OpenSSL¼´½«ÐÞ¸´¼ÌHeartbleedÒÔÀ´ÓÖÒ»ÑÏÖØÎó²î
Ðû²¼Ê±¼ä 2022-10-28
¾Ý10ÔÂ26ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬OpenSSLÏîÄ¿Ðû²¼½«Ðû²¼¸üÐÂÒÔÐÞ¸´¿ªÔ´¹¤¾ß°üÖеÄÒ»¸öÒªº¦Îó²î¡£¡£¡£¡£Ñо¿Ö°Ô±Ö¸³ö£¬£¬£¬£¬£¬£¬ÕâÊÇ×Ô2016Äê9ÔÂÒÔÀ´ÔÚ¹¤¾ß°üÖÐÐÞ¸´µÄµÚÒ»¸öÒªº¦Îó²î¡£¡£¡£¡£Í¨¸æÅú×¢£¬£¬£¬£¬£¬£¬OpenSSL 3.0.7ÊÇÒ»¸öÇå¾²ÐÞ¸´°æ±¾£¬£¬£¬£¬£¬£¬½«ÓÚ2022Äê11ÔÂ1ÈÕ13:00-17:00 UTCÐû²¼¡£¡£¡£¡£¸ÃÑÏÖØÎó²î½öÓ°Ïì3.0¼°¸ü¸ß°æ±¾£¬£¬£¬£¬£¬£¬ÊǼÌ2014ÄêHeartbleedÎó²î(CVE-2014-0160)Ö®ºó£¬£¬£¬£¬£¬£¬OpenSSLÐÞ¸´µÄµÚ¶þ¸öÑÏÖØµÄÎó²î¡£¡£¡£¡£OpenSSL»¹Ðû²¼Á˼´½«ÔÚͳһÌìÐû²¼µÄbugÐÞ¸´°æ±¾1.1.1¡£¡£¡£¡£
https://securityaffairs.co/wordpress/137689/security/openssl-second-critical-flaw-ever.html
2¡¢Î¢Èí³ÆÊ¹ÓÃServer ManagerÖØÖôÅÅ̿ɵ¼ÖÂÊý¾Ýɥʧ
10ÔÂ26ÈÕ±¨µÀ£¬£¬£¬£¬£¬£¬Î¢Èí³ÆÊ¹ÓÃServer ManagerÖÎÀí¿ØÖÆÌ¨ÖØÖÃÐéÄâ´ÅÅÌʱ£¬£¬£¬£¬£¬£¬¿ÉÄܻᵼÖÂÊý¾Ýɥʧ¡£¡£¡£¡£ÓÉÓÚ´ËÎÊÌ⣬£¬£¬£¬£¬£¬ÊµÑéÖØÖûòɨ³ýÐéÄâ´ÅÅ̵ÄÖÎÀíÔ±¿ÉÄÜ»áÒâÍâµØÖØÖÃÆäËüµÄ´ÅÅÌ¡£¡£¡£¡£ËûÃÇ»¹½«ÔÚʹÃü½ø¶È¶Ô»°¿ò´°¿ÚÖп´µ½¡°ÖØÖôÅÅÌʧ°Ü¡±µÄ¹ýʧ£¬£¬£¬£¬£¬£¬ÒÔ¼°¡°ÕÒµ½¶à¸ö¾ßÓÐÏàͬIDµÄ´ÅÅÌ£¬£¬£¬£¬£¬£¬Çë¸üÐÂÄúµÄ´æ´¢Çý¶¯³ÌÐò£¬£¬£¬£¬£¬£¬È»ºóÖØÊÔ¡£¡£¡£¡£¡±Îª´Ë£¬£¬£¬£¬£¬£¬Î¢ÈíÌṩÁËÒ»ÖÖ½â¾öÒªÁ죬£¬£¬£¬£¬£¬Ê¹ÓÃPowerShellÏÂÁîÔÚ¿ÉÓõĴ洢ÖÎÀíÌṩ³ÌÐòÖмìË÷´ÅÅ̵ÄDeviceID£¬£¬£¬£¬£¬£¬²¢Í¨¹ýɾ³ýËùÓзÖÇøÐÅÏ¢²¢×÷·Ï³õʼ»¯À´É¨³ý´ÅÅÌ£¬£¬£¬£¬£¬£¬À´É¨³ý²Á³ý´ÅÅÌÉϵÄËùÓÐÊý¾Ý¡£¡£¡£¡£
