΢ÈíÐû²¼´øÍâ¸üÐÂÒÔ½â¾ö1Ô·ÝÖܶþ²¹¶¡µ¼ÖµÄÎÊÌâ
Ðû²¼Ê±¼ä 2022-01-19΢ÈíÐû²¼´øÍâ¸üÐÂÒÔ½â¾ö1Ô·ÝÖܶþ²¹¶¡µ¼ÖµÄÎÊÌâ
1ÔÂ18ÈÕ£¬Î¢ÈíÐû²¼½ô¼±´øÍâ(OOB)¸üУ¬ÒÔ½â¾öÓÉ2021Äê1ÔµÄÖܶþ²¹¶¡µ¼ÖµÄÖî¶àÎÊÌâ¡£¸Ã¹«Ë¾ÌåÏÖ£¬´Ë¸üнâ¾öÁËÓëVPNÁ¬½Ó¡¢Windows ServerÓò¿ØÖÆÆ÷ÖØÐÂÆô¶¯¡¢ÐéÄâ»úÆô¶¯Ê§°ÜÒÔ¼°ReFS¸ñʽµÄ¿ÉÒÆ¶¯Ã½ÌåÎÞ·¨°²×°Ïà¹ØµÄÎÊÌâ¡£´Ë´ÎÐû²¼µÄËùÓÐOOB¸üж¼¿ÉÒÔÔÚMicrosoft Update CatalogÉÏÏÂÔØ£¬ÆäÖв¿ÃÅ»¹ÄÜ×÷Ϊ¿ÉÑ¡¸üÐÂÖ±½Óͨ¹ýWindows Update°²×°¡£
https://www.bleepingcomputer.com/news/microsoft/microsoft-releases-oob-updates-for-january-windows-update-issues/
AWSÐÞ¸´ÐÅϢй¶©¶´SuperglueºÍBreakingFormation
¾ÝýÌå1ÔÂ14ÈÕ±¨µÀ£¬AWSÒÑÐÞ¸´Æä²úÎïÖеÄ2¸öÐÅϢй¶©¶´¡£Õâ2¸ö©¶´¾ùÊÇÓÉOrca SecurityÍŶӷ¢Ïֵ쬯äÖеÄSuperglue´æÔÚÓÚAWS Glue·þÎñÖУ¬ÊÇÄÚ²¿·þÎñAPIÅäÖôíÎóµ¼Öµģ¬¿É±»ÓÃÀ´ÌáÉýȨÏÞ·ÃÎʸõØÓòµÄËùÓзþÎñ×ÊÔ´£»ÁíÒ»¸öÊÇAWS CloudFormation·þÎñÖеÄBreakingFormation£¬ÕâÊÇÒ»¸öXXE©¶´£¬¿Éµ¼ÖÂAWS»ù´¡ÉèÊ©·þÎñµÄÎļþºÍƾ֤й¶¡£
https://www.infosecurity-magazine.com/news/aws-patches-glue-bug-customer-data/
Ñо¿ÈËÔ±ÑÝʾÈçºÎÀûÓõÚÈý·½Ó¦ÓÃÖЩ¶´½âËøÌØË¹ÀÆû³µ
ýÌå1ÔÂ13ÈÕ±¨µÀ£¬19ËêµÄDavid Colombo³ÆÆä¿ÉÒÔÔ¶³Ì¿ØÖƶà¸ö¹ú¼ÒµÄ25Á¾ÌØË¹ÀÆû³µ¡£ColomboÔÚ¾ßÓиú×ÙÆû³µÒƶ¯ºÍÔ¶³Ì½âËø³µÃŵȹ¦Ð§µÄµÚÈý·½Ó¦ÓÃÖз¢ÏÖÒ»¸ö©¶´£¬¸Ã©¶´Ô´ÓÚÓ¦ÓÃÒÔ²»Äþ¾²µÄ·½Ê½´æ´¢ÓÃÀ´Á¬½ÓÆû³µµÄÃô¸ÐÐÅÏ¢¡£ÀÖ³ÉÀûÓé¶´ºó³ýÁË¿ÉÒÔ¿ØÖÆÆû³µ£¬»¹¿ÉÒÔ»ñÈ¡Óû§ÐÅÏ¢¡£Ñо¿ÈËÔ±ÌåÏÖ£¬ËûÔڵ¹ú¡¢Ó¢¹ú¡¢ÃÀ¹ú¡¢¼ÓÄôóºÍÖйúµÈ¹ú¼Ò»¹·¢ÏÖÁËÁè¼Ý125Á¾¿É±»¿ØÖƵÄÌØË¹ÀÆû³µ¡£
