AppleÐû²¼Çå¾²¸üÐÂÐÞ¸´50¶àÎó²î£»£»£»£»£»£»McAfee·¢Ã÷£¬£¬£¬£¬£¬£¬µÚÒ»¼¾¶ÈÕë¶ÔÔÆÕÊ»§µÄ¹¥»÷ÔöÌíÁË630£¥

Ðû²¼Ê±¼ä 2020-05-29

1.AppleÐû²¼Çå¾²¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´macOSºÍSafariÖÐ50¶àÎó²î


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Apple±¾ÖÜÐû²¼ÁËÇå¾²¸üУ¬£¬£¬£¬£¬£¬ÐÞ¸´ÁËmacOSºÍSafariÖÐ×ܼÆ50¶à¸öÎó²î¡£¡£¡£ÆäÖÐΪmacOS Catalina 10.15.5¿¯ÐаæÐÞ¸´ÁË44¸öÎó²î£¬£¬£¬£¬£¬£¬ÕâЩÎó²î¿ÉÄܵ¼Ö¾ܾøÐ§ÀÍ¡¢¹æ±ÜɳÏäÏÞÖÆ¡¢×ß©˽ÈËÐÅÏ¢¡¢í§Òâ´úÂëÖ´ÐС¢Óû§ÐÅϢй¶¡¢ÌØÈ¨ÌáÉý¡¢É³ÏäתÒå¡¢ÄÚ´æ×ß©¡¢Ö´ÐÐí§ÒâshellÏÂÁîÒÔ¼°Òþ˽Ê×Ñ¡ÏîÈÆ¹ýµÈÎÊÌâ¡£¡£¡£»£»£»£»£»£»¹ÐÞ¸´ÁËSafari 13.1.1ÖеÄ10¸öÎó²î£¬£¬£¬£¬£¬£¬ÆäÖв¿·Ö±»°üÀ¨ÔÚmacOS CatalinaÖУ¬£¬£¬£¬£¬£¬¿ÉÄܻᵼÖÂí§Òâ´úÂëÖ´ÐС¢¿çÕ¾µã¾ç±¾¹¥»÷»òÀú³ÌÄÚ´æ×ß©¡£¡£¡£´Ë´Î¸üл¹ÎªWindows°æiCloudÐÞ¸´ÁË12¸öÎó²î£¬£¬£¬£¬£¬£¬°üÀ¨í§Òâ´úÂëÖ´ÐС¢¾Ü¾øÐ§ÀͺͿçÕ¾µã¾ç±¾µÈÎÊÌâ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.securityweek.com/apple-patches-over-40-vulnerabilities-macos-catalina


2.McAfee·¢Ã÷£¬£¬£¬£¬£¬£¬µÚÒ»¼¾¶ÈÕë¶ÔÔÆÕÊ»§µÄ¹¥»÷ÔöÌíÁË630£¥


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


McAfee±¨¸æ·¢Ã÷£¬£¬£¬£¬£¬£¬COVID-19´óÊ¢ÐÐʱ´ú£¬£¬£¬£¬£¬£¬Ëæ×ÅÔÆÐ§ÀͺÍÔÆÐ­×÷¹¤¾ß£¨ÀýÈçCisco WebEx¡¢Zoom¡¢Microsoft TeamsºÍSlack£©Ê¹ÓÃÂʵÄÔöÌí£¬£¬£¬£¬£¬£¬Õë¶ÔÔÆÕÊ»§µÄ¹¥»÷ÔöÌíÁË630£¥¡£¡£¡£ÕâЩ¹¥»÷ÖУ¬£¬£¬£¬£¬£¬´ó´ó¶¼Õë¶ÔµÄÊÇMicrosoft 365µÈÔÆÐ­×÷¹¤¾ß£¬£¬£¬£¬£¬£¬²¢ÇÒÊÇ´ó¹æÄ£µØ»á¼ûƾ֤±»µÁµÄÔÆÕÊ»§¡£¡£¡£ÔÚÊÓ²ìÖУ¬£¬£¬£¬£¬£¬ÆóÒµ¶ÔÔÆÐ§À͵ÄʹÓÃÂÊÃÍÔöÁË50£¥£¬£¬£¬£¬£¬£¬ÆäÖаüÀ¨ÖÆÔìÒµºÍ½ðÈÚЧÀ͵ÈÐÐÒµ£¬£¬£¬£¬£¬£¬ÕâЩÐÐҵͨ³£±ÈÆäËûÐÐÒµ¸üÒÀÀµÓÚÍâµØÓ¦ÓóÌÐò¡¢ÍøÂçºÍÇå¾²ÐÔ¡£¡£¡£¶ø¹ØÓÚÔÆÐ­×÷¹¤¾ßµÄʹÓÃÂÊÔòÔöÌíÁ˸ߴï600£¥£¬£¬£¬£¬£¬£¬ÆäÖнÌÓý²¿·ÖÔöÌí×î¿ì£¬£¬£¬£¬£¬£¬ÓÉÓÚÔ½À´Ô½¶àµÄѧÉúÐèÒª¾ÙÐÐÔ¶³Ìѧϰ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.helpnetsecurity.com/2020/05/28/external-attacks-on-cloud-accounts/