https://www.bleepingcomputer.com/news/microsoft/microsoft-server-manager-disk-resets-can-lead-to-data-loss/
3¡¢Ã½Ì幫˾ÌÀÉ·͸Êý¾Ý¿âÉèÖùýʧй¶Áè¼Ý3TBµÄÊý¾Ý
ýÌå10ÔÂ27Èճƣ¬£¬£¬£¬£¬£¬¿ç¹úýÌ幫˾Thomson Reuters£¨ÌÀÉ·͸£©Ð¹Â¶ÁËÖÁÉÙ3 TBµÄÃô¸ÐÊý¾Ý¡£¡£¡£¡£¸ÃElasticSearchµÄË÷ÒýÃüÃûÅú×¢Ëü±»ÓÃ×÷ÈÕ־ЧÀÍÆ÷£¬£¬£¬£¬£¬£¬ÒÔÍøÂçͨ¹ýÓû§-¿Í»§¶Ë½»»¥»ñµÃµÄ´ó×ÚÊý¾Ý¡£¡£¡£¡£Êý¾ÝÑù±¾µÄʱ¼ä´ÁÅú×¢ÕâЩÊý¾ÝÊÇ×î½ü¼Í¼µÄ£¬£¬£¬£¬£¬£¬ÆäÖÐһЩÊý¾ÝÊÇ10ÔÂ26ÈÕµÄ×îÐÂÊý¾Ý¡£¡£¡£¡£¸ÃÊý¾Ý¿â°üÀ¨ÒÔ´¿Îı¾ÃûÌÃÉúÑĵĵÚÈý·½Ð§ÀÍÆ÷µÄ»á¼ûƾ֤¡¢µÇ¼ºÍÃÜÂëÖØÖÃÈÕÖ¾¡¢SQLÈÕÖ¾£¬£¬£¬£¬£¬£¬ÒÔ¼°Ïà¹Ø¹«Ë¾ºÍÖ´·¨ÎļþµÈ¡£¡£¡£¡£ÏÖÔÚ£¬£¬£¬£¬£¬£¬¸Ã¹«Ë¾Òѹرտª·ÅµÄÊý¾Ý¿â¡£¡£¡£¡£
https://securityaffairs.co/wordpress/137718/data-breach/thomson-reuters-database-exposed.html
4¡¢KimsukyÍÅ»ïʹÓÃ3¸öAndroid¶ñÒâÈí¼þ¹¥»÷º«¹úµÄ×éÖ¯
Çå¾²¹«Ë¾S2WÓÚ10ÔÂ24ÈÕÅû¶ÁËKimsukyʹÓÃ3¸öAndroid¶ñÒâÈí¼þÕë¶Ôº«¹ú×éÖ¯µÄ¹¥»÷»î¶¯¡£¡£¡£¡£S2W͸¶ËüÃÇÔÚ¸ú×ÙKimsuky×éÖ¯µÄÀú³ÌÖз¢Ã÷ÁË3ÖÖеĶñÒâÈí¼þ£ºKimsukyÏÖÔÚÕýÔÚ¿ª·¢µÄ¶ñÒâAPK FastFire£¬£¬£¬£¬£¬£¬Ëüαװ³É¹È¸èÇå¾²²å¼þ£»£»FastViewer£¬£¬£¬£¬£¬£¬Î±×°³É¿ÉÒÔ¶ÁÈ¡º«ÎÄÎļþ(.hwp)µÄÒÆ¶¯Éó²é³ÌÐòHancom Viewer£»£»»ùÓÚAndroid×°±¸µÄÔ¶³Ì¿ØÖƹ¤¾ßAndroSpyµÄÔ´´úÂ뿪·¢µÄFastSpy¡£¡£¡£¡£Ñо¿Ö°Ô±³Æ£¬£¬£¬£¬£¬£¬KimsukyµÄ¹¥»÷Õ½ÂÔÔ½À´Ô½ÏȽø£¬£¬£¬£¬£¬£¬Òò´ËÒª×¢ÖØÕë¶ÔAndroid×°±¸µÄ¹¥»÷¡£¡£¡£¡£
