MetaÒò2018ÄêÊý¾Ýй¶Ê¼þ±»°®¶ûÀ¼·£¿î1860ÍòÃÀÔª

Ðû²¼Ê±¼ä 2022-03-18

MetaÒò2018ÄêÊý¾Ýй¶Ê¼þ±»°®¶ûÀ¼·£¿î1860ÍòÃÀÔª


¾ÝýÌå3ÔÂ15ÈÕ±¨µÀ £¬°®¶ûÀ¼Êý¾Ý±£»¤Î¯Ô±»á(DPC)ÔÚ±¾Öܶþ¶ÔMeta´¦ÒÔÔ¼1860ÍòÃÀÔªµÄ·£¿î ¡£DPC³Æ £¬MetaδÄܽÓÄÉÊʵ±µÄ¼¼ÊõºÍ´ëÊ© £¬ÔÚ2018Äê6ÔÂ7ÈÕ12ÔÂ4ÈÕµÄ6¸öÔÂÆÚ¼ä·¢ÉúÁË12´ÎÊý¾Ýй¶ £¬Î¥·´ÁËGDPR ¡£MetaÌåÏÖÕâÏî·£¿îÉæ¼°µ½Æä×Ô2018ÄêÒÔÀ´¸üеļǼÉú´æ·½Ê½ £¬¶ø·ÇδÄܱ£»¤Óû§ÐÅÏ¢ ¡£´Ëǰ £¬°®¶ûÀ¼¼à¹Ü»ú¹¹´ËÇ°ÔøÔÚ2021Äê9ÔÂÒòÎ¥·´Í¸Ã÷¶ÈÒåÎñ¶ÔWhatsApp´¦ÒÔÔ¼2.67ÒÚÃÀÔªµÄ·£¿î ¡£


https://www.cyberscoop.com/facebook-meta-gdpr-ireland/


Ñо¿ÈËÔ±·¢ÏÖн©Ê¬ÍøÂçB1txor20ÀûÓÃLog4J©¶´µÄ¹¥»÷


ýÌå3ÔÂ15ÈÕ±¨µÀ £¬×î½ü·¢ÏÖµÄÒ»¸öÈÔÔÚ»ý¼«¿ª·¢µÄ½©Ê¬ÍøÂçB1txor20ÕýÃé×¼Linuxϵͳ ¡£Ñо¿ÈËÔ±ÓÚ2ÔÂ9ÈÕÊ״η¢ÏÖB1txor20 £¬ËüÖ÷ÒªÕë¶ÔLinux ARMºÍX64 CPU¼Ü¹¹É豸 £¬ÀûÓÃLog4J©¶´Ñ¬È¾Ä¿±ê £¬¾ßÓкóÃÅ¡¢SOCKS5ÊðÀí¡¢¶ñÒâÈí¼þÏÂÔØ¡¢Êý¾ÝÇÔÈ¡¡¢ÈÎÒâÃüÁîÖ´ÐкÍrootkit°²×°µÈ¹¦Ð§ ¡£´ËÍâ £¬B1txor20ʹÓÃDNSËíµÀÓëC2·þÎñÆ÷½øÐÐͨÐÅ £¬ÕâÊÇÒ»ÖÖ¹ÅÀϵ«¿É¿¿µÄ¼¼Êõ £¬¹¥»÷ÕßÀûÓÃDNSЭÒéͨ¹ýDNS²éѯͨ±¨¶ñÒâÈí¼þºÍÊý¾Ý ¡£


https://www.bleepingcomputer.com/news/security/new-linux-botnet-exploits-log4j-uses-dns-tunneling-for-comms/


