ºÚ¿ÍÉù³ÆÒÑÇÔÈ¡ÐÂ¼ÓÆÂFullerton 40¶àÍò¿Í»§µÄÐÅÏ¢

Ðû²¼Ê±¼ä 2021-10-27

Ñо¿ÍŶÓÅû¶APT×éÖ¯LazarusÌᳫµÄ¹©Ó¦Á´¹¥»÷µÄϸ½Ú


Ñо¿ÍŶÓÅû¶APT×éÖ¯LazarusÌᳫµÄ¹©Ó¦Á´¹¥»÷µÄϸ½Ú.png


KasperskyÑо¿ÍŶÓÓÚ±¾ÖܶþÅû¶ÁËLazarusÔÚ½üÆÚÌᳫµÄ¹©Ó¦Á´¹¥»÷¡£APT×éÖ¯Lazarus×Ô2009ÄêÒÔÀ´Ò»Ö±»îÔ¾£¬ÀûÓÃMATA¹¥»÷¸÷¸öÐÐÒµµÄ×éÖ¯¡£Ôڴ˴λÖУ¬¸ÃÍÅ»ïÓÚ5Ô¹¥»÷ÁËÀ­ÍÑάÑǵÄIT¹©Ó¦ÉÌ£¬ÓÖÔÚ6Ô·ÝÀûÓúóÃÅBLINDINGCANµÄбäÌå¹¥»÷Á˺«¹úÖǿ⡣Ñо¿ÈËÔ±³Æ£¬×î½üµÄ»î¶¯Õ¹ÏÖÁËÁ½¸öÇ÷ÊÆ£ºLazarusÈÔÈ»¶Ô¹ú·ÀÐÐÒµ¸ÐÐËȤ£¬¶øÇÒ»¹Ï£Íûͨ¹ý¹©Ó¦Á´¹¥»÷À´À©Õ¹Æä¹¥»÷·¶Î§¡£


Ô­ÎÄÁ´½Ó£º

https://usa.kaspersky.com/about/press-releases/2021_apt-actor-lazarus-attacks-defense-industry-develops-supply-chain-attack-capabilities


Avast·¢ÏÖÕë¶ÔÊý°ÙÍòAndroidÓû§µÄÆÛÕ©»î¶¯UltimaSMS


Avast·¢ÏÖÕë¶ÔÊý°ÙÍòAndroidÓû§µÄÆÛÕ©»î¶¯UltimaSMS.png


10ÔÂ25ÈÕ£¬AvastµÄÑо¿ÈËÔ±·¢ÏÖÁË´ó¹æÄ£µÄÆÛÕ©»î¶¯UltimaSMS¡£Õⳡ»î¶¯ÀûÓÃ151¸öAndroidÓ¦Ó÷¨Ê½£¬×ÜÏÂÔØÁ¿¸ß´ï1050Íò´Î¡£ËüÃÇαװ³ÉÕÛ¿ÛÓ¦Óá¢ÓÎÏ·¡¢×Ô½ç˵¼üÅÌ¡¢¶þάÂëɨÃèÆ÷¡¢ºÍÀ¬»øÓʼþÀ¹½ØÆ÷µÈAndroidÓ¦Óã¬ÏÂÔØºó»áÒªÇóÓû§ÊäÈëÊÖ»úºÅºÍÓʼþµØÖ·À´·ÃÎÊ·¨Ê½¡£»ñµÃÊÖ»úºÅºÍȨÏ޺󣬽«ÎªÄ¿±ê¶©ÔÄÿÔÂ40ÃÀÔªµÄSMS·þÎñ¡£Sensor TowerÊý¾ÝÏÔʾ£¬ÊÜÓ°Ïì×îÑÏÖØµÄµØÓòÊǰ£¼°¡¢É³Ìذ¢À­²®¡¢°Í»ù˹̹ºÍ°¢ÁªÇõ£¬Êܺ¦Óû§ÊýÁ¿¾ùÁè¼Ý100Íò¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/millions-of-android-users-targeted-in-subscription-fraud-campaign/


ºÚ¿ÍÉù³ÆÒÑÇÔÈ¡ÐÂ¼ÓÆÂFullerton 40¶àÍò¿Í»§µÄÐÅÏ¢


ºÚ¿ÍÉù³ÆÒÑÇÔÈ¡ÐÂ¼ÓÆÂFullerton 40¶àÍò¿Í»§µÄÐÅÏ¢.png


¹¥»÷ÕßÓÚ10ÔÂ11ÈÕ¿ªÊ¼£¬ÔÚ°µÍøÉÏÒÔ600ÃÀÔªµÄ¼Û¸ñ³öÊÛÐÂ¼ÓÆÂÒ½Áƹ«Ë¾FullertonµÄÊý¾Ý¡£¹¥»÷ÕßÉù³ÆÒÑ»ñÈ¡ÁË40¶àÍò¿Í»§£¬²¢¹ûÈ»ÁËÐÕÃû¡¢Éí·ÝÖ¤ºÅÂë¡¢ÒøÐÐÕË»§ºÍ²¡Ê·µÈÐÅÏ¢×÷ΪÑù±¾¡£µ«ÊÇÔÚÉÏÖÜÎ壨10ÔÂ22ÈÕ£©£¬¹¥»÷Õßɾ³ýÁËÓйØÊý¾Ý³öÊÛµÄÐÅÏ¢¡£¸Ã¹«Ë¾ÔÚ10ÔÂ19Èճƣ¬´Ë´Îй¶ÊÇÓÉÓÚÆä¹©Ó¦ÉÌAgapeǰ²»¾ÃµÄÎ¥¹æÐÐΪµ¼ÖµÄ£¬Ä¿Ç°ÈÔδȷ¶¨ÊÜÓ°ÏìÈËÔ±µÄÊýÁ¿ºÍÉí·Ý¡£


