Operaä¯ÀÀÆ÷ÑÏÖØÎó²îMyFlawʹÊý°ÙÍòÓû§ÃæÁÙΣº¦

Ðû²¼Ê±¼ä 2024-01-17
1. Operaä¯ÀÀÆ÷ÑÏÖØÎó²îMyFlawʹÊý°ÙÍòÓû§ÃæÁÙΣº¦


1ÔÂ16ÈÕ£¬£¬ £¬£¬Ê¢ÐÐµÄ Opera Web ä¯ÀÀÆ÷Öз¢Ã÷ÁËÒ»¸öÑÏÖØÎó²î£¬£¬ £¬£¬¸ÃÎó²î¿ÉÄܵ¼ÖÂÔÚ Windows ºÍ Mac ²Ù×÷ϵͳÉÏÔ¶³ÌÖ´ÐдúÂë¡£¡£¡£¡£Guardio Labs Ñо¿ÍŶӷ¢Ã÷²¢Åû¶µÄÕâһȱÏÝ͹ÏÔÁËÔÚÏÖ´úä¯ÀÀÆ÷ÖÐÆ½ºâй¦Ð§ÓëǿʢÇå¾²ÐÔËùÃæÁÙµÄÒ»Á¬ÌôÕ½¡£¡£¡£¡£Guardio Ñо¿ÍŶӽ«Õâ¸öÎó²îÃüÃûΪMyFlaw£¬£¬ £¬£¬ÊÇÓÉÓÚOpera µÄ¡°My Flow¡±¹¦Ð§¶ø±£´æµÄÔ¶³Ì´úÂëÖ´ÐÐÎó²î£¬£¬ £¬£¬¸Ã¹¦Ð§¿ÉÒÔͨ¹ýä¯ÀÀÆ÷ÔÚ×ÀÃæºÍÒÆ¶¯×°±¸Ö®¼äÎÞ·ì¹²ÏíÌõ¼ÇºÍÎļþ¡£¡£¡£¡£ÏêϸÀ´Ëµ£¬£¬ £¬£¬My Flow µÄ»ùÓÚÍøÂçµÄ̸Ìì½çÃæÎªÈκθԶ×ãļþÌí¼ÓÁË¡°·­¿ª¡±Á´½Ó£¬£¬ £¬£¬µ¼ÖÂÖ±½Ó´Óä¯ÀÀÆ÷Ö´ÐÐËüÃÇ¡£¡£¡£¡£


2. Áè¼Ý178000¸öSONICWALLÏÂÒ»´ú·À»ðǽÒ×ÔâÊܺڿ͹¥»÷


1ÔÂ15ÈÕ£¬£¬ £¬£¬SonicWall ÏÂÒ»´ú·À»ðǽ (NGFW) ϵÁÐ 6 ºÍ 7 ×°±¸Êܵ½Á½¸öδ¾­Éí·ÝÑéÖ¤µÄ¾Ü¾øÐ§ÀÍÎó²îµÄÓ°Ï죬£¬ £¬£¬»®·ÖΪCVE-2022-22274 ºÍ CVE-2023-0656£¬£¬ £¬£¬Õâ¿ÉÄܻᵼÖÂÔ¶³Ì´úÂëÖ´ÐС£¡£¡£¡£Ö»¹ÜÕë¶ÔCVE-2023-0656ȱÏݵĿ´·¨Ñé֤ʹÓÃÒѹûÕæÐû²¼£¬£¬ £¬£¬µ«¹©Ó¦É̲¢²»ÖªµÀʹÓÃÕâЩÎó²î¾ÙÐеÄÒ°Íâ¹¥»÷¡£¡£¡£¡£Bishop Fox µÄÑо¿Ö°Ô±Ê¹Óà BinaryEdge Ô´Êý¾ÝÕÒµ½ÁË̻¶ÓÚ»¥ÁªÍøµÄÖÎÀí½çÃæµÄ SonicWall ·À»ðǽ¡£¡£¡£¡£×¨¼Ò·¢Ã÷£¬£¬ £¬£¬76%£¨233,984 ÆäÖÐµÄ 178,637 ¸ö£©ÃæÏò»¥ÁªÍøµÄ·À»ðǽÈÝÒ×Êܵ½Ò»¸ö»òÁ½¸öÎÊÌâµÄÓ°Ïì¡£¡£¡£¡£×¨¼ÒÖ¸³ö£¬£¬ £¬£¬ÕâÁ½¸öÎÊÌâʵÖÊÉÏÊÇÏàͬµÄ£¬£¬ £¬£¬µ«ÓÉÓÚÖØÓÃÁËÒ×Êܹ¥»÷µÄ´úÂëģʽ£¬£¬ £¬£¬Òò´Ë¿ÉÒÔÔÚ²î±ðµÄ HTTP URI ·¾¶ÉÏʹÓᣡ£¡£¡£Ñо¿Ö°Ô±»¹¿ª·¢ÁËÒ»¸ö²âÊԾ籾£¬£¬ £¬£¬¿ÉÒÔÔÚ²»µ¼ÖÂ×°±¸Íß½âµÄÇéÐÎÏÂÈ·¶¨×°±¸ÊÇ·ñÈÝÒ×Êܵ½¹¥»÷¡£¡£¡£¡£