https://thehackernews.com/2022/10/kimsuky-hackers-spotted-using-3-new.html
5¡¢Unit 42Ðû²¼2022ÄêµÚ¶þ¼¾¶ÈWebÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ
10ÔÂ26ÈÕ£¬£¬£¬£¬£¬£¬Unit 42Ðû²¼ÁË2022ÄêµÚ¶þ¼¾¶ÈWebÍþÐ²Ì¬ÊÆµÄÆÊÎö±¨¸æ¡£¡£¡£¡£±¨¸æÖ¸³ö£¬£¬£¬£¬£¬£¬µÚ¶þ¼¾¶È·¢Ã÷ÁËԼĪ751000¸ö°üÀ¨²î±ðÀàÐÍWebÍþвµÄ¶ñÒâÉϰ¶URLÊÂÎñ£¬£¬£¬£¬£¬£¬ÆäÖÐ253000¸öÊÇΨһURL£»£»¼ì²âµ½Ô¼Äª1740000¸ö¶ñÒâÖ÷»úURL£¬£¬£¬£¬£¬£¬ÆäÖÐ256000¸öÊÇΨһµÄ£»£»ÕâЩÓòÃûÖеĴó´ó¶¼ËƺõÀ´×ÔÃÀ¹ú£»£»Top 5µÄÍþвÊǼÓÃܿ󹤡¢JavaScriptÏÂÔØÆ÷¡¢ web skimmer¡¢web scamºÍJavaScriptÖØ¶¨Ïò¹¤¾ß¡£¡£¡£¡£
https://unit42.paloaltonetworks.com/web-threats-malicious-javascript-downloader/
6¡¢Check PointÐû²¼¹ØÓÚ2022ÄêQ3È«ÇòÍøÂç¹¥»÷µÄ±¨¸æ
Check PointÔÚ10ÔÂ26ÈÕÐû²¼Á˹ØÓÚ2022ÄêQ3È«ÇòÍøÂç¹¥»÷µÄ±¨¸æ¡£¡£¡£¡£Óë2021ÄêͬÆÚÏà±È£¬£¬£¬£¬£¬£¬2022ÄêµÚÈý¼¾¶ÈÈ«ÇòµÄÍøÂç¹¥»÷ÔöÌíÁË28%£¬£¬£¬£¬£¬£¬È«Çòÿ¸ö×é֯ƽ¾ùÿÖܱ»¹¥»÷¶à´ï1130´Î¡£¡£¡£¡£ÕâÒ»¼¾¶È±»¹¥»÷×î¶àµÄÐÐÒµÊǽÌÓýºÍÑо¿²¿·Ö£¬£¬£¬£¬£¬£¬Æ½¾ùÿ¸ö×é֯ÿÖܱ»¹¥»÷2148´Î£¬£¬£¬£¬£¬£¬Óë2021ÄêQ3Ïà±ÈÔöÌíÁË18%¡£¡£¡£¡£Ò½ÁƱ£½¡ÐÐÒµÊÇ2022ÄêQ3Ôâµ½ÀÕË÷¹¥»÷×î¶àµÄÐÐÒµ£¬£¬£¬£¬£¬£¬Ã¿42¸ö×éÖ¯ÖоÍÓÐÒ»¸öѬȾÀÕË÷Èí¼þ£¬£¬£¬£¬£¬£¬Í¬±ÈÔöÌí5%¡£¡£¡£¡£
https://blog.checkpoint.com/2022/10/26/third-quarter-of-2022-reveals-increase-in-cyberattacks/


¾©¹«Íø°²±¸11010802024551ºÅ