https://www.vice.com/en/article/akv7z5/how-a-hacker-controlled-dozens-of-teslas-using-a-flaw-in-third-party-app
NFTƽ̨Lympo±»·Ç·¨·ÃÎÊ£¬Ôì³ÉÔ¼1870ÍòÃÀÔªËðʧ
ýÌå1ÔÂ16Èճƣ¬NFTƽ̨LympoÔâµ½ÍøÂç¹¥»÷£¬Ôì³ÉÔ¼1870ÍòÃÀÔªËðʧ¡£¸Ã¹«Ë¾Ðû²¼µÄ¾¯±¨ÌåÏÖ£¬¹¥»÷·¢ÉúÔÚ2022Äê1ÔÂ10ÈÕÏÂÎç2:32×óÓÒ£¨UTC+2£©£¬¹¥»÷ÕßÉè·¨·ÃÎÊÁËLympoµÄÈÈÇ®°ü£¬²¢´ÓÖÐÇÔÈ¡ÁËԼĪ1.652ÒÚ¸öLMT¡£ÓÉÓÚÔâµ½ÍøÂç¹¥»÷£¬LMTµÄ¼ÛֵϵøÁè¼Ý92%¡£·¢Éú¹¥»÷ºó¸Ãƽ̨Á¢¿Ì½ÓÄÉÁËÓ¦¼±´ëÊ©£¬²¢ÁгöÁËÆäÕýÔÚ¼à¿ØµÄºÚ¿ÍÇ®°üµÄµØÖ·¡£
https://securityaffairs.co/wordpress/126766/cyber-crime/lympo-ntf-platform-hacked.html
ÐÂÄ«Î÷¸çÖݼàÓüMDCÔâµ½ÀÕË÷¹¥»÷±»ÆÈ½øÈëËø¶¨×´Ì¬
¾ÝMalwarebytes 1ÔÂ13ÈÕ±¨µÀ£¬ÐÂÄ«Î÷¸çÖݲ®ÄÉÀûÂåÏØµÄ¶àÊý»á¾ÐÁôÖÐÐÄ£¨MDC£©Ôâµ½ÀÕË÷¹¥»÷¡£¹¥»÷·¢ÉúÔÚ1ÔÂ5ÈÕÎçÒ¹ÖÁ5:30×óÓÒ£¬µ¼Ö¼àÓüÍøÂçÁ¬½ÓÖжϣ¬´ó²¿ÃÅÊý¾Ýϵͳ¡¢Äþ¾²¼à¿ØºÍ×Ô¶¯ÃÅÎÞ·¨Ê¹Óã¬Çô·¸Ò²±»¹ØÔÚÀη¿Àï¡£´ËÍ⣬MDCµÄ¶à¸öÊý¾Ý¿âÒÑË𻵣¬2¸öÖØÒªµÄϵͳ£ºÊ¼þ¸ú×Ùϵͳ(ITS)ºÍ×ï·¸¹ÜÀíϵͳ(OMS)Ò²ÎÞ·¨·ÃÎÊ¡£¾ÝϤ£¬MDC×Ô¼º²¢·Ç´Ë´Î¹¥»÷µÄÄ¿±ê£¬¸ÃÏØµÄÕû¸öÍøÂçϵͳ¶¼Êܵ½Á˹¥»÷¡£
https://blog.malwarebytes.com/ransomware/2022/01/ransomware-cyberattack-forces-new-mexico-jail-to-lock-down/
ÎÚ¿ËÀ¼¾¯·½µ·»ÙÒѹ¥»÷Å·ÃÀµØÓò50¶à¸ö×éÖ¯µÄºÚ¿ÍÍÅ»ï
1ÔÂ13ÈÕ£¬ÎÚ¿ËÀ¼¾¯·½Ðû²¼Í¨¸æ³Æ´þ²¶ÁËÒ»¸öÀÕË÷¹¥»÷ÍŻ¾¯·½ÌåÏÖ£¬¸Ã×éÖ¯Òѹ¥»÷ÃÀ¹úºÍÅ·ÖÞµØÓòÁè¼Ý50¸ö¹«Ë¾£¬ÆäÖÐ36ËêµÄÎÚ¿ËÀ¼Ê×¶¼»ù¸¨¾ÓÃñ±»È·¶¨Îª¸Ã×éÖ¯µÄÍ·Ä¿£¬³ÉÔ±°üÂÞËûµÄÆÞ×ÓºÍÆäËûÈýÃûÊìÈË£¬¾ÝÔ¤¼Æ¹¥»÷Ôì³ÉµÄ×ÜËðʧÁè¼ÝÒ»°ÙÍòÃÀÔª¡£Ä¿Ç°Éв»Çå³þ¸ÃÍÅ»ïʹÓúÎÖÖÀÕË÷Èí¼þÀ´¼ÓÃÜÄ¿±ê¼ÆËã»úÉϵÄÊý¾Ý£¬µ«ËûÃÇͨ¹ýÀ¬»øÓʼþ·Ö·¢¶ñÒâÈí¼þ¡£³ýÁËÀÕË÷¹¥»÷£¬¸ÃÍŻﻹÌṩIPµØÖ·ÆÛÆ·þÎñ¡£