3.Group-IBÐû²¼±¨¸æ£¬£¬£¬£¬£¬£¬ÀÕË÷Èí¼þÊê½ðÒ»ÄêÄÚÔöÌíÁË14±¶


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ÍøÂçÇå¾²¹«Ë¾Group-IB Ðû²¼±¨¸æ£¬£¬£¬£¬£¬£¬ÆÊÎöÁË×Ô2018ÄêÒÔÀ´Ò»ÄêÄÚÀÕË÷Èí¼þ¹¥»÷µÄת±ä£¬£¬£¬£¬£¬£¬´ËÀ๥»÷ÊýÄ¿ÔöÌíÁË40%£¬£¬£¬£¬£¬£¬Êê½ðÔöÌíÁË14±¶¡£¡£¡£×ÔGandCrabÍÅ»ï2019ÄêÐû²¼ÊÕÊֺ󣬣¬£¬£¬£¬£¬ÀÕË÷Èí¼þ×éÖ¯ÐγÉÁËransomware-as-a-service (RaaS)µÄÐÂģʽ£¬£¬£¬£¬£¬£¬ËûÃǽÓÄÉÁ˶àÖÖ³õʼ»á¼ûǰÑÔ£¬£¬£¬£¬£¬£¬ÔöÌíÁËÊê½ðÒªÇ󣬣¬£¬£¬£¬£¬²¢×îÏÈ´ÓÊܺ¦ÕßÄÇÀïÇÔÈ¡Îļþ£¬£¬£¬£¬£¬£¬È»ºóÔÙ¼ÓÃÜÒÔ½øÒ»²½Ë÷ÒªÊê½ð¡£¡£¡£±¨¸æÏÔʾ£¬£¬£¬£¬£¬£¬´ËÀ๥»÷ÔÚ2019ÄêÔöÌíÁË40£¥£¬£¬£¬£¬£¬£¬ÀÕË÷¼ÛÇ®´Ó6000ÃÀÔªÌá¸ßµ½ÁË84000ÃÀÔª£¬£¬£¬£¬£¬£¬ÆäÖÐÁ½¸öÊê½ð×î¸ßµÄ×éÖ¯ÊÇRyukºÍREvil¡£¡£¡£¶ø¾ÝCovewareµÄÊý¾ÝÏÔʾ£¬£¬£¬£¬£¬£¬2020ÄêÊê½ð¼ÛÇ®ÕÇ·ù¸ü´ó£¬£¬£¬£¬£¬£¬µÚÒ»¼¾¶ÈµÄƽ¾ù¼ÛÇ®¸ß´ï111605ÃÀÔª¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/ransomwares-big-jump-ransoms-grew-14-times-in-one-year/


4.ÃÜЪ¸ùÖÝÁ¢´óѧÔâµ½ºÚ¿ÍÍÅ»ïNetWalkerµÄÀÕË÷Èí¼þ¹¥»÷


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ÀÕË÷Èí¼þÍÅ»ïNetWalkerÓÚ5ÔÂ28ÈÕÌåÏÖ£¬£¬£¬£¬£¬£¬ËûÃÇÒѾ­ÀÖ³ÉѬȾÁËÃÜЪ¸ùÖÝÁ¢´óѧ£¨MSU£©µÄÍøÂç¡£¡£¡£¸Ã×éÖ¯ÔÚÆäÍøÕ¾ÉÏÐû²¼ÁËÎåÕÅͼƬÀ´Ö¤ÊµÆä¹¥»÷£¬£¬£¬£¬£¬£¬»®·ÖÊÇÁ½ÕŸÃÑ§Ð£ÍøÂçĿ¼½á¹¹Í¼Æ¬£¬£¬£¬£¬£¬£¬Ñ§Éú»¤ÕÕµÄɨÃèͼÏñÒÔ¼°Á½ÕÅÃÜЪ¸ùÖݲÆÎñÎļþµÄɨÃèͼÏñ¡£¡£¡£NetWalkerÒªÇóMSUÒ»ÖÜÄÚÖ§¸¶Êê½ð£¬£¬£¬£¬£¬£¬²»È»½«»á°ÑÕâЩÐÅÏ¢×ß©µ½ÆäÍøÕ¾ÉÏ¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬ÃÜÎ÷¸ùÖÝÁ¢´óÑ§ÍøÂçµÄÊÜËðÇéÐÎÉв»ÇåÎú£¬£¬£¬£¬£¬£¬¸Ã´óѧҲûÓÐÈκλظ´ÒÔÌṩ¸ü¶àϸ½Ú¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/michigan-state-university-hit-by-ransomware-gang/