ÃÀ¹úSDCAÔâµ½ÈëÇÖ £¬½ü30Íò¸öÐÄÔಡ»¼ÕßµÄÐÅϢ̻¶


ýÌå3ÔÂ15ÈÕ³Æ £¬ÃÀ¹úÄϵ¤·ðÐÄÔಡЭ»á(SDCA) Ôâµ½ÈëÇÖ £¬Ô¼287652¸ö»¼ÕßµÄÐÅϢ̻¶ ¡£SDCAÌåÏÖ £¬ËûÃÇÔÚ1ÔÂ4ÈÕÔÚ¼ÆËã»úϵͳÖз¢ÏÖÁËÒì³£»î¶¯ £¬Ö®ºóÁ¢¼´Æô¶¯ÁËʼþÏìÓ¦Á÷³Ì ¡£´Ë´Îй¶µÄÐÅÏ¢°üÂÞ»¼ÕßÐÕÃû¡¢³öÉúÈÕÆÚ¡¢Éç»áÄþ¾²ºÅÂë¡¢¼Ýʻ֤ºÅÂë¡¢»¼ÕßÕʺ𢽡¿µ±£ÏÕÐÅÏ¢ºÍÁÙ´²ÐÅÏ¢µÈ ¡£SDCAÒѽ«´Ë´Îй¶Ê¼þ֪ͨÊÜÓ°ÏìµÄÓû§ £¬²¢½«ÎªÆäÌṩÃâ·ÑµÄÐÅÓÃ¼à¿ØºÍÉí·Ý±£»¤·þÎñ ¡£


https://www.infosecurity-magazine.com/news/heart-patients-data-exposed/


AppleÐû²¼Äþ¾²¸üР£¬ÐÞ¸´iOSºÍmacOSÖеĶà¸ö©¶´


AppleÔÚ3ÔÂ14ÈÕÐû²¼ÁËmacOS Monterey 12.3¡¢iOS 15.4ºÍiPadOS 15.4µÄÄþ¾²¸üР¡£´Ë´ÎÐÞ¸´µÄ½ÏΪÑÏÖØµÄ©¶´ÊÇAccelerate FrameworµÄÄÚ´æËð»µÂ©¶´£¨CVE-2022-22633£© £¬¿ÉÀûÓöñÒâµÄPDFÎļþµ¼ÖÂÈÎÒâ´úÂëÖ´ÐУ»AppleAVDÖеÄÄÚ´æËð»µÂ©¶´£¨CVE-2022-22666£© £¬¿ÉÄܵ¼ÖÂÄÚ´æÐ¹Â©»òÕßÄÚ´æ¹ÊÕÏ£»ÒÔ¼°AVEVideoEncoderÖеĻº³åÇøÒç³ö©¶´£¨CVE-2022-22634£©ºÍÔ½½çдÈë©¶´£¨CVE-2022-22635£©µÈ©¶´ ¡£


https://blog.malwarebytes.com/exploits-and-vulnerabilities/2022/03/update-now-apple-fixes-several-serious-vulnerabilities-in-ios-macos-and-ipados/


Microsoft Defender½«Office¸üÐÂÎó±¨ÎªÀÕË÷Èí¼þ»î¶¯


´Ó3ÔÂ16ÈÕÔçÉÏ¿ªÊ¼ £¬Windows¹ÜÀíÔ±Ôâµ½Ò»²¨Microsoft Defender for EndpointÎ󱨼ì²â ¡£¾¯±¨½«Office¸üбê־Ϊ¶ñÒâ £¬³ÆÔÚϵͳÉϼì²âµ½ÓÐÀÕË÷Èí¼þ»î¶¯ ¡£Microsoft³Æ £¬ÊӲ췢ÏÖÎ󱨵Ļù´¡Ô­ÒòÊÇ×î½üÔÚ·þÎñ×é¼þÖв¿ÊðÁËÓÃÓÚ¼ì²âÀÕË÷Èí¼þ¾¯±¨µÄ¸üР£¬Õâµ¼ÖÂÁËÒ»¸ö´úÂëÎÊÌâ £¬Ê¹ÆäÔÚϵͳÉϲ»´æÔÚÀÕË÷Èí¼þ»î¶¯µÄÇé¿öÏ´¥·¢¾¯±¨ ¡£¸Ã¹«Ë¾Ä¿Ç°ÒÑÐÞ¸´ÎÊÌâ £¬²¢È·±£²»»á·¢ËÍеľ¯±¨ ¡£


https://www.bleepingcomputer.com/news/security/microsoft-defender-tags-office-updates-as-ransomware-activity/