3. MicrosoftÐÞ¸´KB5034441¸üÐÂʱµ¼ÖÂ0x80070643¹ýʧ


1ÔÂ15ÈÕ£¬£¬ £¬£¬Microsoft ÕýÔÚÆð¾¢ÐÞ¸´ÔÚ×°ÖÃÐÞ²¹ CVE-2024-20666 BitLocker Îó²îµÄ KB5034441 Çå¾²¸üÐÂʱµ¼Ö 0x80070643 ¹ýʧµÄÒÑÖªÎÊÌâ¡£¡£¡£¡£ËäÈ»Çå¾²ÎÊÌâÒÑÔÚ±¾ÔµÄÖܶþ²¹¶¡ÈÕ»ñµÃ½â¾ö£¬£¬ £¬£¬µ«ÔÚ Windows »Ö¸´ÇéÐÎ (WinRE) ·ÖÇø¹ýСµÄϵͳÉϰ²ÅÅ KB5034441 ½«»áʧ°Ü£¬£¬ £¬£¬²¢¹ýʧµØÏÔʾͨÓá° 0x80070643 - ERROR_INSTALL_FAILURE¡±¹ýʧÐÂÎÅ£¬£¬ £¬£¬¶ø²»ÊÇ׼ȷµÄ CBS_E_INSUFFICIENT_DISK_SPACE ¹ýʧ¡£¡£¡£¡£


4. SmartScreenÎó²î±»Ê¹ÓÃÀ´Í¶·ÅPhemedrone¶ñÒâÈí¼þ


1ÔÂ15ÈÕ£¬£¬ £¬£¬Phemedrone ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ»î¶¯Ê¹Óà Microsoft Defender SmartScreen Îó²î (CVE-2023-36025) ÔÚ·­¿ª URL ÎļþÊ±ÈÆ¹ý Windows Çå¾²ÌáÐÑ¡£¡£¡£¡£Phemedrone ÊÇÒ»ÖÖÐÂÐÍ¿ªÔ´ÐÅÏ¢ÇÔÈ¡¶ñÒâÈí¼þ£¬£¬ £¬£¬¿ÉÍøÂçÍøÂçä¯ÀÀÆ÷¡¢¼ÓÃÜÇ®±ÒÇ®°üÒÔ¼° Discord¡¢Steam ºÍ Telegram µÈÈí¼þÖд洢µÄÊý¾Ý¡£¡£¡£¡£È»ºó£¬£¬ £¬£¬ÕâЩÊý¾Ý±»·¢Ëͻع¥»÷Õߣ¬£¬ £¬£¬ÓÃÓÚÆäËû¶ñÒâ»î¶¯»ò³öÊÛ¸øÆäËûÍþвÐÐΪÕß¡£¡£¡£¡£Phemedrone »î¶¯ÖÐʹÓÃµÄ Microsoft Defender ȱÏÝΪ CVE-2023-36025¡£¡£¡£¡£