5.¶ñÒâÈí¼þValakÃé×¼ExchangeЧÀÍÆ÷ÒÔÇÔÈ¡ÆóÒµÊý¾Ý


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


Cybereason Nocturnus·¢Ã÷¶ñÒâÈí¼þValakÒѾ­Öش󻯣¬£¬£¬£¬£¬£¬²¢×ªÐÍΪÐÅÏ¢ÇÔÈ¡¹¤¾ß£¬£¬£¬£¬£¬£¬Õë¶ÔExchangeЧÀÍÆ÷ÒÔÇÔÈ¡ÆóÒµÊý¾Ý¡£¡£¡£×î³õValakÊÇ×÷ΪÆäËû¹¥»÷µÄ×°ÔØ»ú±£´æµÄ£¬£¬£¬£¬£¬£¬Í¨³£ÓëUrsnifºÍIcedIDÀ¦°óÔÚÒ»ÆðʹÓᣡ£¡£ValakÊ×ÏÈͨ¹ý´¹ÂÚÈí¼þ·Ö·¢Microsoft WordºêÎĵµ£¬£¬£¬£¬£¬£¬È»ºóÏÂÔØÃûΪ¡°U.tmp¡±µÄ.DLLÎļþ£¬£¬£¬£¬£¬£¬Å²ÓÃWinExec APIÏÂÔØJavaScript´úÂë´Ó¶ø½¨ÉèC2Á´½Ó£¬£¬£¬£¬£¬£¬×îºó°²ÅÅÓÐÓøºÔز¢Ö´ÐÐÓÃÓÚÕì̽ºÍÊý¾Ý͵ÇÔµÄÆäËûÄ£¿£¿é¡£¡£¡£×îеÄValak±äÌå¿ÉÒÔÌáÈ¡Ãô¸ÐÊý¾ÝÒÔ»á¼ûÆóÒµÄÚ²¿ÓʼþϵͳµÄÓû§ºÍÆóÒµÓòÖ¤Ê飬£¬£¬£¬£¬£¬»¹¿ÉÒÔͨ¹ýsysteminfoʶ±ð³öÓòÖÎÀíÔ±£¬£¬£¬£¬£¬£¬¶ÔÆóÒµÀ´ËµºÜÊÇΣÏÕ¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/valak-targets-microsoft-exchange-servers-to-steal-enterprise-data-in-active-campaigns/


6.NSAÐû²¼¾¯±¨£¬£¬£¬£¬£¬£¬¶íºÚ¿Í×éÖ¯Sandworm¹¥»÷EximÓʼþϵͳ


ÄϹ¬NGÓéÀÖ(Öйú)¹Ù·½ÍøÕ¾


ÃÀ¹ú¹ú¼ÒÇå¾²¾Ö£¨NSA£©ÓÚ5ÔÂ28ÈÕÐû²¼ÁËÒ»ÏîÇå¾²¾¯±¨£¬£¬£¬£¬£¬£¬ÖÒÑԳƶíÂÞ˹¾üÊÂÇ鱨²¿·ÖGRUÌØÊâÊÖÒÕÖ÷ÒªÖÐÐÄ£¨GTsST£©µÄ74455µ¥Î»Ò»Ö±ÔÚ¹¥»÷ÔËÐÐEximÓʼþ´«ÊäÊðÀí£¨MTA£©µÄµç×ÓÓʼþЧÀÍÆ÷¡£¡£¡£¸Ã×éÖ¯Ò²³ÆÎªSandworm£¬£¬£¬£¬£¬£¬ËüʹÓÃ2019Äê6ÔÂÅû¶µÄ´úºÅΪ¡°Return of the WIZard.¡±µÄÎó²î£¨CVE-2019-10149£©£¬£¬£¬£¬£¬£¬ÔÚÊܺ¦ÅÌËã»úÏÂÔØ²¢Ö´ÐÐShell¾ç±¾£¬£¬£¬£¬£¬£¬¸Ã¾ç±¾¿ÉÒÔÌí¼ÓÌØÈ¨Óû§¡¢½ûÓÃÍøÂçÇå¾²ÉèÖᢸüÐÂSSHÉèÖÃÒÔÆôÓÃÆäËûÔ¶³Ì»á¼û¡¢Ö´ÐÐÆäËû¾ç±¾ÒÔÆôÓúóÐøÊ¹Óᣡ£¡£NSAÐû²¼´Ë¾¯±¨±Þ²ßEximÖÎÀíÔ±ÐÞ¸´ÆäЧÀÍÆ÷¡£¡£¡£


Ô­ÎÄÁ´½Ó£º

https://www.zdnet.com/article/nsa-warns-of-new-sandworm-attacks-on-email-servers/