·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷

Ðû²¼Ê±¼ä 2021-12-27

·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷


·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½BlackCatÀÕË÷¹¥»÷.png


¾ÝýÌå12ÔÂ24ÈÕ±¨µÀ £¬·¨¹úIT·þÎñ¹«Ë¾Inetum GroupÔâµ½ÀÕË÷¹¥»÷¡£×÷ΪÖڶ๫˾µÄ·þÎñÉÌ £¬Inetum GroupÊÕÈë½Ó½ü20ÒÚÃÀÔª £¬ÊÇÀÕË÷ÍÅ»ïµÄÊ×ѡĿ±ê¡£¸Ã¹«Ë¾ÌåÏÖ £¬¹¥»÷·¢ÉúÔÚ12ÔÂ19ÈÕ £¬Ó°ÏìÁËÆäÔÚ·¨¹úµÄ²¿ÃÅÒµÎñ £¬²¢Ã»ÓÐÂûÑÓµ½¿Í»§µÄ»ù´¡ÉèÊ©¡£Inetum²¢Î´Í¸Â¶¹¥»÷ÕßÐÅÏ¢ £¬µ«·¨¹úýÌåLeMagIt³ÆÓëBlackCatÓйØ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/global-it-services-provider-inetum-hit-by-ransomware-attack/


BlackmagicÐÞ¸´Æä²úÎïDaVinci ResolveÖеÄ2¸ö©¶´


BlackmagicÐÞ¸´Æä²úÎïDaVinci ResolveÖеÄ2¸ö©¶´.png


12ÔÂ21ÈÕ £¬Blackmagic SoftwareÐÞ¸´ÆäDaVinci Resolveƽ̨ÖеÄ2¸ö©¶´¡£¸Ãƽ̨һ¸ö½«ÊÓÆµ±à¼­ºÍÉ«²ÊУÕý¡¢ÊÓ¾õЧ¹û¡¢¶¯Ì¬Í¼ÐκÍÒôƵºóÆÚÖÆ×÷¹¤¾ß½áºÏÔÚÒ»ÆðµÄ½â¾ö·½°¸¡£ÕâÁ½¸öÔ¶³Ì´úÂëÖ´ÐЩ¶´ÓÉCisco Talos·¢ÏÖ £¬±àºÅΪCVE-2021-40417ºÍCVE-2021-40418 £¬CVSSv3ÆÀ·ÖΪ9.8¡£ÆäÖÐ £¬CVE-2021-40417ÊÇÒ»¸ö»ùÓڶѵĻº³åÇøÒç³ö©¶´ £¬ÊÇÓ¦ÓÃÔÚ½âÂëÊÓÆµÎļþʱ·¢ÉúÕûÊýÒç³öµ¼ÖµÄ£»CVE-2021-40418ÊÇÓÉ´íÎóµÄUUIDµ¼Ö¹¤¾ß³ÉԱδ³õʼ»¯´¥·¢µÄ¡£


Ô­ÎÄÁ´½Ó£º

https://www.bleepingcomputer.com/news/security/blackmagic-fixes-critical-davinci-resolve-code-execution-flaws/


AppleÐÞ¸´macOSÖпÉÈÆ¹ýGatekeeperÄþ¾²¹¦Ð§µÄ©¶´


AppleÐÞ¸´macOSÖпÉÈÆ¹ýGatekeeperÄþ¾²¹¦Ð§µÄ©¶´.png


¾ÝýÌå12ÔÂ26ÈÕ±¨µÀ £¬AppleÔÚ½üÆÚÐÞ¸´ÁËmacOSÖпÉÓÃÀ´ÈƹýGatekeeperÄþ¾²¹¦Ð§²¢Ö´ÐÐÈÎÒâ´úÂë¡£¸Ã©¶´±àºÅΪCVE-2021-30853 £¬ÓÉBoxµÄGordon Long·¢ÏÖ¡£Patrick WardleÔÚ12ÔÂ23ÈÕÐû²¼Á˸é¶´µÄ·ÖÎö £¬³Æ¹¥»÷Õß¿ÉÒÔͨ¹ýÓÕʹĿ±ê´ò¿ªÎ±×°³ÉPDFÎļþµÄ¶ñÒâÓ¦ÓÃÀ´´¥·¢¸Ã©¶´ £¬»ù´¡Ô­ÒòÊÇδǩÃû¡¢Î´¹«Ö¤µÄ»ùÓڽű¾µÄÓ¦Ó÷¨Ê½ÎÞ·¨Ö¸¶¨½âÊÍ·¨Ê½¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/126004/security/macos-gatekeeper-bypass-2.html


