£¡£Ëý²¢Ã»ÓоÍ×ß©ÎÊÌâºÍAMDÁªÏµ¡£¡£²»¹ýAMDÔÚÉùÃ÷ÖгÆÕâЩÎļþûÓд¥¼°µ½GPU²úÆ·µÄ½¹µã¡£¡£


Ô­ÎÄÁ´½Ó£º

https://torrentfreak.com/amd-uses-dmca-to-mitigate-massive-gpu-source-code-leak-200325/