Intel 471Ðû²¼2021ÄêQ4ÀÕË÷Èí¼þ±äÖֵķÖÎö³ÂËß


ýÌå3ÔÂ15ÈÕ±¨µÀ £¬Intel 471ÔÚ½üÆÚÐû²¼ÁË2021ÄêQ4ÀÕË÷Èí¼þ±äÖֵķÖÎö³ÂËß ¡£³ÂËßÖ¸³ö £¬ÔÚµÚËļ¾¶È¼ì²âµ½Á˶à´ï722ÆðÀÕË÷¹¥»÷ £¬Ê¹ÓÃÁË34ÖÖ¶ñÒâÈí¼þ £¬ÆäÖÐLockBit 2.0£¨Õ¼±È29.7%£©¡¢Conti£¨19%£©¡¢PYSA£¨10.5%£©ºÍHive£¨10.1%£©×î³£¼û ¡£Êܵ½¹¥»÷µÄ×î¶àµØÓòÊDZ±ÃÀ £¬Õ¼±ÈÁè¼Ý50% £¬½ôËæÆäºóµÄÊÇÅ·ÖÞ £¬Ô¼Îª30% ¡£ÊÜÓ°Ïì×î´óµÄÐÐÒµÊÇÏû·ÑÆ·ºÍ¹¤Òµ²úÎï £¬Æä´ÎÎªÖÆÔìÒµ¡¢×¨Òµ·þÎñºÍ·¿µØ²ú ¡£


https://thehackernews.com/2022/03/nearly-34-ransomware-variants-observed.html



Äþ¾²¹¤¾ß


Patching


IDA Pro µÄ½»»¥Ê½¶þ½øÖƲ¹¶¡²å¼þ ¡£


https://github.com/gaasedelen/patching


Codecat


ÊÇÒ»¸ö¿ªÔ´¹¤¾ß £¬¿É×ÊÖúʹÓþ²Ì¬´úÂë·ÖÎöÀ´²éÕÒ/¸ú×ÙÓû§ÊäÈë½ÓÊÕÆ÷ºÍÄþ¾²Â©¶´ ¡£


https://github.com/CoolerVoid/codecat


poro


ɨÃè AWS »·¾³ÖпɹûÈ»·ÃÎʵÄ×ʲú ¡£


https://github.com/9rnt/poro


GOAD (Game Of Active Directory)


GOAD ÊÇÒ»¸öÉøÍ¸²âÊÔµÄActive DirectoryʵÑéÊÒÏîÄ¿ ¡£


https://github.com/Orange-Cyberdefense/GOAD



Äþ¾²·ÖÎö


¶íÂÞË¹ÃæÁÙ IT Σ»ú £¬Êý¾Ý´æ´¢¿Õ¼ä½ö¹»Á½¸öÔÂ


https://www.bleepingcomputer.com/news/technology/russia-faces-it-crisis-with-just-two-months-of-data-storage-left/


Anonymous¹¥»÷¶íÂÞ˹Áª°îÄþ¾²¾Ö (FSB)


https://www.hackread.com/ddos-attacks-anonymous-cripple-russia-fsb-websites/


ÑÏÖØÂ©¶´Ó°Ïì Veeam Data Backup Èí¼þ


https://securityaffairs.co/wordpress/129094/hacking/veeam-rce.html


µÂ¹úÕþ¸®½¨Ò鲻ҪʹÓÿ¨°Í˹»ùɱ¶¾Èí¼þ


https://www.bleepingcomputer.com/news/security/german-government-advises-against-using-kaspersky-antivirus/


Android ľÂí×Ô 1 ÔÂÆðÔÚ Google Play É̵êÖÐÁ¬Ðø´æÔÚ


https://www.bleepingcomputer.com/news/security/android-trojan-persists-on-the-google-play-store-since-january/


FBI ¾¯¸æ¹ú¼ÒºÚ¿ÍʹÓà MFA ©¶´½øÐкáÏòÒÆ¶¯


https://www.bleepingcomputer.com/news/security/fbi-warns-of-mfa-flaw-used-by-state-hackers-for-lateral-movement/