https://www.bleepingcomputer.com/news/security/ukranian-police-arrests-ransomware-gang-that-hit-over-50-firms/
Äþ¾²¹¤¾ß
RAUDI
RAUDIͨ¹ýGitHub ActionsΪ¿ª·¢ÈËԱδÌṩµÄ¹¤¾ß×Ô¶¯Éú³É²¢±£³Ö¸üÐÂһϵÁÐDocker ¾µÏñ¡£
https://github.com/cybersecsi/RAUDI
Driftwood
Driftwood ÊÇÒ»ÖÖ¹¤¾ß£¬¿ÉÈÃÄú²éÕÒ˽ԿÊÇ·ñÓÃÓÚ TLS µÈÓÃ;£¬»òÕßÓÃ×÷Óû§µÄ GitHub SSH ÃÜÔ¿¡£
https://github.com/trufflesecurity/driftwood
SpoofThatMail
ÓÃÓÚ¼ì²éÊÇ·ñ¿ÉÒÔÆ¾¾ÝDMARC¼Ç¼ÆÛÆÓò»òÓòÁбíµÄ Bash ½Å±¾
https://github.com/v4d1/SpoofThatMail
Äþ¾²·ÖÎö
CVE-2022-0215:¿çÕ¾ÇëÇóαÔì©¶´
3¸öWordPress ²å¼þÖеĿçÕ¾ÇëÇóαÔì©¶´Ó°ÏìÁË 84,000 ¸öÍøÕ¾¡£
https://thehackernews.com/2022/01/high-severity-vulnerability-in-3.html
Chromium ä¯ÀÀÆ÷È¡Ïûɾ³ýĬÈÏËÑË÷ÒýÇæµÄÑ¡Ïî
Chromium ä¯ÀÀÆ÷иü¸ÄʹÓû§ÎÞ·¨É¾³ýĬÈÏËÑË÷ÒýÇæ£¬°üÂÞEdge¡¢Chrome ºÍ Vivaldi¡£
https://news.softpedia.com/news/chromium-browsers-lose-option-to-remove-default-search-engines-534697.shtml
Ñо¿ÈËÔ±¿ª·¢ CAPTCHA Çó½âÆ÷ÒÔ×ÊÖú°µÍøÑо¿
Ñо¿ÈËÔ±¿ª·¢ÁËÒ»ÖÖ»ùÓÚ»úÆ÷ѧϰµÄÑéÖ¤ÂëÇó½âÆ÷£¬ËûÃÇÉù³Æ¿ÉÒÔ¿Ë·þºÚ°µÍøÕ¾ÉÏ 94.4% µÄÌôÕ½¡£
https://www.bleepingcomputer.com/news/security/researchers-develop-captcha-solver-to-aid-dark-web-research/
Android Óû§ÏÖÔÚ¿ÉÒÔ½ûÓà 2G À´×èÖ¹ Stingray ¹¥»÷
¹È¸èÔÚ Android ÉÏÍÆ³öÁËÒ»¸öÑ¡ÏÔÊÐíÓû§½ûÓà 2G Á¬½ÓÒÔ×èÖ¹±»Ðí¶à·äÎÑÕ¾µãÄ£ÄâÆ÷ÀûÓõÄÒþ˽ºÍÄþ¾²ÎÊÌâ¡£
https://www.bleepingcomputer.com/news/security/android-users-can-now-disable-2g-to-block-stingray-attacks/