Ô­ÎÄÁ´½Ó£º

https://www.straitstimes.com/singapore/courts-crime/fullerton-health-vendor-hacked-personal-details-of-customers-sold-online


¶à¸öÀÕË÷ÍÅ»ïÀûÓÃEntroLink VPNÖÐ0 day½øÐй¥»÷»î¶¯


¶à¸öÀÕË÷ÍÅ»ïÀûÓÃEntroLink VPNÖÐ0 day½øÐй¥»÷»î¶¯.png


9ÔÂ13ÈÕ£¬¹¥»÷ÕßÔÚ°µÍøÐû²¼ÁËEntroLink VPNÖÐ0 day©¶´ÀûÓ÷¨Ê½£¬Ö®ºó±»¶à¸öÀÕË÷ÔËÓªÍÅ»ïÎäÆ÷»¯¡£¸Ã©¶´ÊÇÒ»¸öÊäÈëÑé֤©¶´£¬Ó°ÏìÁ˺«¹úÁ÷ÐÐEntroLink PPX-AnyLinkÉ豸£¬Ö»Ð輸ÃëÖÓ¼´¿ÉÆÆ»µÉ豸¡£Ñо¿ÈËÔ±³Æ£¬½üÆÚ·¢ÏÖBlackMatterºÍLockBitµÄ·ÖÖ§»ú¹¹¿ÉÄÜÒѾ­Ê¹ÓøÃ©¶´Ìᳫ¹¥»÷£¬Õâ³ÉΪÁËĿǰÒÑÖªµÄµÚ54¸ö±»ÀÕË÷ÔËÓªÍÅ»ïÀÄÓõÄÁãÈÕ©¶´¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/ransomware-gangs-are-abusing-a-zero-day-in-entrolink-vpn-appliances/


Mozilla·¢ÏÖ2¸ö¶ñÒâÀ©Õ¹×èÖ¹Óû§°²×°Firefox¸üÐÂ


Mozilla·¢ÏÖ2¸ö¶ñÒâÀ©Õ¹×èÖ¹Óû§°²×°Firefox¸üÐÂ.png


MozillaÔÚ±¾ÖÜÒ»Åû¶£¬ÓÐ455000¸öÓû§°²×°Á˶ñÒâFirefoxÀ©Õ¹¡£Õâ2¸öÀ©Õ¹·Ö±ðΪBypassºÍBypass XM£¬¿Éͨ¹ýÊðÀíAPIÀ´×èÖ¹Óû§ÏÂÔØ¸üС¢·ÃÎʸüÐÂÆÁ±ÎÁбíºÍ¸ü¸ÄÔ¶³ÌÅäÖᣳýÁËɾ³ýÕâÁ½¸öÀ©Õ¹Ö®Í⣬¸Ã¹«Ë¾»¹ÍƳöÁËϵͳ¸½¼Ó×é¼þProxy FailoverÒÔ½øÒ»²½»º½âÎÊÌâ¡£Mozilla»¹½¨ÒéÓû§½«ä¯ÀÀÆ÷¸üе½Firefox 93°æ±¾£¬²¢È·±£Microsoft DefenderʼÖÕ´¦ÓÚÔËÐÐ״̬¡£


Ô­ÎÄÁ´½Ó£º

https://thehackernews.com/2021/10/malicious-firefox-add-ons-block-browser.html


SEONÐû²¼¹ØÓÚÈ«ÇòÍøÂç·¸×ïÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß


SEONÐû²¼¹ØÓÚÈ«ÇòÍøÂç·¸×ïÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß.png


SEONÔÚ10ÔÂ25ÈÕÐû²¼Á˹ØÓÚÈ«ÇòÍøÂç·¸×ïÍþÐ²Ì¬ÊÆµÄ·ÖÎö³ÂËß¡£³ÂËß¶ÔÈ«Çò½ü100¸ö¹ú¼ÒºÍµØÓò½øÐзÖÎö£¬·¢ÏÖÍøÂçÄþ¾²ÐÔ×îÇ¿µÄ¹ú¼ÒÊǵ¤Â󣬯ä´ÎÊǵ¹ú¡¢ÃÀ¹ú¡¢Å²Íþ¡¢Ó¢¹ú¡¢¼ÓÄôó¡¢ÈðµäºÍ°Ä´óÀûÑǵȹú¡£Ïà·´£¬×î²»Äþ¾²µÄ¹ú¼ÒÊÇÃåµé£¬Æä´ÎÊǼíÆÒÕ¯¡¢ºé¶¼À­Ë¹¡¢²£ÀûάÑǺÍÃɹŵȹú¡£³ÂËß»¹Ö¸³öÁË2020ÄêÃÀ¹ú×î³£¼ûµÄÍøÂç·¸×ïÀàÐÍ·Ö±ðÊÇÍøÂçµöÓãºÍÆÛÕ©(32.96%)¡¢Î´¸¶¿î»òδ½»¸¶(14.87%)ºÍÇÃÕ©ÀÕË÷ (10.48%)¡£


Ô­ÎÄÁ´½Ó£º

https://seon.io/resources/global-cybercrime-report/