΢ÈíÐû²¼´øÍâ¸üÐÂÒÔ½â¾ö1Ô·ÝÖܶþ²¹¶¡µ¼ÖµÄÎÊÌâ

Ðû²¼Ê±¼ä 2022-01-19

΢ÈíÐû²¼´øÍâ¸üÐÂÒÔ½â¾ö1Ô·ÝÖܶþ²¹¶¡µ¼ÖµÄÎÊÌâ


΢ÈíÐû²¼´øÍâ¸üÐÂÒÔ½â¾ö1Ô·ÝÖܶþ²¹¶¡µ¼ÖµÄÎÊÌâ.png


1ÔÂ18ÈÕ£¬Î¢ÈíÐû²¼½ô¼±´øÍâ(OOB)¸üУ¬ÒÔ½â¾öÓÉ2021Äê1ÔµÄÖܶþ²¹¶¡µ¼ÖµÄÖî¶àÎÊÌâ ¡£¸Ã¹«Ë¾ÌåÏÖ£¬´Ë¸üнâ¾öÁËÓëVPNÁ¬½Ó¡¢Windows ServerÓò¿ØÖÆÆ÷ÖØÐÂÆô¶¯¡¢ÐéÄâ»úÆô¶¯Ê§°ÜÒÔ¼°ReFS¸ñʽµÄ¿ÉÒÆ¶¯Ã½ÌåÎÞ·¨°²×°Ïà¹ØµÄÎÊÌâ ¡£´Ë´ÎÐû²¼µÄËùÓÐOOB¸üж¼¿ÉÒÔÔÚMicrosoft Update CatalogÉÏÏÂÔØ£¬ÆäÖв¿ÃÅ»¹ÄÜ×÷Ϊ¿ÉÑ¡¸üÐÂÖ±½Óͨ¹ýWindows Update°²×° ¡£


https://www.bleepingcomputer.com/news/microsoft/microsoft-releases-oob-updates-for-january-windows-update-issues/


AWSÐÞ¸´ÐÅϢй¶©¶´SuperglueºÍBreakingFormation


¾ÝýÌå1ÔÂ14ÈÕ±¨µÀ£¬AWSÒÑÐÞ¸´Æä²úÎïÖеÄ2¸öÐÅϢй¶©¶´ ¡£Õâ2¸ö©¶´¾ùÊÇÓÉOrca SecurityÍŶӷ¢Ïֵ쬯äÖеÄSuperglue´æÔÚÓÚAWS Glue·þÎñÖУ¬ÊÇÄÚ²¿·þÎñAPIÅäÖôíÎóµ¼ÖµÄ£¬¿É±»ÓÃÀ´ÌáÉýȨÏÞ·ÃÎʸõØÓòµÄËùÓзþÎñ×ÊÔ´£»ÁíÒ»¸öÊÇAWS CloudFormation·þÎñÖеÄBreakingFormation£¬ÕâÊÇÒ»¸öXXE©¶´£¬¿Éµ¼ÖÂAWS»ù´¡ÉèÊ©·þÎñµÄÎļþºÍƾ֤й¶ ¡£


https://www.infosecurity-magazine.com/news/aws-patches-glue-bug-customer-data/


Ñо¿ÈËÔ±ÑÝʾÈçºÎÀûÓõÚÈý·½Ó¦ÓÃÖЩ¶´½âËøÌØË¹À­Æû³µ


ýÌå1ÔÂ13ÈÕ±¨µÀ£¬19ËêµÄDavid Colombo³ÆÆä¿ÉÒÔÔ¶³Ì¿ØÖƶà¸ö¹ú¼ÒµÄ25Á¾ÌØË¹À­Æû³µ ¡£ColomboÔÚ¾ßÓиú×ÙÆû³µÒƶ¯ºÍÔ¶³Ì½âËø³µÃŵȹ¦Ð§µÄµÚÈý·½Ó¦ÓÃÖз¢ÏÖÒ»¸ö©¶´£¬¸Ã©¶´Ô´ÓÚÓ¦ÓÃÒÔ²»Äþ¾²µÄ·½Ê½´æ´¢ÓÃÀ´Á¬½ÓÆû³µµÄÃô¸ÐÐÅÏ¢ ¡£ÀÖ³ÉÀûÓé¶´ºó³ýÁË¿ÉÒÔ¿ØÖÆÆû³µ£¬»¹¿ÉÒÔ»ñÈ¡Óû§ÐÅÏ¢ ¡£Ñо¿ÈËÔ±ÌåÏÖ£¬ËûÔڵ¹ú¡¢Ó¢¹ú¡¢ÃÀ¹ú¡¢¼ÓÄôóºÍÖйúµÈ¹ú¼Ò»¹·¢ÏÖÁËÁè¼Ý125Á¾¿É±»¿ØÖƵÄÌØË¹À­Æû³µ ¡£ 


https://www.vice.com/en/article/akv7z5/how-a-hacker-controlled-dozens-of-teslas-using-a-flaw-in-third-party-app


