ÓÉÓÚCDNÎÊÌ⣬Microsoft WinGettÈí¼þ±£Ö¤ÀíÆ÷±¨´í

Ðû²¼Ê±¼ä 2022-11-09
1¡¢ÓÉÓÚCDNÎÊÌ⣬Microsoft WinGettÈí¼þ±£Ö¤ÀíÆ÷±¨´í

¾ÝýÌå11ÔÂ7ÈÕ±¨µÀ£¬´ÓÉÏÖÜÄ©¿ªÊ¼£¬WindowsÓû§·¢ÏÖµ±ËûÃÇʵÑéʹÓÃWinGet°²×°»òÉý¼¶Ó¦Ó÷¨Ê½Ê±£¬»áÊÕµ½²îÒìµÄ´íÎóÌáÐÑ ¡£ÀýÈ磬winget upgrade»áÏÔʾ¡°ÊµÑé¸üÐÂԴʧ°Ü£ºwinget¡±£¬winget install»áÏÔʾ¡°Ö´ÐÐÃüÁîʱ·¢ÉúÒâÍâ´íÎó£º0x8a15000f£ºÔ´ËùÐèµÄÊý¾Ý¶ªÊ§¡± ¡£¾ÝϤ£¬¸ÃÎÊÌâÊÇÓÉÓÚAzureÄÚÈݽ»¸¶ÍøÂç(CDN)·µ»ØÒ»¸ö0×Ö½ÚµÄÊý¾Ý¿âÎļþµ¼ÖµÄ£¬Î¢ÈíÄ¿Ç°ÕýÔÚ½â¾ö¸ÃÎÊÌ⣬²¢ÌåÏÖËü²»»áÓ°ÏìËùÓÐÓû§ ¡£

https://www.bleepingcomputer.com/news/microsoft/microsoft-winget-package-manager-failing-due-to-cdn-issues/

2¡¢CitrixÐû²¼¸üУ¬ÐÞ¸´ÆäADCºÍGatewayÖеĶà¸ö©¶´

CitrixÓÚ11ÔÂ8ÈÕÐû²¼Äþ¾²¸üУ¬ÐÞ¸´ÆäADCºÍGatewayÖеĶà¸ö©¶´ ¡£´Ë´ÎÐÞ¸´ÁËʹÓÃÌæ´ú·¾¶»òͨµÀµÄÈÏÖ¤Èƹý©¶´£¨CVE-2022-27510£©£¬¿É±»ÓÃÀ´·ÃÎÊGatewayÓû§£»Êý¾ÝÕæʵÐÔÑéÖ¤²»×㩶´£¨CVE-2022-27513£©£¬¿Éͨ¹ýµöÓã¹¥»÷½øÐÐÔ¶³Ì×ÀÃæ½Ó¹Ü£»±£»¤»úÖÆʧЧ£¨CVE-2022-27516£©£¬¿ÉÈƹýÓû§µÇ¼µÄ±©Á¦¹¥»÷±£»¤ ¡£½öÔÚijЩÔÚÌض¨ÅäÖÃÏ£¬ÕâЩ©¶´²ÅÆø±»ÀûÓã¬Citrix½¨Òé¹ÜÀíÔ±Á¢¼´ÐÞ¸´ÕâЩ©¶´ ¡£

https://support.citrix.com/article/CTX463706/citrix-gateway-and-citrix-adc-security-bulletin-for-cve202227510-cve202227513-and-cve202227516

3¡¢¼ÓÄôóMaple Leaf FoodsÔÚÔâµ½¹¥»÷ºóÔËÓªÔÝʱÖжÏ

¾Ý11ÔÂ7ÈÕ±¨µÀ£¬Maple Leaf FoodsÈ·ÈÏÆä¾­ÀúÁËÒ»ÆðÍøÂçÄþ¾²Ê¼þ£¬µ¼ÖÂϵͳºÍÔËÓªÖÐ¶Ï ¡£Maple Leaf FoodsÊǼÓÄôó×î´óµÄÔ¤ÖÆÈâÀàºÍ¼ÒÇÝʳƷÉú²úÉÌ£¬2021ÄêÓªÒµ¶îΪ33ÒÚÃÀÔª ¡£¸Ã¹«Ë¾ÕýÔÚŬÁ¦»Ö¸´ÊÜÓ°ÏìµÄϵͳ£¬È»¶øÔ¤¼ÆÈ«Ãæ½â¾ö¹ÊÕÏÎÊÌ⽫ÈÔÐèҪʱ¼ä£¬²¢½«µ¼Ö²¿ÃÅÔËÓªºÍ·þÎñÖÐ¶Ï ¡£¸Ã¹«Ë¾ÌåÏÖ½«¼ÌÐøÓë¿Í»§ºÍºÏ×÷»ï°éºÏ×÷£¬ÒÔ¼õÉÙ¼ÓÄôóÊг¡µÄʳƷ¹©Ó¦ÖÐ¶Ï ¡£Ä¿Ç°£¬ÊÓ²ìÈÔÔÚ½øÐÐÖУ¬ÉÐδȷ¶¨¹¥»÷ÊÇÈçºÎ·¢ÉúµÄ ¡£

https://www.bleepingcomputer.com/news/security/maple-leaf-foods-suffers-outage-following-weekend-cyberattack/