еÄBLISTERÀûÓÃSectigo·¢±íµÄÇ©ÃûÖ¤ÊéÈÆ¹ý¼ì²â


еÄBLISTERÀûÓÃSectigo·¢±íµÄÇ©ÃûÖ¤ÊéÈÆ¹ý¼ì²â.png


12ÔÂ23ÈÕ £¬ElasticÑо¿ÈËÔ±¹ûÈ»ÁËжñÒâÈí¼þBLISTERÕë¶ÔWindowsϵͳµÄ¹¥»÷»î¶¯¡£Elastic³Æ¸Ã»î¶¯×Ô9ÔÂ15ÈÕÆðÒѾ­ÔËÐÐÁËÖÁÉÙÈý¸öÔ¡£¹¥»÷ÕßʹÓÃÁË8ÔÂ23ÈÕÆðÉúЧµÄÇ©ÃûÖ¤Êé £¬¸ÃÖ¤ÊéÓÉSectigo¹«Ë¾·¢±í¸øBlist LLC £¬ÆäÓʼþµØÖ·ÊôÓÚ¶íÂÞ˹¹«Ë¾Mail.Ru¡£´ËÍâ £¬¹¥»÷Õß»¹Ê¹ÓÃÁ˶àÖÖÈÆ¹ý¼ì²âµÄ¼¼Êõ £¬°üÂÞ½«BlisterǶÈëµ½ºÏ·¨¿âÖУ¨Èçcolorui.dll£© £¬ÕâʹµÃBLISTERÑù±¾ÔÚVirusTotalÖеļì²âÂʷdz£µÍ¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/125958/malware/blister-loader.html



SentinelLabs³ÆÐµÄÀÕË÷Èí¼þRookÓëBabukÓйØÁª


SentinelLabs³ÆÐµÄÀÕË÷Èí¼þRookÓëBabukÓйØÁª.png


12ÔÂ23ÈÕ £¬SentinelLabs¹ûÈ»Á˹ØÓÚÐÂÀÕË÷Èí¼þRookµÄÑо¿½á¹û¡£11ÔÂ30ÈÕ £¬¸ÃÍÅ»ïÔÚÆäÊý¾ÝÐ¹Â¶ÍøÕ¾Ðû²¼Á˵ÚÒ»¸öÄ¿±ê¹«Ë¾µÄÐÅÏ¢ £¬ÊÇÒ»¼Ò¹þÈø¿Ë˹̹½ðÈÚ»ú¹¹¡£RookµÄ³õʼѬȾý½éΪµöÓãÓʼþºÍ¶ñÒâµÄÏÂÔØÖÖ×Ó £¬²¢Í¨¹ýCobalt Strike·Ö·¢¡£Ñо¿ÈËÔ±·ÖÎö·¢ÏÖ £¬¸Ã¶ñÒâÈí¼þµÄ´úÂëÓëBabukÓÐÃ÷ÏÔÖØµþ £¬ºóÕßÒÑÍ£Ö¹ÔËÓª £¬ÇÒÔ´´úÂëÓÚ½ñÄê9ÔÂÔÚºÚ¿ÍÂÛ̳ÉϹûÈ»¡£


Ô­ÎÄÁ´½Ó£º

https://securityaffairs.co/wordpress/125988/malware/rook-ransomware-based-on-babuk.html


°¢¶û°ÍÄáÑÇÁè¼Ý63Íò¹«ÃñµÄÐÅϢй¶ £¬Õ¼×ÜÈË¿Ú22%


°¢¶û°ÍÄáÑÇÁè¼Ý63Íò¹«ÃñµÄÐÅϢй¶£¬Õ¼×ÜÈË¿Ú22%.png


12ÔÂ23ÈÕ £¬°¢¶û°ÍÄáÑÇÕþ¸®È·Èϲ¢ÖÂǸ½üÆÚ·¢ÉúµÄÐÅϢй¶Ê¼þ¡£Ð¹Â¶Îļþ±»ÒÔExcelÎĵµµÄÐÎʽÉÏ´«µ½ÁËWhatsAppÉÏ £¬°üÂÞ¹«ÃñµÄÐÕÃû¡¢Éí·ÝÖ¤ºÅÂ롢нˮ¡¢ÊÂÇéְλºÍ¹ÍÖ÷ÐÕÃûµÈÏêϸÐÅÏ¢ £¬Éæ¼°637138ÈË £¬Õ¼¸Ã¹ú×ÜÈË¿Ú22%ÒÔÉÏ¡£µ±µØÃ½ÌåÓÚ12ÔÂ22ÈÕ±¨µÀ £¬¸ÃÎļþ°üÂÞÏòÕþ¸®Ìá½»µÄ2021Äê1ÔÂ˰ÎñºÍÈËΪÐÅÏ¢ £¬»³ÒÉÊÇ´Ó˰Îñ²¿ÃÅ»òÉç»á±£ÏÕ»ú¹¹Ð¹Â¶µÄ¡£¸Ã¹úÕþ¸®³Æ £¬³õ·¨Ê½²éÏÔʾй¶ÊÇÄÚ²¿Ô­Òòµ¼ÖµÄ £¬¶ø·ÇÍⲿ¹¥»÷¡£


Ô­ÎÄÁ´½Ó£º

https://therecord.media/personal-and-salary-data-for-637138-albanian-citizens-leaks-online/