5. Tura Scandinavia ABÔâµ½ÀÕË÷Èí¼þÍÅ»ïLockBitµÄ¹¥»÷


1ÔÂ15ÈÕ£¬£¬ £¬£¬ura Scandinavia AB ·¢Ã÷×Ô¼º³ÉΪ LockBit ÀÕË÷Èí¼þ×éÖ¯µÄ¹¥»÷Ä¿µÄ£¬£¬ £¬£¬Õâ±ê¼Çןù«Ë¾ÍøÂçÇ徲ʷÉϵÄÓÖÒ»ÊÂÎñ¡£¡£¡£¡£ÍþвÐÐΪÕß LockBit ÀÕË÷Èí¼þ×éÖ¯ÔÚ°µÍøÉÏÐû²¼ÁËÓйش˴ÎÈëÇÖµÄÉùÃ÷¡£¡£¡£¡£¶ÔTura Scandinavia AB µÄËùÎ½ÍøÂç¹¥»÷Ö®ÒÔÊÇÀֳɣ¬£¬ £¬£¬ÊÇÓÉÓÚ Tura Scandinavia ¹«Ë¾ÍøÂçÖеĶà¸öÎó²îµ¼ÖÂδ¾­ÊÚȨµÄ»á¼û¡£¡£¡£¡£ÁîÈËÕ𾪵ÄÊÇ£¬£¬ £¬£¬LockBitÉù³ÆÄÚ²¿Ð§ÀÍÆ÷ȱ·¦¼à¿ØÏµÍ³¡¢·À²¡¶¾Èí¼þºÍ·À»ðǽµÈ»ù±¾Çå¾²²½·¥¡£¡£¡£¡£ 


6. Inferno DrainerÕ©Æ­Áè¼Ý13ÍòÃûÊܺ¦Õß»ñµÃ8700ÍòÃÀÔª


1ÔÂ16ÈÕ£¬£¬ £¬£¬ÏÖÒÑÇýÖðµÄInferno Drainer±³ºóµÄÔËÓªÕßÔÚ 2022 ÄêÖÁ 2023 ÄêµÄÒ»Äêʱ¼äÄÚ½¨ÉèÁËÁè¼Ý 16,000 ¸öÆæÒìµÄ¶ñÒâÓòÃû¡£¡£¡£¡£¸Ã¶ñÒâÈí¼þÊÇһϵÁиüÆÕ±éµÄÀàËÆ²úÆ·µÄÒ»²¿·Ö£¬£¬ £¬£¬ÕâЩ²úÆ·ÒÔsaasģʽÌṩӦ¿Í»§£¬£¬ £¬£¬ÒÔ»»È¡ 20% µÄÊÕÈë·Ö³É¡£¡£¡£¡£Inferno Drainer µÄ¿Í»§¿ÉÒÔ½«¶ñÒâÈí¼þÉÏ´«µ½×Ô¼ºµÄ´¹ÂÚÍøÕ¾£¬£¬ £¬£¬»òÕßʹÓÿª·¢ÕßµÄЧÀÍÀ´½¨ÉèºÍÍйܴ¹ÂÚÍøÕ¾£¬£¬ £¬£¬ÎÞÐèÌØÊâÓöÈ£¬£¬ £¬£¬ÔÚijЩÇéÐÎÏÂÒ²¿ÉÒÔÊÕÈ¡±»µÁ×ʲúµÄ 30%¡£¡£¡£¡£¡°Inferno Drainer ´¹ÂÚÍøÕ¾µÄÁíÒ»¸öµä·¶ÌØÕ÷ÊÇÓû§ÎÞ·¨Í¨¹ýʹÓÿì½Ý¼ü»òÓÒ¼üµ¥»÷Êó±êÀ´·­¿ªÍøÕ¾Ô´´úÂë¡£¡£¡£¡£³ý´ËÖ®Í⣬£¬ £¬£¬Group-IB ÌåÏÖ£¬£¬ £¬£¬Inferno Drainer µÄÀֳɿÉÄÜ»áÍÆ¶¯Ð Drainer µÄ¿ª·¢£¬£¬ £¬£¬²¢µ¼Ö°üÀ¨ÓÕÆ­ Web3 ЭÒéµÄ¶ñÒâ¾ç±¾µÄÍøÕ¾¼¤Ôö£¬£¬ £¬£¬²¢Ö¸³ö 2024 Äê¿ÉÄܳÉΪ¡°Drainer Äꡱ¡£¡£¡£¡£