NFTƽ̨Lympo±»·Ç·¨·ÃÎÊ£¬Ôì³ÉÔ¼1870ÍòÃÀÔªËðʧ


ýÌå1ÔÂ16Èճƣ¬NFTƽ̨LympoÔâµ½ÍøÂç¹¥»÷£¬Ôì³ÉÔ¼1870ÍòÃÀÔªËðʧ ¡£¸Ã¹«Ë¾Ðû²¼µÄ¾¯±¨ÌåÏÖ£¬¹¥»÷·¢ÉúÔÚ2022Äê1ÔÂ10ÈÕÏÂÎç2:32×óÓÒ£¨UTC+2£©£¬¹¥»÷ÕßÉè·¨·ÃÎÊÁËLympoµÄÈÈÇ®°ü£¬²¢´ÓÖÐÇÔÈ¡ÁËԼĪ1.652ÒÚ¸öLMT ¡£ÓÉÓÚÔâµ½ÍøÂç¹¥»÷£¬LMTµÄ¼ÛֵϵøÁè¼Ý92% ¡£·¢Éú¹¥»÷ºó¸Ãƽ̨Á¢¿Ì½ÓÄÉÁËÓ¦¼±´ëÊ©£¬²¢ÁгöÁËÆäÕýÔÚ¼à¿ØµÄºÚ¿ÍÇ®°üµÄµØÖ· ¡£


https://securityaffairs.co/wordpress/126766/cyber-crime/lympo-ntf-platform-hacked.html


ÐÂÄ«Î÷¸çÖݼàÓüMDCÔâµ½ÀÕË÷¹¥»÷±»ÆÈ½øÈëËø¶¨×´Ì¬


¾ÝMalwarebytes 1ÔÂ13ÈÕ±¨µÀ£¬ÐÂÄ«Î÷¸çÖݲ®ÄÉÀûÂåÏØµÄ¶àÊý»á¾ÐÁôÖÐÐÄ£¨MDC£©Ôâµ½ÀÕË÷¹¥»÷ ¡£¹¥»÷·¢ÉúÔÚ1ÔÂ5ÈÕÎçÒ¹ÖÁ5:30×óÓÒ£¬µ¼Ö¼àÓüÍøÂçÁ¬½ÓÖжÏ£¬´ó²¿ÃÅÊý¾Ýϵͳ¡¢Äþ¾²¼à¿ØºÍ×Ô¶¯ÃÅÎÞ·¨Ê¹Óã¬Çô·¸Ò²±»¹ØÔÚÀη¿Àï ¡£´ËÍ⣬MDCµÄ¶à¸öÊý¾Ý¿âÒÑË𻵣¬2¸öÖØÒªµÄϵͳ£ºÊ¼þ¸ú×Ùϵͳ(ITS)ºÍ×ï·¸¹ÜÀíϵͳ(OMS)Ò²ÎÞ·¨·ÃÎÊ ¡£¾ÝϤ£¬MDC×Ô¼º²¢·Ç´Ë´Î¹¥»÷µÄÄ¿±ê£¬¸ÃÏØµÄÕû¸öÍøÂçϵͳ¶¼Êܵ½Á˹¥»÷ ¡£


https://blog.malwarebytes.com/ransomware/2022/01/ransomware-cyberattack-forces-new-mexico-jail-to-lock-down/