4¡¢Justice Blade¹¥»÷ÓëɳÌØ°¢À­²®Ïà¹ØµÄITÍâ°ü¹©Ó¦ÉÌ

ýÌå11ÔÂ7Èճƣ¬Justice BladeÐû²¼ÁË´ÓITÍâ°ü¹©Ó¦ÉÌSmart Link BPO SolutionsÇÔÈ¡µÄÊý¾Ý ¡£¸Ã¹«Ë¾ÓëɳÌØ°¢À­²®Íõ¹úºÍGCCÆäËû¹ú¼ÒµÄ¹«Ë¾ºÍÕþ¸®»ú¹¹ºÏ×÷ ¡£¹¥»÷Õß³ÆÆäÇÔÈ¡ÁË´óÁ¿Êý¾Ý£¬°üÂÞCRM¼Ç¼¡¢¸öÈËÐÅÏ¢¡¢µç×ÓÓʼþͨÐÅ¡¢ºÏͬºÍÕÊ»§Æ¾¾ÝµÈ£¬²¢Ðû²¼Á˸õØÓò¸÷¹«Ë¾Ö®¼äµÄRDP»á»°ºÍOffice 365ͨÐŵĽØͼ£¬ÒÔ¼°¿ÉÄÜÓëFlyNasºÍSAMACaresÓйصļ¸¸öÓû§ÁÐ±í ¡£Ñо¿ÈËÔ±ÔøÔÚ°µÍøÉÏ·¢ÏÖÁ˶à¸öSmart Link BPO½â¾ö·½°¸µÄƾ֤£¬¹¥»÷Õß¿ÉÀûÓÃÕâЩƾִ֤Ðй¥»÷ ¡£

https://securityaffairs.co/wordpress/138213/hacking/justice-blade-targets-saudi-arabia.html

5¡¢ºÚ¿ÍÍÅ»ïÀûÓÃAndroid RAT¹¥»÷Ó¡¶ÈÓë¹ú·ÀÏà¹ØµÄ×éÖ¯

CyfirmaÔÚ11ÔÂ7ÈÕ͸¶Æä×î½ü¼ì²âµ½Ò»¸öÕë¶ÔÓ¡¶È¹ú·ÀÏà¹Ø×éÖ¯µÄ¶ñÒâAndroid APK ¡£Ñо¿±íÃ÷£¬¸Ã¹¥»÷×Ô2021Äê7ÔÂÒÔÀ´Ò»Ö±ºÜ»îÔ¾ ¡£APKÎļþÊÇÓйء°Subs Naik¡±µÄÓÕ¶ü¸±±¾ ¡£ÔÚÄ¿±ê°²×°ºó£¬Õâ¸öÓ¦Ó÷¨Ê½¾Í»áÔÚÉ豸ÉÏÏÔʾΪһ¸öAdobeÔĶÁÆ÷Ó¦ÓÃͼ±ê ¡£¹¥»÷Õß»¹ÀûÓÃÁË¿ªÔ´µÄSpymax RAT±äÌå ¡£Spymax¿ÉÌṩ²îÒìµÄAndroid°ü¹¹½¨£¬ÆäÖÐÒ»¸ö¿É½«ÈÎÒâWebÁ´½Ó×¢ÈëWebÊÓͼÄ £¿é ¡£Àֳɰ²×°Éú³ÉµÄAPKºó£¬Ëü¾ÍÄð³ÉÁËÒ»¸öÕæÕýµÄAndroidÓ¦Óà ¡£

https://www.cyfirma.com/outofband/unknown-nation-based-threat-actor-using-android-rat-to-target-indian-defence-personnel/

6¡¢KasperskyÐû²¼2022ÄêµÚÈý¼¾¶ÈDDoS¹¥»÷µÄ·ÖÎö³ÂËß

11ÔÂ7ÈÕ£¬KasperskyÐû²¼Á˹ØÓÚ2022ÄêµÚÈý¼¾¶ÈDDoS¹¥»÷µÄ·ÖÎö³ÂËß ¡£ÓëÉÏÒ»¼¾¶ÈÏà±È£¬ËùÓÐÀàÐ͵ÄDDoS¹¥»÷ÊýÁ¿ÏÔÖøÔö¼Ó ¡£ÖÇÄܹ¥»÷µÄÕ¼±ÈÁ¬ÐøÔö³¤£¬¸ß´ï53% ¡£´ËÍ⣬±¾¼¾¶È¶ÔHTTP(S)µÄDDoS¹¥»÷Ê×´ÎÁè¼ÝÁ˶ÔTCPµÄ¹¥»÷ ¡£ÔÚ2022ÄêQ3£¬Kaspersky¹²¼ì²âµ½57116´ÎDDoS¹¥»÷£»Ò»ÖÜÖÐ×æµÄÊÇÐÇÆÚÎ壨15.36% µÄ¹¥»÷£©£¬×îƽ¾²µÄÊÇÐÇÆÚËÄ£¨12.99%£©£»Á¬Ðøʱ¼äÉÙÓÚ4СʱµÄ¹¥»÷Õ¼¹¥»÷×Üʱ¼äµÄ60.65%£¬Õ¼¹¥»÷×ÜÊýµÄ94.29%£»UDP FloodÕ¼¹¥»÷×ÜÊýµÄ51.84%£¬SYN FloodÕ¼26.96% ¡£

https://securelist.com/ddos-report-q3-2022/107860/