ÎÚ¿ËÀ¼¾¯·½µ·»ÙÒѹ¥»÷Å·ÃÀµØÓò50¶à¸ö×éÖ¯µÄºÚ¿ÍÍÅ»ï


1ÔÂ13ÈÕ£¬ÎÚ¿ËÀ¼¾¯·½Ðû²¼Í¨¸æ³Æ´þ²¶ÁËÒ»¸öÀÕË÷¹¥»÷ÍÅ»ï ¡£¾¯·½ÌåÏÖ£¬¸Ã×éÖ¯Òѹ¥»÷ÃÀ¹úºÍÅ·ÖÞµØÓòÁè¼Ý50¸ö¹«Ë¾£¬ÆäÖÐ36ËêµÄÎÚ¿ËÀ¼Ê×¶¼»ù¸¨¾ÓÃñ±»È·¶¨Îª¸Ã×éÖ¯µÄÍ·Ä¿£¬³ÉÔ±°üÂÞËûµÄÆÞ×ÓºÍÆäËûÈýÃûÊìÈË£¬¾ÝÔ¤¼Æ¹¥»÷Ôì³ÉµÄ×ÜËðʧÁè¼ÝÒ»°ÙÍòÃÀÔª ¡£Ä¿Ç°Éв»Çå³þ¸ÃÍÅ»ïʹÓúÎÖÖÀÕË÷Èí¼þÀ´¼ÓÃÜÄ¿±ê¼ÆËã»úÉϵÄÊý¾Ý£¬µ«ËûÃÇͨ¹ýÀ¬»øÓʼþ·Ö·¢¶ñÒâÈí¼þ ¡£³ýÁËÀÕË÷¹¥»÷£¬¸ÃÍŻﻹÌṩIPµØÖ·ÆÛÆ­·þÎñ ¡£


https://www.bleepingcomputer.com/news/security/ukranian-police-arrests-ransomware-gang-that-hit-over-50-firms/


Äþ¾²¹¤¾ß


RAUDI 


RAUDIͨ¹ýGitHub ActionsΪ¿ª·¢ÈËԱδÌṩµÄ¹¤¾ß×Ô¶¯Éú³É²¢±£³Ö¸üÐÂһϵÁÐDocker ¾µÏñ ¡£


https://github.com/cybersecsi/RAUDI


Driftwood


Driftwood ÊÇÒ»ÖÖ¹¤¾ß£¬¿ÉÈÃÄú²éÕÒ˽ԿÊÇ·ñÓÃÓÚ TLS µÈÓÃ;£¬»òÕßÓÃ×÷Óû§µÄ GitHub SSH ÃÜÔ¿ ¡£


https://github.com/trufflesecurity/driftwood


SpoofThatMail


ÓÃÓÚ¼ì²éÊÇ·ñ¿ÉÒÔÆ¾¾ÝDMARC¼Ç¼ÆÛÆ­Óò»òÓòÁбíµÄ Bash ½Å±¾


https://github.com/v4d1/SpoofThatMail


Äþ¾²·ÖÎö


CVE-2022-0215:¿çÕ¾ÇëÇóαÔì©¶´


3¸öWordPress ²å¼þÖеĿçÕ¾ÇëÇóαÔì©¶´Ó°ÏìÁË 84,000 ¸öÍøÕ¾ ¡£


https://thehackernews.com/2022/01/high-severity-vulnerability-in-3.html


Chromium ä¯ÀÀÆ÷È¡Ïûɾ³ýĬÈÏËÑË÷ÒýÇæµÄÑ¡Ïî


Chromium ä¯ÀÀÆ÷иü¸ÄʹÓû§ÎÞ·¨É¾³ýĬÈÏËÑË÷ÒýÇæ£¬°üÂÞEdge¡¢Chrome ºÍ Vivaldi ¡£


https://news.softpedia.com/news/chromium-browsers-lose-option-to-remove-default-search-engines-534697.shtml


Ñо¿ÈËÔ±¿ª·¢ CAPTCHA Çó½âÆ÷ÒÔ×ÊÖú°µÍøÑо¿


Ñо¿ÈËÔ±¿ª·¢ÁËÒ»ÖÖ»ùÓÚ»úÆ÷ѧϰµÄÑéÖ¤ÂëÇó½âÆ÷£¬ËûÃÇÉù³Æ¿ÉÒÔ¿Ë·þºÚ°µÍøÕ¾ÉÏ 94.4% µÄÌôÕ½ ¡£


https://www.bleepingcomputer.com/news/security/researchers-develop-captcha-solver-to-aid-dark-web-research/


Android Óû§ÏÖÔÚ¿ÉÒÔ½ûÓà 2G À´×èÖ¹ Stingray ¹¥»÷


¹È¸èÔÚ Android ÉÏÍÆ³öÁËÒ»¸öÑ¡ÏÔÊÐíÓû§½ûÓà 2G Á¬½ÓÒÔ×èÖ¹±»Ðí¶à·äÎÑÕ¾µãÄ£ÄâÆ÷ÀûÓõÄÒþ˽ºÍÄþ¾²ÎÊÌâ ¡£


https://www.bleepingcomputer.com/news/security/android-users-can-now-disable-2g-to-block-stingray-attacks/